owaspsamm / core

Core model including reused documentation
Creative Commons Attribution Share Alike 4.0 International
89 stars 38 forks source link

Add backup and restore to deployment #49

Open Pat-Duarte opened 3 years ago

Pat-Duarte commented 3 years ago

From DevSecOps maturity model. Add an activity to backup prior to deployment, and have the ability to rollback if required.

History from old repo: @itscooper opened this issue on Jun 5, 2019 @thomaskonrad reacted with thumbs up emoji @itscooper itscooper added the 3I2SecureDeployment label on Jun 5, 2019 @itscooper itscooper self-assigned this on Jun 5, 2019 @SebaDele assigned dkefer and unassigned itscooper on Nov 23, 2019 @SebaDele commented on Nov 23, 2019 consider as guidance

23bartman commented 7 months ago

It was discussed in the Belgium summit to consider puting this under Operations - Operational Management.

23bartman commented 7 months ago

Linked to Issue #147

SebaDele commented 1 week ago

to merge with the main issue on this

johndileo commented 1 week ago

This can be added to the Activity description for O-OM-A-2, where protection of sensitive data (which, though unstated, includes IaC files, deployment scripts, etc.), including handling and protection of backups, is covered.

The intent, when I wrote that Activity description, was to include explicit mention of needing repeatable, tested backup and restore procedures.