Which is the first step in the contingency planning process?
To develop a contingency plan, first conduct a risk assessment: identify your business-critical operations, identify the threats to those operations, and analyze the potential impact of each threat. Then, include the following points for each threat: Scenarios. Triggers.
What is the final stage of the business impact analysis when using the NIST SP 800-34?
What is the final stage of the business impact analysis when using the NIST SP 800-34 approach? Identify recovery priorities for system resources.
In which contingency plan testing strategy do individuals follow each and every Ir Dr BC procedure?
full-interruption testing: The CP testing strategy in which all team members follow each IR/DR/ BC procedure, including those for interruption of service, restoration of data from backups, and notification of appropriate individuals.
Which of the following is the first component in the contingency planning process quizlet?
Which of the following is the first component in the contingency planning process? Training should be as specialized as possible; personnel who are responsible for one duty should not be trained on other duties to avoid confusion during a disaster. Identify recovery priorities for system resources.
At what point in the incident life cycle is the IR plan initiated quizlet?
At what point in the incident life cycle is the IR plan initiated? When an incident takes place, the disaster recovery (DR) plan is invoked before the incident response (IR) plan. In most organizations, the COO is responsible for creating the IR plan.
What are the steps of contingency plan?
Here are the steps you need to follow in a contingency planning process.
Step 1: Brainstorm and list down the key risks. Step 2: Prioritize the Risks. Step 3: Identify and Gather Resources. Step 4: Start Creating Contingency Plans for Every Event. Step 5: Share the plan with your team. Step 6: Revisit the Plan.
How is impact analysis done?
How to Perform Impact Analysis? An impact analysis involves 2 steps, first we have to find out the relationships related to the subject element, and then we review them to uncover any possible consequences and risks associated with the change.
What is business impact analysis example?
For example, a business may spend three times as much on marketing in the wake of a disaster to rebuild customer confidence. The BIA should assess a disaster’s impact over time and help to establish recovery strategies, priorities, and requirements for resources and time.
What is the meaning of impact analysis?
Impact analysis is the process of predicting the consequences a disruption in business function might cause and how teams can work together to fix these problems. Examples of business disruptions include: Damage to property. Software or system malfunction.
When an incident takes place the disaster recovery plan is invoked before the incident response plan?
When an incident takes place, the disaster recovery (DR) plan is invoked before the incident response (IR) plan. In most organizations, the COO is responsible for creating the IR plan. In a warm site, all services and communications links are fully configured and the site can be fully functional within minutes.
Which of the following is the process of examining a possible incident?
The process of examining a possible incident and determining whether it constitutes an actual incident is called incident verification.
Which of the following is the first major task in the BIA according to NIST?
Which of the following is the first major task in the BIA, according to NIST SP 800-34, Rev. 1? Determine mission/business processes and recovery criticality.
What teams are involved in contingency planning and contingency operations?
Four teams of individuals are involved in contingency planning and contingency operations:
The CP team.The incident recovery (IR) team.The disaster recovery (DR) team.The business continuity plan (BC) team.
Is the point in time before a disruption or system outage to which business process data can be recovered after the outage given the most recent backup copy of the data?
Recovery Point Objective (RPO). The RPO represents the point in time, prior to a disruption or system outage, to which mission/business process data must be recovered (given the most recent backup copy of the data) after an outage.
Which of the following is the term for returning to normal operations after an incident?
Disaster recovery involves the measures a business takes to respond to an event and return to safe, normal operation as quickly as possible.
When a first responder is notified of an incident What is the first step?
Preparation. The preparation phase includes steps taken before an incident occurs. Detection (identification) One of the most important steps in the incident response process is the detection phase. Response (containment) Mitigation (eradication) Reporting. Recovery. Remediation. Lessons learned.
Which of the following is a possible indicator of an actual incident quizlet?
Notification from IDS is a probable indicator of an actual incident.
What is the next phase of the Preattack data gathering process after an attacker has collected all of an organization’s Internet addresses?
What is the next phase of the pre-attack data gathering process after an attacker has collected all of an organization’s Internet addresses? sending DoS packets to the source; terminating the network connection, reconfiguring network devices, changing the attacks content to make it benign.