A business continuity plan is an example of which of the following?
A. Corrective Control
B. Detective Control
C. Preventive Control
D. Compensating Control
One Comment on “which of the following?”
dresays:
Isn’t this preventative? I mean, in a BIA you are suggesting mitigating risks to possible vulnerabilities. Then management decides which risks to accept, and finally the company implements the mitigating controls… before anything happens. That’s preventative.
There are some corrective controls as well, like what to do when a system goes down, but the initial control mitigates the system going down in the first place.
Isn’t this preventative? I mean, in a BIA you are suggesting mitigating risks to possible vulnerabilities. Then management decides which risks to accept, and finally the company implements the mitigating controls… before anything happens. That’s preventative.
There are some corrective controls as well, like what to do when a system goes down, but the initial control mitigates the system going down in the first place.
0
0