Courseiva
Operations and Support →mediumMultiple Select

CV0-004 Operations and Support Practice Question

A cloud operations team is preparing for a disaster recovery drill for a multi-tier application. Which TWO activities are essential for verifying the effectiveness of the DR plan? (Select TWO.)

⚠ Common exam trap

The trap is choosing documentation or audit activities (incident response review, asset inventory, security audit) that support DR governance but do not actually verify recovery effectiveness.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Verify the RTO and RPO are achieved

Option A is correct because the Recovery Time Objective (RTO) and Recovery Point Objective (RPO) are the measurable targets that define how quickly and how much data the DR plan must restore, so verifying they are actually achieved during the drill is the core proof that the plan meets business requirements. Option D is correct because a failover test to the DR site exercises the real recovery procedures—bringing up the standby environment, redirecting traffic, and validating application functionality—which is the only way to confirm the plan works end to end rather than just on paper. The remaining options, while valuable in other contexts, are not essential DR effectiveness checks: reviewing the incident response plan (B) addresses incident handling rather than recovery validation, updating the asset inventory (C) is a documentation/hygiene task, and conducting a security audit (E) assesses security controls, not recovery capability.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✓

    Verify the RTO and RPO are achieved

    Why this is correct

    Verifying RTO and RPO confirms the DR plan meets its defined recovery targets, directly satisfying the drill's purpose of validating effectiveness. RTO measures restoration time; RPO measures tolerable data loss. Achieving both proves the failover actually works within business constraints, rather than merely documenting procedures that may fail under real conditions.

  • ✗

    Review the incident response plan

    Why it's wrong here

    Reviewing the incident response plan is a documentation exercise covering detection and escalation, not a test of recovery procedures, RTO or RPO. It is tempting because incident response and disaster recovery are adjacent disciplines, but plan review suits preparing responders, whereas a drill must execute failover and restoration.

  • ✗

    Update the asset inventory

    Why it's wrong here

    Updating the asset inventory records what exists; it validates no recovery step, failover or data integrity. It is tempting because accurate inventories underpin DR planning, but that is a prerequisite task, whereas the drill must actually invoke recovery of the multi-tier application and confirm results.

  • ✓

    Perform a failover test to the DR site

    Why this is correct

    A failover test to the DR site directly validates that workloads can actually run there, satisfying the drill's requirement to verify DR effectiveness rather than merely document it. It exercises replication integrity, DNS cutover, dependency availability and recovery time objectives under realistic conditions, exposing gaps that tabletop reviews cannot detect.

  • ✗

    Conduct a security audit

    Why it's wrong here

    A security audit examines controls, access and compliance posture; it does not exercise failover, data restoration or recovery time objectives. It is tempting because audits are routine cloud governance activities, but they would be correct when validating security baselines, not when proving a DR plan actually restores service.

About these practice questions

This CV0-004 question is part of Courseiva's 834-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written and reviewed by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

Last reviewed September 2026 · checked against the official CompTIA exam blueprint

This CV0-004 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CV0-004 exam.