Reference no: EM132289394
1. Damage assessment includes all but which of the following steps?
a. Evaluating the time to restore operations and if greater than the MTD, a disaster should be declared and the BCP enacted.
b. Estimate the time it will take to restore critical business functions.
c. Identifying the affected business functions.
d. Having the insurance company declare the total extent of the damages.
2. In testing the business continuity plans, what is the practice execution of a set of planned activities based on a set of pre-defined scenarios called?
a. Checklist test
b. Full interruption test
c. Structured walk-through
d. Simulation
3. Which is least important to making the business case to management for the disaster recover plan and the business continuity plan?
a. The business’ vulnerabilities to disasters and disruptions
b. Government regulations and legal requirements
c. How other companies are dealing with similar issues
d. The level of impact the business can endure when a disaster hits
4. Metrics that are useful in determining the level of security afforded by the information security management system include which of the following
a. Percent of baseline defense coverage to common threats
b. Patch latency
c. Password strength analysis
d. Platform compliance scores
e. All of the above
5. Business continuity primarily addresses what security objective?
a. Integrity
b. Confidentiality
c. Accountability
d. Availability
6. Which item will a business impact analysis not identify?
a. What areas would incur the greatest operational and financial loss in the event of a particular business disruption event.
b. If the company is best suited for a parallel or full-interrupt test.
c. What systems are considered critical and must be protected.
d. What amount of downtime the business can sustain before permanent damage is done.