IT Examiner School eBook May 2025

Internal Use Only

Risk Assessment (RA) Management should develop a RA that: • Understands the risks to the business;

• Identifies broad range of potential disruptions; and • Clearly defines the operations and services.

Internal Use Only

Business Impact Analysis (BIA) Management should develop a BIA that:

• Identifies all business functions and prioritizes them in order of criticality; • Analyzes related interdependencies among business processes and systems; and • Assesses a disruption’s impact through established metrics.

The BIA should define recovery priorities and resource dependencies for critical processes

Made with FlippingBook - Online magazine maker