CISA Exam: Best Practices for IT Service Continuity Planning

Best Practices for IT Service Continuity Planning

Prev Question Next Question

Question

In an environment where most IT services have been outsourced, continuity planning is BEST controlled by:

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

C.

In an environment where most IT services have been outsourced, continuity planning is best controlled by business management.

Explanation:

Continuity planning refers to the process of ensuring that an organization's critical operations and services can continue in the event of a disruption or disaster. When most IT services have been outsourced, continuity planning becomes critical, as the organization's ability to continue operations is heavily dependent on the availability and resilience of its outsourced IT services.

The responsibility for continuity planning ultimately rests with the organization's business management, as they are responsible for ensuring the organization's overall resilience and ability to continue operating. Business management is responsible for identifying critical business functions and determining the impact of IT service disruptions on those functions. They are also responsible for ensuring that continuity plans are in place, tested, and updated regularly.

While outsourced service provider management and IT management play important roles in continuity planning, they are not the primary controllers. Outsourced service provider management is responsible for ensuring that outsourced service providers meet the organization's service level requirements and contractual obligations. They may also be involved in testing and validating continuity plans with the service providers. IT management is responsible for ensuring that the organization's IT infrastructure is available, secure, and resilient. They may also be involved in implementing and testing continuity plans.

Continuity planning specialists may provide expertise and support in the development and testing of continuity plans. However, they are not responsible for the overall control of continuity planning, as this responsibility rests with business management.