Domain 2 Flashcards

1
Q
  1. Q: What is the primary focus of Domain 2 in the CIA Triad?
A

A: Availability.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the role of an Incident Response Plan (IRP)?

A

To address unexpected changes and maintain operations.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the purpose of a Business Continuity Plan (BCP)?

A

To enable continued operations during crises.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

When is a Disaster Recovery Plan (DRP) activated?

A

When Incident Response and Business Continuity plans fail.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Define a “breach.”

A

Unauthorized access or acquisition of information.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is a “zero day”?

A

An unknown vulnerability with no detection or prevention methods.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the first priority of any incident response?

A

Protecting life, health, and safety.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is the main goal of incident response preparation?

A

To reduce incident impact and resume operations swiftly.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Name a key component of a Business Continuity Plan.

A

Contact numbers for critical supply chain partners.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is the Red Book in the context of Business Continuity?

A

A hard copy of the BCP kept outside the facility for use during outages.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Give an example of a Business Continuity scenario.

A

A billing department uses an alternate work area after a fire.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is the primary goal of disaster recovery?

A

Restoring IT and communication systems to full operations.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What are the types of disaster recovery documentation?

A

Executive summaries, department-specific plans, and technical guides.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Define a Computer Incident Response Team (CIRT).

A

A team investigating and responding to security incidents.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What are the four main responsibilities of an incident response team?

A

Assess damage, identify compromised info, recover, and prevent recurrence.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is the first step in activating a BCP?

A

Notify the appropriate individuals and begin plan execution.

17
Q

How is communication maintained in critical infrastructures during disruptions?

A

Using military-grade networks assigned to authorized personnel.

18
Q

What does a Business Impact Analysis (BIA) identify?

A

The dependencies and critical functions of a business.

19
Q

Name a key activity during post-incident analysis.

A

Conducting a retrospective to identify lessons learned.

20
Q

What does incident containment involve?

A

Gathering evidence, isolating the attack, and identifying the attacker.

21
Q

How are disaster recovery backups maintained?

A

By ensuring multiple levels of backups and retention periods.

22
Q

What should be included in the checklists for disaster recovery?

A

Steps for IT personnel to activate alternate sites.

23
Q

What is an example of disaster recovery complexity?

A

Data flow between interdependent systems.

24
Q

Why is training important for incident response team members?

A

To differentiate typical issues from security incidents.

25
Who are typical members of an incident response team?
Representatives from management, IT, legal, and public affairs.
26
What is the role of checklists in disaster recovery?
To guide actions amid chaotic disaster scenarios.
27
How does the BCP ensure continuity?
Through established procedures, communication plans, and prioritization.
28
What should a disaster recovery plan address?
Restoring IT and communications while supporting business functions.