← Back to glossary

Secondary copies of data for restoration; must be protected (encryption, access control) and tested regularly.

Definition

Backups can be full or incremental and should be encrypted and access-controlled. Restore testing is essential. Ransomware resilience often requires immutability or offline copies.

In plain English Secondary copies of data for restoration; must be protected (encryption, access control) and tested regularly.

Why this matters

Why it matters: Backups often contain the most sensitive data; poor backup security can create a separate breach risk.

Example

Example: Encrypt backups, restrict access, test restores, and keep at least one offline or immutable copy.