Weekend Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70percent

BCI CBCI Certificate of the Business Continuity Institute (CBCI) Exam Practice Test

Demo: 27 questions
Total 90 questions

Certificate of the Business Continuity Institute (CBCI) Questions and Answers

Question 1

Which of the following would be the most effective and motivating way to share information that is intended to influence personnel to embrace Business Continuity?

Options:

A.

Use language that is clear and easily accessible to all when producing documents, presentations or training materials

B.

Provide detailed explanations on all of the organization and set regular tests to ensure that personnel are taking sufficient interest

C.

Ensure that attendance at meetings is recorded and reflected in the staff performance appraisals

D.

Send all information via email or the intranet on the assumption that this will be everyone’s preferred, and most convenient, form of communication

Question 2

In order to enable Business Continuity solutions, it is necessary to:

Options:

A.

Measure capabilities to deliver the solutions by carrying out a gap analysis

B.

Create guidance documents that detail response activities and procedures that specific teams need to follow

C.

Establish and implement a strategy to ensure that business objectives are aligned to the agreed solutions

D.

Carry out a review of the Business Continuity policy to ensure that it is updated with the detail of the agreed solutions

Question 3

Which of the following is an outcome of personnel embracing Business Continuity and the organization's Business Continuity Management System (BCMS)?

Options:

A.

A Business Continuity programme that is tailored specifically for the organization, taking into account its organizational culture

B.

A reduction in the need to update and review the BCMS due to the commitment of personnel in the development stage

C.

Increased sales of products and services due to public confidence in the published information about the organization’s resilience capability

D.

Validation of plans is no longer needed due to the high level of commitment from relevant personnel to their effective implementation

Question 4

When developing a new response structure, how should the Business Continuity professional proceed where a pre-existing structure is already in place?

Options:

A.

All pre-existing teams and plans should be stood down immediately to prevent confusion or mixed loyalties as the new structure and plans are developed

B.

Teams and roles responsible for pre-existing plans should be assessed and, where appropriate, aligned and incorporated into the new structure with training provided

C.

All previous personnel and plans should be adopted without change in order to ensure continuity of approach, streamlining of costs and to encourage team members to embrace Business Continuity

D.

Personnel with existing roles should automatically be provided with senior roles in the new structure and provided with authority to change the new solutions that have been agreed by drawing on their previous experience

Question 5

Which of the following is a technique for collecting Business Impact Analysis (BIA) information?

Options:

A.

Workplace observation

B.

Workplace health and safety reviews

C.

Monthly budget reviews

D.

Questionnaires and surveys

Question 6

Which of the following elements would NOT be validated by an exercise?

Options:

A.

The availability of key information when required

B.

The design and effectiveness of the business impact analysis process

C.

The effectiveness and usability of relevant procedures

D.

The reliability of systems and equipment

Question 7

Within the context of risk assessment, the identification of solutions is influenced by a variety of business relevant considerations, including:

Options:

A.

Delivering performance targets

B.

Timely production of quality assurance audit trails

C.

Compliance with regulatory requirements

D.

Ensuring that communication protocols are observed

Question 8

Which of the following is demonstrated where an organization includes Business Continuity in induction processes and sets Business Continuity objectives for personnel?

Options:

A.

The organization's approach to risk assessment

B.

The organization's Business Continuity culture

C.

The role of the Business Continuity professional

D.

The use of validation

Question 9

Why is a risk assessment usually conducted after a Business Impact Analysis (BIA) as part of the analysis stage?

Options:

A.

Conducting a BIA ties up personnel on this project; so resources are not available to conduct the risk assessment until after personnel are released from the BIA project

B.

Conducting the risk assessment after the BIA has identified priorities enables the risk assessment to maximise investment in risk treatments where they are most needed

C.

A risk assessment is not required until Business Continuity solutions based on the outcomes of the BIA have been developed for review

D.

Risk assessments are not required until after the organization's business plan has been updated to confirm any changes in plans as a result of the BIA

Question 10

In order to ensure that priority is given to activities with the shortest Recovery Time Objectives (RTOs), strategies can:

Options:

A.

Include relevant extracts from the Business Impact Analysis (BIA)

B.

Highlight activities with short RTOs by categorising strategies by timeframe

C.

Include a risk assessment to identify the best treatment option

D.

Identify workarounds for all activities other than those with short RTOs

Question 11

After all Business Impact Analyses (BIAs) have been completed, a consolidated analysis is carried out and a report is written to document the results. What is the purpose of this?

Options:

A.

For review by all BIA participants

B.

For submission to top management for final approval

C.

For planning an exercise

D.

For internal audit

Question 12

One of the steps in the risk management process is to establish the risk treatment required. The purpose of risk treatment is to:

Options:

A.

Ensure that a named person within the organization takes responsibility for the monitoring and management of the risk

B.

Calculate a risk score based on the combination of the likelihood of the risk occurring and the consequences of this happening

C.

Mitigate each risk identified by reducing the likelihood of the risk occurring or by lowering the impact of disruption

D.

Ensure that regular updates on the current status of the risk are presented to top management

Question 13

An outcome of the Solutions Design process is:

Options:

A.

Business Continuity strategies and solutions that remain cost effective in terms of implementation and operational investment

B.

Arrangements that protect the organization from negative publicity during business as usual operations

C.

Strategies and solutions that lead to financial savings due to the reduction in personnel engaged in operational activities

D.

Assurance that all personnel have high levels of occupational competence in their job roles

Question 14

Establishing governance arrangements for a Business Continuity Management System (BCMS) is essential in order to:

Options:

A.

Develop a project risk register and carry out appropriate risk assessments in the workplace

B.

Ensure that there is ongoing commitment across all organizational functions and levels

C.

Commission research into approaches taken by organizations

D.

Enable the Business Continuity professional to establish their authority and issue instructions on the actions that need to be taken

Question 15

Which of the following is NOT a critical requirement for an effective response structure?

Options:

A.

A plan to communicate with internal and external interested parties

B.

The number and type of teams required by the organization

C.

A plan to exercise the escalation and response

D.

Guidance on when regulators should be notified and be included in the response

Question 16

When coordinating a Business Continuity Management System (BCMS), a steering group should be established to oversee, advise and make recommendations as the BCMS is established. The steering group should comprise:

Options:

A.

Only Business Continuity professionals and any available administrative support

B.

Only top management

C.

Customers and suppliers that are familiar with the way the organization works and can make recommendations from an external perspective

D.

Multi-disciplinary experts who are familiar with the operation of the organization

Question 17

Analysing information about how an organization has responded to incidents, including engagement with those impacted and its approach to responsibility, can provide insight into the organization's:

Options:

A.

Culture

B.

Business targets

C.

Business plan

D.

Structure

Question 18

The Recovery Time Objective (RTO), competency of team members, and complexity of the processes to be recovered are factors that will play a role in determining the level of detail contained in:

Options:

A.

Operational plans

B.

Strategic plans

C.

Crisis communication plans

D.

Emergency response plans

Question 19

Which of the following parameters would NOT be considered by a resource or activity owner when evaluating and selecting solutions to meet an agreed strategy?

Options:

A.

The advantages and disadvantages of the proposed solution

B.

The type of exercises to be conducted to validate the strategies and solutions

C.

The estimated costs to prepare, implement, operate and maintain the solution

D.

The implementation time required

Question 20

Which of the following could the Business Continuity professional use to explain how embracing Business Continuity could add value to the organization?

Options:

A.

It will increase health and safety standards in the organization by reducing stress levels as personnel do not need to be concerned during disruptions

B.

It will resolve all conflicts between personnel and departments in the organization as personnel will re-focus their priorities to shared Business Continuity activities

C.

It increases competitive advantage by increasing the ability of the organization to remain operational in the face of a disruption

D.

It will enable senior managers to delegate their responsibilities to team members as personnel will be willing to take on additional accountabilities leaving senior managers free to develop new products and services

Question 21

Which of the following is an action that the Business Continuity professional will take as part of the process of strategy determination?

Options:

A.

Design a strategy for agreement with top management that can then be delegated to the relevant owners of priority products, services, activities, and processes

B.

Prepare a communications brief to advise all external stakeholders of the outcome of the gap analysis and the plan for acting on the findings

C.

Develop a mandatory training schedule to ensure that all personnel are required to address any skills gaps relevant to the delivery of priority products, services, activities, and processes

D.

Work with the relevant product, services, activity, or process owner to develop a specification for an appropriate solution

Question 22

The purpose of an external audit of the Business Continuity Management System (BCMS) is to:

Options:

A.

Confirm that the organization is fully prepared to respond to incidents

B.

Provide independent assurance on a set of Business Continuity processes and controls

C.

Assess the performance of the members of top management team in relation to Business Continuity

D.

Make recommendations on alternative ways of meeting recovery time objectives (RTOs)

Question 23

The Process Business Impact Analysis (BIA):

Options:

A.

Is conducted prior to the Product and Services BIA

B.

Excludes processes that have been outsourced

C.

Identifies resource requirements and interdependencies

D.

Is optional and may be omitted

Question 24

Which of the following statements about an Activity Business Impact Analysis (BIA) is correct?

Options:

A.

An Activity BIA ensures that all of the activities undertaken by an organization can continue as usual during a disruption and sets out a detailed plan to enable continuity

B.

An Activity BIA determines the resources required to deliver the organization's prioritized products and services

C.

An Activity BIA identifies risks to delivery activities and establishes strategies to either prevent risks arising or to mitigate their effects should they arise

D.

An Activity BIA identifies and prioritizes the activities that deliver the most urgent products and services and determines the resources and dependencies required to enable continuity

Question 25

The scope of the Business Continuity Management System (BCMS) should be reviewed if:

Options:

A.

A new Business Continuity professional is appointed and they provide a fresh focus on the approach to be taken

B.

An exercise activity reveals that changes to operational procedures are needed

C.

There is a change to the internal or external operating context

D.

Personnel are not embracing Business Continuity and a new approach to engage them is required

Question 26

The time period defined by the Recovery Time Objective (RTO) should always be less than which of the following?

Options:

A.

The Recovery Point Objective (RPO)

B.

The Maximum Tolerable Period of Disruption (MTPD)

C.

The Minimum Business Continuity Objective (MBCO)

D.

The standard timeline set by the organization's customer services charter

Question 27

Which of the following is a possible outcome of a gap analysis to establish whether new strategies and solutions are required?

Options:

A.

Validation exercises to confirm the findings of the gap analysis that can be presented to top management as part of the decision-making process

B.

Agreement from top management that a Business Impact Analysis (BIA) should be completed to determine the new procedures required

C.

A determination that Business Continuity capabilities exceed requirements and resources could be redistributed

D.

A schedule for sharing the outcomes with all personnel to invite their comments and encourage them to embrace Business Continuity

Demo: 27 questions
Total 90 questions