Deck 7: Mitigation and Business Continuity Strategy

Full screen (f)
exit full mode
Question
Reciprocal Agreements carry many difficulties that include:

A) Available or fluctuating capacity
B) Diminished reputation
C) Rebranding issues
D) Supply chain difficulties
Use Space or
up arrow
down arrow
to flip the card.
Question
Redundancies and divergence, along with the separation of hazards are other forms of mitigation.
Question
What asset usually carries the greatest value in an organization?

A) Brand and Reputation
B) Inventory
C) Facilities
D) Research
Question
Mitigation is always cost effective.
Question
The use of the Hierarchy of Controls is required by one of more of the standards.
Question
The best way of the following choices to help the organization understand supply chain risk is through:

A) Supply Chain Mapping
B) Insurance policies
C) Examination of the security and business continuity plans of the shipping companies
D) Force Majeure language in Purchase Orders
Question
A "Quick Ship" arrangement is most often part of a:

A) Memorandum of Understanding
B) Service Level Agreement
C) Factory Warranty
D) Memberships
Question
What must be clearly demonstrated to an auditor?

A) Documented evidence that strategies are cost-effective
B) Documented, auditable connection of strategies to the BIA
C) That strategies were developed by process owners
D) Each function within the scope of the Business Continuity Management System has a continuity strategy
Question
The lowest levels of the Hierarchy of Controls rely the least on human intervention.
Question
Which is the lower level of these Hierarchy of Controls:

A) Engineering Controls
B) Substitution
C) Elimination
D) Administrative Controls
Question
A vital record is one that:

A) Is important to the continued and future operation of the function
B) Provides a burden if lost
C) Could cause the failure of the organization if lost
D) All of the above
Question
Cost versus benefit is an important consideration in the selection of continuity strategies only if they are outside the organization's risk appetite.
Question
Most General Contractors have the ability to remove smoke odor and mold growth.
Question
One or more of the standards require the organization to:

A) Evaluate the resiliency of its suppliers
B) Evaluate the resiliency of its critical suppliers
C) Evaluate the ability of suppliers to respond within the RTO of the functions they support
D) All of the above
Question
Which of the following best pertains to data and voice telecommunications mitigation?

A) Redundant Central Stations
B) Plans to use a backup site
C) Bandwidth reduction
D) Dual Entrance Facility
Question
Mitigation and Business Continuity Strategy is the same thing.
Question
If a team strategy is outside the scope of the plan, the reason should be explained in the Team Plan Introduction.
Question
Because strategies should be developed in partnership with the function owner, they need not be approved by Top Management.
Question
Which is the best attribute of a continuity or recovery strategy?

A) Uses engineering controls to reduce the effects of a hazard
B) One that has been successfully tested
C) Does not force major changes in routines or reporting structures
D) All of the above
Question
Mitigation can eliminate or greatly reduce the impact of an incident to the point that response or recovery is not necessary.
Question
List 10 examples of a vital record:
Question
List 10 examples of mitigation:
Question
What must be done after mitigation measures are implemented?
Question
Why is it advantageous for the Business Continuity Manager to return to the mitigation phase after the Continuity/Recovery phase of Emergency Management?
Question
What is done next if the highest level of the Hierarchy of Controls cannot be implemented?
Unlock Deck
Sign up to unlock the cards in this deck!
Unlock Deck
Unlock Deck
1/25
auto play flashcards
Play
simple tutorial
Full screen (f)
exit full mode
Deck 7: Mitigation and Business Continuity Strategy
1
Reciprocal Agreements carry many difficulties that include:

A) Available or fluctuating capacity
B) Diminished reputation
C) Rebranding issues
D) Supply chain difficulties
A
2
Redundancies and divergence, along with the separation of hazards are other forms of mitigation.
True
3
What asset usually carries the greatest value in an organization?

A) Brand and Reputation
B) Inventory
C) Facilities
D) Research
A
4
Mitigation is always cost effective.
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
5
The use of the Hierarchy of Controls is required by one of more of the standards.
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
6
The best way of the following choices to help the organization understand supply chain risk is through:

A) Supply Chain Mapping
B) Insurance policies
C) Examination of the security and business continuity plans of the shipping companies
D) Force Majeure language in Purchase Orders
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
7
A "Quick Ship" arrangement is most often part of a:

A) Memorandum of Understanding
B) Service Level Agreement
C) Factory Warranty
D) Memberships
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
8
What must be clearly demonstrated to an auditor?

A) Documented evidence that strategies are cost-effective
B) Documented, auditable connection of strategies to the BIA
C) That strategies were developed by process owners
D) Each function within the scope of the Business Continuity Management System has a continuity strategy
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
9
The lowest levels of the Hierarchy of Controls rely the least on human intervention.
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
10
Which is the lower level of these Hierarchy of Controls:

A) Engineering Controls
B) Substitution
C) Elimination
D) Administrative Controls
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
11
A vital record is one that:

A) Is important to the continued and future operation of the function
B) Provides a burden if lost
C) Could cause the failure of the organization if lost
D) All of the above
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
12
Cost versus benefit is an important consideration in the selection of continuity strategies only if they are outside the organization's risk appetite.
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
13
Most General Contractors have the ability to remove smoke odor and mold growth.
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
14
One or more of the standards require the organization to:

A) Evaluate the resiliency of its suppliers
B) Evaluate the resiliency of its critical suppliers
C) Evaluate the ability of suppliers to respond within the RTO of the functions they support
D) All of the above
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
15
Which of the following best pertains to data and voice telecommunications mitigation?

A) Redundant Central Stations
B) Plans to use a backup site
C) Bandwidth reduction
D) Dual Entrance Facility
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
16
Mitigation and Business Continuity Strategy is the same thing.
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
17
If a team strategy is outside the scope of the plan, the reason should be explained in the Team Plan Introduction.
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
18
Because strategies should be developed in partnership with the function owner, they need not be approved by Top Management.
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
19
Which is the best attribute of a continuity or recovery strategy?

A) Uses engineering controls to reduce the effects of a hazard
B) One that has been successfully tested
C) Does not force major changes in routines or reporting structures
D) All of the above
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
20
Mitigation can eliminate or greatly reduce the impact of an incident to the point that response or recovery is not necessary.
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
21
List 10 examples of a vital record:
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
22
List 10 examples of mitigation:
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
23
What must be done after mitigation measures are implemented?
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
24
Why is it advantageous for the Business Continuity Manager to return to the mitigation phase after the Continuity/Recovery phase of Emergency Management?
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
25
What is done next if the highest level of the Hierarchy of Controls cannot be implemented?
Unlock Deck
Unlock for access to all 25 flashcards in this deck.
Unlock Deck
k this deck
locked card icon
Unlock Deck
Unlock for access to all 25 flashcards in this deck.