From the course: CISSP Cert Prep (2021): 6 Security Assessment and Testing

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

After action reports

After action reports

From the course: CISSP Cert Prep (2021): 6 Security Assessment and Testing

Start my 1-month free trial

After action reports

- [Instructor] After every use of the disaster recovery or business continuity plans, organizations should conduct a formal review of the event and document it in an after action report. The purpose of this after action report is to create a formal record of the incident that documents the circumstances surrounding the event and identifies opportunities for future improvement. These reports are important part of the business continuity and disaster recovery processes because they facilitate the recognition of lessons learned and allow the organization to continuously improve its processes. After action reports should be written after every activation of the business continuity and disaster recovery plans. Some organizations only conduct a lessons learned review in the wake of a failure, but there are always important findings to capture about what went well and where the organization might improve, even after a successful…

Contents