ExamGecko
Question list
Search
Search

Question 182 - CISM discussion

Report
Export

Which of the following BEST indicates that an organization has effectively tested its business continuity and disaster recovery plans within the stated recovery time objectives (RTOs)?

A.
Regulatory requirements are being met.
Answers
A.
Regulatory requirements are being met.
B.
Internal compliance requirements are being met.
Answers
B.
Internal compliance requirements are being met.
C.
Risk management objectives are being met.
Answers
C.
Risk management objectives are being met.
D.
Business needs are being met.
Answers
D.
Business needs are being met.
Suggested answer: D

Explanation:

The primary purpose of business continuity and disaster recovery plans is to ensure that the organization can resume its critical business functions within the stated recovery time objectives (RTOs) after a disruptive event. RTOs are based on the business needs and the impact analysis of each function or process. Therefore, meeting the business needs is the best indicator that the plans are effective.Regulatory requirements, internal compliance requirements, and risk management objectives are important factors that influence the development and testing of the plans, but they are not the ultimate measure of their effectiveness.Reference= CISM Certified Information Security Manager Study Guide, Chapter 9: Business Continuity and Disaster Recovery, page 3071; CISM Foundations: Module 4 Course, Part Two: Business Continuity and Disaster Recovery Plans2; Imperva, Business Continuity & Disaster Recovery Planning (BCP & DRP)3

asked 01/10/2024
DIGIX srl
32 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first