The following scenario will be used to answer questions 28 and 29. Sean has been hired as business continuity coordinator. He ha

admin2013-12-19  54

问题 The following scenario will be used to answer questions 28 and 29.
Sean has been hired as business continuity coordinator. He has been told by his management that he needed to ensure that the company is in compliance with the ISO/IEC standard that pertained to technology readiness for business continuity. He has also been instructed to find a way to transfer the risk of being unable to carry out critical business functions for a period of time because of a disaster.
Which of the following is most likely the standard that Sean has been asked to comply with?

选项 A、ISO/IEC 27031
B、ISO/IEC 27005
C、ISO/IEC BS7799
D、ISO/IEC 2899

答案A

解析 A正确。ISO/IEC 27031:2011是业务持续性信息和通信技术敏捷性方面的一组指南。它是所有ISO/IEC 27000系列的一个组成部分。
B不正确。因为ISO/IEC 27005的目的是为信息安全风险管理提供指导方针。它支持ISO/IEC 27001中指定的一般概念,也是为了帮助基于风险管理方法的信息安全的满意实施。该标准是为了开发一种正式的风险管理方法,而不是解决所需的持续性问题。
C不正确。因为这是一个干扰项。没有所谓的ISO/IEC BS7799官方标准。
D不正确。因为这是一个干扰项。没有所谓的ISO/IEC 2899官方标准。
转载请注明原文地址:https://jikaoti.com/ti/yAO7FFFM
0

最新回复(0)