manage.get.gov/docs/compliance/dist/system-security-plans/ato/cp-7.1.md
Logan McDonald 1d3dfdb8d5
Add compliance documentation to source control (#116)
* add initial setup of compliance-trestle
2022-09-14 08:46:43 -04:00

1.3 KiB

implementation-status control-origination
c-not-implemented
c-inherited-cloud-gov
c-inherited-cisa
c-common-control
c-system-specific-control

cp-7.1 - [catalog] Separation from Primary Site

Control Statement

Identify an alternate processing site that is sufficiently separated from the primary processing site to reduce susceptibility to the same threats.

Control guidance

Threats that affect alternate processing sites are defined in organizational assessments of risk and include natural disasters, structural failures, hostile attacks, and errors of omission or commission. Organizations determine what is considered a sufficient degree of separation between primary and alternate processing sites based on the types of threats that are of concern. For threats such as hostile attacks, the degree of separation between sites is less relevant.

Control assessment-objective

an alternate processing site that is sufficiently separated from the primary processing site to reduce susceptibility to the same threats is identified.


What is the solution and how is it implemented?

Add control implementation description here for control cp-7.1