Certified Information Security Manager (CISM) — Question 966
An organization experienced a loss of revenue during a recent disaster. Which of the following would BEST prepare the organization to recover?
Answer options
- A. Business impact analysis (BIA)
- B. Incident response plan
- C. Disaster recovery plan (DRP)
- D. Business continuity plan (BCP)
Correct answer: D
Explanation
A Business Continuity Plan (BCP) is designed to ensure that an organization can continue its operations and recover quickly from disruptions, making it the best choice for preparing for recovery. While a Disaster Recovery Plan (DRP) focuses on restoring IT systems, and an Incident Response Plan addresses immediate response to incidents, a BCP encompasses broader strategies for maintaining business functions during and after a disaster, thus directly addressing revenue loss.