CISM Exam Practice Questions and Answers (100% Pass)
SDO - Answer✔️✔️-Relates directly to the business needs; is the level of services to
be reached during the alternate process mode until the normal situation is restored.
Is the required level of functionality that must be supported during the alternate
process mode until the normal situation is restored, which is directly related to
business needs. Time taken to resume ACCEPTABLE OPERATIONS. Must be
achieved within the RTO. Note that acceptable level may be substantially less than
normal operations, less costly & easier to achieve.
Agreed-on level of service required to resume acceptable operations. Reflects a
commitment to internal customers to meet certain performance standards. Note that
the primary focus of incident response is to ensure that business-defined service
delivery objectives are met.
1
,©PREP4EXAMS 2024/2025 REAL EXAM DUMPS Tuesday, August 6, 2024 10,57 AM
A prior determination of acceptable levels of operation in the event of an outage is
the SDO. The SDO may be set at less than normal operation levels, but sufficient
to sustain essential business functions.
E.g. if the DB is corrupted by an incident, the org will be able to record
transactions through an Excel spreadsheet, but other processes will not be able to
run until service is restored.
RTO - Answer✔️✔️-Time taken to achieve NORMAL OPERATIONS or SDO.
Exceeding this could threaten the org. Is commonly agreed to be the time frame
between a disaster and the return to normal or acceptable operations defined by the
service level objective. The RTO must be shorter than the allowable interruption
window (AIW).
Is the target time to restore services to either the service delivery objective (SDO)
or normal operations. Note that return to business as usual processing occurs
significantly later than the RTO. RTO is an "objective," and full restoration may or
may not coincide with the RTO. RTO can be the minimum acceptable operational
level, far short of normal operations.
2
, ©PREP4EXAMS 2024/2025 REAL EXAM DUMPS Tuesday, August 6, 2024 10,57 AM
E.g. if the DB is corrupted by an incident, access to the DB will be restored within
8 hours.
MTO - Answer✔️✔️-Maximum length of time that the organization can OPERATE
AT THE RECOVERY SITE, i.e. operating in an ALTERNATE MODE.
Must be at least as great as the AIW & will generally be longer. Therefore, it is
possible that exceeding the MTO will result in not being able to meet the AIW.
Must be at least as long as the AIW to minimize the risk to the org in the event of a
disaster.
E.g. if the DB is corrupted by an incident, the org will be able to record
transactions through a spreadsheet, but customer experience will be negatively
affected after 12 hours.
3