ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 142 - CS0-003 discussion

Report
Export

Which of the following best describes the goal of a disaster recovery exercise as preparation for possible incidents?

A.
TO provide metrics and test continuity controls
Answers
A.
TO provide metrics and test continuity controls
B.
To verify the roles of the incident response team
Answers
B.
To verify the roles of the incident response team
C.
To provide recommendations for handling vulnerabilities
Answers
C.
To provide recommendations for handling vulnerabilities
D.
To perform tests against implemented security controls
Answers
D.
To perform tests against implemented security controls
Suggested answer: A

Explanation:

The correct answer is A. To provide metrics and test continuity controls.

A disaster recovery exercise is a simulation or a test of the disaster recovery plan, which is a set of procedures and resources that are used to restore the normal operations of an organization after a disaster or a major incident. The goal of a disaster recovery exercise is to provide metrics and test continuity controls, which are the measures that ensure the availability and resilience of the critical systems and processes of an organization. A disaster recovery exercise can help evaluate the effectiveness, efficiency, and readiness of the disaster recovery plan, as well as identify and address any gaps or issues .

The other options are not the best descriptions of the goal of a disaster recovery exercise. Verifying the roles of the incident response team (B) is a goal of an incident response exercise, which is a simulation or a test of the incident response plan, which is a set of procedures and roles that are used to detect, contain, analyze, and remediate an incident. Providing recommendations for handling vulnerabilities © is a goal of a vulnerability assessment, which is a process of identifying and prioritizing the weaknesses and risks in an organization’s systems or network. Performing tests against implemented security controls (D) is a goal of a penetration test, which is an authorized and simulated attack on an organization’s systems or network to evaluate their security posture and identify any vulnerabilities or misconfigurations.

asked 02/10/2024
Marcelo Tamaki
36 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first