Backups protect against operational failure. They must not silently undo a user’s right to delete. The Backup and Recovery Policy defines the backup cadence by data class, the encryption posture for backups, the geographic distribution, the recovery-time and recovery-point objectives, and the rule that deletion in production propagates to backups within the documented cycle so a delete is real, not a delayed restore.
It applies to engineering, security, and operations functions.
Requirements
- Encrypt backups at rest.
- Propagate user deletions to backups within the documented cycle.
Prohibitions
- Do not restore deleted personal content from a backup without a documented legal basis.
- Do not store backups in unauthorized jurisdictions.