Can you recover the technology the business depends on?
Assess whether the applications, data, infrastructure, identity, cloud and third-party ICT dependencies behind your critical services can be restored within the time the business needs — backups, restore testing, identity recovery, cyber recovery, runbooks and exercises. Aligned to ISO/IEC 27031:2025, the current edition. Answer honestly — this is for your own visibility, not a test.
Ready to see where you stand?
You'll get a real, computed score across 16 disaster recovery domains — and any critical gap (backups reachable with production credentials, an untested restore, an unrecoverable identity platform, a runbook only its author can run) is called out on its own, even when the overall score looks strong.
Assessment methodology: aligned to the structure of ISO/IEC 27031:2025, Cybersecurity — Information and communication technology readiness for business continuity, the current edition, which replaces ISO/IEC 27031:2011. Disaster recovery is assessed separately from business continuity; see the Business Continuity Readiness Assessment for the business requirements DR should be derived from. This is a self-assessment, not a certification, a compliance determination or a prediction of any disruption.
See your full results
Enter your email to unlock your score, readiness tier, domain scores, critical gaps and recommended priorities.
- Overall score and readiness tier
- 16 domain scores
- Critical gaps, with ISO/IEC 27031:2025 clause references
- Your recovery chain, stage by stage
- Recommended next steps and an email copy
Your DR Readiness Score
Domain scores
Weighted: Backup & Restore 12% · Recovery Requirements 8% · ICT Dependency Mapping 8% · Identity & Access Recovery 8% · Cyber Recovery 8% · Testing & Exercises 8% · Application Recovery 7% · Cloud & SaaS Recovery 6% · DR Runbooks 6% · DR Architecture 5% · Data Recovery 5% · Governance 4% · Infrastructure Recovery 4% · Third-Party ICT Dependencies 4% · Monitoring & Improvement 4% · Network Recovery 3%. Expand a domain to see the contributing questions, your answers and the ISO/IEC 27031:2025 clauses they map to.
Your highest-priority disaster recovery gaps
Recovery chain
Your reported capability at each stage of a typical technology recovery, from business requirements through protected copies, access, rebuild and restoration to proof. It shows where a recovery would slow or stop — it does not predict an outage.
Recommended next steps
Assessment methodology: aligned to the structure of ISO/IEC 27031:2025, Cybersecurity — Information and communication technology readiness for business continuity, the current edition, which replaces ISO/IEC 27031:2011. Disaster recovery is assessed separately from business continuity; see the Business Continuity Readiness Assessment for the business requirements DR should be derived from. Readiness tiers are My CISO Partner presentation bands, not ISO ratings. Framework references are crosswalks, not compliance determinations. Disaster recovery and business continuity are scored separately and never combined. Ransomware readiness is a related, separately scored assessment whose backup, isolation, restore and identity results inform the Cyber Recovery domain here.
Want the full picture?
Your free assessment identifies technology recovery gaps based on your responses. A full readiness review validates the dependency map, RTO and RPO against measured recovery results, backup protection, identity recovery and the test record against ISO/IEC 27031:2025, with evidence. 30 minutes. No obligation. No sales pitch.