Chapter 7 Review Flashcards
Chapter 7 Review
These 3 processes all support a central objective: resilience and rapid recovery when disruptive events occur
- SECURITY INCIDENT MANAGEMENT
- DISASTER RECOVERY PLANNING
- BUSINESS CONTINUITY PLANNING
Chapter 7 Review
A security incident occurs when the these 3 things of information or information systems has been or is in danger of being compromised.
- CONFIDENTIALITY
- INTEGRITY
- AVAILABILITY
Chapter 7 Review
The proliferation of connected devices makes this an additional consideration in many organizations with the highest priority.
LIFE SAFETY
Chapter 7 Review
An organization that is developing security incident response plans needs to determine these things so that response plans will meet these objectives.
HIGH-LEVEL OBJECTIVES
Chapter 7 Review
With the proliferation of outsourcing to these services, many security incidents now take place in third-party organizations, which requires additional planning and coordination so that any incident response involving a third party is effective.
CLOUD-BASED SERVICE PROVIDERS
Chapter 7 Review
These 2 things work together to ensure the survival of an organization during and after a cyberattack, natural disaster, or human-made disaster.
BUSINESS CONTINUITY PLAN
&
DISASTER CONTINUITY PLAN
(aka DRP)
Chapter 7 Review
This process identifies the impact of various disaster scenarios and determines the most critical processes and systems in an organization.
BUSINESS IMPACT ANALYSIS
Chapter 7 Review
The Business Impact Analysis helps an organization focus its BCP and DRP on these things.
MOST CRITICAL BUSINESS FUNCTIONS
Chapter 7 Review
These help management better understand the results of disruptive events in business terms.
STATEMENTS OF IMPACT
Chapter 7 Review
In this process, each system and process is studied to consider the impact on the organization if it is incapacitated, the likelihood of incapacitation, and the estimated cost of mitigating the risk or impact of incapacitation.
CRITICALITY ANALYSIS
Chapter 7 Review
These 2 things inform the development of recovery targets, including recovery time objective, recovery point objective, and recovery capacity objective, to help an organization understand how quickly various business processes should be recovered after a disaster.
MAXIMUM TOLERABLE DOWNTIME
&
MAXIMUM TOLERABLE OUTAGE
Chapter 7 Review
This thing is an important factor as the cost of recovery varies widely.
RECOVERY SPEED
Chapter 7 Review
Having this in place will define the methods the organization will use to continue critical business operations after a disaster has occurred.
BUSINESS CONTINUITY PLANS
Chapter 7 Review
Having these in place define the steps that will be undertaken to salvage and recover systems damaged by a disaster.
DISASTER RECOVERY PLANS
Chapter 7 Review
Both BCP and DRP activities work toward achieving this in their original (or replacement) facilities.
RESTORATION OF CAPABILITIES