Certified Information Security Manager (CISM) — Question 222
Which of the following is PRIMARILY influenced by a business impact analysis (BIA)?
Answer options
- A. Recovery strategy
- B. Risk mitigation strategy
- C. Security strategy
- D. IT strategy
Correct answer: A
Explanation
The correct answer is A, as a business impact analysis (BIA) directly informs the recovery strategy by identifying critical functions and the impact of their disruption. The other options, such as risk mitigation, security, and IT strategies, are influenced by various factors and not solely by the insights provided by a BIA.