Concepts and Terms Flashcards

1
Q

Products, processes, and/or personnel that are critical to the organization’s operations.

A

Assets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the central feature of the risk analysis process?

A

Identifying assets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Assets may be categorized as _____________ and _____________.

A

Tangible and intangible

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Examples include: facilities, hardware, software, supplies, documentation, personnel, reputation, and morale

A

Assets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

The projected loss (in dollars) that one can expect to lose in a year as result of emergencies

A

Annual Loss Exposure

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Plan that includes measures to keep an organization in operation in the face of emergency and may include procedures that involve the temporary or permanent relocation of personnel and/or functions

A

Business Continuity (BC) and Continuity of Operations (COOP)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Integral part of the business continuity planning process (COOP). Used to identify critical functions, to assess the impact of a disaster or other emergency on those functions over time, to determine the other elements of the business on which those critical functions depend, and to help develop and prioritize recovery strategies.

A

Business Impact Analysis (BIA)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

The process of developing the capability to offset the effects of business disruption.

A

Business Recovery Planning

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

The process involves arranging alternatives for critical business functions and planning for business or service survival.

A

Business Recovery Planning.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Four-pronged process developed and applied at the state and local government level and has been applied to business continuity.

A

Comprehensive Emergency Management (CEM)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q
The four elements of Comprehensive Emergency Management (CEM) are:
1)
2)
3)
4)
A

1) Mitigation
2) Preparedness
3) Response
4) Recovery

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

The undesirable result of a threat’s action against the asset, which results in measurable loss to the organization.

A

Consequence/Outcome

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

A wide variety of events that cause significant disruption to the normal activities of an organization as a whole.

A

Crisis

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

A planned, systematic response that permits an organization to continue making its products or providing its services during an emergency.

A

Crisis Management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Allows the organization to capitalize on the expertise of personnel from various disciplines who plan for and manage the situation.

A

Crisis Management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Location from which the emergency response can be directed.

A

Emergency Operations Center (EOC)

17
Q

Planning considerations that must be in place for a company to effectively response to and manage an emergency event.

A

Emergency Preparedness

18
Q

A command and control mechanism used by many public safety agencies.

A

Incident Command System (ICS)

19
Q
Incident Command Systems (ICS) normally consists of six primary elements:
1)
2)
3)
4)
5)
6)
A

1) Command
2) Operations
3) Planning
4) Logistics
5) Finance
6) Administration

20
Q

A measure of the probability of a loss-causing event

A

Likelihood of Occurrence

21
Q

Actions involving lasting, often permanent, reduction of exposure to, probability of, or potential loss from hazard events

A

Mitigation

22
Q

Actions taken before an event to plan, organize, equip, train, and exercise in order to deal with emergencies that cannot be avoided or entirely mitigated.

A

Preparedness

23
Q

Involves near-term and long-term actions taken to return the organization to a pre-emergency level of operation or, in some cases, to a new level of operation.

A

Recovery

24
Q

May include implementation of continuity of operation or business resumption plans, activation of emergency relocation sites, and reconstitution or restoration at the original location or a new permanent location.

A

Recovery efforts

25
Q

Entails the implementation of the emergency plan to deal with the short-term effects of the event.

A

Response

26
Q

May include incident identification, emergency notification, activation and deployment of emergency teams, and evacuation of personnel.

A

Response

27
Q

The potential for causing losses due to the presence of a threat and vulnerability.

A

Risk

28
Q

Derived from the analysis of the threat and corresponding vulnerabilities along with the probability of their interaction.

A

Risk

29
Q

A procedure used to estimate potential losses that could result from variuos vulnerabilities and the damage from the action of certain threats

A

Risk Analysis

30
Q

Identifies both the critical assets that must be protected and the environment in which these assets are located.

A

Risk Analysis

31
Q

The disclosure of high probability vulnerabilities.

A

Risk Exposure

32
Q

Physical controls, mechanisms, policies and procedures designed to protect assets from threats

A

Safeguards

33
Q

A person, thing, event or idea that poses some danger to an asset.

A

Threat

34
Q

May compromise the confidentiality, integrity, or availability of an asset by exploiting vulnerabilities or weaknesses in safeguards system.

A

Actions of a threat

35
Q

Weaknesses in the safeguards system, or the absence of safeguards.

A

Vulnerabilities

36
Q

Can be clearly associated with threats

A

Vulnerabilties