ExamGecko
Question list
Search
Search

Related questions











Question 558 - CISA discussion

Report
Export

With regard to resilience, which of the following is the GREATEST risk to an organization that has implemented a new critical system?

A.
A business impact analysis (BIA) has not been performed
Answers
A.
A business impact analysis (BIA) has not been performed
B.
Business data is not sanitized in the development environment
Answers
B.
Business data is not sanitized in the development environment
C.
There is no plan for monitoring system downtime
Answers
C.
There is no plan for monitoring system downtime
D.
The process owner has not signed off on user acceptance testing (UAT)
Answers
D.
The process owner has not signed off on user acceptance testing (UAT)
Suggested answer: A

Explanation:

Resilience is the ability of an organization to continue to operate effectively during or after a disruptive event. A business impact analysis (BIA) is a key process to identify the critical systems and processes that support the organization's objectives and determine the impact of their disruption. Without a BIA, the organization may not be able to prioritize the recovery of the most important systems and processes, which poses the greatest risk to its resilience.The other options are not as significant as a BIA, as they relate to data quality, system monitoring, and user acceptance testing, which are important but not essential for resilience.Reference:CISA Review Manual (Digital Version), Domain 4: Information Systems Operations and Business Resilience, Section 4.2 Business Continuity Planning1

asked 18/09/2024
Longin Winconek
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first