Loss Control Webcast. Disaster Recovery Planning we re not in Kansas anymore
|
|
|
- Tracey Mosley
- 10 years ago
- Views:
Transcription
1 Loss Control Webcast Disaster Recovery Planning we re not in Kansas anymore May 15, The information presented in this material has been developed from sources believed to be reliable. It is presented for informational purposes only and should not be constructed as legal, professional or business advice. Everest National Insurance Company and its affiliates accepts no responsibility for the accuracy or completeness of this material. It makes no representations or warranties of any kind herein and disclaims all such representations and warranties. Neither Everest National Insurance Company or its affiliates will be liable for any damages alleged to be caused by the information contained herein. It recommends you consult with legal counsel and/or other professional persons before applying this material. This information is solely for illustrative purposes and does not constitute a contract. Only the relevant insurance policy can provide the actual terms, coverages, amounts, conditions and exclusions. 2
2 Disaster Recovery Planning we re not in Kansas anymore Increasing frequency and intensity of natural disasters Increasing dependency on technology Increasing dependency on supply chain Aging infrastructure Emerging risks (cyber, environmental, antibiotics, social media, violence, etc.) 3 Disaster Recovery Planning Disaster Recovery shift to broader, more widely adopted terminology Business Continuity Management Organizational Resilience 4
3 Business Continuity Definition (ISO 22301) Business continuity is the capability of the organization to continue delivery of products or services at acceptable predefined levels following a disruptive incident. Business continuity management (BCM) is a holistic management process that identifies potential threats to an organization and the impacts to business operations those threats, if realized, might cause, and which provides a framework for building organizational resilience with the capability of an effective response that safeguards the interests of its key stakeholders, reputation, brand and value-creating activities. 5 Business Continuity Today s Objectives (What) Components of Business Continuity (How) Assuring Success (Why) Standards and Best Practices 6
4 Business Continuity 3 Phases Source: Ken Otis Director, Business Continuity & Physical Security Liberty Mutual 7 Emergency Response (Minutes to Hours) Prevention Mitigation Preparedness Response Recovery Emergency Response Objectives Emphasis on safety and security of people (employees and visitors) Evacuation, medical emergencies, shelter in place, etc Contain the incident Minimize injury, property damage, and overall impact Coordinate with local responding public agencies Communicate internally with leadership/management, other departments, other sites 8
5 Emergency Response Planning Category Item Content Examples Resources Planning Emergency Management Team Local Emergency Response Teams Emergency Supplies Emergency Response Roles & Responsibilities Emergency Procedures Emergency Communication Plans Set guidelines, establish procedures, monitor progress, allocate or assign resources to response teams, plan training, facilitate safety meetings, coordinate with public authorities and landlords, emergency scenario planning, fund and procure emergency supplies and training. Staff members, selected or volunteers, responding in an emergency to protect the safety of their fellow employees. Floor/area wardens, deputies/alternates, searchers, medical emergency responders. First aid, AED s, extinguishers, personal protection, shelter-in-place supplies, flashlights, communication devices, etc. Clearly defined roles and responsibilities for response and preparedness, expectations for ongoing training, drills, improvement. Evacuations, medical emergencies, shelter-in-place, biological, bomb threats, hostile individual, chemical, fire, explosion, power outage, floor maps, assembly areas, safe havens, quick reference, etc. Emergency services, important contacts, hotlines, broadcast notifications, call chains, website updates, social media, pre-defined communication groups and messages. 9 Crisis Management (Hours to Days) Prevention Mitigation Preparedness Response Recovery Crisis Management Objectives Emphasis on crisis leadership, control, communication Protect and account for people Safeguard brand and reputation Communication and public relations Assess impact and damage Establish recovery priorities Allocate resources (staff, equipment, services) Restart operations as quickly as possible 10
6 Crisis Management Planning Category Item Content Examples Resources Planning Crisis Management Team Local Incident Management Team Command Center / Emergency Ops Center Team Roles and Responsibilities Communication Plans Crisis/Incident Procedures Command / Emergency Ops Center Plans Incident command and control organizational structure. Direct crisis response, highest level decision making. Allocate needed resources. Set crisis response priorities. Public relations. Corporate communication. Directly manage crisis/incident response (NIMS ICS model, FEMA). Assess impact, damage, risks, requirements. Communicate status, progress, needs, next steps. Physical or virtual facility located outside the affected area, used to gather, assess, and disseminate information, manage a crisis, and make decisions to effect recovery. Clearly defined roles and responsibilities including accountabilities and authority. Communication plans for each office, including technology, alternatives, call chains, assignments, etc Scenario-based procedures and decision flows to clarify functions and duties, priorities, sequence of events, initiation points for other plans, external coordination requirements, etc. Location alternatives, agreements, requirements, roles, procedures, activity logs, communications, etc. 11 Business Recovery (Days to Months) Prevention Mitigation Preparedness Response Recovery Business Recovery Objectives Emphasis on recovery of business operations (processes, services, products, and communication with customers, business partners, staff) Recover operations efficiently and effectively Align all recovery activities across functions and business areas Monitor recovery and ensure plans stay on track Maintain communications Resume business operations back to pre-incident levels 12
7 Business Recovery Planning Category Item Content Examples Resources Planning Business Continuity Department and Location Coordinators Business Unit/Department Teams Business Recovery Support Teams Business Impact Analysis Internal and External Communications Asset Inventories Risk Assessment and Mitigation Vendor and Supply Chain Manage and resource planning teams within department or office location. Risk assessment, business impact analysis, recovery prioritization, approve alternatives/workarounds, allocate resources for planning and recovery tasks, resolve gaps and overlaps. Business unit/departmental recovery plans, process alternatives/ workarounds, assign resources for recovery tasks, survey staff, communication plans, risk and asset inventories, requirements for alternative work sites and remote access. Facilities support, office space, physical security, salvage, transportation/ logistics, quality reviews, telecommunications. Inventory of functions and processes, prioritization/sequencing, recovery cost analysis, operational, financial, human resource, customer impacts and risks, recovery time and recovery point objectives, dependencies. Alternatives and procedures, Emergency contacts, broadcast notifications, privacy considerations. Customers, partners, service providers, vendors. Vital records, reference material, technology, specialized equipment, etc. Identification, definition, likelihood, impact, timing considerations, ranking/prioritization, mitigation strategies, monitoring, improvement. Service level agreements, emergency exceptions, contract reviews, dependencies, communications. 13 IT Disaster Recovery Prevention Mitigation Preparedness Response Recovery IT Disaster Recovery Objectives Emphasis on Information Technology (systems, data, telecommunications, IT services, network, data center operations) Provide technology and support for emergency and crisis communications Ensure security and protection of corporate data & technology assets Recover technology and related services efficiently and effectively according to business requirements Coordinate technology recovery services, vendors, contractors Resume technology and services to pre-incident levels 14
8 IT Disaster Recovery Planning Category Item Content Examples Resources Disaster Recovery Teams Telecommunications/network, infrastructure/engineering, client support, applications, data, security, emergency operations center, command center, alternate work site, facilities. Recovery Site Coldsite, hotsite, colocation, duplicate data center, failover, cloud computing, offsite storage, etc. Alternate Work Sites Alternative office space, permanent, mobile, other corporate offices, remote access, work from home, etc. Includes workstation and workgroup technology, communications, connectivity, power, physical workstation, office supplies, etc. DR Service Providers Disaster recovery vendors, contractors, subject matter experts, etc. Planning Disaster Recovery Plans Recovery aligned with business requirements and business impact analysis, recovery timelines and sequencing, dependencies, decision trees, logging and tracking requirements, physical and logical security considerations, team roles and responsibilities, accountabilities and authorities, workstation and server rebuilds. Reference Configurations, diagrams, runbooks, manuals, scripts, RTO s, RPO s, etc. Vendor Agreements Emergency/Disaster SLA s, dependencies and contingencies, vendor roles and responsibilities, vendor disaster recovery and business continuity plans, etc. Communication Plans Emergency contacts, alternative communication methods, roles and responsibilities, pre-defined groups and messages, etc. 15 Business Continuity Scope Scope All business departments, units, and critical functions All major physical assets, vital records, and information technology All office locations All hazards and disaster scenarios, prioritized by impact and likelihood 16
9 Business Continuity Scope All Hazards planning approach Scenario assumptions that provide broad planning, to address many potentially disastrous events Typical beginning scenario assumptions Loss of office location and/or data center, or extended loss of use/access Limited unavailability of key staff Localized disaster, not a large regional event Example expanded or targeted scenarios Pandemic Regional disaster or loss of multiple offices Shelter-in-place Supply chain Active shooter or workplace violence 17 Business Continuity Management POLLING QUESTIONS 18
10 Business Continuity Objectives (What) Components of Business Continuity (How) Assuring Success (Why) Standards and Best Practices 19 Business Continuity Success Basic Recommendations Executive sponsorship and Governance Ongoing Program, not a Project Continuous Improvement is Foundational Guided by current Best Practices and Standards Everything must be Tested! 20
11 Business Continuity - Governance Governance Link to Corporate Objectives Enterprise Risk Management (ERM) Provide Executive Steering Senior executive sponsor (accountability) Executive level steering committee (direction/guidance) Board visibility and reporting Alignment with corporate goals Prioritization and cost/benefit Allocation of necessary resources 21 Business Continuity - Governance Governance Establish Corporate Policy Commitment to protect people and assets Commitment to continuous improvement Commitment to organizational resilience Organize Corporate Leadership Business Continuity Coordinators Department heads or designees for each major business area Office managers or designees for each office location Manage and monitor ongoing progress Allocate needed resources Balance against competing priorities Perform ongoing risk assessment 22
12 Business Continuity - Program Program Management Planning, scheduling, requirements Plan ahead, ensure next steps are crystal clear Quarterly or annual planning cycle Flexibility and creativity in scheduling Insist on clearly defined requirements and objectives Organizing, coordinating, facilitating Cross functional collaboration Stick to objectives and agenda in every meeting Never waste anyone s time 23 Business Continuity - Program Program Management Scope management Commitment to continuous improvement is crucial Limit scope to what is achievable, and of highest priority Adjust scope (with approval) to address resource and priority conflicts Be resourceful with available team members to support those who are struggling 24
13 Business Continuity - Program Program Management Documentation Establish a documentation standards committee Evaluate documentation alternatives, select appropriate solution - provide easy to use templates or software Make documentation readily available to all team members, but comply with privacy and security requirements Documentation is the primary deliverable, and must be tracked and measured Document everything Notes from every meeting, issues and decisions Periodic and dependable status reports and updates Log exercises, tests, false alarms Ensure document controls are in place 25 Business Continuity - Program Program Management Develop and deploy Training Raise awareness, educate about the risks Provide ongoing instruction for initiating teams, developing plans, emergency procedures, etc. Monitor and measure progress Status reporting against Program Plan Track against agreed deliverable dates Monitor team effectiveness Measure and assess deliverables Tools for tracking progress are crucial 26
14 Business Continuity Scorecard example 27 Business Continuity Plan, Do, Check, Act Act Plan Do Check 28
15 Business Continuity - Testing Testing Assumptions All plans must be tested All tests identify improvements Failure is relative, and part of learning Preparation Include representation from all stakeholders Define what you want to test and the overall purpose Ensure feasibility (cost, time, people) Hold regular planning and preparation meetings with stakeholders for each exercise 29 Business Continuity - Testing Type Timing / Purpose Description / Process Orientation / Walkthrough Drills Anytime / as needed Raise awareness or educate Introduction for new people Re-energize mid-stream Clarify roles and responsibilities Check or validate progress or quality at any point Anytime / as needed Raise awareness or educate Increase familiarity to reduce anxiety, panic, freeze Effective for any size group Presentation or discussion format Use moderator to keep discussion focused Group discussion about anticipated actions Open floor to comments or observations about plan improvements Provides overview of plan to motivate and familiarize participants with team roles, responsibilities, expectations, and procedures Informal, low stress, easy to conduct Narrow in scope Quick, brief action Physical, hands-on, experiential Value and improvement through repetition 30
16 Business Continuity - Testing Type Timing / Purpose Description / Process Table-top Functional or Segment Full-scale Early to mid stage of program development Expose plan gaps Improve plan without full scale simulation Encourage group participation Following completion of a segment, or specialized function Real time decisions and actions Real responses and consequences Following completion of a location plan, including other exercises which demonstrate readiness Evaluates operational capabilities, interactively Facilitates communication across organization and public/private sector Simulation site; conference/large room Facilitated discussion to simulate an emergency Uses injected messages or actions to simulate events Simulates actions/activities in a controlled environment Simulated scenario, as realistic as possible in a controlled environment (short of moving equipment, personnel, etc) Require actual performance of response functions Tests communications, preparedness, and availability Real-life simulation of defined disaster scenario Deploys personnel, equipment, to specified location(s) Use of injects and external stakeholders Incorporates as many functions as possible for test of complete business continuity plan Expensive, time-consuming 31 Business Continuity Management Objectives (What) Components of Business Continuity (How) Assuring Success (Why) Standards and Best Practices 32
17 Business Continuity Standards & Best Practices PS-Prep: Born of Tragedy 33 Business Continuity Standards & Best Practices Public Law Implementing Recommendations of the 9/11 Commission Act of 2007 Title IX: Private Sector Preparedness PS-Prep Voluntary Private Sector Preparedness Accreditation and Certification Program Collaboration between Department of Homeland Services and the Private Sector Mandated by Title IX of PL (24 Titles) 34
18 Business Continuity Standards & Best Practices Approved Standards ASIS SPC ASIS International (free) NFPA 1600: 2010 (2013 just released) National Fire Protection Association (free) BS British Standards Institute (nominal charge) ISO (replaces BS 25999, under consideration in USA) (Links to approved standards are available from ANAB website) 35 Business Continuity Standards & Best Practices New International Standard ISO Requirements (auditable) ISO Guidance Societal Security Business continuity management systems 36
19 Business Continuity Standards & Best Practices Standards tell you What to do Methods tell you How to do it Professional Certification Orgs (Methods) DRII: Disaster Recovery Institute International 10 Professional Practices BCI: Business Continuity Institute 6 Professional Practices, 6 Phases of Business Continuity 37 Business Continuity Management - Review Objectives (What) Components of Business Continuity (How) Assuring Success (Why) Standards and Best Practices 38
20 Business Continuity Management QUESTIONS? 39 Business Continuity Management Lawrence (Larry) E. Cowen L E Cowen & Associates, LLC Larry is DRII certified business continuity professional (CBCP), certified ISO Lead Auditor, PMI project management professional (PMP), certified SCRUM master (CSM), and management consultant. He has 10 years experience in business continuity management (BCM) and 20 years as an information technology executive in the insurance industry. In addition to his BCM and project management consulting company, L E Cowen & Associates LLC, Larry directs product development for METRIX411, a software as a service (SaaS) platform for authoring, delivering, and managing business assessments. Larry is an active volunteer, leading long term recovery teams after major disasters, and as a member of the board of directors for the American Red Cross in New Hampshire, engaged in volunteer development. 40
Business Continuity Plan
Business Continuity Plan October 2007 Agenda Business continuity plan definition Evolution of the business continuity plan Business continuity plan life cycle FFIEC & Business continuity plan Questions
Business Continuity and Emergency Preparedness Planning. Vandita Zachariah, MA, MBA, CIA HHSC Internal Audit Division May 21, 2010
Business Continuity and Emergency Preparedness Planning Vandita Zachariah, MA, MBA, CIA HHSC Internal Audit Division May 21, 2010 Overview Define key terms and list essential elements of business continuity
Fundamentals of Business Continuity Planning Have a Plan!
Fundamentals of Business Continuity Planning Have a Plan! Michael Kadar, MBCP, CISSP 2008 MK Continuity & Availability LLC [email protected] InfraGard Meeting Walsh College, Novi March 25, 2008
Temple university. Auditing a business continuity management BCM. November, 2015
Temple university Auditing a business continuity management BCM November, 2015 Auditing BCM Agenda 1. Introduction 2. Definitions 3. Standards 4. BCM key elements IT Governance class - IT audit program
www.pwc.com Business Resiliency Business Continuity Management - January 14, 2014
www.pwc.com Business Resiliency Business Continuity Management - January 14, 2014 Agenda Key Definitions Risks Business Continuity Management Program BCM Capability Assessment Process BCM Value Proposition
2014 NABRICO Conference
Business Continuity Planning 2014 NABRICO Conference September 19, 2014 6 CityPlace Drive, Suite 900 St. Louis, Missouri 63141 314.983.1200 1520 S. Fifth Street, Suite 309 St. Charles, Missouri 63303 636.255.3000
By. Mr. Chomnaphas Tangsook Business Director BSI Group ( Thailand) Co., Ltd
BS 25999 Business Continuity Management By. Mr. Chomnaphas Tangsook Business Director BSI Group ( Thailand) Co., Ltd 1 Contents slide BSI British Standards 2006 BS 25999(Business Continuity) 2002 BS 15000
CENTRAL BANK OF KENYA (CBK) PRUDENTIAL GUIDELINE ON BUSINESS CONTINUITY MANAGEMENT (BCM) FOR INSTITUTIONS LICENSED UNDER THE BANKING ACT
CENTRAL BANK OF KENYA (CBK) PRUDENTIAL GUIDELINE ON BUSINESS CONTINUITY MANAGEMENT (BCM) FOR INSTITUTIONS LICENSED UNDER THE BANKING ACT JANUARY 2008 GUIDELINE ON BUSINESS CONTINUITY GUIDELINE CBK/PG/14
EMERGENCY PREPAREDNESS PLAN Business Continuity Plan
EMERGENCY PREPAREDNESS PLAN Business Continuity Plan GIS Bankers Insurance Group Powered by DISASTER PREPAREDNESS Implementation Small Business Guide to Business Continuity Planning Surviving a Catastrophic
BUSINESS CONTINUITY MANAGEMENT FRAMEWORK
BUSINESS CONTINUITY MANAGEMENT FRAMEWORK Document Author: Civil Contingencies Service - Authorised by the CCS Joint Management Board - Version 1.0. Issued December 2012 Page 1 FRAMEWORK STATEMENT Business
How To Plan A Crisis Management Program
Building a Security Conscious Business Continuity Management (BCM) Program Sam Stahl, CBCP, MBCI EMC Global Professional Services Program Manager [email protected] ASIS Singapore, 2014 Agenda Overview
The PNC Financial Services Group, Inc. Business Continuity Program
The PNC Financial Services Group, Inc. Business Continuity Program subsidiaries) 1 Content Overview A. Introduction Page 3 B. Governance Model Page 4 C. Program Components Page 4 Business Impact Analysis
Business Continuity for the New Professional. Britt Corra Enterprise BCM Erika Voss Senior BCM
Business Continuity for the New Professional Britt Corra Enterprise BCM Erika Voss Senior BCM New to Business Continuity? Agenda & Experience 3-5 years experience? Seasoned veteran? What is BCM Tool Kit?
BCM and DRP - RFP Template
BCM and DRP - The Supreme Council of Information & Communication Technology ictqatar PUBLICATION DATE Document Reference This document should be used as an example of the contents of an RFP for business
Business Continuity and Disaster Recovery Planning
Business Continuity and Disaster Recovery Planning Jennifer Brandt, CISA A p r i l 16, 2015 HISTORY OF STINNETT & ASSOCIATES Stinnett & Associates (Stinnett) is a professional advisory firm offering services
CISM Certified Information Security Manager
CISM Certified Information Security Manager Firebrand Custom Designed Courseware Chapter 4 Information Security Incident Management Exam Relevance Ensure that the CISM candidate Establish an effective
The PNC Financial Services Group, Inc. Business Continuity Program
The PNC Financial Services Group, Inc. Business Continuity Program 1 Content Overview A. Introduction Page 3 B. Governance Model Page 4 C. Program Components Page 4 Business Impact Analysis (BIA) Page
EXECUTIVE CRISIS MANAGEMENT TRAINING. Presented by Roseanne Rostron, CBCP Raido Response
EXECUTIVE CRISIS MANAGEMENT TRAINING Presented by Roseanne Rostron, CBCP Raido Response 1 Introduction Roseanne Rostron President Raido Response Over 12 years Crisis Management, Business Continuity, Disaster
Business Continuity Policy
Business Continuity Policy 1 NHS England INFORMATION READER BOX Directorate Medical Commissioning Operations Patients and Information Nursing Trans. & Corp. Ops. Commissioning Strategy Finance Publications
Keys to Narrowing Business Continuity Planning Gaps: Training, Testing & Audits
Keys to Narrowing Business Continuity Planning Gaps: Training, Testing & Audits Betty A. Kildow, CBCP, FBCI, Emergency Management Consultant Kildow Consulting 765/483-9365; [email protected] 95 th
Western Washington University Basic Plan 2013. A part of Western s Comprehensive Emergency Management Plan
2013 A part of Western s Record of Changes Change # Date Entered Description and Location of Change(s) Person making changes 2 1. PURPOSE, SCOPE, SITUATION OVERVIEW, ASSUMPTIONS AND LIMITATIONS A. PURPOSE
Why Should Companies Take a Closer Look at Business Continuity Planning?
whitepaper Why Should Companies Take a Closer Look at Business Continuity Planning? How Datalink s business continuity and disaster recovery solutions can help organizations lessen the impact of disasters
OPTIONS FOR EDUCATION AND TRAINING...3 LEARNING RESOURCES...5 TABLE TOP EXERCISE: POWER OUTAGE SCENARIO...7
CONTENTS INTRODUCTION...2 AWARENESS EDUCATION... 2 TRAINING AND EXERCISING... 2 OPTIONS FOR EDUCATION AND TRAINING...3 LEARNING RESOURCES...5 TABLE TOP EXERCISE: POWER OUTAGE SCENARIO...7 DISCUSSION QUESTIONS...
UNION COLLEGE INCIDENT RESPONSE PLAN
UNION COLLEGE INCIDENT RESPONSE PLAN The college is committed to supporting the safety and welfare of all its students, faculty, staff and visitors. It also consists of academic, research and other facilities,
ESCB definitions of major business continuity terms in relation to payment and securities settlement systems 1
ESCB definitions of major business continuity terms in relation to payment and securities settlement systems 1 June 2007 The ESCB has developed a glossary of major business continuity terms for market
Is Business Continuity Certification Right for Your Organization?
2008-2013 AVALUTION CONSULTING, LLC ALL RIGHTS RESERVED i This white paper analyzes the business case for pursuing organizational business continuity certification, including what it takes to complete
eet Business continuity and disaster recovery Enhancing enterprise resiliency for the power and utilities industry Power and Utilities Fact Sheet
Power and Utilities Fact Sh Business continuity and disaster recovery Enhancing enterprise resiliency for the power and utilities industry A holistic approach to business resiliency and disaster recovery
BCP and DR. P K Patel AGM, MoF
BCP and DR P K Patel AGM, MoF Key difference between BS 25999 and ISO 22301 ISO 22301 puts a much greater emphasis on setting the objectives, monitoring performance and metrics aligning BC to top management
The handouts and presentations attached are copyright and trademark protected and provided for individual use only.
The handouts and presentations attached are copyright and trademark protected and provided for individual use only. READINESS RESOURCES American Bar Association -- www.abanet.org Disaster Recovery: www.abanet.org/lpm/lpt/articles/slc02051.html
a risk- based approach Tom Clark MBCI, CBCP, CHS-III, CBRM
a risk- based approach Tom Clark MBCI, CBCP, CHS-III, CBRM 1 Goal: Explore achieving Crisis Management Consistency and how it relates to the aspects of Business Continuity Management involving people,
BUSINESS CONTINUITY: BEST PRACTICE, 2ND EDITION
BUSINESS CONTINUITY: BEST PRACTICE, 2ND EDITION EXCERPT FROM THE FOREWORD TO THE 2ND EDITION The events of 9/11 have cast a long shadow over the world and led to a vital reappraisal of Enterprise Risk
MHA Consulting. Business Continuity Management 101
0 MHA Consulting Business Continuity Management 101 Presented by: Michael Herrera Brandon Magestro MHA Consulting Agenda MHA Consulting Introduction Business Continuity Management (BCM) Defined 2013 Trends
Business Continuity Management
Business Continuity Management Policy Statement & Strategy July 2009 Basildon District Council Business Continuity Management Policy Statement The Council is committed to ensuring robust and effective
How To Prepare For A Disaster
Building an effective Tabletop Exercise Presented by: Ken M. Shaurette, CISSP, CISA, CISM, CRISC FIPCO Director IT Services 3/26/2013 #1 Continuity Plan Testing Flowchart 3/26/2013 #2 1 Ongoing Multi-Year
Emergency Response and Business Continuity Management Policy
Emergency Response and Business Continuity Management Policy Owner: John Duffy, Registrar & Secretary Last updated: September 2012 Version: 04 Document control Date Version Author Changes To be populated
BUSINESS CONTINUITY PLAN OVERVIEW
BUSINESS CONTINUITY PLAN OVERVIEW INTRODUCTION The purpose of this document is to provide Loomis customers with an overview of the company s Business Continuity Plan (BCP). Because of the specific and
ISO 22301: Societal Security Terminology ISO 22313: BCMS Guidance ISO 22398: Exercises and Testing - Guidance
The Impact of ISO 22301 Moving Your BCM Program to a Management System Implementing the Newly Approved International Business Continuity Management System Standard & Guidance Documents ISO 22301: Societal
Evaluating and Improving Your Business Continuity Plan
Evaluating and Improving Your Business Continuity Plan As presented to the Northeast Florida IIA Chapter January 23, 2015 Contact Information Karen Weir, MAC, CISA, CBCP Manager [email protected]
Business Continuity and Disaster Recovery Planning 3/16/2011. Lee Goldstein CPCP, MBCI President Business Contingency Group
Business Continuity and Disaster Recovery Planning 3/16/2011 Lee Goldstein CPCP, MBCI President Business Contingency Group Business Continuity/Disaster Recovery Planning to ensure the continuation/recovery
Disaster Recovery and Business Continuity Plan
Disaster Recovery and Business Continuity Plan Table of Contents 1. Introduction... 3 2. Objectives... 3 3. Risks... 3 4. Steps of Disaster Recovery Plan formulation... 3 5. Audit Procedure.... 5 Appendix
Business Continuity Policy
Business Continuity Policy St Mary Magdalene Academy V1.0 / September 2014 Document Control Document Details Document Title Document Type Business Continuity Policy Policy Version 2.0 Effective From 1st
BUSINESS CONTINUITY POLICY
BUSINESS CONTINUITY POLICY Last Review Date Approving Body n/a Audit Committee Date of Approval 9 th January 2014 Date of Implementation 1 st February 2014 Next Review Date February 2017 Review Responsibility
Shankar Gawade VP IT INFRASTRUCTURE ENAM SECURITIES PVT. LTD.
Business Continuity Management & Disaster Recovery Planning Presented by: Shankar Gawade VP IT INFRASTRUCTURE ENAM SECURITIES PVT. LTD. 1 What is Business Continuity Management? Is a holistic management
Proposal for Business Continuity Plan and Management Review 6 August 2008
Proposal for Business Continuity Plan and Management Review 6 August 2008 2008/8/6 Contents About Newton IT / Quality of our services. BCM & BS25999 Overview 2. BCM Development in line with BS25999 3.
Institute for Business Continuity Training 1623 Military Road, # 377 Niagara Falls, NY 14304-1745
ECP - 601: Effective Business Continuity Management: ISO 22301 This 3-day course provides an intensive, hands-on workshop covering all major aspects for the design of an effective Business Continuity Plan
BUILDING A SECURITY CONSCIOUS BUSINESS CONTINUITY MANAGEMENT (BCM) PROGRAM
BUILDING A SECURITY CONSCIOUS BUSINESS CONTINUITY MANAGEMENT (BCM) PROGRAM SAM STAHL, CBCP, MBCI EMC GLOBAL PROFESSIONAL SERVICES PROGRAM MANAGER [email protected] ASIS SHANGHAI, 2015 1 AGENDA Overview
Situation Manual Orange County Florida
Situation Manual Orange County Florida 530 Minutes Situation Manual Tabletop Exercise 1 Disaster Resistant Communities Group www.drc-group.com Comeback Ordeal Start Exercise During the exercise it will
Business Continuity Planning and Disaster Recovery Planning
4 Business Continuity Planning and Disaster Recovery Planning Basic Concepts 1. Business Continuity Management: Business Continuity means maintaining the uninterrupted availability of all key business
Business Continuity Glossary
Developed In Conjuction with Business Continuity Glossary ACTIVATION: The implementation of business continuity capabilities, procedures, activities, and plans in response to an emergency or disaster declaration;
Best Practices in Disaster Recovery Planning and Testing
Best Practices in Disaster Recovery Planning and Testing axcient.com 2015. Axcient, Inc. All Rights Reserved. 1 Best Practices in Disaster Recovery Planning and Testing Disaster Recovery plans are widely
The Business Continuity Maturity Continuum
The Business Continuity Maturity Continuum Nick Benvenuto & Brian Zawada Protiviti Inc. 2004 Protiviti Inc. EOE Agenda Terminology Risk Management Infrastructure Discussion A Proposed Continuity Maturity
Introduction UNDERSTANDING BUSINESS CONTINUITY MANAGEMENT
INFORMATION SECURITY: UNDERSTANDING BUSINESS CONTINUITY MANAGEMENT FACTSHEET This factsheet will introduce you to Business Continuity Management (BCM), which is a process developed to counteract systems
CONTINUITY OF OPERATION PLAN (COOP) FOR NONPROFIT HUMAN SERVICES PROVIDERS
A L L I A N C E F O R H U M A N S E R V I C E S www.alliance4hs.org CONTINUITY OF OPERATION PLAN (COOP) FOR NONPROFIT HUMAN SERVICES PROVIDERS ALLIANCE FOR HUMAN SERVICES & MIAMI-DADE COUNTY OFFICE OF
Business Continuity Management Review
Office of Internal Audit Business Continuity Management Review November 14, 2014 Internal Audit Team Shannon Henry Chief Audit Officer & Executive Director of Institutional Compliance Stacy Sneed Audit
Emergency Response and Crisis Managemen Technical Assistance Center STEPS FOR DEVELOPING A SCHOOL EMERGENCY MANAGEMENT PLAN
U.S. Department of Education Emergency Response and Crisis Managemen Technical Assistance Center Emergency Response and Crisis Management TA Center HELPFULHINTS FOR SCHOOL EMERGENCY MANAGEMENT Vol. 2,
FlyntGroup.com. Enterprise Risk Management and Business Impact Analysis: Understanding, Treating and Monitoring Risk
Enterprise Risk Management and Business Impact Analysis: Understanding, Treating and Monitoring Risk 2012 The Flynt Group, Inc., All Rights Reserved FlyntGroup.com Enterprise Risk Management and Business
A BCP Tale: From Theory to Practice
A BCP Tale: From Theory to Practice Presenter: Gord Novoselnik Problem & Configuration Manager, Enterprise Solutions Division, MTS Allstream [email protected] 1 10 Commandments of BCM I.
With the large number of. How to Avoid Disaster: RIM s Crucial Role in Business Continuity Planning. Virginia A. Jones, CRM, FAI RIM FUNDAMENTALS
How to Avoid Disaster: RIM s Crucial Role in Business Continuity Planning The world has experienced a great deal of natural and man-made upheaval and destruction in the past few years, including tornadoes,
Overview. Emergency Response. Crisis Management
Prudential Financial s Preparedness Strategy Overview Emergency Response, Crisis Management, Business Continuation, Technology Disaster Recovery & Health Crisis Preparedness Prudential is committed to
Company Management System. Business Continuity in SIA
Company Management System Business Continuity in SIA Document code: Classification: Company Project/Service Year Document No. Version Public INDEX 1. INTRODUCTION... 3 2. SIA S BUSINESS CONTINUITY MANAGEMENT
Essential Components of Emergency Management Plans at Community Health Centers Crosswalk of Plan Elements
Plan Components Health centers will have an emergency management plan Plan and organization are NIMS compliant Bureau of Primary Health Care Policy Information Notice 2007-15 Plans and procedures for emergency
This presentation will introduce you to the concepts and terminology related to disaster recovery planning for businesses.
1. An Introduction This presentation will introduce you to the concepts and terminology related to disaster recovery planning for businesses. This presentation was prepared by the South Central Economic
RLI PROFESSIONAL SERVICES GROUP PROFESSIONAL LEARNING EVENT PSGLE 125. When Disaster Strikes Are You Prepared?
RLI PROFESSIONAL SERVICES GROUP PROFESSIONAL LEARNING EVENT PSGLE 125 When Disaster Strikes Are You Prepared? Copyright Materials This presentation is protected by US and International Copyright laws.
Business Continuity Training and Testing: Narrowing the Gaps
Business Continuity Training and Testing: Narrowing the Gaps Betty A. Kildow, CBCP, FBCI, Emergency Management Consultant Kildow Consulting 765/483-9365; [email protected] 93 nd Annual International
SCADA Business Continuity and Disaster Recovery. Presented By: William Biehl, P.E. 913-601-0104 (mobile) [email protected]
SCADA Business Continuity and Disaster Recovery Presented By: William Biehl, P.E. 913-601-0104 (mobile) [email protected] Business Continuity Planning, a Sound Process A Business Continuity Plan: "A
Business Continuity Template
Emergency Management Business Continuity Template The Regional Municipality of Wood Buffalo would like to give credit to the Calgary Emergency Management Agency (CEMA) and the Calgary Chamber of Commerce
NIST SP 800-34, Revision 1 Contingency Planning Guide for Federal Information Systems
NIST SP 800-34, Revision 1 Contingency Planning Guide for Federal Information Systems Marianne Swanson NATIONAL INSTITUTE OF STANDARDS AND TECHNOLOGY 1 Table Of Contents Introduction to NIST SP 800-34
How to Design and Implement a Successful Disaster Recovery Plan
How to Design and Implement a Successful Disaster Recovery Plan Feb. 21 ASA Office-Administrative Section is Sponsored by Today s ASAPro Webinar is Brought to You by the How to Ask a Question Questions
PPSADOPTED: OCT. 2012 BACKGROUND POLICY STATEMENT PHYSICAL FACILITIES. PROFESSIONAL PRACTICE STATEMENT Developing a Business Continuity Plan
PROFESSIONAL PRACTICE STATEMENT Developing a Business Continuity Plan OCT. 2012 PPSADOPTED: What is a professional practice statement? Professional Practice developed by the Association Forum of Chicagoland
BUSINESS CONTINUITY MANAGEMENT GUIDELINES FOR BANKS AND FINANCIAL INSTITUTIONS
BUSINESS CONTINUITY MANAGEMENT GUIDELINES FOR BANKS AND FINANCIAL INSTITUTIONS DIRECTORATE OF BANKING SUPERVISION AUGUST 2009 TABLE OF CONTENTS PAGE 1.0 INTRODUCTION..3 1.1 Background...3 1.2 Citation...3
Business Continuity Management Framework 2014 2017
Business Continuity Management Framework 2014 2017 Blackpool Council Business Continuity Framework V3.0 Page 1 of 13 CONTENTS 1.0 Forward 03 2.0 Administration 04 3.0 Policy 05 4.0 Business Continuity
NHS Central Manchester Clinical Commissioning Group (CCG) Business Continuity Management (BCM) Policy. Version 1.0
NHS Central Manchester Clinical Commissioning Group (CCG) Business Continuity Management (BCM) Policy Version 1.0 Document Control Title: Status: Version: 1.0 Issue date: May 2014 Document owner: (Name,
Business Continuity Trends, Requirements and Expectations in 2009. Brian Zawada (MBCP) Director of Consulting Services Avalution Consulting
Business Continuity Trends, Requirements and Expectations in 2009 Brian Zawada (MBCP) Director of Consulting Services Avalution Consulting Overview What Is Business Continuity? The Value Proposition What
Generally Accepted Practices. Business Continuity Practitioners Drafted by: Disaster Recovery Journal And DRI International
Generally Accepted Practices For Business Continuity Practitioners Drafted by: Disaster Recovery Journal And DRI International DRI International 1 Generally Accepted Practices I. Preface The Business Continuity
Principles for BCM requirements for the Dutch financial sector and its providers.
Principles for BCM requirements for the Dutch financial sector and its providers. Platform Business Continuity Vitale Infrastructuur Financiële sector (BC VIF) Werkgroep BCM requirements 21 September 2011
Business Continuity Standards A Primer
INTELLIGENT NOTIFICATION Alphabet Soup: Making Sense of BC/DR Standards Part 1: Business Continuity Standards A Primer Why all the attention now? One of the hottest topics in BC/DR these days is standards.
Guideline on Business Continuity Management
Circular No. 033/B/2009-DSB/AMCM (Date: 14/8/2009) Guideline on Business Continuity Management The Monetary Authority of Macao (AMCM), under the powers conferred by Article 9 of the Charter approved by
Business Continuity at CME Group
1 Business Continuity at CME Group CME Group is proud of its solid Business Continuity Management program, which is central to helping mitigate potential impacts to our markets and customers. It defines
Business Continuity Management For Small to Medium-Sized Businesses
Business Continuity Management For Small to Medium-Sized Businesses Produced by NORMIT and Norfolk County Council Resilience Team For an electronic copy of this document visit www.normit.org Telephone
The Weill Cornell Medical College and Graduate School of Medical Sciences. Responsible Department: Information Technologies and Services (ITS)
Information Technology Disaster Recovery Policy Policy Statement This policy defines acceptable methods for disaster recovery planning, preparedness, management and mitigation of IT systems and services
STEP-BY-STEP BUSINESS CONTINUITY AND EMERGENCY PLANNING MAY 27 2015
STEP-BY-STEP BUSINESS CONTINUITY AND EMERGENCY PLANNING MAY 27 2015 AGENDA: Emergency Management Business Continuity Planning Q & A MONTH DAY, YEAR TITLE OF THE PRESENTATION 2 CANADIAN RED CROSS Disaster
Ohio Supercomputer Center
Ohio Supercomputer Center IT Business Continuity Planning No: Effective: OSC-13 06/02/2009 Issued By: Kevin Wohlever Director of Supercomputer Operations Published By: Ohio Supercomputer Center Original
DRII PP Introduction to the Professional Practices Page 1
Professional Practice Introduction Business Continuity Management (BCM) is a management process that identifies risk, threats and vulnerabilities that could impact an entity s continued operations and
Release: 1. BSBCON601B Develop and maintain business continuity plans
Release: 1 BSBCON601B Develop and maintain business continuity plans BSBCON601B Develop and maintain business continuity plans Modification History Release Release 1 Comments This version first released
Il nuovo standard ISO 22301 sulla Business Continuity Scenari ed opportunità
Il nuovo standard ISO 22301 sulla Business Continuity Scenari ed opportunità Massimo Cacciotti Business Services Manager BSI Group Italia Agenda BSI: Introduction 1. Why we need BCM? 2. Benefits of BCM
Business Continuity and Risk Management. Ken Kaberia Principal BCM Officer, Enterprise Risk Safaricom Limited
Business Continuity and Risk Management Ken Kaberia Principal BCM Officer, Enterprise Risk Safaricom Limited What does Business Continuity mean? Business Continuity Management- Definition Business Continuity
Data Center Assistance Group, Inc. DCAG Contact: Tom Bronack Phone: (718) 591-5553 Email: [email protected] Fax: (718) 380-7322
Business Continuity and Disaster Recovery Job Descriptions Table of Contents Business Continuity Services Organization Chart... 2 Director Business Continuity Services Group... 3 Manager of Business Recovery
Business Continuity Policy
Business Continuity Policy Page 1 of 15 Business Continuity Policy First published: Amendment record Version Date Reviewer Comment 1.0 07/01/2014 Debbie Campbell 2.0 11/07/14 Vicky Ryan Updated to include
Business Continuity Management Planning Methodology
, pp.9-16 http://dx.doi.org/10.14257/ijdrbc.2015.6.02 Business Continuity Management Planning Methodology Dr. Goh Moh Heng, Ph.D., BCCLA, BCCE, CMCE, CCCE, DRCE President, BCM Institute [email protected]
NEEDS BASED PLANNING FOR IT DISASTER RECOVERY
The Define/Align/Approve Reference Series NEEDS BASED PLANNING FOR IT DISASTER RECOVERY Disaster recovery planning is essential it s also expensive. That s why every step taken and dollar spent must be
CONTINUITY OF OPERATIONS PLAN TEMPLATE
CONTINUITY OF OPERATIONS PLAN TEMPLATE For Long-Term Care Facilities CALIFORNIA ASSOCIATION OF HEALTH FACILITIES DISASTER PREPAREDNESS PROGRAM TABLE OF CONTENTS TABLE OF CONTENTS...2 SECTION 1: INTRODUCTION...3
University of Michigan Disaster Recovery / Business Continuity Administrative Information Systems 4/6/2004 1
University of Michigan Disaster Recovery / Business Continuity Administrative Information Systems. 1 Michigan Administrative Information Services (MAIS) MAIS is responsible for the production support of
Disaster Preparedness & Response
3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 A B C E INTRODUCTION AND PURPOSE REVIEW ELEMENTS ABBREVIATIONS NCUA REFERENCES EXTERNAL REFERENCES Planning - Ensuring
Business Continuity Management Program Development Guide
Business Continuity Management Program Development Guide Prepared by The NS Emergency Management Office, Winter 2012 Version 1.1 Page 2 of 24 Document Revision History Date Author Revision Notes Fall 2011
NORTH HAMPSHIRE CLINICAL COMMISSIONING GROUP BUSINESS CONTINUITY MANAGEMENT POLICY AND PLAN (COR/017/V1.00)
NORTH HAMPSHIRE CLINICAL COMMISSIONING GROUP BUSINESS CONTINUITY MANAGEMENT POLICY AND PLAN (COR/017/V1.00) Subject and version number of document: Serial Number: Business Continuity Management Policy
Emergency Preparedness Tips and Actions for the Workplace
Emergency Preparedness Tips and Actions for the Workplace Is Your Business Disaster Ready? Disaster and emergencies can happen anytime and anywhere in Minnesota. 52 Presidential Disaster Declarations between
Tips and techniques a typical audit programme
Auditing Business Continuity Planning Tips and techniques a typical audit programme Karen Wills, Senior Internal Auditor St James s Place Wealth Management February 2014 Contents Background Roles and Responsibilities
