Certified Information Security Manager (CISM) — Question 1029
Of the following, who is BEST positioned to perform a business impact analysis (BIA)?
Answer options
- A. The information security team
- B. Process owners
- C. The IT team
- D. Business continuity management auditors
Correct answer: B
Explanation
Process owners have the best understanding of their specific processes and the impact that disruptions can have on the business, making them the most suitable for conducting a BIA. While the information security team, IT team, and auditors play important roles in overall business continuity, they may not have the detailed insight into the operational effects that process owners do.