CP-01
|
Policy and Procedures |
|
|
|
|
CP-02
|
Contingency Plan |
|
|
|
|
CP-02(01)
|
Coordinate with Related Plans |
|
|
|
|
CP-02(02)
|
Capacity Planning |
|
|
|
|
CP-02(03)
|
Resume Mission and Business Functions |
|
|
|
|
CP-02(04)
|
Resume All Mission and Business Functions |
Incorporated into
CP-2.3.
|
CP-02(05)
|
Continue Mission and Business Functions |
|
|
|
|
CP-02(06)
|
Alternate Processing and Storage Sites |
|
|
|
|
CP-02(07)
|
Coordinate with External Service Providers |
|
|
|
|
CP-02(08)
|
Identify Critical Assets |
|
|
|
|
CP-03
|
Contingency Training |
|
|
|
|
CP-03(01)
|
Simulated Events |
|
|
|
|
CP-03(02)
|
Mechanisms Used in Training Environments |
|
|
|
|
CP-04
|
Contingency Plan Testing |
|
|
|
|
CP-04(01)
|
Coordinate with Related Plans |
|
|
|
|
CP-04(02)
|
Alternate Processing Site |
|
|
|
|
CP-04(03)
|
Automated Testing |
|
|
|
|
CP-04(04)
|
Full Recovery and Reconstitution |
|
|
|
|
CP-04(05)
|
Self-challenge |
|
|
|
|
CP-05
|
Contingency Plan Update |
Incorporated into
CP-2.
|
CP-06
|
Alternate Storage Site |
|
|
|
|
CP-06(01)
|
Separation from Primary Site |
|
|
|
|
CP-06(02)
|
Recovery Time and Recovery Point Objectives |
|
|
|
|
CP-06(03)
|
Accessibility |
|
|
|
|
CP-07
|
Alternate Processing Site |
|
|
|
|
CP-07(01)
|
Separation from Primary Site |
|
|
|
|
CP-07(02)
|
Accessibility |
|
|
|
|
CP-07(03)
|
Priority of Service |
|
|
|
|
CP-07(04)
|
Preparation for Use |
|
|
|
|
CP-07(05)
|
Equivalent Information Security Safeguards |
Incorporated into
CP-7.
|
CP-07(06)
|
Inability to Return to Primary Site |
|
|
|
|
CP-08
|
Telecommunications Services |
|
|
|
|
CP-08(01)
|
Priority of Service Provisions |
|
|
|
|
CP-08(02)
|
Single Points of Failure |
|
|
|
|
CP-08(03)
|
Separation of Primary and Alternate Providers |
|
|
|
|
CP-08(04)
|
Provider Contingency Plan |
|
|
|
|
CP-08(05)
|
Alternate Telecommunication Service Testing |
|
|
|
|
CP-09
|
System Backup |
|
|
|
|
CP-09(01)
|
Testing for Reliability and Integrity |
|
|
|
|
CP-09(02)
|
Test Restoration Using Sampling |
|
|
|
|
CP-09(03)
|
Separate Storage for Critical Information |
|
|
|
|
CP-09(04)
|
Protection from Unauthorized Modification |
Incorporated into
CP-9.
|
CP-09(05)
|
Transfer to Alternate Storage Site |
|
|
|
|
CP-09(06)
|
Redundant Secondary System |
|
|
|
|
CP-09(07)
|
Dual Authorization for Deletion or Destruction |
|
|
|
|
CP-09(08)
|
Cryptographic Protection |
|
|
|
|
CP-10
|
System Recovery and Reconstitution |
|
|
|
|
CP-10(01)
|
Contingency Plan Testing |
Incorporated into
CP-4.
|
CP-10(02)
|
Transaction Recovery |
|
|
|
|
CP-10(03)
|
Compensating Security Controls |
|
|
|
|
CP-10(04)
|
Restore Within Time Period |
|
|
|
|
CP-10(05)
|
Failover Capability |
Incorporated into
SI-13.
|
CP-10(06)
|
Component Protection |
|
|
|
|
CP-11
|
Alternate Communications Protocols |
|
|
|
|
CP-12
|
Safe Mode |
|
|
|
|
CP-13
|
Alternative Security Mechanisms |
|
|
|
|