Chapter 9 – Operations Management Flashcards

1
Q

What is OS Logging?

A

Integral toolsets for monitoring performance and events; set OS logs to alert admins when usage approaches a level of capacity utilization, performance degradation, CPU usage, memory usage, disk space, disk I/O timing.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the ASHRAE recommended temperature range for data centers?

A

64-81 degrees F.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the ASHRAE recommended humidity range for data centers?

A

Dew point 42-59 degrees F; 60% relative humidity.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is Maintenance Mode?

A

All operational instances are removed from the system/device before entering this mode; prevent all new logins; ensure logging is continued; begin enhanced logging.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What does CI/CD stand for?

A

Continuous Integration/Continuous Delivery; incorporates heavy use of automation to shorten software delivery pipeline; includes administrative and technical controls.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is ISO/IEC 20000-1?

A

Defines a set of operational controls and standards organizations can use to manage IT services; used to manage ITSM using approaches of ITIL and ISACA COBIT framework.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the goal of IT Service Management (ITSM)?

A

To identify user needs, design IT service to meet those needs, deploy it, then enter a cycle of continuous improvements.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is the focus of Business Continuity (BC) efforts?

A

Maintaining critical operations.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is the focus of Disaster Recovery (DR) efforts?

A

Resumption of operations due to disaster.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is the difference between an event and a disaster?

A

An event is an unscheduled impact to the operating environment lasting three days or less; disasters last longer.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is the most important planning and effort in BC/DR?

A

Health and human safety; notification, evacuation, protection, and egress will need to be prioritized.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What does MAD stand for?

A

Maximum Allowable Downtime; how long an interruption will stop operations.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is MTTR?

A

Mean Time to Repair; average amount of time it takes to repair a system/device that is down.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is RTO?

A

Recovery Time Objective; BC/DR goal for recovery of operation, measured in time; must be less than the MAD.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is RPO?

A

Recovery Point Objective; BC/DR goal for limiting loss of data from unplanned event, measured in time.

Example: An organization resumes critical operations at an alternate operating site with the last full backup; if they back up every day, RPO will be 24 hours.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is ALE?

A

Annual Loss Expectancy; amount an organization should expect to lose annually based on any one type of incident; ARO x SLE = ALE.

17
Q

What does ARO stand for?

A

Annual Rate of Occurrence; rate of occurrence of a specific event/incident.

18
Q

What does SLE stand for?

A

Single Loss Expectancy; amount of expected damage/loss from any single specific security incident.

19
Q

What is the purpose of a UPS?

A

Should last long enough for graceful shutdown of affected system, can provide line conditioning, adjusting power to optimize for the devices it serves and smooth power fluctuations.

20
Q

What is the role of generators in power supply?

A

Supply close to immediate power when utility electricity is interrupted and have automatic transfer switches; minimum of 12 hours of fuel for all generators.

21
Q

What is Tabletop Testing?

A

Essential participants work together at a scheduled time; InfoSec equivalent of role-playing games; least impact on production of testing alternatives.

22
Q

What is a Dry Run?

A

Whole organization takes part in a scenario at a scheduled time; impacts productivity.

23
Q

What is a Full Test?

A

Entire organization takes part in an unscheduled, unannounced practice scenario, performing full BC/DR activities; includes system failover, facility evacuation, used for detecting shortcomings in the plan; greatest impact on productivity.