






Study with the several resources on Docsity
Earn points by helping other students or get them with a premium plan
Prepare for your exams
Study with the several resources on Docsity
Earn points to download
Earn points by helping other students or get them with a premium plan
Community
Ask the community for help and clear up your study doubts
Discover the best universities in your country according to Docsity users
Free resources
Download our free guides on studying techniques, anxiety management strategies, and thesis advice from Docsity tutors
A comprehensive overview of the key concepts and practices in business continuity planning (bcp) and disaster recovery (dr). It covers topics such as business continuity, disaster recovery, risk assessment, business impact analysis, recovery time objectives, crisis management, and the role of the business continuity professional. A detailed examination with questions and answers, covering various aspects of bcp and dr management. It serves as a valuable resource for professionals seeking to enhance their understanding and knowledge in this critical area of organizational resilience.
Typology: Exams
1 / 10
This page cannot be seen from the preview
Don't miss anything!
necessary steps are taken to identify the impact of potential losses and maintain viable recovery strategies, recovery plans, and continuity of services. (NFPA 1600)
The collection of resources and activities to re-establish information technology services (including components such as infrastructure, telecommunications, systems, applications and data) at an alternate site following a disruption of IT services. Dis- aster recovery includes subsequent resumption and restoration of those operations at a more permanent site. (DRJ)
the prob- ability of them being realized. (BCI)
failing to perform a function or requirement. (FCD-1)
functions or resources based on the acceptable down time and acceptable level of perfor- mance in case of a disruption of operations. (ASIS)
activity must be restored to enable the activity to operate on resumption. ISO Editor's Note: Can also be referred to as "maximum data loss". (ISO 22301)
response to a crisis, in an effective, timely manner, with the goal of avoiding or minimizing damage to the organization's profitability,
reputation, and ability to operate. (DRJ)
responds to and controls an incident using emergency response procedures or plans. (DRJ)
other significant event that may significantly impact the organization, its people, or its ability to function productively. An incident response may include evacuation of a facility, initiating a disaster recovery plan, performing damage assessment, and any other measures necessary to bring an organization to a more stable status. (DRJ)
need for a business continuity program
program
certification, or contract applies - considers the whole entity.
project and what benefit that will provide to the entity.
the pro- gram.
program structure, critical success factors and be involved in project/program management
teams for the Business Continuity program?: Program initiation and management
Ref- erence legal and regulatory requirements, reference relevant standards, show the benefits of the program within the context of the organization's mission.
responsibilities in- cluding: applicable laws, regulations, and contractual and employment agreements.
business continuity management?: Legal and regulatory requirements
support the business continuity program implementation?: Program initiation and man- agement
To imple- ment objectives, program structure, and critical success factors.
Yes, they help manage the business continuity program.
you put exclusions?: In the scope.
and out- comes?: The CEO and leadership.
need for business continuity?: Legal and regulatory requirements.
policies, and charter for the business continuity program?: The steering committee.
business continuity planning effort?: Leadership commitment.
business continuity program?: The steering committee.
in per- forming a risk assessment is?: To determine the probability and impact of the identified risks.
combination of what methods?: Forms and questionnaires, interviews and
changing environment
mitigate impact exposures/risks
attack 52. Business interruption insurance: The requirement for calculation of adequate insurance, covering financial loss due to temporary business cessation.
operations after an accident to an insured item until normal operations can be restored.
profits and extra expenses. due to an interruption relating to a customer or supplier.
To understand the entity's exposure to loss and evaluate the effectiveness of controls and safeguards.
that can adversely affect an entity's resources.
numbers, money
functions and processes based on the level of criticality and time sensitivity
recovery objec- tives for core and support functions and processes.
ascertain any gaps between the entity's requirements and it's ability to deliver those require- ments.
to lose. Data that is not on the backup.
RTO and RPO for each operational area
options.
supply your resource, however there are other options out there.
gap analysis
backups should be completed
sensitivity
Continuity Srate- gies
continuity strategies: Select cost-effective strategies to reduce deficiencies as identified dur- ing the risk assessment and business impact analysis (BIA) processes
The functional area manager
Regulations are enforceable by external agencies and you have to comply with them. While standards are not enforced and you can conform to them, they resemble best practices.
sheltering, shel- ter-in-place, and lockdown
External agreements need to be documented in writing.