CompTIA Security+ (SY0-701) — Question 495
While conducting a business continuity tabletop exercise, the security team becomes concerned by potential impact if a generator was to develop a fault during failover. Which of the following is the team most likely to consider in regard to risk management activities?
Answer options
- A. RPO
- B. ARO
- C. BIA
- D. MTTR
Correct answer: C
Explanation
The correct answer is C, BIA (Business Impact Analysis), as it helps identify critical functions and the impact of potential disruptions like a generator failure. ARO (Annual Rate of Occurrence) and MTTR (Mean Time to Repair) are related to risk assessment but do not specifically address the impact analysis, while RPO (Recovery Point Objective) focuses on data loss rather than operational impact.