The correct answer is D. Recovery point objective (RPO) because the issue is related to data loss or data inconsistency after recovery, not simply the time taken to restore the database. RPO defines the point in time to which data must be recoverable after an outage or disruption. In practical terms, it answers: “How much data can the business afford to lose?” ISACA’s contingency planning guidance explains that RPO represents the point in time prior to disruption to which business data can be recovered using the most recent backup, and it is directly related to the amount of data loss the business can tolerate.
The organization restored from the most recent available backup, but customers are reporting discrepancies. This suggests the backup/recovery strategy may not meet the organization’s acceptable data-loss requirement. For example, if the business can tolerate losing only 15 minutes of transactions but backups are taken every 24 hours, recovered customer data may be outdated or incomplete. That is an RPO failure.
Option A is not the best answer because an SLA defines agreed service expectations, but the immediate audit concern is whether the backup point met the required data recovery point. Option B is not the best answer because MTO, also commonly discussed as maximum tolerable downtime, relates to the maximum outage period the business can tolerate, not the point to which data must be restored. Option C is not the best answer because RTO focuses on how quickly a system must be restored, while this case is about the correctness and completeness of recovered data.
This question maps mainly to Information Systems Operations and Business Resilience, because ISACA’s CISA Exam Content Outline includes Database Management, Data Backup, Storage, and Restoration, Business Continuity Plan, and Disaster Recovery Plans under Domain 4.
[References: ISACA CISA Exam Content Outline, Domain 4; ISACA Journal, Information System Contingency Planning Guidance., ===================, ]