Ransomware and operator error demand tested backups—offline/immutable copies attackers cannot encrypt.
3-2-1 rule preview
3 copies, 2 media types, 1 offsite—adapt for cloud snapshots.
Restore drills
Quarterly restore test—untested backups are hope, not strategy.
RPO/RTO
Recovery Point Objective (data loss window) and Recovery Time Objective (downtime)—align with business.
Important interview questions and answers
- Q: Immutable backup?
A: Cannot be altered by ransomware on production creds. - Q: RPO?
A: How much data you may lose in worst case.
Self-check
- What is 3-2-1?
- Why run restore drills?
Tip: Calendar quarterly restore test—assign owner.
Interview prep
- RPO?
Acceptable data loss window in disaster.