Chapter 9 Flashcards

1
Q

What is a key consideration for BCP maintenance?

A

Regular maintenance of the BCP is critical.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

List some (4) factors that may impact the BCP.

A

System and software changes,
organization/process changes,
personnel changes, and
supplier changes.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are some lessons learned from testing/exercises?

A

Issues identified during plan implementation.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What should be considered during plan review and risk assessment?

A

Changes to the external environment.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

According to the course notes, what is the largest predictor of BCP success or failure?

A

Commitment of senior management.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What term is used to describe a more comprehensive approach to dealing with threats beyond an Emergency Action Plan?

A

Business Continuity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the 3 major components of Business Continuity Planning?

De, Te, and Ma…….

A

• De → Development
• Te → Testing
• Ma → Maintenance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is a key factor in ensuring the continuation of business operations during and after an incident?

A

Proper team structure and crisis management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Why is it important to assign accountability in the readiness phase of a Business Continuity Plan?

A

To ensure that tasks are properly assigned and carried out

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are the five major areas in developing a Business Continuity Plan according to ASIS International?

Re
Im
Va
Ma and
Et

A

Readiness,
Implementation,
Validation,
Maintenance, and
Ethics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is the recommended frequency for maintaining and updating Business Continuity Plans?

A

Annually or when changes occur

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What type of events play a significant role in planning for potential disasters?

A

Weather and nature-related events

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

In what situations can sheltering in place be invoked according to the text?

A

Weather events (e.g., snow, flooding) and man-made threats

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is the purpose of a Rapid Entry Key Vault in a building?

A

To provide emergency responders access to essential keys or badges

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Who is responsible for building the Crisis Management Team for a Business Continuity Plan?

A

Senior organizational leadership

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is the preliminary assessment in the Recovery phase?

A

Damage and impact assessment.

17
Q

What is included in the assessment of damage in the Recovery phase?

A

Physical damage and non-physical damage like cyber-attacks.

18
Q

What is the prioritized list in the Recovery phase for business resumption?

A

Needs……to include critical and remaining processes as per BIA.

19
Q

What signifies the end of a crisis during the Recovery phase?

A

Return to normal operations.

20
Q

What is included in Phase II of the BCP development process?

Ed
Tr and
Te the BCP

A

Educating, training, and testing the BCP.

21
Q

What should be part of education and training for personnel?

A

Key components of the BCP and response plans.

22
Q

Three reasons why testing the plan is important?

Ensure R are M
FW and
I R

A

To ensure requirements are met,
find weaknesses, and
improve response.

23
Q

What is the purpose of incorporating lessons from previous tests into the BCP?

A

To enhance future tests and improve the plan’s effectiveness.

24
Q

What roles (5) can participants take during testing?

A

Facilitator,
Simulator
controller,
observer, or
participants.

25
What 3 things should be done post-completion of a test or exercise? Ev, As based on g, and M BCP if necessary
Evaluate, assessment based on goals, and modify BCP if necessary.
26
When should the BCP be reviewed according to the notes?
Whenever any trigger like risk assessment or incident occurs.
27
What 4 things trigger a review of a BCP? RA IT RR and EE
Risk assessment, industry trends, regulatory requirements, and event exercises.
28
What is the purpose of a Risk Assessment?
To identify and analyze essential personnel, business operations, and potential risks.
29
What 3 things are included in a Business Impact Analysis (BIA)? I of C P, I A (H C, F C, C I), R O
Identification of critical processes, impact assessment (human cost, financial cost, corporate image), recovery objectives.
30
What are the 5 criteria for strategic plans in Business Continuity Management? At Ve C-e H P of S App for org’s S and T
At – Attainable • Ve – Verifiable • C-e – Cost-effective • H P of S – High probability of success • App for org’s S and T – Appropriate for the organization’s size and type.
31
What are 4 key aspects of a Crisis Management Team (CMT) formation? TM chosen based on S and C C M S D-m A, and R for Im
Team members chosen based on skills and commitment, Clear management structure, decision-making authority, responsibility for implementation,
32
What does the Prevention phase of Crisis Management involve…..6 things? Co with Co Po Acc and All of R Mo and Mi st and Su Se
Compliance with corporate policies, accountability and allocation of resources Monitoring and mitigation strategies, and support services.
33
What steps (5) are involved in the Response phase of Crisis Management? As the S D and D a C D C by Sr L N the T E the P promptly
Assess the situation Determine and declare crisis, declare crisis by senior leader, Notify the team, and execute the plan promptly.
34
How important is effective communication in crisis management?
Effective communication is crucial for conveying information quickly, honestly, and coming from the organization first.
35
What is the importance of resource management in crisis response (3 things)? E S P A, A for all I, and A in E
ensures secondary personnel assignments, accounting for all individuals, and arrangements in emergencies.