Skip to main content

Framework: CIS Controls v8

Okta backup and disaster recovery for CIS Controls v8

CIS Controls v8 expects organizations to maintain inventory, manage access, and demonstrate data-recovery capability for sensitive systems. Identity is in scope. Butterfly's Audit Pack maps to the relevant CIS Controls.

Scope

In-scope control families

  • Control 5 – Account Management
  • Control 6 – Access Control Management
  • Control 11 – Data Recovery

Coverage mapping

How Butterfly maps to CIS Controls v8

Control 5.1 – Establish and maintain account inventory

Point-in-time snapshots of every Okta user, group, and role.

Control 6.7 – Centralize access control

Backups capture sign-on policies, group rules, app assignments – the centralized-control surface itself.

Control 11.1 – Establish and maintain a data recovery process

Restore preview + Restore Readiness Score per connection.

FAQ

Does Butterfly help with Control 11 data-recovery evidence?

Restore preview makes the recovery process provable per resource type. The Audit Pack documents the cadence.

How does Butterfly help with Control 5 account inventory?

Every backup is itself a point-in-time inventory snapshot. Diff any two backups to see what changed.

Is the Audit Pack CIS Controls-filterable?

Yes. Pick the CIS Controls v8 filter at export time.