Business Continuity Basics
Disaster Recovery Strategies
Data Protection & Backup
Incident Response & Continuity
Risk, Compliance & Governance
100

This document outlines how an organization maintains operations during a disruption.

What is a Business Continuity Plan (BCP)?

100

A DR site that offers building space but no equipment, requiring organizations to bring their own technology.

What is a cold site?

100

The simplest form of backup, storing all selected data regardless of changes.

What is a full backup?

100

This type of event triggers incident response procedures and may escalate to a continuity activation.

What is a security incident?

100

The process of identifying threats, vulnerabilities, and impacts to guide continuity planning.

What is risk assessment?

200

The process of identifying essential business functions and recovery requirements.

What is a Business Impact Analysis (BIA)?

200

This type of DR site has hardware ready but requires software and data restoration before operations resume.

What is a warm site?

200

This backup type saves only files that have changed since the last full backup.

hat is a differential backup?

200

: Teams use these predefined, actionable steps to follow during cyber incidents.

What are playbooks or runbooks?

200

This compliance standard requires organizations to maintain availability and resilience for financial reporting systems.

What is SOX (Sarbanes-Oxley Act)?

300

This term refers to the maximum time a process can be down before significant damage occurs.

What is the Recovery Time Objective (RTO)?

300

A fully equipped secondary location that can take over operations almost immediately.

What is a hot site?

300

This method saves only data that has changed since the last backup of any type.

What is an incremental backup?


2XP Answer

300

The process of restoring systems to normal operation after containment and eradication.

What is recovery?

300

This regulation requires strong continuity and DR protections for healthcare data.

What is HIPAA?

400

his is the maximum acceptable amount of data loss after a disruption.T

What is the Recovery Point Objective (RPO)?

400

The practice of distributing services across multiple data centers to ensure availability.

What is load balancing / geographic redundancy?

400

The approach of storing backups in multiple places, like local storage plus off-site or cloud.

What is the 3-2-1 backup rule?

400

This post-incident activity analyzes what went wrong and how to improve future responses.

What is a lessons-learned review?

400

A governance framework used globally for IT management, including continuity and security objectives.

What is COBIT?

500

The resilience strategy where organizations operate from geographically separated office locations.

What is site redundancy / multi-site operations?

500

A strategy where systems continuously replicate data to a backup environment to minimize downtime.

What is real-time failover / synchronous replication?

500

 A tamper-resistant storage method often used for compliance, storing logs or backups in immutable form.

What is WORM (Write Once, Read Many) storage?

500

An advanced type of testing where teams simulate an actual outage or cyberattack without prior notice.

What is an unannounced drill / no-notice exercise?

500

The NIST publication that serves as the primary guide for developing IT contingency and DR plans.

2XP Answer. 

What is NIST SP 800-34 Rev. 1?

M
e
n
u