CISA Certified Information Systems Auditor – Question1767

While observing a full simulation of the business continuity plan, an IS auditor notices that the notification systems within the organizational facilities could be severely impacted by infra structural damage. The BEST recommendation the IS auditor can provide to the organization is to ensure:

A.
the salvage team is trained to use the notification system.
B. the notification system provides for the recovery of the backup.
C. redundancies are built into the notification system.
D. the notification systems are stored in a vault.

Correct Answer: C

Explanation:

Explanation:
If the notification system has been severely impacted by the damage, redundancy would be the best control. The salvage team would not be able to use a severely damaged notification system, even if they are trained to use it. The recovery of the backups has no bearing on the notification system and storing the notification system in a vault would be of little value if the building is damaged.