Business Continuity Basics
IT & Disaster Recovery
Risk & Threats
Testing & Maintenance
Roles & Responsibilities
100

What is the primary goal of a Business Continuity Plan (BCP)?

To ensure critical business functions continue during and after a disruption.

100

What is the term for the maximum tolerable period of disruption to a business process?

Maximum Tolerable Downtime (MTD)

100

What type of threat is a hurricane or earthquake?

Natural disaster

100

What is the purpose of testing a BCP?

To ensure it works effectively during a real incident.

100

Who is typically responsible for activating the BCP during an incident?

The Business Continuity Manager or Incident Response Team

200

What does BIA stand for in business continuity planning?

Business Impact Analysis

200

What does RTO stand for?

Recovery Time Objective

200

What is a common internal threat to business continuity?

Insider threat or employee error

200

What is a tabletop exercise?

A discussion-based session where team members walk through a simulated disaster scenario.

200

What role does senior management play in business continuity?

Providing support, resources, and strategic direction

300

What is the difference between a BCP and a Disaster Recovery Plan (DRP)?

BCP focuses on maintaining business operations; DRP focuses on restoring IT systems.

300

What does RPO stand for?

Recovery Point Objective

300

What is the term for identifying and evaluating potential risks to business operations?

Risk assessment

300

How often should a BCP be reviewed and updated?

At least annually or after significant changes.

300

What is the role of employees in business continuity?

Following procedures and participating in training and drills

400

What is the first step in developing a BCP?

Conducting a risk assessment and business impact analysis.

400

What type of backup site is fully equipped and ready to take over operations immediately?

Hot site

400

What is the difference between a threat and a vulnerability?

A threat is a potential cause of harm; a vulnerability is a weakness that can be exploited.

400

What is the difference between a full-scale test and a walkthrough?

A full-scale test simulates a real event; a walkthrough is a step-by-step review.

400

What is a crisis communication plan?

A plan for how to communicate with stakeholders during a disruption

500

What international standard provides guidelines for business continuity management systems?

ISO 22301

500

What is the main risk of relying solely on cloud backups for disaster recovery?

Potential internet outages or cloud provider failures can delay recovery.

500

What is a cascading failure in business continuity?

A failure in one system that triggers failures in interconnected systems.

500

What is a key challenge in maintaining a BCP?

Keeping it up to date with organizational and technological changes.

500

What is the role of third-party vendors in business continuity planning?

Ensuring their services and operations align with the organization’s continuity requirements