<< Prev Question Next Question >>

Question 15/38

Scenario:
Initar, an IT security service company in New Jersey, provides 24/7 cloud and IT infrastructure support to mid-sized companies. Recognizing the need for a robust business continuity strategy, Initar transitioned from informal business continuity planning to implementing a BCMS based on ISO 22301.
During the BCMS implementation, a major nonconformity was identified: the BIA report lacked a defined Maximum Tolerable Period of Disruption (MTPD), which is required by ISO 22301. The corrective action process began with the IT team conducting a root cause analysis using a cause-and-effect diagram. Based on the analysis, an action plan was drafted to update all BIAs and establish the MTPD. The plan was approved by the head of the IT department, who monitored its implementation, while the internal auditor reviewed the effectiveness of the corrective action.
Is the action plan for treating the nonconformity valid?

LEAVE A REPLY

Your email address will not be published. Required fields are marked *

Question List (38q)
Question 1: An organization has implemented controls to prevent the unau...
Question 2: What is one of the advantages of measurement and monitoring ...
Question 3: Scenario: NexTech Innovations, a dynamic tech startup locate...
Question 4: What does measurement refer to?...
Question 5: How should organizations determine the intervals for trainin...
Question 6: Which of the following statements regarding the BCMS impleme...
Question 7: Scenario: Belle, a food and beverage processing company, is ...
Question 8: Scenario: Fundon is a financial services company certified a...
Question 9: Scenario: Clicked is a law firm that handles complex clients...
Question 10: Scenario: Headquartered in Sri Lanka, Operons Inc. is a frei...
Question 11: What should the organization avoid when implementing the BCM...
Question 12: Scenario: Teleconn, a UK-based telecommunications provider, ...
Question 13: An organization is trying to establish maturity targets for ...
Question 14: Scenario: Prebank is a multinational financial institution. ...
Question 15: Scenario: Initar, an IT security service company in New Jers...
Question 16: What is the role of the crisis management team in the respon...
Question 17: What is an aspect to consider when managing records?...
Question 18: Scenario: Initar, an IT security service company in New Jers...
Question 19: Scenario: Initar, an IT security service company in New Jers...
Question 20: Scenario: IHost is a web hosting company with more than 350 ...
Question 21: Scenario: Prebank is a multinational financial institution. ...
Question 22: Scenario: Marketiser, a marketing company in Florida special...
Question 23: Which of the following is NOT a necessary component of a non...
Question 24: Scenario: Belle, a food and beverage processing company, is ...
Question 25: Scenario: Marketiser, a marketing company in Florida special...
Question 26: Scenario: Teleconn, a UK-based telecommunications provider, ...
Question 27: Scenario: Headquartered in Sri Lanka, Operons Inc. is a frei...
Question 28: Which of the following is a discussion-based exercise?...
Question 29: What does ISO 22313 provide?
Question 30: Scenario: NexTech Innovations, a dynamic tech startup locate...
Question 31: What is a disadvantage to appointing an employee of the orga...
Question 32: Scenario: NexTech Innovations, a dynamic tech startup locate...
Question 33: Scenario: NexTech Innovations, a dynamic tech startup locate...
Question 34: Based on ISO 22301, who is responsible for assigning the rol...
Question 35: For which type of organizations is the standby arrangement a...
Question 36: Scenario: Clicked is a law firm that handles complex clients...
Question 37: Scenario: Headquartered in Sri Lanka, Operons Inc. is a frei...
Question 38: Scenario: Marketiser, a marketing company in Florida special...