Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
ISC2 logo

Certified Information Systems Security Professional

Domain 1Objective 7

1.7 - Identify, Analyze, Assess, Prioritize, and Implement Business Continuity (BC) Requirements CISSP Practice Questions (Page 3)

Part of the Security and Risk Management domain, which accounts for 16% of the CISSP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~11–19 in this domain), expect 1–2 from this objective — we provide 31 practice questions to prepare you well beyond it. (estimate)

31questions here
7free pages
8concepts
16%of the exam

Questions 11–15

  1. 11application · medium

    A logistics company depends on a single fuel supplier for its entire fleet. The BIA reveals that a disruption at this supplier would halt all deliveries within 24 hours, causing a cascading impact on customer contracts. The company's risk appetite allows for a maximum of 6 hours of delivery disruption. What is the most significant risk associated with this external dependency?

    Select an answer first
  2. 12expert · hard

    A large university is conducting a BIA. The BIA team has limited time and resources. The university's leadership wants the BIA to identify the functions that would cause the most severe impact if disrupted, but they also want the process to be completed within 6 weeks. The team is considering two approaches: Approach A conducts detailed interviews with all 40 departments, which will take 10 weeks. Approach B uses a survey-based assessment of all departments, followed by targeted interviews for the top 10 highest-impact functions, which will take 5 weeks. Which approach is more appropriate?

    Select an answer first
  3. 13foundation · easy

    Which metric represents the maximum amount of time a business process can be unavailable before the organization suffers unacceptable consequences?

    Select an answer first
  4. 14application · medium

    An e-commerce company relies on a single third-party payment gateway to process all customer transactions. The BIA identifies this gateway as critical, and the company's risk appetite requires that payment processing resume within 2 hours of any disruption. The current contract with the gateway provider has no service-level agreement (SLA) for uptime or restoration. What is the most appropriate action to incorporate this external dependency into the BC plan?

    Select an answer first
  5. 15application · medium

    A healthcare organization is conducting a BIA for its patient scheduling and billing systems. The BIA team is preparing to collect data from various departments. Which data collection method would provide the most reliable and comprehensive input for identifying critical functions and their impacts?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CISSP” is a trademark of its owner, used for identification only.