ExamGecko
Question list
Search
Search

Related questions

Question 1144 - CISA discussion

Report
Export

An IS auditor learns that an organization's business continuity plan (BCP) has not been updated in the last 18 months and that the organization recently closed a production plant. Which of the following is the auditor's BEST course of action?

A.
Determine whether the business impact analysis (BIA) is current with the organization's structure and context.
Answers
A.
Determine whether the business impact analysis (BIA) is current with the organization's structure and context.
B.
Determine the types of technologies used at the plant and how they may affect the BCP.
Answers
B.
Determine the types of technologies used at the plant and how they may affect the BCP.
C.
Perform testing to determine the impact to the recovery time objective (R TO).
Answers
C.
Perform testing to determine the impact to the recovery time objective (R TO).
D.
Assess the risk to operations from the closing of the plant.
Answers
D.
Assess the risk to operations from the closing of the plant.
Suggested answer: A

Explanation:

The IS auditor should first determine whether the business impact analysis (BIA) is current with the organization's structure and context. The BIA is a critical component of the BCP and should reflect the current state of the organization.If the BIA is not up-to-date, it may not accurately reflect the impact of a disruption to the organization's operations, including the closure of a production plant12.

References: ISACA's Information Systems Auditor Study Materials1

asked 18/09/2024
EduBP srl EduBP
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first