SlideShare une entreprise Scribd logo
1  sur  30
Business Continuity Planning Project “Kick-off Meeting” September 15, 2010 Robert T. Warren, Technical Risk Services, Inc. Paul Cleary, Horn IT Solutions, Inc.
Objectives of Today’s Meeting Discuss the importance of business continuity planning Provide an overview of the business continuity planning process Discuss project plan including composition of working groups
Business Continuity Planning Definitions: Emergency Plan – what to do when it hits the fan Disaster Recovery Plan – what to do to get it back to normal Crisis Management Plan – what to tell people Business Continuity Plan – what to do in the meantime
Business Continuity Planning
Business Continuity Planning “A business continuity plan should be an essential element of any business strategy… I cannot think of any reason not to be prepared, but 60 billion reasons why we should.” Perrin Beatty, President & CEO, CME
Reasons to Plan ,[object Object]
Protect your livelihood
Legal obligations
Fulfill essential services
Stakeholder obligations
Satisfy financial partners
Reputation
Meet increased demand,[object Object]
Understanding the Risks
Risks Associated with People
Risks Associated with Weather
Risks Associated with Outside Forces
Understanding YOUR Risks What risks are you most vulnerable to?
Understanding YOUR Risks Consider: The location of your operations. Nature of your business activities. Likelihood of an event occurring.  Severity of the consequences.
Business Impact Analysis Identify Business Processes: If you lose this process… What is the impact to the organization? What is the tolerable downtime?
Identify Critical Business Processes Business Impact Analysis Criteria: Customer Service Legal Obligations Revenue  Expenses  Stakeholders Reputation
Identify Resources Required to Maintain Critical Processes Documentation Human resources Equipment Facilities Supplies IT and communications infrastructure Applications Transportation
Strategies for Business Recovery How do wetemporarily replace the necessary resources… In the most efficient manner, and Within the tolerable recovery timeframe
Disaster Avoidance Strategies Some examples… Backup and recovery strategies Off-site storage Fire suppression Physical security Network security Information life-cycle management – know what information is important and where it is Equipment life-cycle management – service contracts, warranties, service level agreements Redundancy - elimination of single points of failure
Notification Strategies Establish BCP Team and emergency communications such as… Public broadcasters/Emergency broadcasters Phone trees Emails Blackberry PIN messages Text messages Web site postings Employee polling/roll call Notification Services (e.g. Message One)
Communication and Collaboration Strategies Contact lists Cell phones VoIP – voice over IP Telecommuting/VPN remote access Laptop policy – home every night On-line collaborative tools (e.g. Sharepoint) Instant Messenger Video conferencing
Human Capital Continuity Strategies Cross training Mutual aid Contractors Temp agencies Outsourcing Employment policies – sick leave, on-call
Equipment Continuity Strategies Inventory lists – know what you need Warranties, service guarantees, and service level agreements Equipment sparing/caching Clustering Virtualization
Facility Continuity Strategies Temporary facilities Mutual aid Geographic diversity

Contenu connexe

Tendances

Business continuity & Disaster recovery planing
Business continuity & Disaster recovery planingBusiness continuity & Disaster recovery planing
Business continuity & Disaster recovery planingHanaysha
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity ManagementECC International
 
What’s & Why’s of Business Continuity Planning (BCP)
What’s & Why’s of Business Continuity Planning (BCP) What’s & Why’s of Business Continuity Planning (BCP)
What’s & Why’s of Business Continuity Planning (BCP) CBIZ, Inc.
 
Disaster Recovery Plan / Enterprise Continuity Plan
Disaster Recovery Plan / Enterprise Continuity PlanDisaster Recovery Plan / Enterprise Continuity Plan
Disaster Recovery Plan / Enterprise Continuity PlanMarcelo Silva
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity PlanningBharath Rao
 
IT-Centric Disaster Recovery & Business Continuity
IT-Centric Disaster Recovery & Business ContinuityIT-Centric Disaster Recovery & Business Continuity
IT-Centric Disaster Recovery & Business ContinuitySteve Susina
 
Disaster Recovery Plan for IT
Disaster Recovery Plan for ITDisaster Recovery Plan for IT
Disaster Recovery Plan for IThhuihhui
 
Business Continuity Planning Presentation Overview
Business Continuity Planning Presentation OverviewBusiness Continuity Planning Presentation Overview
Business Continuity Planning Presentation OverviewBob Winkler
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity PlanningDipankar Ghosh
 
Business Impact Analysis - The Most Important Step during BCMS Implementation
Business Impact Analysis - The Most Important Step during BCMS ImplementationBusiness Impact Analysis - The Most Important Step during BCMS Implementation
Business Impact Analysis - The Most Important Step during BCMS ImplementationPECB
 
Developing and Managing Business Continuity Plan (BCP)
Developing and Managing Business Continuity Plan (BCP)Developing and Managing Business Continuity Plan (BCP)
Developing and Managing Business Continuity Plan (BCP)Goutama Bachtiar
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity PlanningJohn Wilson
 
Disaster Recovery Planning PowerPoint Presentation Slides
Disaster Recovery Planning PowerPoint Presentation SlidesDisaster Recovery Planning PowerPoint Presentation Slides
Disaster Recovery Planning PowerPoint Presentation SlidesSlideTeam
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity ManagementDiane Christina
 
Business continuity planning and disaster recovery
Business continuity planning and disaster recoveryBusiness continuity planning and disaster recovery
Business continuity planning and disaster recoveryKrutiShah114
 
Business continuity planning and disaster recovery
Business continuity planning and disaster recoveryBusiness continuity planning and disaster recovery
Business continuity planning and disaster recoverymadunix
 
Disaster Recovery Planning
Disaster Recovery PlanningDisaster Recovery Planning
Disaster Recovery PlanningJohn Wilson
 
Business Impact and Risk Assessments in Business Continuity and Disaster Reco...
Business Impact and Risk Assessments in Business Continuity and Disaster Reco...Business Impact and Risk Assessments in Business Continuity and Disaster Reco...
Business Impact and Risk Assessments in Business Continuity and Disaster Reco...Rochester Security Summit
 

Tendances (20)

Business continuity & Disaster recovery planing
Business continuity & Disaster recovery planingBusiness continuity & Disaster recovery planing
Business continuity & Disaster recovery planing
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity Management
 
What’s & Why’s of Business Continuity Planning (BCP)
What’s & Why’s of Business Continuity Planning (BCP) What’s & Why’s of Business Continuity Planning (BCP)
What’s & Why’s of Business Continuity Planning (BCP)
 
Disaster Recovery Plan / Enterprise Continuity Plan
Disaster Recovery Plan / Enterprise Continuity PlanDisaster Recovery Plan / Enterprise Continuity Plan
Disaster Recovery Plan / Enterprise Continuity Plan
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity Planning
 
IT-Centric Disaster Recovery & Business Continuity
IT-Centric Disaster Recovery & Business ContinuityIT-Centric Disaster Recovery & Business Continuity
IT-Centric Disaster Recovery & Business Continuity
 
Disaster Recovery Plan for IT
Disaster Recovery Plan for ITDisaster Recovery Plan for IT
Disaster Recovery Plan for IT
 
BCP Awareness
BCP Awareness BCP Awareness
BCP Awareness
 
Business Continuity Planning Presentation Overview
Business Continuity Planning Presentation OverviewBusiness Continuity Planning Presentation Overview
Business Continuity Planning Presentation Overview
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity Planning
 
Business Impact Analysis - The Most Important Step during BCMS Implementation
Business Impact Analysis - The Most Important Step during BCMS ImplementationBusiness Impact Analysis - The Most Important Step during BCMS Implementation
Business Impact Analysis - The Most Important Step during BCMS Implementation
 
Introduction to Business Continuity Management
Introduction to Business Continuity ManagementIntroduction to Business Continuity Management
Introduction to Business Continuity Management
 
Developing and Managing Business Continuity Plan (BCP)
Developing and Managing Business Continuity Plan (BCP)Developing and Managing Business Continuity Plan (BCP)
Developing and Managing Business Continuity Plan (BCP)
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity Planning
 
Disaster Recovery Planning PowerPoint Presentation Slides
Disaster Recovery Planning PowerPoint Presentation SlidesDisaster Recovery Planning PowerPoint Presentation Slides
Disaster Recovery Planning PowerPoint Presentation Slides
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity Management
 
Business continuity planning and disaster recovery
Business continuity planning and disaster recoveryBusiness continuity planning and disaster recovery
Business continuity planning and disaster recovery
 
Business continuity planning and disaster recovery
Business continuity planning and disaster recoveryBusiness continuity planning and disaster recovery
Business continuity planning and disaster recovery
 
Disaster Recovery Planning
Disaster Recovery PlanningDisaster Recovery Planning
Disaster Recovery Planning
 
Business Impact and Risk Assessments in Business Continuity and Disaster Reco...
Business Impact and Risk Assessments in Business Continuity and Disaster Reco...Business Impact and Risk Assessments in Business Continuity and Disaster Reco...
Business Impact and Risk Assessments in Business Continuity and Disaster Reco...
 

Similaire à Business Continuity Planning

David Horner Concept To Market
David Horner Concept To Market David Horner Concept To Market
David Horner Concept To Market webhostingguy
 
How to Manage a Data Breach Involving Multiple Covered Entity Clients
How to Manage a Data Breach Involving Multiple Covered Entity ClientsHow to Manage a Data Breach Involving Multiple Covered Entity Clients
How to Manage a Data Breach Involving Multiple Covered Entity ClientsID Experts
 
TCG Svcs Pres 2011
TCG Svcs Pres 2011TCG Svcs Pres 2011
TCG Svcs Pres 2011mcourton
 
Achieving Enterprise Resiliency and Corporate Certification
Achieving Enterprise Resiliency and Corporate CertificationAchieving Enterprise Resiliency and Corporate Certification
Achieving Enterprise Resiliency and Corporate CertificationThomas Bronack
 
QI Security Framework_v2007_7
QI Security Framework_v2007_7QI Security Framework_v2007_7
QI Security Framework_v2007_7Hong Sin Kwek
 
Business Continuity Planning During and After the Coronavirus (COVID-19) Pand...
Business Continuity Planning During and After the Coronavirus (COVID-19) Pand...Business Continuity Planning During and After the Coronavirus (COVID-19) Pand...
Business Continuity Planning During and After the Coronavirus (COVID-19) Pand...PECB
 
Planning For Long-Term Success Of A Business
Planning For Long-Term Success Of A BusinessPlanning For Long-Term Success Of A Business
Planning For Long-Term Success Of A BusinessLiz Sims
 
Business Continuity Overview
Business Continuity OverviewBusiness Continuity Overview
Business Continuity OverviewPatrick Cowan
 
Business Continuity and Disaster Recover Week3Part4-ISr.docx
Business Continuity and Disaster Recover  Week3Part4-ISr.docxBusiness Continuity and Disaster Recover  Week3Part4-ISr.docx
Business Continuity and Disaster Recover Week3Part4-ISr.docxhumphrieskalyn
 
Business continuity & disaster recovery
Business continuity & disaster recoveryBusiness continuity & disaster recovery
Business continuity & disaster recoveryGeorge Coutsoumbidis
 
[Webinar Slides] Data Privacy for the IM Practitioner - Practical Advice for ...
[Webinar Slides] Data Privacy for the IM Practitioner - Practical Advice for ...[Webinar Slides] Data Privacy for the IM Practitioner - Practical Advice for ...
[Webinar Slides] Data Privacy for the IM Practitioner - Practical Advice for ...AIIM International
 
Exec Presentation on Achieving Enterprise Resiliency and Corporate Certification
Exec Presentation on Achieving Enterprise Resiliency and Corporate CertificationExec Presentation on Achieving Enterprise Resiliency and Corporate Certification
Exec Presentation on Achieving Enterprise Resiliency and Corporate CertificationThomas Bronack
 
Impact on profession and preparation for tomorrow cs ca nirc_22_nov[1]
Impact on profession and preparation for tomorrow cs ca nirc_22_nov[1]Impact on profession and preparation for tomorrow cs ca nirc_22_nov[1]
Impact on profession and preparation for tomorrow cs ca nirc_22_nov[1]Pavan Kumar Vijay
 

Similaire à Business Continuity Planning (20)

David Horner Concept To Market
David Horner Concept To Market David Horner Concept To Market
David Horner Concept To Market
 
How to Manage a Data Breach Involving Multiple Covered Entity Clients
How to Manage a Data Breach Involving Multiple Covered Entity ClientsHow to Manage a Data Breach Involving Multiple Covered Entity Clients
How to Manage a Data Breach Involving Multiple Covered Entity Clients
 
Chris Gould - BCM case
Chris Gould - BCM caseChris Gould - BCM case
Chris Gould - BCM case
 
KMA Insights Webinar July 2009 -- Compliance with MA Privacy Law
KMA Insights Webinar July 2009 -- Compliance with MA Privacy LawKMA Insights Webinar July 2009 -- Compliance with MA Privacy Law
KMA Insights Webinar July 2009 -- Compliance with MA Privacy Law
 
TCG Svcs Pres 2011
TCG Svcs Pres 2011TCG Svcs Pres 2011
TCG Svcs Pres 2011
 
The Practice Management Seminar
The Practice Management SeminarThe Practice Management Seminar
The Practice Management Seminar
 
Achieving Enterprise Resiliency and Corporate Certification
Achieving Enterprise Resiliency and Corporate CertificationAchieving Enterprise Resiliency and Corporate Certification
Achieving Enterprise Resiliency and Corporate Certification
 
QI Security Framework_v2007_7
QI Security Framework_v2007_7QI Security Framework_v2007_7
QI Security Framework_v2007_7
 
Business Continuity Planning During and After the Coronavirus (COVID-19) Pand...
Business Continuity Planning During and After the Coronavirus (COVID-19) Pand...Business Continuity Planning During and After the Coronavirus (COVID-19) Pand...
Business Continuity Planning During and After the Coronavirus (COVID-19) Pand...
 
Planning For Long-Term Success Of A Business
Planning For Long-Term Success Of A BusinessPlanning For Long-Term Success Of A Business
Planning For Long-Term Success Of A Business
 
The Cost of Downtime
The Cost of DowntimeThe Cost of Downtime
The Cost of Downtime
 
The Cost of Downtime
The Cost of DowntimeThe Cost of Downtime
The Cost of Downtime
 
Business Continuity Overview
Business Continuity OverviewBusiness Continuity Overview
Business Continuity Overview
 
Disaster recovery enw
Disaster recovery enwDisaster recovery enw
Disaster recovery enw
 
Business Continuity and Disaster Recover Week3Part4-ISr.docx
Business Continuity and Disaster Recover  Week3Part4-ISr.docxBusiness Continuity and Disaster Recover  Week3Part4-ISr.docx
Business Continuity and Disaster Recover Week3Part4-ISr.docx
 
Business continuity & disaster recovery
Business continuity & disaster recoveryBusiness continuity & disaster recovery
Business continuity & disaster recovery
 
[Webinar Slides] Data Privacy for the IM Practitioner - Practical Advice for ...
[Webinar Slides] Data Privacy for the IM Practitioner - Practical Advice for ...[Webinar Slides] Data Privacy for the IM Practitioner - Practical Advice for ...
[Webinar Slides] Data Privacy for the IM Practitioner - Practical Advice for ...
 
outsourcing
outsourcingoutsourcing
outsourcing
 
Exec Presentation on Achieving Enterprise Resiliency and Corporate Certification
Exec Presentation on Achieving Enterprise Resiliency and Corporate CertificationExec Presentation on Achieving Enterprise Resiliency and Corporate Certification
Exec Presentation on Achieving Enterprise Resiliency and Corporate Certification
 
Impact on profession and preparation for tomorrow cs ca nirc_22_nov[1]
Impact on profession and preparation for tomorrow cs ca nirc_22_nov[1]Impact on profession and preparation for tomorrow cs ca nirc_22_nov[1]
Impact on profession and preparation for tomorrow cs ca nirc_22_nov[1]
 

Business Continuity Planning

  • 1. Business Continuity Planning Project “Kick-off Meeting” September 15, 2010 Robert T. Warren, Technical Risk Services, Inc. Paul Cleary, Horn IT Solutions, Inc.
  • 2. Objectives of Today’s Meeting Discuss the importance of business continuity planning Provide an overview of the business continuity planning process Discuss project plan including composition of working groups
  • 3. Business Continuity Planning Definitions: Emergency Plan – what to do when it hits the fan Disaster Recovery Plan – what to do to get it back to normal Crisis Management Plan – what to tell people Business Continuity Plan – what to do in the meantime
  • 5. Business Continuity Planning “A business continuity plan should be an essential element of any business strategy… I cannot think of any reason not to be prepared, but 60 billion reasons why we should.” Perrin Beatty, President & CEO, CME
  • 6.
  • 13.
  • 17. Risks Associated with Outside Forces
  • 18. Understanding YOUR Risks What risks are you most vulnerable to?
  • 19. Understanding YOUR Risks Consider: The location of your operations. Nature of your business activities. Likelihood of an event occurring. Severity of the consequences.
  • 20. Business Impact Analysis Identify Business Processes: If you lose this process… What is the impact to the organization? What is the tolerable downtime?
  • 21.
  • 22. Identify Critical Business Processes Business Impact Analysis Criteria: Customer Service Legal Obligations Revenue Expenses Stakeholders Reputation
  • 23. Identify Resources Required to Maintain Critical Processes Documentation Human resources Equipment Facilities Supplies IT and communications infrastructure Applications Transportation
  • 24. Strategies for Business Recovery How do wetemporarily replace the necessary resources… In the most efficient manner, and Within the tolerable recovery timeframe
  • 25. Disaster Avoidance Strategies Some examples… Backup and recovery strategies Off-site storage Fire suppression Physical security Network security Information life-cycle management – know what information is important and where it is Equipment life-cycle management – service contracts, warranties, service level agreements Redundancy - elimination of single points of failure
  • 26. Notification Strategies Establish BCP Team and emergency communications such as… Public broadcasters/Emergency broadcasters Phone trees Emails Blackberry PIN messages Text messages Web site postings Employee polling/roll call Notification Services (e.g. Message One)
  • 27. Communication and Collaboration Strategies Contact lists Cell phones VoIP – voice over IP Telecommuting/VPN remote access Laptop policy – home every night On-line collaborative tools (e.g. Sharepoint) Instant Messenger Video conferencing
  • 28. Human Capital Continuity Strategies Cross training Mutual aid Contractors Temp agencies Outsourcing Employment policies – sick leave, on-call
  • 29. Equipment Continuity Strategies Inventory lists – know what you need Warranties, service guarantees, and service level agreements Equipment sparing/caching Clustering Virtualization
  • 30. Facility Continuity Strategies Temporary facilities Mutual aid Geographic diversity
  • 31. Application Continuity Strategies Backup and recovery Off-site storage Co-location Data synchronization Redundancy – clustering Virtualization Monitoring Geographic diversity Outsourcing
  • 32. Records Continuity Strategies Life-cycle management Off-site storage Electronic storage On-line access Version control
  • 33. Writing the Plan Have a Program not a Plan Use a collaboration tool Make it accessible in times of emergency Consider using BCP software
  • 34. Maintaining and Testing the Plan Bake the maintenance of the plan into your other business processes Set up a routine testing cycle Vary the types of testing you do – desktop reviews to full scenario simulations Use resources from outside your organization
  • 35. Next Steps: Develop Project Plan Select participants for each stage of the project. Establish project timelines. Schedule the working group sessions.