RC.CO-04—Public updates on incident recovery are shared using approved methods and messaging
>Control Description
This incident recovery communication subcategory ensures that public updates on incident recovery are shared using approved methods and messaging. Key activities include: Follow the organization’s breach notification procedures for recovering from a data breach incident; Explain the steps being taken to recover from the incident and to prevent a recurrence.
>Cross-Framework Mappings
>Informative References
Official NIST mappings to external frameworks and standards. Source: NIST CSF 2.0
CIS Controls v8.0
17.2
17.6
CIS Controls v8.1
17.2
17.6
CRI Profile v2.0
RC.CO-04
RC.CO-04.01
CSF v1.1
RC.CO-1
RS.CO-2
ISO/IEC 27001:2022
Mandatory Clause: 7.4
Annex A Controls: None
NICE Framework
OG-WRL-006
OG-WRL-007
OG-WRL-008
OG-WRL-010
OG-WRL-015
PD-WRL-003
PCI DSS
12.10.1
12.10.3
SCF
IRO-16
SP 800-171 Rev 3
03.06.01
SP 800-221A
GV.CO-1
SP 800-53 Rev 5.1.1
CP-02
IR-04
SP 800-53 Rev 5.2.0
CP-02
IR-04
Ask AI
Configure your API key to use AI features.