Why do we need to test a disaster recovery plan regularly, and keep it up to date?

Why do we need to test a disaster recovery plan regularly, and keep it up to date?
A . Otherwise the measures taken and the incident procedures planned may not be adequate
B . Otherwise it is no longer up to date with the registration of daily occurring faults
C . Otherwise remotely stored backups may no longer be available to the security team

Answer: A

Explanation:

Testing a disaster recovery plan regularly and keeping it up to date is essential to ensure that the measures taken and the incident procedures planned are adequate and effective in the event of a disaster6. A disaster recovery plan is a documented set of actions and arrangements to enable an organization to respond to a disaster affecting its information assets and resume its critical activities within a defined time frame7. However, a disaster recovery plan may become obsolete or ineffective due to changes in the organization’s environment, operations, risks, or resources. Therefore, testing the plan periodically and updating it accordingly is necessary to verify its validity, feasibility, completeness, and accuracy6.

Reference: ISO/IEC 27031:2011, clauses 7.4 and 8.3; ISO/IEC 27000:2022, clause 3.11.

Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments