Backup versus recovery, defined
RTO vs RPO vs clean recovery: which one decides survival?
You can hit RTO and RPO perfectly and still fail if the point you restore is compromised.
Backup versus recovery, defined
You can hit RTO and RPO perfectly and still fail if the point you restore is compromised.
They are useful and they are not going away. They set the targets that size your backup frequency, your infrastructure and your budget.
RTO and RPO quietly assume the recovery point is clean and restorable. That assumption comes from the disaster-recovery world, where the enemy is a flood or a failed disk, not an adversary who spent three weeks poisoning your backups. Against ransomware, the assumption breaks, and the two targets stop telling you whether you will actually survive.
After an attack, integrity matters more than freshness. A clean point from four days ago can be worth far more than a compromised point from four hours ago. Sometimes clean recovery means deliberately accepting a worse recovery point objective to get a point that predates the attacker. The decision that decides survival is not "how recent?" but "how clean?"
KELYN designs recovery on Commvault to hit recovery-time and recovery-point targets while adding the third dimension the targets miss: a known-clean point, validated in isolation, sequenced identity first. Then it tests, so the numbers you report are the numbers you can actually deliver on the worst day.
Sources
Your next backup will run
You can prove it in two minutes. Test your recovery readiness and see where the gaps are before an attacker does.