graphgrc

SCF - BCD-05 - Contingency Plan Root Cause Analysis (RCA) & Lessons Learned

Mechanisms exist to conduct a Root Cause Analysis (RCA) and “lessons learned” activity every time the contingency plan is activated.

Mapped framework controls

NIST 800-53

SOC 2

Control questions

Does the organization conduct a Root Cause Analysis (RCA) and “lessons learned” activity every time the contingency plan is activated?