Certified Information Security Manager (CISM) — Question 144
Relationships between critical systems are BEST understood by:
Answer options
- A. performing a business impact analysis (BIA).
- B. developing a system classification scheme.
- C. evaluating key performance indicators (KPIs).
- D. evaluating the recovery time objectives (RTOs).
Correct answer: A
Explanation
The correct answer is A, as a business impact analysis (BIA) helps identify and evaluate the effects of disruptions to critical systems and their interdependencies. Options B, C, and D, while important in their own right, do not provide the comprehensive understanding of system relationships that a BIA offers.