Exam ISO-IEC-27001-Lead-Auditor Topic 2 Question 122 Discussion
Actual exam question for PECB's ISO-IEC-27001-Lead-Auditor exam
Question #: 122
Topic #: 2
Question #: 122
Topic #: 2
Why do we need to test a disaster recovery plan regularly, and keep it up to date?
Suggested Answer: A Vote an answer
Testing a disaster recovery plan regularly and keeping it up to date is essential to ensure that the measures taken and the incident procedures planned are adequate and effective in the event of a disaster6. A disaster recovery plan is a documented set of actions and arrangements to enable an organization to respond to a disaster affecting its information assets and resume its critical activities within a defined time frame7. However, a disaster recovery plan may become obsolete or ineffective due to changes in the organization's environment, operations, risks, or resources. Therefore, testing the plan periodically and updating it accordingly is necessary to verify its validity, feasibility, completeness, and accuracy6. Reference: ISO/IEC 27031:2011, clauses 7.4 and 8.3; ISO/IEC 27000:2022, clause 3.11.
by Molly at Feb 11, 2024, 05:23 PM
0
0
0
10
Comments
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Report Comment
Commenting
You can sign-up / login (it's free).