CompTIA CySA+ (CS0-003) — Question 244

Which of the following documents sets requirements and metrics for a third-party response during an event?

Answer options

Correct answer: C

Explanation

The correct answer is C, SLA (Service Level Agreement), as it specifically defines the expectations and obligations of service providers during incidents. The other options do not focus on third-party response metrics; BIA (Business Impact Analysis) assesses risks, DRP (Disaster Recovery Plan) details recovery processes, and MOU (Memorandum of Understanding) outlines general agreements between parties.