Almost every web development agency claims to have backups. The right question is: when the site crashes at nine in the evening, how long will it take to get it back up, and to what point can it revert?
A secure website requires four things: regular backups stored separately from the live site, the ability to revert to a specific point in the recent past, periodic recovery tests to ensure the backup is usable, and an upgrade process that is tested on a backup before being applied to the live site, along with a rollback plan in case of failure. Without the recovery test step, backups are merely a belief, not a guarantee of safety.
Website incidents rarely give advance notice: an upgrade can break the homepage, a plugin may be attacked, someone might accidentally delete an entire category, or the account hosting the website could be locked due to a missed renewal. At that point, the phrase "we have backups" is only valuable if the backup can be restored, at the right time, and quickly.
The industry operates with two simple concepts to measure safety. First is the ability to revert to a certain point: if backups are made weekly, an incident occurring on the weekend could result in a loss of an entire week’s worth of content and customer data. Second is how long it takes for the website to be back up: a few minutes, a few hours, or waiting for a technician to be available. These two numbers should be clearly stated, not just "there is a backup."
Signs of safety: automatic scheduled backups, multiple restore points, a copy stored offsite, periodic recovery tests, upgrades tested beforehand with a rollback option, and monitoring systems that alert when the site goes down.
Signs of risk: manual backups when remembered, only keeping the latest copy, backups stored on the same server, direct upgrades on the live site, and only knowing the site is down when customers report it.
Subject: Backup, recovery, and website upgrades: questions to ask. Sinh Vũ guide, sinhvu.com
Select each item you find appropriate, then print or save as PDF to take with you.
If you have marked most of the signs above, this is the time to discuss in more detail. Sinh Vũ can help you review and propose a direction.
NIST SP 800-34 Rev. 1, Contingency Planning Guide for Federal Information Systems (concepts of recovery time objective and recovery time). The 3-2-1 backup principle (three copies, two types of media, one copy offsite). Practical experience in website operations.
According to the pace of content changes. Websites that post news daily or receive continuous submissions need automatic backups every day or continuously. Websites with less frequent updates should back up at least weekly, plus one backup before each upgrade.
It is advisable to have an additional copy stored offsite. A backup stored with the same provider will be lost simultaneously if the account is locked, attacked, or if the provider experiences issues.
Not necessarily. A good process is to test the upgrade on a backup, apply it to the live site, check immediately, and have a rollback option to the current version within a few minutes if there is an error. With a rollback option, customers hardly notice anything.
This article is for reference. The scope, pricing, and specific commitments of Sinh Vũ are detailed in the proposal and signed contract.