[计算机类试卷]CISSP认证考试(业务连续性和灾难恢复)模拟试卷1及答案与解析.doc
《[计算机类试卷]CISSP认证考试(业务连续性和灾难恢复)模拟试卷1及答案与解析.doc》由会员分享,可在线阅读,更多相关《[计算机类试卷]CISSP认证考试(业务连续性和灾难恢复)模拟试卷1及答案与解析.doc(36页珍藏版)》请在麦多课文档分享上搜索。
1、CISSP认证考试(业务连续性和灾难恢复)模拟试卷 1及答案与解析 1 The NIST organization has defined best practices for creating continuity plans. Which of the following phases deals with identifying and prioritizing critical functions and systems? ( A) Identify preventive controls. ( B) Develop the continuity planning policy sta
2、tement. ( C) Develop recovery strategies. ( D) Conduct the business impact analysis. 2 As his companys business continuity coordinator, Matthew is responsible for helping recruit members to the business continuity planning (BCP) committee. Which of the following does not correctly describe this effo
3、rt? ( A) Committee members should be involved with the planning stages, as well as the testing and implementation stages. ( B) The smaller the team the better, to keep meetings under control. ( C) The business continuity coordinator should work with management to appoint committee members. ( D) The
4、team should consist of people from different departments across the company. 3 A business impact analysis is considered a functional analysis. Which of the following is not carried out during a business impact analysis? ( A) A parallel or full-interruption test ( B) The application of a classificati
5、on scheme based on criticality levels ( C) The gathering of information via interviews ( D) Documentation of business functions 4 Which of the following is the best way to ensure that the companys backup tapes can be restored and used at a warm site? ( A) Ask the offsite vendor to test them and labe
6、l the ones that were properly read. ( B) Test them on the vendors machine, which wont be used during an emergency. ( C) Retrieve the tapes from the offsite facility and verify that the equipment from the original site can read them. ( D) Inventory each tape kept at the vendors site twice a month. 5
7、An approach to alternate offsite facilities is to establish a reciprocal agreement. Which of the following describes the pros and cons of a reciprocal agreement? ( A) It is fully configured and ready to operate within a few hours, but is the most expensive of the offsite choices. ( B) It is an inexp
8、ensive option, but it takes the most time and effort to get up and running after a disaster. ( C) It is a good alternative for companies that depend upon proprietary software, but annual testing is not usually available. ( D) It is the cheapest of the offsite choices, but mixing operations could int
9、roduce many security issues. 6 Which of the following steps comes first in a business impact analysis? ( A) Calculate the risk for each different business function. ( B) Identify critical business functions. ( C) Create data-gathering techniques. ( D) Identify vulnerabilities and threats to business
10、 functions. 7 The operations team is responsible for defining which data gets backed up and how often. Which type of backup process backs up files that have been modified since the last time all data was backed up? ( A) Incremental process ( B) Full backup ( C) Partial backup ( D) Differential proce
11、ss 8 After a disaster occurs, a damage assessment needs to take place. Which of the following steps occurs last in a damage assessment? ( A) Determine the cause of the disaster. ( B) Identify the resources that must be replaced immediately. ( C) Declare a disaster. ( D) Determine how long it will ta
12、ke to bring critical functions back online. 9 Of the following plans, which establishes senior management and a headquarters after a disaster? ( A) Continuity of operations plan ( B) Cyber-incident response plan ( C) Occupant emergency plan ( D) IT contingency plan 10 It is not unusual for business
13、continuity plans to become out of date. Which of the following is not a reason why plans become outdated? ( A) Changes in hardware, software, and applications ( B) Infrastructure and environment changes ( C) Personnel turnover ( D) That the business continuity process is integrated into the change m
14、anagement process 11 Preplanned business continuity procedures provide organizations a number of benefits. Which of the following is not a capability enabled by business continuity planning? ( A) Resuming critical business functions ( B) Letting business partners know your company is unprepared ( C)
15、 Protecting lives and ensuring safety ( D) Ensuring survivability of the business 12 Management support is critical to the success of a business continuity plan. Which of the following is the most important to be provided to management to obtain their support? ( A) Business case ( B) Business impact
16、 analysis ( C) Risk analysis ( D) Threat report 13 Gizmos and Gadgets has restored its original facility after a disaster. What should be moved in first? ( A) Management ( B) Most critical systems ( C) Most critical functions ( D) Least critical functions 14 Which of the following is a critical firs
17、t step in disaster recovery and contingency planning? ( A) Plan testing and drills. ( B) Complete a business impact analysis. ( C) Determine offsite backup facility alternatives. ( D) Organize and create relevant documentation. 15 Which of the following is not a reason to develop and implement a dis
18、aster recovery plan? ( A) Provide steps for a post-disaster recovery. ( B) Extend backup operations to include more than just backing up data. ( C) Outline business functions and systems. ( D) Provide procedures for emergency responses. 16 Business continuity plans can be assessed via a number of te
19、sts. Which type of test continues up to the point of actual relocation to an offsite facility and actual shipment of replacement equipment? ( A) Parallel test ( B) Checklist test ( C) Structured walk-through test ( D) Simulation test 17 With what phase of a business continuity plan does a company pr
20、oceed when it is ready to move back into its original site or a new site? ( A) Reconstitution phase ( B) Recovery phase ( C) Project initiation phase ( D) Damage assessment phase 18 Several teams should be involved in carrying out the business continuity plan. Which team is responsible for starting
21、the recovery of the original site? ( A) Damage assessment team ( B) BCP team ( C) Salvage team ( D) Restoration team 19 ACME Inc. paid a software vendor to develop specialized software, and that vendor has gone out of business. ACME Inc. does not have access to the code and therefore cannot keep it
22、updated. What mechanism should the company have implemented to prevent this from happening? ( A) Reciprocal agreement ( B) Software escrow ( C) Electronic vaulting ( D) Business interruption insurance 20 Which of the following incorrectly describes the concept of executive succession planning? ( A)
23、Predetermined steps protect the company if a senior executive leaves. ( B) Two or more senior staff cannot be exposed to a particular risk at the same time. ( C) It documents the assignment of deputy roles. ( D) It covers assigning a skeleton crew to resume operations after a disaster. 21 What is th
24、e missing second step in the graphic that follows?( A) Identify continuity coordinator ( B) Business impact analysis ( C) Identify BCP committee ( D) Dependency identification 22 Different threats need to be evaluated and ranked based upon their severity of business risk when developing a BCP. Which
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
2000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- 计算机 试卷 CISSP 认证 考试 业务 连续性 灾难 恢复 模拟 答案 解析 DOC
