business continuity planning

30
Business Continuity Planning Project “Kick-off Meeting” September 15, 2010 Robert T. Warren, Technical Risk Services, Inc. Paul Cleary, Horn IT Solutions, Inc.

Upload: gcleary

Post on 26-May-2015

547 views

Category:

Documents


1 download

DESCRIPTION

Importance of Business Continuity Planning

TRANSCRIPT

Page 1: Business Continuity Planning

Business Continuity Planning Project

“Kick-off Meeting”

September 15, 2010

Robert T. Warren, Technical Risk Services, Inc.

Paul Cleary, Horn IT Solutions, Inc.

Page 2: Business Continuity Planning

Objectives of Today’s Meeting

• Discuss the importance of business continuity planning

• Provide an overview of the business continuity planning process

• Discuss project plan including composition of working groups

Page 3: Business Continuity Planning

Business Continuity Planning

Definitions:Emergency Plan – what to do when it hits the

fanDisaster Recovery Plan – what to do to get it

back to normalCrisis Management Plan – what to tell peopleBusiness Continuity Plan – what to do in the

meantime

Page 4: Business Continuity Planning

Business Continuity Planning

Page 5: Business Continuity Planning

Business Continuity Planning

“A business continuity plan should be an essential element of any business strategy… I cannot think of any reason not to be prepared, but 60 billion reasons why we should.”

Perrin Beatty, President & CEO, CME

Page 6: Business Continuity Planning

Reasons to Plan• Protect your investment

• Protect your livelihood

• Legal obligations

• Fulfill essential services

• Stakeholder obligations

• Satisfy financial partners

• Reputation

• Meet increased demand

Page 7: Business Continuity Planning

Business Continuity Planning

Page 8: Business Continuity Planning

Understanding the Risks

Page 9: Business Continuity Planning

Risks Associated with People

Page 10: Business Continuity Planning

Risks Associated with Weather

Page 11: Business Continuity Planning

Risks Associated with Outside Forces

Page 12: Business Continuity Planning

Understanding YOUR Risks

What risks are you most vulnerable to?

Page 13: Business Continuity Planning

Understanding YOUR Risks

Consider:

• The location of your operations.• Nature of your business activities.• Likelihood of an event occurring. • Severity of the consequences.

Page 14: Business Continuity Planning

Business Impact Analysis

Identify Business Processes:

If you lose this process…

• What is the impact to the organization?

• What is the tolerable downtime?

Page 15: Business Continuity Planning
Page 16: Business Continuity Planning

Identify Critical Business Processes

Business Impact Analysis Criteria:

• Customer Service• Legal Obligations• Revenue • Expenses • Stakeholders• Reputation

Page 17: Business Continuity Planning

Identify Resources Required to Maintain Critical

Processes• Documentation• Human resources• Equipment• Facilities• Supplies• IT and communications infrastructure• Applications• Transportation

Page 18: Business Continuity Planning

Strategies for Business Recovery

How do we temporarily replace the necessary resources…

• In the most efficient manner, and

• Within the tolerable recovery timeframe

Page 19: Business Continuity Planning

Disaster Avoidance Strategies

Some examples…

• Backup and recovery strategies• Off-site storage• Fire suppression• Physical security• Network security• Information life-cycle management – know what

information is important and where it is• Equipment life-cycle management – service contracts,

warranties, service level agreements• Redundancy - elimination of single points of failure

Page 20: Business Continuity Planning

Notification Strategies

Establish BCP Team and emergency communications such as…

• Public broadcasters/Emergency broadcasters• Phone trees• Emails• Blackberry PIN messages• Text messages• Web site postings• Employee polling/roll call• Notification Services (e.g. Message One)

Page 21: Business Continuity Planning

Communication and Collaboration Strategies

• Contact lists• Cell phones• VoIP – voice over IP• Telecommuting/VPN remote access• Laptop policy – home every night• On-line collaborative tools (e.g. Sharepoint)• Instant Messenger• Video conferencing

Page 22: Business Continuity Planning

Human Capital Continuity Strategies

• Cross training• Mutual aid• Contractors• Temp agencies• Outsourcing• Employment policies – sick leave, on-

call

Page 23: Business Continuity Planning

Equipment Continuity Strategies

• Inventory lists – know what you need• Warranties, service guarantees, and

service level agreements• Equipment sparing/caching• Clustering• Virtualization

Page 24: Business Continuity Planning

Facility Continuity Strategies

• Temporary facilities

• Mutual aid

• Geographic diversity

Page 25: Business Continuity Planning

Application Continuity Strategies

• Backup and recovery• Off-site storage• Co-location• Data synchronization• Redundancy – clustering• Virtualization• Monitoring• Geographic diversity• Outsourcing

Page 26: Business Continuity Planning

Records Continuity Strategies

• Life-cycle management• Off-site storage• Electronic storage • On-line access• Version control

Page 27: Business Continuity Planning

Writing the Plan

• Have a Program not a Plan• Use a collaboration tool• Make it accessible in times of

emergency• Consider using BCP software

Page 28: Business Continuity Planning

Maintaining and Testing the Plan

• Bake the maintenance of the plan into your other business processes

• Set up a routine testing cycle• Vary the types of testing you do –

desktop reviews to full scenario simulations

• Use resources from outside your organization

Page 29: Business Continuity Planning

Next Steps: Develop Project Plan

• Select participants for each stage of the project.

• Establish project timelines.

• Schedule the working group sessions.

Page 30: Business Continuity Planning

Thank you!