BUILDING A SECURITY CONSCIOUS BUSINESS CONTINUITY MANAGEMENT (BCM) PROGRAM
|
|
|
- Clifford John McDonald
- 10 years ago
- Views:
Transcription
1 BUILDING A SECURITY CONSCIOUS BUSINESS CONTINUITY MANAGEMENT (BCM) PROGRAM SAM STAHL, CBCP, MBCI EMC GLOBAL PROFESSIONAL SERVICES PROGRAM MANAGER [email protected] ASIS SHANGHAI,
2 AGENDA Overview Definitions ASIS Security Councils/Security Concerns Recovery Program Goals Considerations BCM Governance Program Teams Methodologies Recovery & Response Plans Exercises Measurements and Reporting Standard Documentation and Templates Questions to ask Next Steps 2
3 OVERVIEW Building a Security Conscious Business Continuity (BCM) Program This presentation illustrates how comprehensive BCM Programs can be developed to include security functions. Includes key elements of the ASIS Crisis Management and Business Continuity Council s annual Crisis Management Workshop which strives to illustrate the importance of security functions and organizations within recovery programs. 3
4 DEFINITIONS Recovery Program/Continuity Program/Crisis Management Program Governance Teams vs. Recovery Teams Disaster Recovery Business Continuity Crisis Management vs. Emergency Management vs. Incident Response Emergency Response Organizational Resilience Business Impact Analysis (BIA) Recovery Time Objective (RTO) Recovery Point Objective (RPO) SLAs, DOUs, Contracts & Regulations Hierarchical Criticality Categorizations 4
5 ASIS COUNCILS/SECURITY CONCERNS Academic and Training Programs Banking and Financial Services Commercial Real Estate Crime and Loss Prevention Crisis Management and Business Continuity Cultural Properties Defense and Intelligence Economic Crime Fire and Life Safety Food Defense and Agriculture Security Gaming and Wagering Protection Global Terrorism and Political Instability Healthcare Security Hospitality, Entertainment and Tourism Security Information Asset Protection and Pre-Employment Screening Information Technology Security Investigations Law Enforcement Liaison Leadership and Management Practices Military Liaison Petrochemical, Chemical, and Extractive Industry Security Pharmaceutical Security Physical Security Retail Loss Prevention School Safety and Security Security Architecture and Engineering Security Services Supply Chain and Transportation Security Utilities Security 5
6 RECOVERY PROGRAM GOALS Recovery Of Of Critical Functions & Assets & Infrastructure Sales/Marketing Manufacturing Shipping Communications HR Security Customers Legal Accounting Outside Resources Products, Services, & Communications Facilities Helpdesk Products, Services, & Communications R&D Payroll IT 6
7 RECOVERY & SECURITY CONSIDERATIONS Regulatory Local, State, Federal (Homeland Security, Financial regulations, Import/Export regulations, Etc.) Customer Contracts to perform at certain levels Guaranteed Sole provider Service Level Agreements Enterprise Risk Management Security Awareness Industry Trends Industry Conferences Security Organization s Business Local & Global Politics Disasters News BUSINESS PROCESSES Internal Meet BC/DR documented goals RTOs RPOs SLAs Audits APPLICATION INFRASTRUCTURE TECHNOLOGY INFRASTRUCTURE 7
8 BCM GOVERNANCE Governance Model Template Program Teams Recovery Program Goals Objectives Expectations Rules Regulations Standards Procedures Proposed Schedules Executive Steering Committee Program Management Office BC & DR Specialists Business Unit Teams IT/Asset Teams PLAN Business Impact Analysis, Risk Analysis, & Recovery Strategy Planning BUILD Develop the Business Continuity Management (BCM) Program MANAGE Conduct on-going BCM activities Critical Business Functions Recovery Point Objectives Critical Applications Recovery Time Objectives BCM Governance Emergency Response & Management Plan Recovery Strategy Disaster Recovery Plans Business Continuity Plans 8
9 GOVERNANCE RECOVERY PROGRAM TEAMS Governance Executive Steering Committee Program Management Office (PMO) High Level Oversight Program Delivery Recovery Specialists Business Continuity Disaster Recovery Etc. Day to Day Recovery Responsibilities Plan-Build-Maintain Assist the Plan Owners as needed Recovery Teams Executive Management CM Corporate Local Management CM Local/Geographical Business Units BC IT Organization DR Facilities Fire, Life, Safety Unique Recovery Teams responsible for the development and implementation of specific recovery plans 9
10 GOVERNANCE (CONT.) METHODOLOGY: ASIS/BSI BCM Plan (Establish the management system) Establish management system policy, objectives, processes, and procedures relevant to managing business continuity risks and improving response and recovery processes that deliver results in accordance with me organization s strategic needs. Do (Implement and operate the management system) Check (Monitor and review the management system) Implement and operate the management system policy, controls, processes, and procedures. Monitor, assess, measure, and review performance against management system policy, objectives, and practical experience; report the results to management for review; and determine and authorize actions for remediation and improvement. Act (Maintain and improve the management system) Take corrective and preventive actions, based on the results of tile internal management system audit and management review, re-appraising the scope of the BCMS and business continuity policy and objectives to achieve continual improvement of the management system. BSi: British Standards Institute 10
11 GOVERNANCE (CONT.) METHODOLOGY: DISASTER RECOVERY INSTITUTE INTERNATIONAL (DRII) According to the Disaster Recovery Institute International (DRII), a BC Program should contain the following areas: Program Initiation and Management Risk Evaluation and Control Business Impact analysis Business Continuity Strategies Emergency Response and Operations Business Continuity Plans Awareness and Training Programs Business Continuity Plan exercise, audit and maintenance Crisis Communications Coordination with external agencies 11
12 GOVERNANCE (CONT.) RECOVERY METHODOLOGY FLOW PLAN BUILD MANAGE Business Impact Analysis, Risk Analysis, & Recovery Strategy Planning Develop the Business Continuity Management (BCM) Program Conduct on-going BCM activities Critical Business Functions Critical Applications BCM Governance Recovery Point Objectives Recovery Time Objectives Emergency Response & Management Plan Recovery Strategy Disaster Recovery Plans Business Continuity Plans 12
13 GOVERNANCE (CONT.) Recovery & Response Plans Emergency Response Plans Incident Management Evacuation Plans Shelter in Place Intruder Alert Active Shooter, Etc. Emergency Management Organizational Emergency Management Geographical Business Continuity Business unit/ Location Disaster Recovery IT, critical resources Specialized plans for unique areas R&D Manufacturing, Etc. Emergency Response & Management Plan Evaluation Plans Disaster Recovery Plans Incident Management Plans Business Continuity Plans 13
14 GOVERNANCE (CONT.) RECOVERY AND RESPONSE PLANS Corporate EMT Team/Plan PROVIDES: Executive Guidance Executive Decisions Financial Support Internal/External communications Geographic Emergency Management Team Corporate Emergency Management Team This is usually the team that Declares a Disaster or Authorizes an Emergency Response Geographic EMT Team/Plan PROVIDES for Local management Guidance Decisions Financial Support Internal/communications Business Unit Business Continuity Team Geographic IT Asset Disaster Recovery Team People & Property Impacts Network & Infrastructure Impacts Business Unit Impacts People Buildings People People Buildings Technical Buildings Retail Stores Data Centers DR CTRs Comms Outages/Escalations for: Information Technology Network Services Data Distribution Data Replication Critical Business Processes Maintain Product and Services Delivery Maintain Billing Process Fund Bank Accounts/Pay Employees Manage Reputation and Brand Impact Manage Internal and External Communications 14
15 GOVERNANCE: EXERCISES YOU NEED TO KNOW THAT YOU CAN REALLY RECOVER! If you don t test, you don t really know if it works Training, conditioning, & improvement Business Continuity exercise the recovery of business functions Business processes usually ranked by importance Emergency response Crisis management Disaster Recovery exercise the recovery of assets All assets, not just IT Information technology, facilities, manufacturing, personnel, etc. Continuous Improvement Find & fix points of failure Operational Risks Identify Accept or mitigate 15
16 EXERCISES - WHO SHOULD PARTICIPATE Crisis Management Team Response Teams Business Unit Teams Other Teams/Agencies/Organizations Participation or due diligence Handicap employees Non-recovery team employees Police: Town, County, State, DOC, other Business Fire Hospitals Office of Emergency Management Military Other Support Teams, such as Facilities, HR, Finance, Corporate Communications Operations Technology Information Technology Support Teams Regulators FEMA Strategic Vendors Strategic Customers? Post Office Risk School officials Other private companies 16
17 EXERCISES Steps to a Successful Exercise Define the objectives Select and prepare the participants Promote the exercise Prepare the scenario and scripts Prepare the exercise timeline Prepare audiovisuals and handouts Plan the logistics Participate or Manage the exercise Conduct debriefings Write the evaluation report Security Assist Update Plans Update the Plans 17
18 EXAMPLE EXERCISE TRACKING CHART Organization/Area Exercised May 2015 West June 2015 National July 2015 East October 2015 Central Customer Operations CSI CI CSI s Distribution & Operations CSI C CSI -- ERM Fraud/Risk Control Operations C C C C Finance C C CSI CS Human Resources CSI -- CSI CSI Information Technology C -- C C Marketing C C C C Physical Security CS -- CS CS IT Security CS -- CS CS All Others C C CSI C Exercise Simulation Bio-terrorism ö -- ö ö Bombing ö ö ö ö Simulated Injuries ö ö ö ö Participation Regional/National Crisis Management Team Participation & support teams Business Continuity Teams Total Participation C = Crisis Management Team Participation S = Provided recovery support efforts or participation I = Resources were impacted by the exercise 18
19 STANDARD DOCUMENTATION/TEMPLATES Governance Model Program Tracking Mechanism Overview and detail Business Impact Analysis Process and Report Risk Analysis Process and Report Strategy Overview - How you will address Responding to a crisis and a recovery (Separate Plans) Managing the crisis and the recovery (Separate Plans) Continuity of Business Functions Recovery of IT and other critical assets and Infrastructure Training Technical and general/cultural awareness Recovery Plan templates One for each type of plan. These should all work together like a well oiled machine Exercises Processes, Scheduling, & Tracking Considerations from contracts, SLAs, and government regulations Glossary 19
20 RECOVERY AND RESPONSE PLANS CHECKLIST Who and what are behind the need for a recovery plan? (Customers, the government, industry rules?) What level of risk can the organization handle? Who is the organization s crisis leader? Do you have business level crisis management teams? Do they meet periodically? What organizations participate in crisis management? Do they utilize internal and external crisis communications plans? Are all the team members trained? Does your crisis management team maintain an up-to-date listing of all business sites, addresses, primary points of contact, etc.? Do you have a designated crisis management command center? 20
21 RECOVERY AND RESPONSE PLANS - CHECKLIST Are the crisis management command centers equipped, operationally and routinely tested? Does the organization have written and tested: Crisis management plan IT/Asset Recovery Plans Business Continuity Plans, etc.? Who is the organization s crisis leader? Do you have business level crisis management teams? Do they meet periodically? What organizations participate in crisis management? 21
22 BCM PROGRAM DRIVERS POCKET GUIDE Note: Depicts an overview of the BCM Program Drivers. Does not show decision points or iterative processes Business Process Owners BIA Questionnaire Risk Questionnaire A Business Continuity plans IDENTIFY & COMPARE: Business Continuity Business Impact Analysis (BIA) & Risk Analysis IMPACTS: Operational financial, Recovery Time & Point Objectives CRITICAL Business Functions & Applications Test, Update and Report on BC Plan Disaster Recovery Develop the Systems Applications mapping (S.A.M) Estimate Recovery Costs based on RTO/RPO Build & maintain DR Solution, Environment & DR Plans DR Plans Based on Recovery Tiers Test, Update and Report on DR Plan Recovery Capability Energy Response & Management Team A Emergency Response & Management Plan Test, Update and Report on ERMP Plan Business Continuity Management Program Strategic planning BCM Policy Statement & Strategy BC, DR, ERMP Planning Performance Assessment Management Review Continual Improvement 22
23 NEXT STEPS Ask the questions Research your organizations efforts in: Business Continuity Management Continuity of Operations Resiliency Crisis Management, Etc. Do your homework Strive to get involved Security Assist 23
24 QUESTIONS & ANSWERS Contact Sam Stahl, at Cellular:
25
26 BIOGRAPHY SAM STAHL, CBCP, MBCI Mr. Stahl is an experienced Certified Business Continuity Planner and has a Master Degree in Project Management. He has developed a number of Business Continuity and Disaster Recovery methodologies. His experience includes developing, implementing, and testing all phases of industry-accepted Business Continuity methodologies at organizations such as VMware, Sammons Financial Group, WellCare, IBM, Dial Corporation, AT&T Wireless, Denver International Airport, the City of Scottsdale (Arizona), Clark County Nevada (Las Vegas), Qwest Communications, Citizens Bank, First American National Bank, American Express, and others. 26
How To Plan A Crisis Management Program
Building a Security Conscious Business Continuity Management (BCM) Program Sam Stahl, CBCP, MBCI EMC Global Professional Services Program Manager [email protected] ASIS Singapore, 2014 Agenda Overview
Business Continuity and Risk Management. Ken Kaberia Principal BCM Officer, Enterprise Risk Safaricom Limited
Business Continuity and Risk Management Ken Kaberia Principal BCM Officer, Enterprise Risk Safaricom Limited What does Business Continuity mean? Business Continuity Management- Definition Business Continuity
Institute for Business Continuity Training 1623 Military Road, # 377 Niagara Falls, NY 14304-1745
ECP - 601: Effective Business Continuity Management: ISO 22301 This 3-day course provides an intensive, hands-on workshop covering all major aspects for the design of an effective Business Continuity Plan
www.pwc.com Business Resiliency Business Continuity Management - January 14, 2014
www.pwc.com Business Resiliency Business Continuity Management - January 14, 2014 Agenda Key Definitions Risks Business Continuity Management Program BCM Capability Assessment Process BCM Value Proposition
Evaluating and Improving Your Business Continuity Plan
Evaluating and Improving Your Business Continuity Plan As presented to the Northeast Florida IIA Chapter January 23, 2015 Contact Information Karen Weir, MAC, CISA, CBCP Manager [email protected]
Business Continuity and Disaster Recovery Policy
Maine State Government Dept. of Administrative & Financial Services Office of Information Technology (OIT) Business Continuity and Disaster Recovery Policy I. Statement The Office of Information Technology
Business Continuity for the New Professional. Britt Corra Enterprise BCM Erika Voss Senior BCM
Business Continuity for the New Professional Britt Corra Enterprise BCM Erika Voss Senior BCM New to Business Continuity? Agenda & Experience 3-5 years experience? Seasoned veteran? What is BCM Tool Kit?
BUSINESS CONTINUITY: BEST PRACTICE, 2ND EDITION
BUSINESS CONTINUITY: BEST PRACTICE, 2ND EDITION EXCERPT FROM THE FOREWORD TO THE 2ND EDITION The events of 9/11 have cast a long shadow over the world and led to a vital reappraisal of Enterprise Risk
2014 NABRICO Conference
Business Continuity Planning 2014 NABRICO Conference September 19, 2014 6 CityPlace Drive, Suite 900 St. Louis, Missouri 63141 314.983.1200 1520 S. Fifth Street, Suite 309 St. Charles, Missouri 63303 636.255.3000
Loss Control Webcast. Disaster Recovery Planning we re not in Kansas anymore
Loss Control Webcast Disaster Recovery Planning we re not in Kansas anymore May 15, 2013 1 The information presented in this material has been developed from sources believed to be reliable. It is presented
Company Management System. Business Continuity in SIA
Company Management System Business Continuity in SIA Document code: Classification: Company Project/Service Year Document No. Version Public INDEX 1. INTRODUCTION... 3 2. SIA S BUSINESS CONTINUITY MANAGEMENT
By. Mr. Chomnaphas Tangsook Business Director BSI Group ( Thailand) Co., Ltd
BS 25999 Business Continuity Management By. Mr. Chomnaphas Tangsook Business Director BSI Group ( Thailand) Co., Ltd 1 Contents slide BSI British Standards 2006 BS 25999(Business Continuity) 2002 BS 15000
Proposal for Business Continuity Plan and Management Review 6 August 2008
Proposal for Business Continuity Plan and Management Review 6 August 2008 2008/8/6 Contents About Newton IT / Quality of our services. BCM & BS25999 Overview 2. BCM Development in line with BS25999 3.
EXECUTIVE CRISIS MANAGEMENT TRAINING. Presented by Roseanne Rostron, CBCP Raido Response
EXECUTIVE CRISIS MANAGEMENT TRAINING Presented by Roseanne Rostron, CBCP Raido Response 1 Introduction Roseanne Rostron President Raido Response Over 12 years Crisis Management, Business Continuity, Disaster
Shankar Gawade VP IT INFRASTRUCTURE ENAM SECURITIES PVT. LTD.
Business Continuity Management & Disaster Recovery Planning Presented by: Shankar Gawade VP IT INFRASTRUCTURE ENAM SECURITIES PVT. LTD. 1 What is Business Continuity Management? Is a holistic management
RSA ARCHER BUSINESS CONTINUITY MANAGEMENT AND OPERATIONS Solution Brief
RSA ARCHER BUSINESS CONTINUITY MANAGEMENT AND OPERATIONS Solution Brief INTRODUCTION Now more than ever, organizations depend on services, business processes and technologies to generate revenue and meet
Business Continuity Standards A Primer
INTELLIGENT NOTIFICATION Alphabet Soup: Making Sense of BC/DR Standards Part 1: Business Continuity Standards A Primer Why all the attention now? One of the hottest topics in BC/DR these days is standards.
Business Continuity and Crisis Management
Business Continuity and Crisis Management Crisis Management, Business Continuity and The Incident Command System Understanding Differences and Putting it all together? by Max Ckonjevic FBCI, CBCP 1 Objectives
Tips and techniques a typical audit programme
Auditing Business Continuity Planning Tips and techniques a typical audit programme Karen Wills, Senior Internal Auditor St James s Place Wealth Management February 2014 Contents Background Roles and Responsibilities
Temple university. Auditing a business continuity management BCM. November, 2015
Temple university Auditing a business continuity management BCM November, 2015 Auditing BCM Agenda 1. Introduction 2. Definitions 3. Standards 4. BCM key elements IT Governance class - IT audit program
How to measure your business resiliency
How to measure your business resiliency Define the KPI s/kri s and scorecards to control your security and business continuity capabilities Krzysztof Pulkiewicz BCMLogic [email protected]
Business Continuity Management Systems. Protecting for tomorrow by building resilience today
Business Continuity Management Systems Protecting for tomorrow by building resilience today Vital statistics 31% 40% of UK businesses have been affected by bad weather related transport problems, power
BT Conferencing Business Continuity Management. Planning to stay in business
BT Conferencing Business Continuity Management Planning to stay in business Planning for the unexpected In today s connected world, businesses are increasingly dependent on their communications and networked
BCP and DR. P K Patel AGM, MoF
BCP and DR P K Patel AGM, MoF Key difference between BS 25999 and ISO 22301 ISO 22301 puts a much greater emphasis on setting the objectives, monitoring performance and metrics aligning BC to top management
UCF Office of Emergency Management. 2013-2018 Strategic Plan
UCF Office of Emergency Management 2013-2018 Strategic Plan Table of Contents I. Introduction... 2 Purpose... 2 Overview... 3 Mission... 5 Vision... 5 II. Mandates... 6 III. Accomplishments and Challenges...
Appendix 3 Disaster Recovery Plan
Appendix 3 Disaster Recovery Plan December 13, 2006 Revision XXQwest Government Services, Inc. 4250 North Fairfax DriveArlington, VA 22203(Delete this page)revision history Revision Number Revision Date
Business Impact Analysis / Disaster Recovery Strategy C I T Y O F H E N D E R S O N
Business Impact Analysis / Disaster Recovery Strategy C I T Y O F H E N D E R S O N BACKGROUND The City of Henderson won a grant from the Department of Homeland Security to perform a Business Impact Analysis
Business Continuity and Emergency Preparedness Planning. Vandita Zachariah, MA, MBA, CIA HHSC Internal Audit Division May 21, 2010
Business Continuity and Emergency Preparedness Planning Vandita Zachariah, MA, MBA, CIA HHSC Internal Audit Division May 21, 2010 Overview Define key terms and list essential elements of business continuity
Business Continuity in Healthcare
Business Continuity in Healthcare Cynthia Simeone, CBCP, PMP Director Business Resilience Catholic Health Initiatives Scott Ream President Virtual Corporation 1 Session Speakers Cynthia Simeone, CBCP,
Business Continuity at CME Group
1 Business Continuity at CME Group CME Group is proud of its solid Business Continuity Management program, which is central to helping mitigate potential impacts to our markets and customers. It defines
CENTRAL BANK OF KENYA (CBK) PRUDENTIAL GUIDELINE ON BUSINESS CONTINUITY MANAGEMENT (BCM) FOR INSTITUTIONS LICENSED UNDER THE BANKING ACT
CENTRAL BANK OF KENYA (CBK) PRUDENTIAL GUIDELINE ON BUSINESS CONTINUITY MANAGEMENT (BCM) FOR INSTITUTIONS LICENSED UNDER THE BANKING ACT JANUARY 2008 GUIDELINE ON BUSINESS CONTINUITY GUIDELINE CBK/PG/14
External Supplier Control Requirements BCM
External Supplier Control Requirements BCM BCM Requirement Description BCM Tiers Recovery Time Objective Why this is important 1. Business Continuity Policy Supplier will have a documented Business Continuity
BC / DR Implementation Tying Disaster Recovery Investment to Measurable Business Value
BC / DR Implementation Tying Disaster Investment to Measurable Business Value Continuity Insights Conference May 16-18, 2005 Agenda Purpose Discuss best practice process and tools that might be leveraged
Plan Development Getting from Principles to Paper
Plan Development Getting from Principles to Paper March 22, 2015 Table of Contents / Agenda Goals of the workshop Overview of relevant standards Industry standards Government regulations Company standards
Exercising Your Enterprise Cyber Response Crisis Management Capabilities
Exercising Your Enterprise Cyber Response Crisis Management Capabilities Ray Abide, PricewaterhouseCoopers, LLP 2015 PricewaterhouseCoopers LLP, a Delaware limited liability partnership. All rights reserved.
Principles for BCM requirements for the Dutch financial sector and its providers.
Principles for BCM requirements for the Dutch financial sector and its providers. Platform Business Continuity Vitale Infrastructuur Financiële sector (BC VIF) Werkgroep BCM requirements 21 September 2011
RETAIL AUDIT FORUM - AUDITING BUSINESS CONTINUITY
RETAIL AUDIT FORUM - AUDITING BUSINESS CONTINUITY Alan Hodgson MSc CMIIA MBCI 2 My Background 15 years within Internal Audit CMIIA MSc Audit Management and Consultancy 10 years in Retail 10 years in Business
Business Continuity Planning for Water Utilities: Guidance Document [Project #4319]
Business Continuity Planning for Water Utilities: Guidance Document [Project #4319] ORDER NUMBER: 4319 DATE AVAILABLE: June 2013 PRINCIPAL INVESTIGATORS: Jack Moyer, Rhiannon Kincaid, Kory Wilmot, Kate
PSPSOHS606A Develop and implement crisis management processes
PSPSOHS606A Develop and implement crisis management processes Revision Number: 1 PSPSOHS606A Develop and implement crisis management processes Modification History Not applicable. Unit Descriptor Unit
Business Continuity Management Governance. Frank Higgins Abu Dhabi March 2015
Business Continuity Management Governance Frank Higgins Abu Dhabi March 2015 Different Names Same Concept BCM (Business Continuity Management) BSI 25999 IPOCM (Incident Preparedness & Operational Continuity
Business Continuity Plan
Business Continuity Plan October 2007 Agenda Business continuity plan definition Evolution of the business continuity plan Business continuity plan life cycle FFIEC & Business continuity plan Questions
The Business Continuity Maturity Continuum
The Business Continuity Maturity Continuum Nick Benvenuto & Brian Zawada Protiviti Inc. 2004 Protiviti Inc. EOE Agenda Terminology Risk Management Infrastructure Discussion A Proposed Continuity Maturity
Business Continuity and Disaster Recovery Planning
Business Continuity and Disaster Recovery Planning Jennifer Brandt, CISA A p r i l 16, 2015 HISTORY OF STINNETT & ASSOCIATES Stinnett & Associates (Stinnett) is a professional advisory firm offering services
Business Continuity Trends and Risk Considerations Financial Executives International Portland Chapter June 12 2013
Business Continuity Trends and Risk Considerations Financial Executives International Portland Chapter June 12 2013 Chitra Gopalakrishnan Director KPMG LLP Agenda Introduction Business Continuity / Disaster
a risk- based approach Tom Clark MBCI, CBCP, CHS-III, CBRM
a risk- based approach Tom Clark MBCI, CBCP, CHS-III, CBRM 1 Goal: Explore achieving Crisis Management Consistency and how it relates to the aspects of Business Continuity Management involving people,
The PNC Financial Services Group, Inc. Business Continuity Program
The PNC Financial Services Group, Inc. Business Continuity Program subsidiaries) 1 Content Overview A. Introduction Page 3 B. Governance Model Page 4 C. Program Components Page 4 Business Impact Analysis
BUSINESS CONTINUITY PLAN OVERVIEW
BUSINESS CONTINUITY PLAN OVERVIEW INTRODUCTION The purpose of this document is to provide Loomis customers with an overview of the company s Business Continuity Plan (BCP). Because of the specific and
Hospital Emergency Operations Plan
Hospital Emergency Operations Plan I-1 Emergency Management Plan I PURPOSE The mission of University Hospital of Brooklyn (UHB) is to improve the health of the people of Kings County by providing cost-effective,
Search & Rescue Merit Badge
FEMA Course IS-100b Introduction to the Incident Command System for Search & Rescue Merit Badge Visual 1.1 Search & Rescue Merit Badge (requirement #5) Complete the training for ICS-100, Introduction to
DRAFT BUSINESS CONTINUITY MANAGEMENT POLICY
DRAFT BUSINESS CONTINUITY MANAGEMENT POLICY This document outlines a set of policies and procedures for formalising a Business Continuity programme, and provides guidelines for developing, maintaining
A GUIDE TO Business Continuity Planning and Disaster Recovery Solutions
A GUIDE TO Business Continuity Planning and Disaster Recovery Solutions Hybrid Hosting Experts Content INTRODUCTION 3 TIPS FOR PROTECTING YOUR BUSINESS 5 HOW MANAGED SERVICES PROVIDERS CAN HELP 6 UNITEDLAYER
Starbucks Creating a Connected Organization through Critical Communications
Starbucks Creating a Connected Organization through Critical Communications Agenda Why Starbucks needed a notification system Challenges they face when notifying different types of employees Working with
Business Continuity & Disaster Recovery
knowledge partner MARKET INSIGHT Business Continuity & Disaster Recovery Considerations for Saudi Organizations /mobily @MobilyBusiness 056 010 0901 I [email protected] About Us Mobily; the
2015 CEO & Board University Taking Your Business Continuity Plan To The Next Level. Tracy L. Hall, MBCP
2015 CEO & Board University Taking Your Business Continuity Plan To The Next Level Tracy L. Hall, MBCP MEMBER OF PKF NORTH AMERICA, AN ASSOCIATION OF LEGALLY INDEPENDENT FIRMS 2015 Wolf & Company, P.C.
Incident Management Team The Eight Step Implementation Model. The 8 Step
Incident Management Team The Eight Step Implementation Model The 8 Step 1 Incident Management Team Organization The 8 Step 2 The 8 Step 3 Incident Evaluation Flowchart Incident Management Team Activation
ESCB definitions of major business continuity terms in relation to payment and securities settlement systems 1
ESCB definitions of major business continuity terms in relation to payment and securities settlement systems 1 June 2007 The ESCB has developed a glossary of major business continuity terms for market
PART 2 LOCAL, STATE, AND FEDERAL EMERGENCY RESPONSE SYSTEMS, LAWS, AND AUTHORITIES. Table of Contents
PART 2 LOCAL, STATE, AND FEDERAL EMERGENCY RESPONSE SYSTEMS, LAWS, AND AUTHORITIES (Updates in Yellow Highlight) Table of Contents Authorities: Federal, State, Local... 2-1 UCSF s Emergency ManagemenT
Business Continuity Management
Business Continuity Management Standard Operating Procedure Notice: This document has been made available through the Police Service of Scotland Freedom of Information Publication Scheme. It should not
BUSINESS CONTINUITY MANAGEMENT SINGAPORE SS540 BCM STANDARDS. LSA Consultants Pte Ltd
BUSINESS CONTINUITY MANAGEMENT SINGAPORE SS540 BCM STANDARDS LSA Consultants Pte Ltd BCM SINGAPORE LSA Consultants Who are we? Business Continuity Management (BCM) What is it? Singapore Standard SS540
Recovery Site Evaluation: Finding Viable Alternatives
Delivering the business value of IT. Recovery Site Evaluation: Finding Viable Alternatives Michael Croy Director, Business Continuity Solutions, Forsythe Solutions Group Session Agenda - Past to Present:
A Framework for Business Continuity to Provide High Availability in Floating LNG Operations
A Framework for Business Continuity to Provide High Availability in Floating LNG Operations Pete Winn and Alex Lal Velrada Value without compromise. Today s agenda How does business continuity support
Protecting Your Business
Protecting Your Business Business Continuity/Disaster Recovery Planning Robert Haberman Senior Product Manager BCP/DRP TELUS BUSINESS SOLUTIONS Business Continuity/Disaster Recovery Planning 1 Agenda:
NHS 24 - Business Continuity Strategy
NHS 24 - Strategy Version: 0.3 Issue Date: 20/09/2005 Status: Issued for Board Approval Status: draft Page 1 of 13 Table of Contents 1 INTRODUCTION...3 2 PURPOSE...3 3 SCOPE...3 4 ASSUMPTIONS...4 5 BUSINESS
Generally Accepted Practices. Business Continuity Practitioners Drafted by: Disaster Recovery Journal And DRI International
Generally Accepted Practices For Business Continuity Practitioners Drafted by: Disaster Recovery Journal And DRI International DRI International 1 Generally Accepted Practices I. Preface The Business Continuity
Moving from BS 25999-2 to ISO 22301. The new international standard for business continuity management systems. Transition Guide
Transition Guide Moving from BS 25999-2 to ISO 22301 The new international standard for business continuity management systems Extract from The Route Map to Business Continuity Management: Meeting the
Subject Area 1 Project Initiation and Management
DRII/BCI Professional Practice Narrative: Establish the need for a Business Continuity Plan (BCP), including obtaining management support and organizing and managing the BCP project to completion. (This
Subject Area 1 Project Initiation and Management
DRII/BCI Professional Practice Narrative: Establish the need for a Business Continuity Plan (BCP), including obtaining management support and organizing and managing the BCP project to completion. (This
MHA Consulting. Business Continuity Management 101
0 MHA Consulting Business Continuity Management 101 Presented by: Michael Herrera Brandon Magestro MHA Consulting Agenda MHA Consulting Introduction Business Continuity Management (BCM) Defined 2013 Trends
Business Continuity Management Policy
Business Continuity Management Policy Business Continuity Policy Version 1.0 1 Version control Version Date Changes Author 0.1 April 13 1 st draft PH 0.2 June 13 Amendments in line with guidance PH 0.3
Beyond Effective Security. The Art and Science of Business Continuity Planning
Beyond Effective Security The Art and Science of Business Continuity Planning Fred Young, CIPM, CRM Executive Director Risk Management RE/MAX International Holdings, Inc The Wildlife Experience Business
eet Business continuity and disaster recovery Enhancing enterprise resiliency for the power and utilities industry Power and Utilities Fact Sheet
Power and Utilities Fact Sh Business continuity and disaster recovery Enhancing enterprise resiliency for the power and utilities industry A holistic approach to business resiliency and disaster recovery
Business Continuity Policy and Business Continuity Management System
Business Continuity Policy and Business Continuity Management System Summary: This policy sets out the structure for ensuring that the PCT has effective Business Continuity Plans in place in order to maintain
State of South Carolina Policy Guidance and Training
State of South Carolina Policy Guidance and Training Policy Workshop All Agencies Business Continuity Management Policy June 2014 Agenda Questions & Follow-Up Policy Workshop Overview & Timeline Policy
Agenda. Creating a Robust Testing Program. Notification Tests. Overview of Testing. Beverly Schulz, CBCP
Agenda Overview of Testing Notification Tests Tabletop or Walk-through Tests Simulations Technology Outage Tests Third Party Outage Tests Workplace Outage Tests Workforce Outage Tests Reporting Creating
www.td.com.au Business Continuity - IT Disaster Recovery Discussion Paper - - Commercial in Confidence Version V2.0R Wednesday, 5 September 2012
Business Continuity - IT Disaster Recovery Discussion Paper - - Version V2.0R Wednesday, 5 September 2012 Commercial in Confidence Melbourne Sydney 79-81 Coppin St Level 2 Richmond VIC 3121 414 Kent St
An Introduction to. Business Continuity Planning
An Introduction to Business Continuity Planning Company Profile Practical Experience European Head Office Extensive Client Base Established 1998 Expert Consultants Global Network Why BCP? I am often asked
How to Design and Implement a Successful Disaster Recovery Plan
How to Design and Implement a Successful Disaster Recovery Plan Feb. 21 ASA Office-Administrative Section is Sponsored by Today s ASAPro Webinar is Brought to You by the How to Ask a Question Questions
BCM and DRP - RFP Template
BCM and DRP - The Supreme Council of Information & Communication Technology ictqatar PUBLICATION DATE Document Reference This document should be used as an example of the contents of an RFP for business
Business Continuity Management Planning Methodology
, pp.9-16 http://dx.doi.org/10.14257/ijdrbc.2015.6.02 Business Continuity Management Planning Methodology Dr. Goh Moh Heng, Ph.D., BCCLA, BCCE, CMCE, CCCE, DRCE President, BCM Institute [email protected]
Page Administrative Summary...3 Introduction Comprehensive Approach Conclusion
TABLE OF CONTENTS Page Administrative Summary...3 Introduction Comprehensive Approach Conclusion PART 1: PLANNING General Considerations and Planning Guidelines... 4 Policy Group Oversight Committee Extended
CISM Certified Information Security Manager
CISM Certified Information Security Manager Firebrand Custom Designed Courseware Chapter 4 Information Security Incident Management Exam Relevance Ensure that the CISM candidate Establish an effective
Introduction to Business Continuity Planning
Introduction to Business Continuity Planning Business Continuity and Disaster Resilience Forum May 10, 2012 Rizal Ballroom A, Makati Shangri-la Manila, Philippines Dr Goh Moh Heng President BCM Institute
