IS3110 CHAP 12 Flashcards

1
Q

The maximum amount of acceptable data loss for a system. It can be as short as under one minute or up to the moment of failure. It can be longer, such as a day or a week. It is dependent on the value of the data, and the ability to reproduce it.

A

Recovery point objectives (RPO)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

The time in which a system or function must be recovered. It would be equal or less than the maximum acceptable outage (MAO).

A

Recovery time objectives (RTO)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q
  1. The ___ identifies the maximum acceptable downtime for a system.
A

Maximum acceptable outage (MAO)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q
  1. Stakeholders can determine what functions are considered critical business functions.
    TRUE OR FALSE
A

TRUE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q
  1. The BIA is part of the ___.
A

Business continuity plan (BCP)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q
4. What defines the boundaries of a business impact analysis?
A. MAO
B. BCP
C. Recovery objectives 
D. Scope
A

Scope

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q
5. What are two objectives of a BIA? (Select two)
A. Identify minimum acceptable outage
B. Document new policy
C. Identify critical resources
D. Identify critical business functions
A

Identify critical resources

Identify critical business functions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q
  1. You are working on a BIA. You are calculating costs to determine the impact of an outage for a specific system. When calculating the costs, you should calculate the direct and ___ costs.
A

Indirect

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q
7. You are working on a BIA.  You want to identify the maximum amount of data loss an organization can accept.  What is this called?
A. BIA time
B. Maximum acceptable outage
C. Recovery time objectives
D. Recovery point objectives
A

Recovery point objectives

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q
8. You have identified the MAO for a system.  You now want to specify the time required for a system to be recovered. What is this?
A. BIA time
B. Maximum acceptable outage
C. Recovery time objectives
D. Recovery point objectives
A

Recovery time objectives

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q
  1. Which of the following statements is true?
    A. The RPO applies to any systems or functions. However, the RTO only refers to data housed in databases
    B. The RTO applies to any systems or functions. However, the RPO only refers to data housed in databases.
    C. Both the RTO and RPO apply to any systems or functions.
    D. Neither the RTO nor RPO apply to data housed in databases.
A

The RTO applies to any systems or functions. However, the RPO only refers to data housed in databases.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q
10. You are working on a BIA.  You are calculating costs to determine the impact of an outage for a specific system.  Which one of the following is a direct cost?
A. Loss of customers
B. Loss of public goodwill
C. Loss of sales
D. Lost opportunities
A

Loss of sales

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q
  1. What type of approach does a BIA use?
    A. Bottom-up approach where servers or services are examined first
    B. Top-down approach where CBFs are examined first
    C. Middle-tier approach
    D. Best-guess approach
A

Top-down approach where CBFs are examined first

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q
12. Mission-critical business functions are considered vital to an organization.  What are they derived from?
A. Critical success factors
B. Critical IT sources
C. Executive leadership 
D. Employees
A

Critical success factors

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q
13. You are performing a BIA for an organization.  What should you map the critical business functions to?
A. Personnel
B. Revenue
C. Replacement costs
D. IT systems
A

IT systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q
14. Of the following choices, what are considered best practices related to a BIA?
A. Start with clear objectives
B. Use different data collection methods
C. Mitigate identified risks
D. A and B only
E. All of the above
A

Start with clear objectives

Use different data collection methods

17
Q
  1. A cost-benefit analysis is an important part of a BIA.

TRUE OR FALSE

A

FALSE