Skip to main content

Framework: CIS Controls v8

Okta backup and disaster recovery for CIS Controls v8

CIS Controls v8 expects organizations to maintain inventory, manage access, and demonstrate data-recovery capability for sensitive systems. Identity is in scope. Butterfly's Audit Pack maps to the relevant CIS Controls.

Scope

In-scope control families

  • Control 5 — Account Management
  • Control 6 — Access Control Management
  • Control 11 — Data Recovery

Coverage mapping

How Butterfly maps to CIS Controls v8

Control 5.1 — Establish and maintain account inventory

Point-in-time snapshots of every Okta user, group, and role.

Control 6.7 — Centralize access control

Backups capture sign-on policies, group rules, app assignments — the centralized-control surface itself.

Control 11.1 — Establish and maintain a data recovery process

Restore preview + Restore Readiness Score per connection.

FAQ

Does Butterfly help with Control 11 data-recovery evidence?

Restore preview makes the recovery process provable per resource type. The Audit Pack documents the cadence.

How does Butterfly help with Control 5 account inventory?

Every backup is itself a point-in-time inventory snapshot. Diff any two backups to see what changed.

Is the Audit Pack CIS Controls-filterable?

Yes. Pick the CIS Controls v8 filter at export time.