nerdexam
(ISC)2(ISC)2

CSSLP · Question #303

CSSLP Question #303: Real Exam Question with Answer & Explanation

The correct answer is D: Contingency plan. The question asks to identify the recovery plan that includes specific strategies and actions to address specific variances or assumptions leading to a security problem, emergency, or particular state of affairs.

Secure Software Deployment, Operations, Maintenance

Question

Which of the following recovery plans includes specific strategies and actions to deal with specific variances to assumptions resulting in a particular security problem, emergency, or state of affairs?

Options

  • ADisaster recovery plan
  • BBusiness continuity plan
  • CContinuity of Operations Plan
  • DContingency plan

Explanation

The question asks to identify the recovery plan that includes specific strategies and actions to address specific variances or assumptions leading to a security problem, emergency, or particular state of affairs.

Common mistakes.

  • A. A disaster recovery plan (DRP) focuses on restoring IT systems and data after a major disaster, which is broader than dealing with specific variances to assumptions.
  • B. A business continuity plan (BCP) focuses on maintaining critical business functions during and after a disruption, encompassing DRP but still broader than specific event responses.
  • C. A Continuity of Operations Plan (COOP) focuses on maintaining essential functions during disruptions, typically for government agencies, and is broader in scope than a specific contingency plan.

Concept tested. Types of IT recovery plans

Reference. https://csrc.nist.gov/publications/detail/sp/800-34/rev-1/final

Topics

#Contingency planning#Recovery plans#Operational security#Incident response

Community Discussion

No community discussion yet for this question.

Full CSSLP PracticeBrowse All CSSLP Questions