Tabletop exercises

3.3 Explain disaster recovery (DR) concepts

Testing

📘CompTIA Security+ (SY0-701)


What is a Tabletop Exercise?

A tabletop exercise is a discussion-based testing method used in disaster recovery.

  • It’s not a live test—no actual systems are taken offline.
  • The goal is to walk through DR plans and procedures using a simulated scenario.
  • Teams gather, usually around a table, and talk through what they would do if a disaster occurred.

In short: it’s a practice session to check understanding and coordination.


Purpose of Tabletop Exercises

  1. Validate DR plans: Ensures the disaster recovery plan is complete and makes sense.
  2. Identify gaps: Reveals missing steps, unclear instructions, or overlooked risks.
  3. Improve coordination: Helps IT staff and other teams understand their roles during an incident.
  4. Test decision-making: Allows managers and staff to discuss responses to different disaster scenarios without risking systems.

How Tabletop Exercises Work

  1. Prepare a Scenario:
    • Example: “Our main file server is unavailable due to a ransomware attack.”
    • The scenario should be realistic and relevant to your IT environment.
  2. Assemble the Team:
    • Include all people who would be involved in DR: IT staff, network admins, management, support teams, etc.
  3. Walk Through the Plan:
    • Step by step, discuss what each person should do.
    • Example steps could include:
      • Identifying the problem (server down, network outage).
      • Executing failover to backup systems.
      • Notifying relevant stakeholders.
      • Documenting the process.
  4. Identify Issues and Solutions:
    • As the team discusses, they note what worked, what didn’t, and what could be improved.
  5. Document Findings:
    • The results of the tabletop exercise should be recorded.
    • Any weak points or missing resources are corrected before a real disaster occurs.

Benefits of Tabletop Exercises

  • Safe practice: No live systems are affected.
  • Cost-effective: Only requires staff time, not hardware or software changes.
  • Improves communication: Everyone knows their role during an actual disaster.
  • Prepares for real emergencies: Teams are more confident and efficient if a real disaster happens.

Key Points to Remember for the Exam

  • Tabletop exercises are discussion-based, not hands-on.
  • They simulate disaster scenarios to test the DR plan.
  • Teams review roles, responsibilities, and processes.
  • Focus is on identifying gaps and improving DR readiness.
  • Documentation after the exercise is essential.

Example Exam Scenario

During a tabletop exercise, the IT team discusses a scenario where the company’s database server is offline. Which of the following is the primary goal of this exercise?
A. Restore the server immediately
B. Test the effectiveness of the DR plan and team coordination
C. Upgrade the server software
D. Perform live failover

Answer: B. Test the effectiveness of the DR plan and team coordination


Tabletop exercises are a critical part of DR testing, and understanding them is essential for the CompTIA Network+ exam. They prepare teams for real disasters without risking actual systems, making them a safe and valuable practice tool.

Leave a Reply

Your email address will not be published. Required fields are marked *

Buy Me a Coffee