Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISSP All Questions

View all questions & answers for the CISSP exam

Exam CISSP topic 1 question 21 discussion

Actual exam question from ISC's CISSP
Question #: 21
Topic #: 1
[All CISSP Questions]

In the "Do" phase of the Plan-Do-Check-Act model, which of the following is performed?

  • A. Maintain and improve the Business Continuity Management (BCM) system by taking corrective action, based on the results of management review.
  • B. Monitor and review performance against business continuity policy and objectives, report the results to management for review, and determine and authorize actions for remediation and improvement.
  • C. Ensure the business continuity policy, controls, processes, and procedures have been implemented.
  • D. Ensure that business continuity policy, objectives, targets, controls, processes and procedures relevant to improving business continuity have been established.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Joey456
Highly Voted 2 years, 1 month ago
Plan = Plan Do = Perform Act = Improve Check = Monitor PLAN - D. Ensure that business continuity policy, objectives, targets, controls, processes and procedures relevant to improving business continuity have been established. DO - C. Ensure the business continuity policy, controls, processes, and procedures have been implemented. ACT - A. Maintain and improve the Business Continuity Management (BCM) system by taking corrective action, based on the results of management review. Check - B. Monitor and review performance against business continuity policy and objectives, report the results to management for review, and determine and authorize actions for remediation and improvement.
upvoted 36 times
jackdryan
1 year, 7 months ago
C is correct
upvoted 3 times
...
...
SF_NERD
Highly Voted 2 years, 1 month ago
Selected Answer: B
PLAN: • D. Ensure that business continuity policy, objectives, targets, controls, processes and procedures relevant to improving business continuity have been established. Do • B. Monitor and review performance against business continuity policy and objectives, report the results to management for review, and determine and authorize actions for remediation and improvement. Check • C. Ensure the business continuity policy, controls, processes, and procedures have been implemented. Act • A. Maintain and improve the Business Continuity Management (BCM) system by taking corrective action, based on the results of management review. Plan This is the ONLY sensical flow of these steps giving "B" as the Do step/answer
upvoted 5 times
...
somsom
Most Recent 1 month, 1 week ago
C is very correct. Monitoring is same check or analyze or examine.
upvoted 1 times
...
celomomo
1 month, 3 weeks ago
Selected Answer: C
option C. It focuses on the implementation of the plans and processes that were developed, which is the core purpose of this phase in the model. Layer 0: The most trusted layer, where the operating system kernel resides Layer 1: Contains nonprivileged parts of the operating system Layer 2: Contains I/O drivers, low-level operations, and utilities Layer 3: Contains applications and processes
upvoted 1 times
...
robervalchocolat
2 months, 3 weeks ago
Plan: This phase involves defining the problem, setting goals, and creating a plan to address the issue. Do: This phase is where the plan is implemented and executed. In the context of business continuity management, this involves ensuring that the established policies, controls, processes, and procedures are put into action. Check: This phase involves monitoring and reviewing the results of the implementation to determine if the plan is working as intended. Act: This phase involves taking corrective action based on the findings of the check phase, and making improvements to the plan.
upvoted 1 times
...
deeden
3 months, 3 weeks ago
Selected Answer: C
1. **Plan.** Decide what needs to be done, establish the objectives, and determine the processes needed to implement the change. 2. **Do.** Execute the plan. 3. **Check.** Evaluate the results of the plan. This may happen through the use of statistical measures of performance, observations, or evaluations. 4. **Act (or Adjust).** Based on the information generated in the **Do** and **Check** phases (i.e., root causes of failure identified), risk is re-evaluated — and the baseline is determined to measure performance of future changes (adjust).
upvoted 1 times
...
JazzF
3 months, 3 weeks ago
Selected Answer: C
Do: Implementing the ISMS This phase is where an organisation implements the ISMS policy, controls, processes, and procedures. In the Do phase, an organisation conducts a risk assessment and evaluates the reasons behind each structure. They must prepare procedures indicating the risks and their treatment. Ensuring that the procedure and policy documents are available, adequately protected, distributed, and stored in a managed system is crucial. Documents of external origin must also fall under the scope of ISMS 27001. This is how the Do phase is accomplished.
upvoted 1 times
...
rami_mma
3 months, 4 weeks ago
Selected Answer: C
C is correct
upvoted 1 times
...
rami_mma
3 months, 4 weeks ago
Plan -> D Do -> C Act -> A Check -> B
upvoted 1 times
...
susmit683
10 months, 2 weeks ago
Selected Answer: C
Implement following the Security Policies is "DO"
upvoted 1 times
...
[Removed]
1 year ago
Is this even in the OSG?
upvoted 1 times
AlexJacobson
1 year ago
No, it's not, but it's in Official Guide to CISSP CBK Reference (5th edition). I only used Sybex book and Destionation CISSP book (along with their mind maps on YT), but I think that's not enough. I'm seeing questions here that are more and more referencing the Official CBK.
upvoted 1 times
...
...
74gjd_37
1 year, 2 months ago
Selected Answer: B
B is the correct answer. See https://www.mindtools.com/as2l5i1/pdca-plan-do-check-act 2. Do Once you've identified a potential solution, test it safely with a small-scale pilot project. This will show whether your proposed changes achieve the desired outcome – with minimal disruption to the rest of your operation if they don't. For example, you could organize a trial within a department, in a limited geographical area, or with a particular demographic. As you run the pilot project, gather data to show whether the change has worked or not. You'll use this in the next stage.
upvoted 1 times
...
Sledge_Hammer
1 year, 2 months ago
B is the correct answer. The next step is to test your hypothesis (i.e., your proposed solution). The PDCA cycle focuses on smaller, incremental changes that help improve processes with minimal disruption. Test your hypothesis with a small-scale project, preferably in a controlled environment, so you can evaluate the results without interrupting the rest of your operation. You might want to test the solution on one team or within a certain demographic.
upvoted 1 times
...
Demo25
1 year, 4 months ago
Selected Answer: B
1 The answer is B. Monitor and review performance against business continuity policy and objectives, report the results to management for review, and determine and authorize actions for remediation and improvement. The Do phase of the Plan-Do-Check-Act model is the second phase of the cycle. In this phase, the plan is implemented and the results are monitored. The goal of the Do phase is to ensure that the plan is working as expected and that it is meeting the organization's objectives.
upvoted 1 times
...
Bach1968
1 year, 4 months ago
Selected Answer: C
in the "Do" phase of the PDCA model, option C is performed, which focuses on the implementation of business continuity policies, controls, processes, and procedures.
upvoted 1 times
...
KelvinYau
1 year, 5 months ago
Selected Answer: C
C is correct
upvoted 1 times
...
RVoigt
1 year, 10 months ago
Selected Answer: C
Look at the verbs: Plan - Established DO - IMPLEMENTED Act - Maintain and improve Check - Monitor and review
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...