nerdexam
IsacaIsaca

CRISC · Question #126

CRISC Question #126: Real Exam Question with Answer & Explanation

The correct answer is A: Failure to test the disaster recovery plan (DRP). The recovery team's inability to follow specific steps during a crisis strongly indicates a failure to test the Disaster Recovery Plan (DRP), as testing ensures familiarity and practical understanding of recovery procedures.

Submitted by rania.sa· Apr 18, 2026Risk Response and Reporting

Question

An organization's recovery team is attempting to recover critical data backups following a major flood in its data center. However, key team members do not know exactly what steps should be taken to address this crisis. Which of the following is the MOST likely cause of this situation?

Options

  • AFailure to test the disaster recovery plan (DRP)
  • BLack of well-documented business impact analysis (BIA)
  • CLack of annual updates to the disaster recovery plan (DRP)
  • DSignificant changes in management personnel

Explanation

The recovery team's inability to follow specific steps during a crisis strongly indicates a failure to test the Disaster Recovery Plan (DRP), as testing ensures familiarity and practical understanding of recovery procedures.

Common mistakes.

  • B. A Business Impact Analysis (BIA) identifies critical business functions and their recovery requirements but does not detail the specific steps for data recovery, so its absence wouldn't directly cause a lack of procedural knowledge.
  • C. While annual updates are important to keep the DRP current, the initial lack of knowledge on specific recovery steps points more to a failure of initial training and testing rather than just outdated information, though outdated info could exacerbate it.
  • D. Significant changes in management personnel might affect strategic direction or resource allocation, but they do not directly explain why a technical recovery team lacks knowledge of specific operational recovery steps, which should be documented and trained upon.

Concept tested. Importance of DRP testing

Reference. https://csrc.nist.gov/publications/detail/sp/800-34/rev-1/final

Topics

#DRP Testing#Disaster Recovery#Crisis Management#Business Continuity

Community Discussion

No community discussion yet for this question.

Full CRISC PracticeBrowse All CRISC Questions