Recovery Time Objective (RTO) and Recovery Point Objective (RPO)-Point to Remember





Point to remember for CISA Exam-RTO & RPO

(1) RTO of 2 hours indicates that organization needs to ensure that their system downtime should not exceed 2 hours.

(2) RPO of 2 hours indicates that organization needs to ensure that their data loss should not exceed 2 hours of data captured.

(3)In any given scenario, for critical systems, RTO is zero or near zero. Similarly, for critical data, RPO is zero or near zero.

(4)In any given scenario, lower the RTO/RPO, higher the cost of maintenance of environment.

(5)In any given scenario, low RTO/RPO indicates that disaster tolerance is low. Other way round, if disaster tolerance is low, RTO/RPO should be low.



(6)In any given scenario, when RTO is low, mirrored site or hot site is recommended.

(7)In any given scenario, when RPO is low, mirror imaging or real time replication for data back-up is recommended.

(8)In any given scenario, where RPO is zero, synchronous data backup strategy to be used.

(9)Both RTO & RPO are based on time parameters. The lower the time requirements, the higher the cost of recovery strategies.