Domain : Business Continuity and Disaster Flashcards

0
Q

Event management process = communication and escalation process. What are the 7 steps?

A

1 - Trigger/Event
2 - Report to communications center
3 - Reprot to assessment team
4 - Assess event
5 - Action Required
6 - Contact custom development respone team
7 - implement recovery strategy and plans

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
1
Q

A BC & DR plan should include: (7)

A

1 - plan activation procedures
2- details of the appropriate recovery strategies
3 - methods for managing recovery efforts
4 - in-depth actions plans for teams and individuals
5 - guidelines on how to handle human resource issues
6 - strategies for communication with internal and external stakeholders
7 - methods of documenting and paying recovery costs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

In a disaster response situation, which four distinct groups play major roles?

A

1- company execs
2 - emergency management team
3 - primary site restoration team
4 - one or more emergency response teams

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Whats the role of company execs?

A
  • lead the organization through an emergency and hold overall responsibility for its recovery
  • anticipating problems and resolving for long-term
  • prioritize org’s strategy and principles, not just following established processes
  • involved with the recovery command center - but mainly through strategic response
  • executing plan, deciding how events will impact the business, assisting others to resolve issues, and communicating with the media
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Roles of Emergency Management Team

A

-Tactical response
-Assesses damage caused by event, declares it a disaster if necessary
-Sets emergency plans in motion.
-Administers and manages day-to-day activities of recovery
-sets up and controls one or more central command centers
keeps company exects up to date with recovery progress, business impact, current plan of action

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Emergency response teams are made up of _____. ______ manage these individuals

A

individuals who carry out the actual recovery processes and tasks
Response team leaders

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Members of emergency response team are responsible for (4):

A

1 - Retrieval of backup. (required records and information from orgs off-site storage facility)
2 - Procedure execution (based on predetermined priority of each task. like assigning team members to shifts or traveling to alternate sites)
3 - Communication (establish with team members at alt site. Keep command centers up to date with recovery status and keeping emergency mgt team informed.
4 - Assisting primary site restoration (lists of software, hardware, other equip that must be replaced)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Primary site restoration team is responsible for: ____

It includes ___ and __ staff, with support potentially from ___ and ____.

A

Preparing original site to resume normal ops and helping the org to transition back into normal operations.
Facilities and technology
Legal staff and isnurance agents

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Responsibilities of primary site restoration team (6)

A

1 - contacting the organization’s lawyer or legal team
2 - contacting organziation’s insurance agent (if relevant)
3 - pictures of damage ASAP, before removed, repaired, replaced
4 - acquiring, building, renovating site to physically prepare it for resumption of normal ops
5 - recovering lost/damaged info and records
6 - replacing/repairing damaged tech components like computer hardware and network infrastructure

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Communication plan describes the process for communicating with ___, ____, ___, and ___ while recovery is underway

A

employees
customers
vendors
media

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Recover communication should include details in what categories (4)?

A

1 - Status
2 - Recovery locations
3 - Deliveries
4 - Contacts co-ordinator

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Describe requirements of recovery communication plan status component.

A

Need to keep stakeholders up to date.
Specify contact details and methods for doing this
Specify employees that are to communicate only official approved statements to external stakeholders

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Recovery Communications plan - what should be covered in “recovery locations”

A

Plans should specify a method for employees to communicate between locations (i.e. conference bridges)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Recovery Communications plan - what should be documented for “Deliveries”

A

Your org still needs to receive delivers - the plans should include a list of these and a plan informt hem of alternate site addresses during recvoery phase

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Members of an emergency response team are responsible for: (4)

A

1 - retrieval of backups (records and info)
2 - procedure execution
3 - communication (staff at alt sites; keeping command centers up to date)
4 - assisting in primary site restoration (lists of assets that must be replaced)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is the primary site restoration team responsible for?

A
  • prepping orignial stie to resume normal ops.
  • facilities and tech staff; support from legal and insurance
  • must contact legal; insurance agent
  • must take pictures of damaged areas before removed/repaired/replaced
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Which types of information should a recovery communications plan contain?

A
  • information about a conference bridge between two geographically-dispersed backup sites
  • detials of a telephone hotline that will announce the latest status updates
  • details of how a temporary switchboard operation sill be setup and managed.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Which are essential components of a BC and DR plan?

A
  • process by which events are communicated/escalated
  • details of R&R
  • info on how to communicate with employees, customers, vendors, media
18
Q

After drawing you the test, you should….?

A

test

19
Q

Test type 1: Call exercise

A

call everyone on the list. Either one makes all, or each makes 5. You understand how long it takes to contact and also how many people are available.

20
Q

Test type 2: Walkthrough exercise

A

Walkthrough exercise (largely academic; get everyone together and walkthrough the doc step by step. Related: tabletop. Hypothetical situation and role play. This familiarizes everyone with the entire process; identify gaps and weaknesses.

21
Q

Test type 3: Simulated or Actual exercises

A

Test the recovery processes at the alternate site. Simulated: simulates the recovery process. Actually: literally carry out the process without affecting the current process.

Use these exercises for training; give team members experience of the procedures they’ll need to carry out. Also, use them to test readiness of the alternate site and identifyu any gaps or weaknesses in the recovery plan.

22
Q

Test Type 4: Compact Exercise

A

Comprehensive test; starts with a call exercise, followed by a walkthrough, then simulated/actual. Upon completion of each, publish thte results and identify issues that need to be addressed such as weaknesses in the recovery plan. Follow up with issues and plan accordingly.

You do this if you want to perfectthe recovery plan or thoroughly test the recovery plan. Can include real emergency personnel.

23
Q

Why would the have test call centers?

A
  • test equipment
  • confirm gents are able to operate comfortably
  • ensure that routing to the alternaitive site works correctly
  • see if the plan has left out any important considerations that would be required
24
Q

After documenting the plan, you should establish a ….. program. This should:

A

Training and Awareness.
1- make all staff members aware of hte program and their roles in it.
2 - train staff members who’ll need to execute the plan
3 - assure custoemrs by informing them that a plan is in place

25
Q

To ensure the plan should remain relevant and accurate, you should update it after which triggers:

A

1- after each testing exercise is completed
2 - after any significant change in the production environment (IT infrastructure or systems)
3 - after changes tothe business enviornment (change in suppliers or ackquisition of a better recovery site)

26
Q

Dual Data Centers

A

Two fully functional sites that both support an organization’s functions

27
Q

Cold Sites

A

Empty spaces containing no technical equipment or resources

28
Q

Warm Sites

A

Sites containing cabling and networks, but no computers

29
Q

Hot sites

A

Fully configured sites with environments that mirror actual production sites

30
Q

What principle must you apply when choosing an appropriate recovery strategy?

A

Ensure that the ifnancial benefit of a chose strategy equals or outweihgs the total cost of the strategy

31
Q

Telecommuting

A

Using telecommunications links to let some employees work from home or another location

32
Q

Mulitple sites

A

Continually running operaitons from more than oen fully equipped location

33
Q

Internal Operations Transfer

A

Temporarily transferring time-sensitive operations to another organizational location

34
Q

Backup sites

A

Building dedicated facilities to house operations that are affected by disaster.

35
Q

Which of the following teams is responsible forgetting the alternate identified site into operation in the aftermath of a disaster?

a) salvage team
b) mitigation team
c) restoration team
d) assessment team

A

c) Restoration team. It’s responsible for getting the alternate identified site into operation so that it functions as a working environment. This team *(like a salvage team) needs to knwo how to do many tasks such as installing operating systems, handling wiring requirements, setting up workstations, servers, etc.

36
Q

Explain daily overnight differential backupsand a full backup each weekend. How doe sthis work?

A
  • A full backup resets all of the archive flags on each file to be seen as “unchanged.” Every time a file is modified, that file flips the flag to “changed”
  • An incremental backup backs up all of the files that have changed and resets their flags back to “unchanged” However, a Differential backup copies all of the modified files but leaves their status as “changed”. Hence, only the most recent differential and weekend’s full bakcup is needed to restore the backup.
37
Q

What is the most widely used model for recovery sites?

A

Warm sites.
-less expensive than a hot site; since it’s not compleyely configured and conan be set up to be operational in a reasonable time frame.

38
Q

What are the issues with hot and cold sites?

A

Hot: expensive
Cold: takes a long to time be upa nd ready to use

39
Q

What are reciprocal agreements?

A

Alternatives to offsite facilities. In this agreeement two companies agree to allow each over to use the other’s facilities in the event of a disaster. Although this is a cheap option it is not very effective due to associated problems.

40
Q

What is remote journaling?

A

A method to transmit data offsite. This typically moves the transaction log and journal to an offsite facility rather than moving the actual files. In case of a disaster, the logs can be used to recreate the lost data. This si quite efficient in case of recovering a database where a sequence of changes to its records allows its creation.

41
Q

Synchronous replicatin is used if a system ______. In synchronous repliaction, the primary and secondary copies are always _______, whereas with asynchronous replication the twoare a few milliseconds _____.

A

Needs to be continuously available.
identitical
out of sync

42
Q

Describe the differential backup process

A

Only does a backup of all the files that have undergone a change since the last full backup was done. The archive bit value is not changed. In case of full and incremental backups, the archive bit value is changed.