medium · Frm Part 2 Operational Risk

A global investment bank defines its recovery time objective (RTO) for a critical payment-clearing process as 4 hours. During a cyber stress testing exercise involving a destructive malware scenario, the technical team identifies that while data can be restored from the last immutable backup within 3 hours, the subsequent integrity validation of the database requires an additional 2 hours.

Which of the following statements best describes the resilience posture of this process?

  1. The process is non-resilient because the recovery time exceeds the impact tolerance.
  2. The process is resilient because the data restoration component meets the RTO threshold.
  3. The process is resilient because RPO logic ensures no data is lost during the 5-hour window.
  4. The process is non-resilient because the recovery point objective has been breached by the validation delay.

Sign up free to see the explanation and track your rank →

More Frm Part 2 Operational Risk practice

KomFi Academy — Stop doomscrolling. Get KomFi.

Build your intelligence, anytime, anywhere.

KomFi Academy is a curated training platform with 48,000+ practice questions, 20,000+ flashcards, on-demand video lectures, podcasts, and 4K slide decks across the topics serious professionals study: GMAT, LSAT, MCAT, Investment Banking, Private Equity (LBOs & PE math), Private Credit, Quantitative Finance, Financial Accounting, Asset- Backed Securities, Volume Profile Analysis, Order Flow Trading, Market Microstructure, Volume Spread Analysis, Elliott Wave Theory, Volume-Price Analysis, and Public Offering Frameworks.

What's inside

Topics

View pricing · Read testimonials