CERTIFIED BUSINESS CONTINUITY
PROFESSIONAL (CBCP) EXAM QUESTION
AND CORRECT ANSWERS (VERIFIED
ANSWERS) PLUS RATIONALES 2026 Q&A
INSTANT DOWNLOAD PDF
1. What is the primary objective of business continuity management?
A. Increase profitability
B. Improve customer satisfaction
C. Ensure continued delivery of critical products and services during
disruptions
D. Reduce operational costs
Rationale: Business continuity focuses on sustaining critical operations
during and after disruptions.
2. Which standard is most commonly associated with Business Continuity
Management Systems (BCMS)?
A. ISO 9001
B. ISO 22301
C. ISO 27001
D. ISO 14001
Rationale: ISO 22301 specifies requirements for planning, implementing,
and improving BCMS.
3. The Business Impact Analysis (BIA) primarily identifies:
A. Threat probabilities
B. Security vulnerabilities
C. Critical activities and impact of disruptions
, D. Emergency response procedures
Rationale: BIA assesses impacts over time to prioritize recovery.
4. Maximum Tolerable Downtime (MTD) refers to:
A. Average downtime
B. Maximum acceptable period of disruption
C. Minimum recovery time
D. Planned outage duration
Rationale: MTD defines the longest time an activity can be disrupted
before unacceptable impact occurs.
5. Recovery Time Objective (RTO) is best described as:
A. Time to detect an incident
B. Time between incidents
C. Target time to restore a process after disruption
D. Time to resume full capacity
Rationale: RTO sets the restoration timeframe for critical processes.
6. Recovery Point Objective (RPO) measures:
A. Service downtime
B. Maximum acceptable data loss
C. Network recovery speed
D. Staff availability
Rationale: RPO focuses on data currency at recovery.
7. Which phase comes first in the BCM lifecycle?
A. Strategy development
B. Program initiation and management
C. Testing and exercising
D. Incident response
Rationale: BCM begins with governance, scope, and management
commitment.
8. A risk assessment in BCM primarily evaluates:
A. Financial statements
, B. Threats, vulnerabilities, and likelihood
C. Employee performance
D. Customer satisfaction
Rationale: Risk assessment identifies potential causes of disruption.
9. Which document outlines roles, responsibilities, and authority during a
disruption?
A. Risk register
B. Business Continuity Plan
C. Audit report
D. Policy statement
Rationale: The BCP guides coordinated response actions.
10.The main purpose of a crisis management team is to:
A. Restore IT systems
B. Provide strategic direction and decision-making
C. Conduct audits
D. Handle routine operations
Rationale: Crisis teams manage high-level decisions and communications.
11.A tabletop exercise is best described as:
A. Full-scale simulation
B. Discussion-based scenario review
C. Technology failover test
D. Unannounced drill
Rationale: Tabletop exercises validate plans through discussion.
12.Which type of exercise tests actual recovery capability?
A. Checklist review
B. Walkthrough
C. Full interruption test
D. Awareness training
Rationale: Full interruption tests validate real recovery performance.
PROFESSIONAL (CBCP) EXAM QUESTION
AND CORRECT ANSWERS (VERIFIED
ANSWERS) PLUS RATIONALES 2026 Q&A
INSTANT DOWNLOAD PDF
1. What is the primary objective of business continuity management?
A. Increase profitability
B. Improve customer satisfaction
C. Ensure continued delivery of critical products and services during
disruptions
D. Reduce operational costs
Rationale: Business continuity focuses on sustaining critical operations
during and after disruptions.
2. Which standard is most commonly associated with Business Continuity
Management Systems (BCMS)?
A. ISO 9001
B. ISO 22301
C. ISO 27001
D. ISO 14001
Rationale: ISO 22301 specifies requirements for planning, implementing,
and improving BCMS.
3. The Business Impact Analysis (BIA) primarily identifies:
A. Threat probabilities
B. Security vulnerabilities
C. Critical activities and impact of disruptions
, D. Emergency response procedures
Rationale: BIA assesses impacts over time to prioritize recovery.
4. Maximum Tolerable Downtime (MTD) refers to:
A. Average downtime
B. Maximum acceptable period of disruption
C. Minimum recovery time
D. Planned outage duration
Rationale: MTD defines the longest time an activity can be disrupted
before unacceptable impact occurs.
5. Recovery Time Objective (RTO) is best described as:
A. Time to detect an incident
B. Time between incidents
C. Target time to restore a process after disruption
D. Time to resume full capacity
Rationale: RTO sets the restoration timeframe for critical processes.
6. Recovery Point Objective (RPO) measures:
A. Service downtime
B. Maximum acceptable data loss
C. Network recovery speed
D. Staff availability
Rationale: RPO focuses on data currency at recovery.
7. Which phase comes first in the BCM lifecycle?
A. Strategy development
B. Program initiation and management
C. Testing and exercising
D. Incident response
Rationale: BCM begins with governance, scope, and management
commitment.
8. A risk assessment in BCM primarily evaluates:
A. Financial statements
, B. Threats, vulnerabilities, and likelihood
C. Employee performance
D. Customer satisfaction
Rationale: Risk assessment identifies potential causes of disruption.
9. Which document outlines roles, responsibilities, and authority during a
disruption?
A. Risk register
B. Business Continuity Plan
C. Audit report
D. Policy statement
Rationale: The BCP guides coordinated response actions.
10.The main purpose of a crisis management team is to:
A. Restore IT systems
B. Provide strategic direction and decision-making
C. Conduct audits
D. Handle routine operations
Rationale: Crisis teams manage high-level decisions and communications.
11.A tabletop exercise is best described as:
A. Full-scale simulation
B. Discussion-based scenario review
C. Technology failover test
D. Unannounced drill
Rationale: Tabletop exercises validate plans through discussion.
12.Which type of exercise tests actual recovery capability?
A. Checklist review
B. Walkthrough
C. Full interruption test
D. Awareness training
Rationale: Full interruption tests validate real recovery performance.