BCPDRP1.docx

上传人:b****7 文档编号:9658784 上传时间:2023-02-05 格式:DOCX 页数:113 大小:79.60KB
下载 相关 举报
BCPDRP1.docx_第1页
第1页 / 共113页
BCPDRP1.docx_第2页
第2页 / 共113页
BCPDRP1.docx_第3页
第3页 / 共113页
BCPDRP1.docx_第4页
第4页 / 共113页
BCPDRP1.docx_第5页
第5页 / 共113页
点击查看更多>>
下载资源
资源描述

BCPDRP1.docx

《BCPDRP1.docx》由会员分享,可在线阅读,更多相关《BCPDRP1.docx(113页珍藏版)》请在冰豆网上搜索。

BCPDRP1.docx

BCPDRP1

BCP&DRP

Yourquizresults:

Hidedetailsinallquestions.  

Hidecorrectquestions.

TopofForm

1.Question:

1516|Difficulty:

3/5|Relevancy:

3/3

Whichofthefollowingstatementspertainingtodisasterrecoveryisincorrect?

Arecoveryteam'sprimarytaskistogetthepre-definedcriticalbusinessfunctionsatthealternatebackupprocessingsite.

Asalvageteam'staskistoensurethattheprimarysitereturnstonormalprocessingconditions.

Thedisasterrecoveryplanshouldincludehowthecompanywillreturnfromthealternatesitetotheprimarysite.

o

Whenreturningtotheprimarysite,themostcriticalapplicationsshouldbebroughtbackfirst.

D.It'sinterestingtonotethatthestepstoresumenormalprocessingoperationswillbedifferentthanthestepsintherecoveryplan;thatis,theleastcriticalworkshouldbebroughtbackfirsttotheprimarysite.

Myexplanation:

atthepointwheretheprimarysiteisreadytoreceiveoperationsagain,lesscriticalsystemsshouldbebroughtbackfirstbecauseonehastomakesurethateverythingwillberunningsmoothlyattheprimarysitebeforereturningcriticalsystems,whicharealreadyoperatingnormallyattherecoverysite.Thiswilllimitthepossibleinterruptionofprocessingtoaminimumformostcriticalsystems,thusmakingitthebestoption.

Source:

KRUTZ,RonaldL.&VINES,RusselD.,TheCISSPPrepGuide:

MasteringtheTenDomainsofComputerSecurity,JohnWiley&Sons,2001,Chapter8:

BusinessContinuityPlanningandDisasterRecoveryPlanning(page291).

Contributor:

ChristianVezina

Studyarea:

CISSPCBKdomain#8-BCPandDRP

Coveredtopic:

Relocationtoprimarysite

Thisquestion©Copyright2003–2006ChristianVezina,cccure.org.

2.Question:

701|Difficulty:

3/5|Relevancy:

3/3

WhichofthefollowingalternativebusinessrecoverystrategieswouldbeLEASTappropriateinalargedatabaseandon-linecommunicationsnetworkenvironmentwherethecriticalbusinesscontinuityperiodis7days?

Hotsite

Warmsite

RedundantorAlternateSite

o

Reciprocalagreement

D.Sinceitcannotbeenforced,areciprocalagreementistheleastreliablesolutionforbusinessrecovery.

Source:

InformationSystemsAuditandControlAssociation,CertifiedInformationSystemsAuditor2002reviewmanual,chapter5:

DisasterRecoveryandBusinessContinuity(page262).

Contributor:

ChristianVezina

Studyarea:

CISSPCBKdomain#8-BCPandDRP

Coveredtopics

(2):

Alternatesites,BusinessImpactAssessment(BIA)

Thisquestion©Copyright2003–2006ChristianVezina,cccure.org.

3.Question:

1512|Difficulty:

5/5|Relevancy:

3/3

Whichofthefollowingstatementspertainingtodisasterrecoveryplanningisincorrect?

o

Everyorganizationneedsadisasterrecoveryplan

Adisasterrecoveryplancontainsactionstobetakenbefore,duringandafteradisruptiveeven.

Themajorgoalofdisasterrecoveryplanningistoprovideanorganizedwaytomakedecisionsifadisruptiveeventoccurs.

Adisasterrecoveryplanshouldcoverreturnfromalternatefacilitiestoprimaryfacilities.

A.Itispossiblethatanorganizationmaynotneedadisasterrecoveryplan.Anorganizationmaynothaveanycriticalprocessingareasandbeabletowithstandlengthyinterruptions.Allotherstatementsaretrue.

Source:

KRUTZ,RonaldL.&VINES,RusselD.,TheCISSPPrepGuide:

MasteringtheTenDomainsofComputerSecurity,JohnWiley&Sons,2001,Chapter8:

BusinessContinuityPlanningandDisasterRecoveryPlanning(page281).

Contributor:

ChristianVezina

Studyarea:

CISSPCBKdomain#8-BCPandDRP

Coveredtopic:

Disasterrecoveryplanning

4.Question:

292|Difficulty:

2/5|Relevancy:

3/3

Whichofthefollowingresultsinthemostdevastatingbusinessinterruptions?

LossofHardware/Software

o

LossofData

LossofCommunicationLinks

LossofApplications

B.Source:

VeritaseLearningCD-IntroducingDisasterRecoveryPlanning,Chapter1.

LossofDataisthecorrectanswer.

Alloftheotherscanbereplacedorrepaired.Datathatislostandwasnotbackedup,cannotberestored.

Edited:

July17,2007,MikeYoung,CISSP,MCSE:

Securiity

Contributor:

JamilSiddique

Studyarea:

CISSPCBKdomain#8-BCPandDRP

Coveredtopic:

Disasterrecoveryplanning

5.Question:

115|Difficulty:

2/5|Relevancy:

3/3

Organizationsshouldnotviewdisasterrecoveryaswhichofthefollowing?

committedexpense.

o

discretionaryexpense.

enforcementoflegalstatutes.

compliancewithregulations.

B.Thecorrectansweris:

discretionaryexpense. 

DisasterRecoveryshouldneverbeconsideredadiscretionaryexpense.Itisfartoimportantatask.Inordertomaintainthecontinuityofthebusiness DisasterRecoveryshouldbeacommitmentofandbytheorganization.

Thefollowinganswersareincorrect:

committedexpense.IsincorrectbecauseDisasterRecovery shouldbeacommittedexpense.

enforcementoflegalstatutes.IsincorrectbecauseDisasterRecovery canincludeenforcementoflegalstatutes.ManyorganizationshavelegalrequirementstowardDisasterRecovery.

compliancewithregulations.IsincorrectbecauseDisasterRecovery oftenmeanscompliancewithregulations.ManyfinancialinstitutionshaveregulationsrequiringDisasterRecoveryPlansandProcedures.

Lastmodified6/08/2007-J.Hajec

Comment:

DisasterRecovery:

 Itprovidesproceduresforemergencyresponse,extendedbackupoperations,andpost-disasterrecoverywhenanorganizationsuffersalossofcomputerprocessingcapabilityorresourcesandphysicalfacilities.

References:

OIGCBKBusinessContinuityandDisasterRecoveryPlanning(pages368-369)

AIOv3BusinessContinuityPlanning (page 699)

Contributor:

donmurdoch

Studyarea:

CISSPCBKdomain#8-BCPandDRP

Coveredtopic:

Disasterrecoveryplanning

6.Question:

358|Difficulty:

4/5|Relevancy:

3/3

ThescopeandfocusoftheBusinesscontinuityplandevelopmentdependsmoston:

DirectivesofSeniorManagement

o

BusinessImpactAnalysis(BIA)

ScopeandPlanInitiation

SkillsofBCPcommittee

B.SearchSDefinitionsmentions"Aspartofadisasterrecoveryplan,BIAislikelytoidentifycostslinkedtofailures,suchaslossofcashflow,replacementofequipment,salariespaidtocatchupwithabacklogofwork,lossofprofits,andsoon.

ABIAreportquantifiestheimportanceofbusinesscomponentsandsuggestsappropriatefundallocationformeasurestoprotectthem.Thepossibilitiesoffailuresarelikelytobeassessedintermsoftheirimpactsonsafety,finances,marketing,legalcompliance,andqualityassurance.

Wherepossible,impactisexpressedmonetarilyforpurposesofcomparison.Forexample,abusinessmayspendthreetimesasmuchonmarketinginthewakeofadisastertorebuildcustomerconfidence."

Source:

KRUTZ,RonaldL.&VINES,RusselD.,TheCISSPPrepGuide:

MasteringtheTenDomainsofComputerSecurity,JohnWiley&Sons,2001,Page278.

ThankstoKeithSmithforgreatfeedbackthatallowedustoimprovethisquestion.

Contributors:

JamilSiddique,ChristophPuppe

Studyarea:

CISSPCBKdomain#8-BCPandDRP

Coveredtopic:

BusinessImpactAssessment(BIA)

7.Question:

698|Difficulty:

4/5|Relevancy:

3/3

Classificationofinformationsystemsisessentialinbusinesscontinuityplanning.Whichofthefollowingsystemtypescannotbereplacedbymanualmethods?

o

Criticalsystem

Vitalsystem

Sensitivesystem

Noncriticalsystem

A.Thefunctionsofacriticalsystemcanonlybereplacedbyidenticalcapabilities.Otherfunctionscanbeperformedmanually.

Source:

InformationSystemsAuditandControlAssociation,CertifiedInformationSystemsAuditor2002reviewmanual,chapter5:

DisasterRecoveryandBusinessContinuity(page254).

Contributor:

ChristianVezina

Studyarea:

CISSPCBKdomain#8-BCPandDRP

Coveredtopic:

BusinessImpactAssessment(BIA)

Thisquestion©Copyright2003–2006ChristianVezina,cccure.org.

8.Question:

1168|Difficulty:

4/5|Relevancy:

3/3

Abusinesscontinuityplanshouldlistandprioritizetheservicesthatneedtobebroughtbackafteradisasterstrikes.Whichofthefollowingservicesismorelikelytobeofprimaryconcern?

Marketing/Publicrelations

o

Data/Telecomm/ISfacilities

ISOperations

Facilitiessecurity

B.Themainconcernwhenrecoveringafteradisasterisdata,telecommandISfacilities.Otherservices,indescendingpriorityorderare:

ISoperations,ISsupportservices,marketstructure,marketing/publicrelations,customerservice&systemssupport,marketregulation/surveillance,listing,applicationdevelopment,accountingservices,facilities,humanresources,facilitiessecurity,legalandOfficeoftheSecretary,nationalsales.

Source:

BARNES,JamesC.&ROTHSTEIN,PhilipJ.,AGuidetoBusinessContinuityPlanning,JohnWiley&Sons,2001(page129).

Contributor:

ChristianVezina

Studyarea:

CISSPCBKdomain#8-BCPandDRP

Coveredtopic:

BusinessImpactAssessment(BIA)

Thisquestion©Copyright2003–2006ChristianVezina,cccure.org.

9.Question:

206|Difficulty:

1/5|Relevancy:

3/3

Whichofthefollowingbackupsitesismosteffectivefordisasterrecovery?

Timebrokers

o

Hotsites

Coldsites

ReciprocalAgreement

B.Reciprocalagreementsarenotcontractsandcannotbeenforced.Youcannotforcesomeoneyouhavesuchanagreementwithtoprovideprocessingtoyou.Governmentregulatorsdonotacceptreciprocalagreementsasvaliddisasterrecoverybackupsites.Coldsitesareemptycomputerroomsconsistingonlyofenvironmentalsystems,suchasairconditioningandraisedfloors,etc.Theyd

展开阅读全文
相关资源
猜你喜欢
相关搜索

当前位置:首页 > 考试认证 > 司法考试

copyright@ 2008-2022 冰豆网网站版权所有

经营许可证编号:鄂ICP备2022015515号-1