Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilDisaster Recovery Professional

Domain 2Objective 1

Risk Assessment EDRP Practice Questions (Page 6)

Part of the Risk and Business Impact Analysis domain, which makes up ~14% of our current practice bank. EC-Council does not publish an official question count, but from its 240-minute exam (~95–160 total, ~13–22 in this domain), expect 7–11 from this objective — we provide 35 practice questions to prepare you well beyond it. (estimate)

35questions here
7free pages
5concepts

Questions 26–30

  1. 26foundation · easy

    Which of the following is a common qualitative risk analysis technique?

    Select an answer first
  2. 27application · medium

    A utility company is conducting a risk assessment for its SCADA system. The risk team has identified a potential cyberattack that could disrupt power distribution. They have estimated the impact at $10 million and the likelihood at 0.01 per year. The company's risk tolerance is $50,000. Which risk treatment decision is most appropriate?

    Select an answer first
  3. 28application · medium

    A hospital is evaluating risks to its patient monitoring system. The risk assessment has identified a risk with a high likelihood and a high impact. The hospital's risk appetite is low. Which of the following risk treatment options is most appropriate?

    Select an answer first
  4. 29application · medium

    A regional bank is conducting a risk assessment for its core banking application. The risk team has identified a ransomware attack as a key threat. Historical data shows the bank experienced one ransomware incident in the past 10 years, and the estimated loss from a successful attack is $5 million. The bank's risk tolerance threshold for a single risk is $1 million. Which approach should the risk team use to prioritize this risk?

    Select an answer first
  5. 30application · medium

    A government agency has completed a risk assessment for its public-facing website. The assessment identified a high risk of a DDoS attack. The agency's DR plan must be updated to reflect this risk. Which documentation practice is most important to ensure the DR plan is effective?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EDRP” is a trademark of its owner, used for identification only.