Chapter 9 Flashcards

1
Q

What is a key consideration for BCP maintenance?

A

Regular maintenance of the BCP is critical.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

List some (4) factors that may impact the BCP.

A

System and software changes,
organization/process changes,
personnel changes, and
supplier changes.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are some lessons learned from testing/exercises?

A

Issues identified during plan implementation.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What should be considered during plan review and risk assessment?

A

Changes to the external environment.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

According to the course notes, what is the largest predictor of BCP success or failure?

A

Commitment of senior management.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What term is used to describe a more comprehensive approach to dealing with threats beyond an Emergency Action Plan?

A

Business Continuity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the 3 major components of Business Continuity Planning?

De, Te, and Ma…….

A

• De → Development
• Te → Testing
• Ma → Maintenance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is a key factor in ensuring the continuation of business operations during and after an incident?

A

Proper team structure and crisis management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Why is it important to assign accountability in the readiness phase of a Business Continuity Plan?

A

To ensure that tasks are properly assigned and carried out

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are the five major areas in developing a Business Continuity Plan according to ASIS International?

Re
Im
Va
Ma and
Et

A

Readiness,
Implementation,
Validation,
Maintenance, and
Ethics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is the recommended frequency for maintaining and updating Business Continuity Plans?

A

Annually or when changes occur

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What type of events play a significant role in planning for potential disasters?

A

Weather and nature-related events

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

In what situations can sheltering in place be invoked according to the text?

A

Weather events (e.g., snow, flooding) and man-made threats

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is the purpose of a Rapid Entry Key Vault in a building?

A

To provide emergency responders access to essential keys or badges

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Who is responsible for building the Crisis Management Team for a Business Continuity Plan?

A

Senior organizational leadership

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is the preliminary assessment in the Recovery phase?

A

Damage and impact assessment.

17
Q

What is included in the assessment of damage in the Recovery phase?

A

Physical damage and non-physical damage like cyber-attacks.

18
Q

What is the prioritized list in the Recovery phase for business resumption?

A

Needs……to include critical and remaining processes as per BIA.

19
Q

What signifies the end of a crisis during the Recovery phase?

A

Return to normal operations.

20
Q

What is included in Phase II of the BCP development process?

Ed
Tr and
Te the BCP

A

Educating, training, and testing the BCP.

21
Q

What should be part of education and training for personnel?

A

Key components of the BCP and response plans.

22
Q

Three reasons why testing the plan is important?

Ensure R are M
FW and
I R

A

To ensure requirements are met,
find weaknesses, and
improve response.

23
Q

What is the purpose of incorporating lessons from previous tests into the BCP?

A

To enhance future tests and improve the plan’s effectiveness.

24
Q

What roles (5) can participants take during testing?

A

Facilitator,
Simulator
controller,
observer, or
participants.

25
Q

What 3 things should be done post-completion of a test or exercise?

Ev,
As based on g, and
M BCP if necessary

A

Evaluate,
assessment based on goals, and
modify BCP if necessary.

26
Q

When should the BCP be reviewed according to the notes?

A

Whenever any trigger like risk assessment or incident occurs.

27
Q

What 4 things trigger a review of a BCP?

RA
IT
RR and
EE

A

Risk assessment,
industry trends,
regulatory requirements, and
event exercises.

28
Q

What is the purpose of a Risk Assessment?

A

To identify and analyze essential personnel, business operations, and potential risks.

29
Q

What 3 things are included in a Business Impact Analysis (BIA)?

I of C P,
I A (H C, F C, C I),
R O

A

Identification of critical processes,
impact assessment (human cost, financial cost, corporate image),
recovery objectives.

30
Q

What are the 5 criteria for strategic plans in Business Continuity Management?

At
Ve
C-e
H P of S
App for org’s S and T

A

At – Attainable
• Ve – Verifiable
• C-e – Cost-effective
• H P of S – High probability of success
• App for org’s S and T – Appropriate for the organization’s size and type.

31
Q

What are 4 key aspects of a Crisis Management Team (CMT) formation?

TM chosen based on S and C
C M S
D-m A, and
R for Im

A

Team members chosen based on skills and commitment,
Clear management structure,
decision-making authority,
responsibility for implementation,

32
Q

What does the Prevention phase of Crisis Management involve…..6 things?

Co with Co Po
Acc and All of R
Mo and Mi st and
Su Se

A

Compliance with corporate policies,
accountability and allocation of resources
Monitoring and mitigation strategies,
and
support services.

33
Q

What steps (5) are involved in the Response phase of Crisis Management?

As the S
D and D a C
D C by Sr L
N the T
E the P promptly

A

Assess the situation
Determine and declare crisis,
declare crisis by senior leader,
Notify the team, and
execute the plan promptly.

34
Q

How important is effective communication in crisis management?

A

Effective communication is crucial for conveying information quickly, honestly, and coming from the organization first.

35
Q

What is the importance of resource management in crisis response (3 things)?

E S P A,
A for all I, and
A in E

A

ensures secondary personnel assignments,
accounting for all individuals, and
arrangements in emergencies.