Comparing BCM Elements Flashcards

1
Q

At a high-level, the Business Impact Analysis identifies 3 things. What are they?

A

It identifies the critical systems the business requires in order to carry out it’s most essential functions
It identifies the impact and losses from a variety of disaster scenarios
It identifies the maximum downtime limit for these systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What tool is used when completing a BIA and helps the organization identify Personally Identifiable Information?

A

the Privacy Threshold Assessment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

If Personally Identifiable Information is found during a Privacy Threshold Assessment, what needs to be carried out next?

A

A Privacy Impact Assessment.

It reviews how PII data is handled to ensure the company is complying with laws and regulations.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Continuity of Operations Planning focusses on restoring what?

A

mission essential functions performed at a recovery site after a critical outage

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Continuity of Operations Planning focusses on restoring what?

A

mission essential functions performed at a recovery site after a critical outage

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Besides hot, cold and warm recovery sites, name two more and short descriiption

A

1) mobile site - self-explanatory.

2) mirrored site - always up and operational

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is typically developed after a Business Impact Analysis is done and has identified critical systems/impacts etc?

A

A Disaster Recovery Plan

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

AIR-TA are the phases of the disaster recovery process, what are they?

A

1) Activate the plan
2) Implement contingencies (like moving to different site, obtaining off-site backups)
3) Recover Critical Systems - get the systems back up and in right order
4) Test Recovered Systems
5) After-action Report

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

In testing BCM plans, what’s the difference between tabletop and functional testing?

A

tabletop is discussion based, functional involves performing controlled ‘failures’ or tests on IT assets themselves.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

bcrypt and PBKDF2 prevent what types of attack?

A

brute force and rainbow table

How well did you know this?
1
Not at all
2
3
4
5
Perfectly