UK NCSC Cyber Assessment Framework
Objective D: Minimising the impact of cyber security incidents – UK NCSC Cyber Assessment Framework

UK NCSC Cyber Assessment Framework D1.c: D1.c Testing and exercising

Response plans are exercised using past incidents at the organisation and elsewhere and scenarios drawn from threat intelligence and risk assessment. Achieved: scenarios are based on real incidents, experience or intelligence, documented, reviewed and validated; exercises run routinely with findings used to refine plans and protective security; and they test the whole response cycle including restoration of normal operation.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Other controls in Objective D: Minimising the impact of cyber security incidents – UK NCSC Cyber Assessment Framework

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.