ISC2 CISSP (Certified Information Systems Security Professional)Security OperationsMedium
An organization is updating its incident response plan. A key discussion point is ensuring that critical business functions can continue to operate at a minimal acceptable level even during a major disruption. Which aspect of security operations is this discussion primarily focused on?
- AOperational Resilience
- BDisaster Recovery Planning (DRP)
- CIncident Management
- DBusiness Continuity Planning (BCP)
Show answer & explanationAnswer & explanation
Correct answer: D. Business Continuity Planning (BCP)
Business Continuity Planning (BCP) focuses on maintaining essential business functions during and after a disaster, ensuring the organization can continue to operate at a minimal acceptable level. DRP is a subset of BCP, focusing specifically on IT systems.
Why the other options are wrong
- A. Operational Resilience is a broader concept encompassing BCP and DRP, but BCP is the most direct answer for *continuing* critical business functions.
- B. DRP focuses on restoring IT systems after a disaster, not necessarily the broader business functions.
- C. Incident Management deals with the immediate response to security incidents, not long-term business function continuity.
Business Continuity Planning (BCP)
Business Continuity Planning (BCP) is the process of creating systems of prevention and recovery to deal with potential threats to a company. It ensures that critical business functions can continue to operate during and after a disaster.
- Focuses on maintaining business operations.
- Broader than Disaster Recovery (DRP).
- Includes people, processes, physical infrastructure, and IT.
Memory trick: BCP keeps the 'Business' running; DRP recovers 'Data' and systems.