Business Impact Analysis Flashcards

1
Q

Business Impact Analysis

payment processing systems

customer/patient records

A

Prioritize mission-critical processes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Business Impact Analysis

identify sensitive data

identify single point of failure

identify security controls and compliance

A

Asses Risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Business Impact Analysis

Fines
Loss of contracts

A

Financial

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Business Impact Analysis

Loss of this

A

Reputation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Business Impact Analysis

Breach notification

escalation requirements

exfiltration

A

Data loss

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Business Impact Analysis
Failed Component Impact

average time between repairable component failures

software patching

A

Mean Time between failures (MTBF)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Business Impact Analysis
Failed Component Impact

Average time between NON-repairable component failures

Hard disks
switches
routers

A

Mean Time To Failure (MTTF)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Business Impact Analysis
Failed Component Impact

Time required to repair a failed component

A

Mean Time To Repair (MTTR)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Business Impact Analysis
Locating Critical Resources

where is our sensitive data.

A

Data discovery and classification

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Business Impact Analysis
Locating Critical Resources

First step before implementing solutions related to sensitive data

A

Privacy Threshold Assessment (PTA)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Business Impact Analysis
Locating Critical Resources

Privacy Impact Assessment (PIA)

Regulatory Compliance

A

Impact on sensitive data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Business Impact Analysis

Maximum tolerable amount of data loss

directly related to backup frequency

A

Recovery Point Objective (RPO)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Business Impact Analysis

maximum tolerable amount of downtime

return systems and data to usable state

A

Recovery Time Objective (RTO)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Business Impact Analysis

identifies how negative incidents will impact business processes and sensitive data

A

BIA

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Business Impact Analysis

Related to the impact of failed components

A

MTBF
MTTF
MTTR

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Business Impact Analysis

Maximum tolerable amount of downtime

A

RTO

17
Q

Business Impact Analysis

Maximum tolerable amount of data loss

A

RPO