Domain 2: Business Continuity, Disaster Recovery, and Incident Response Flashcards
1
Q
Business Continuity Planning (BCP) / Continuity Of Operations Planning (COOP)
A
The set of controls designed to keep a business running in the face of adversity, whether natural or man-made
- Directly impacts the #3 goal of security = Availability
- When planning, proactively as whatbusiness activities, systems, and controlswill it configure
2
Q
Business Impact Assessment (BIA)
A
- A risk assessment that uses a quantitative or qualitative process
- Begins by identifying organization’s mission essential functions and then traces those backwards to identify the critical IT systems that support those functions
3
Q
In Clouding
A
Business Continuity Planning requires collaboration between cloud providers and customers
4
Q
Redundancy
A
The level of protection and against the failure of a single component
5
Q
Single Point of Failure (SPOF) Analysis
A
- Provides a mechanism to identify and remove single points of failure from their systems
- The SPOF analysis continues until the cost of addressing risk outweighs the benefit
- SPOF can be used in many areas other than the IT Infrastructure, it can be applied in management of HR, 3rd party vendor reliance etc)
6
Q
Continued Operation of Systems (COS)
A
- Can be ensured in 2 ways:
- High Availability
- Uses multiple systems to protect against service failure (Different from AWS Cloud as in that it does not just apply to AZs but rather everything including multiple firewalls etc)
- Fault-Tolerance
- Makes a single system resilient against technical failures
7
Q
Load Balancing
A
Spreads demand across available systems
8
Q
Common Points of Failure
A
Power Supply
Storage Media
Networking
9
Q
Power Supply
A
10
Q
Storage Media
A
11
Q
Networking
A