Overview. Emergency Response. Crisis Management
|
|
|
- Crystal Moore
- 10 years ago
- Views:
Transcription
1 Prudential Financial s Preparedness Strategy Overview Emergency Response, Crisis Management, Business Continuation, Technology Disaster Recovery & Health Crisis Preparedness Prudential is committed to providing uninterrupted service to our customers, protecting the assets they have entrusted with us and safeguarding our associates and business resources. Overview The programs and plans we have put in place ensure the continuity of business and that we are there when our customers and business partners need us. Our Preparedness Strategy includes five areas: 1. Emergency Response 2. Crisis Management 3. Business Continuation 4. Technology Disaster Recovery 5. Health Crisis Preparedness The areas are built on programs, policies, standards, plans and training. We continually maintain and exercise our programs and plans according to the policies and standards. We have established objectives, metrics and reporting to provide a concise status of our readiness. Our programs and plans leverage our diversity in personnel, locations and businesses as well as our global presence and robust infrastructure. These attributes ensure that we are prepared to address events of any magnitude that may threaten to disrupt our business operations. Emergency Response Emergency Response to events is managed locally by a team consisting of facilities, security and medical personnel. Their role is to respond to the event in their location and minimizing impact to personnel, guests, assets and buildings. Their primary focus is life, safety and minimizing impact. Think of our facilities, security and medical personnel as Prudential s internal first responders. In responding to emergencies, the facilities, security and medical personnel adhere to their established protocols and procedures. As part of their response, they will interact with the public sector first responders (police, fire and medical). Crisis Management Our Crisis Management Program includes the monitoring, response, communication, escalation and coordination activities required to effectively manage any event that may impact our services, associates or resources. Our escalation process and response protocols assist us in handling any situation whether it requires our businesses continuation plans to be activated, is classified as a crisis or only requires monitoring. The following are six important elements within the Prudential Crisis Management Program: Prepared by Prudential Corporate Business Continuation and Crisis Management Page 1 of 5
2 1. Early warning mechanisms to identify signs and triggers of events that may escalate into a crisis. 2. Analysis and assessment of events to provide both tracking and trend reporting capabilities for domestic and international operations within Prudential. 3. Escalation and communication procedures to ensure that appropriate and consistent actions are taken. 4. Physical and virtual command centers to provide coordinated management of the event. 5. Crisis Management plans to address and document contacts and responsibilities, as well as our response, communication, escalation activities. 6. Trained crisis management teams including an Enterprise Security Crisis Management Team and Local Crisis Management Teams worldwide. Whenever possible and appropriate, we utilize industry accepted tools and processes. We complement these tools and processes with internally developed systems to provide costeffective solutions for preparedness. For example, we use an emergency notification system to quickly communicate with our associates through various communication devices. We partner with public sector entities and private sector peers for situational awareness and best practices. Our Crisis Management Program has focused on preparing for events ranging from active shooter and missing employees to civil unrest and severe weather. Business Continuation Our commitment to providing continued service and safeguarding our customers and shareholders interests means that we must ensure that we are prepared to continue critical business functions in the event of any disruptions and outages. This commitment and responsibility, down to the employee level, is documented in our standards and reinforced in our training programs. Where the Crisis Management Program focuses on our response to and management of events which may impact our operations, Business Continuation planning (BC) is a critical preparedness component to ensure our operations can continue or recover within expected timeframes. Business Continuation is the core of our Company s readiness state, and we believe we have a solid foundation in place as illustrated by the following attributes: 1. A centralized, enterprise wide Business Continuation Office accountable for developing and maintaining corporate standards (and validating those standards against industry practices such as US PS-PREP, NFPA1600, BS25999, FFIEC BCP Handbook, ISO Standard and COBIT Framework), procedures and training, as well as coordinating exercises, quality reviews and reporting. 2. A strong Business Continuation community with clearly defined roles and accountability at both the corporate and business division level supports the development and implementation of strategies. Every Business Group has a designated Business Continuation Officer responsible for applying the corporate standards within their organization and departmental Business Continuation Prepared by Prudential Corporate Business Continuation and Crisis Management Page 2 of 5
3 Planners responsible for assessing their business functions criticality, developing plans to recover those functions and exercising those plans. 3. We use industry-standard planning tools, defined service level metrics for testing functions, a well-documented training program, and standardized reporting to monitor risk and compliance. 4. Planning based on impact analysis and risk assessment. 5. A redundant system infrastructure utilizing our geographically dispersed data centers, recovery sites and vendor solutions (see the Technology Disaster Recovery section). 6. Alternate work area recovery sites including internal Hot Sites (locations available immediately) and Warm Sites (dual purpose and vendor locations available within 48 hours of plan activation). In addition, Prudential has a national United States contract with a leading recovery vendor (for network and work area components including over 1,600 recovery seats) and local solutions for non-usa locations. 7. A strong remote access and Work-From-Home infrastructure that allows critical personnel who do not need to perform their function from the office, to continue to work from any location. A comprehensive business continuation plan must take into consideration the different threats facing each business function, process and location. To address each threat specifically would be expensive and administratively difficult to maintain. To resolve this issue, Prudential follows the approach of: a) Focusing on the resulting impact, not only the threat; and b) Assessing the most likely threat and risk for the business function, location and region. In focusing on the impact, we have identified that different threats would cause similar impact and therefore could be addressed by similar solutions. The impact is categorized in outage scenarios and our business continuation standards include the requirement to plan for the following outage scenarios: 1. A power outage 2. A building is unavailable 3. A computer application is unavailable 4. A data center is unavailable 5. An internal or external dependency (including vendors and infrastructure) is unavailable 6. A high percentage of personnel is unavailable or limited 7. The resources within a whole city are unavailable or limited 8. The resources within a whole region are unavailable or limited A regional outage (scenario #8) is an event whose effects could feasibly cause a substantial disruption to business in the region. Prudential s business continuation, security and risk experts work with a leading risk management firm in performing assessments and assigning risk ratings to each region where we have operations. The ratings identify the specific regional threats for which business continuation planners must plan. Prepared by Prudential Corporate Business Continuation and Crisis Management Page 3 of 5
4 A viable business continuation plan must be tested. We require testing the recovery of all business functions based on their criticality. We continually evaluate risks and enhance our standards, and as a result we now require each of our businesses to: Plan for a reduced workforce due to health crisis (outage scenario #6) in conjunction with the Health Crisis Program. Our Health Crisis planning is focused on prioritizing critical work, defining essential personnel and critical vendors, and then developing supporting strategies to ensure that critical work can continue. Our strategies are comprehensive and include the most viable options, such as work-from-home solutions and cross training. Identify/map all critical dependencies (other business functions, systems/applications and vendors) and plan for their unavailability (outage scenario #5). Plan for regional outages (outage scenario #8) based risk ratings. Test their plans and solutions more comprehensively and in coordination for a given outage scenario. Assign personnel with appropriate levels and skill sets to BC roles. Technology Disaster Recovery Our centralized technology infrastructure promotes a secure, efficient, and controlled dataprocessing environment across the enterprise. Prudential s Global Business & Technology Solutions unit manages one of the most robust data processing operations in the industry, keeping our technology operations safe and secure. Key highlights include: All data centers have fully redundant power sources and utilize the latest innovations in fire protection. Prudential has a state-of-the-art, round-the-clock Operations Control Center that provides 24x7 intrusion detection, problem management process and centralized operations monitoring. Prudential s technology operations employ the latest technology and processes for Back-up/Recovery and leverages multiple internal data centers providing recovery capabilities for mainframe, distributed, (i.e., includes storage, database and other components), and network infrastructure. All critical Prudential data is imaged and backed up daily, then shipped to an off-site location as an additional fail safe system. Prudential utilizes multiple Call Centers and Remote Access Capabilities to allow business to continue across various locations. Prudential conducts multiple tests on a regular basis, including four major data center test dates in the U.S. and full system recovery tests annually. The Global Business and Technology Solutions (GBTS) unit BC Officer provides centralized technology BC planning, coordination and support. The GBTS BC Officer serves as the liaison between the Corporate Business Continuation Office and Prudential's technology/infrastructure support teams. GBTS manages the Enterprise IT Prepared by Prudential Corporate Business Continuation and Crisis Management Page 4 of 5
5 infrastructure supporting Business Continuation recovery for Prudential's various lines of business. Prudential s Information Security Office ensures that Prudential s information is kept safe and secure. Highlights of the Information Security program include: Enhanced controls to stay a step ahead of emerging threats including State-of-the-Art data protection and monitoring tools with 24x7 incident response capability. Ongoing virus and malware protection and filtering. Innovative patch management and response readiness. Recurring network-level and application-level penetration testing. Ongoing awareness campaign with Social Engineering focus and recurring testing and real time user "coaching". Continual growth in correlation and intelligence capability to quickly defend against targeted malware. Detailed code review workflow within application quality assurance process to identify and remediate potential vulnerabilities. Health Crisis Preparedness Prudential s preparedness in the event of a reduced workforce also addresses various health crisis scenarios. In 2005, Prudential formed a Pandemic Preparedness Planning Team that has matured into a Health Crisis Team, chaired by Prudential s Chief Medical Officer. This corporate group has developed a plan that addresses the needs of both our domestic and international businesses. This comprehensive plan has enabled us to analyze, train and test to address potential health threats including a new severe strain of the influenza virus, biological events or chemical hazards. The following are key elements of the plan: 1. Monitoring of health concerns around the globe and early warning mechanisms 2. Response protocols based on severity levels and phases 3. Screening tools, social distancing procedures and cleaning/sanitizing protocols to limit exposure and spread 4. A web-based health tool to assist associates with health-related questions and provide information to help them prepare in the event of a health crisis 5. Prudential s 24-hour Facilities Status extranet site and Facilities Status Hotline, which provides continuous updates to employees regarding Company information or building closures 6. Utilization of Crisis Management and Business Continuation programs and personnel to respond to a health crisis 7. Prudential s Employee Assistance Program offers a number of support resources for employees and their family members during times of crisis For more information on Prudential Financial s Preparedness Strategy and individual programs, contact: The Corporate Business Continuation and Crisis Management Team ; [email protected] OR The Global Security Command Center (staffed 24x7): ; [email protected] Prepared by Prudential Corporate Business Continuation and Crisis Management Page 5 of 5
Appendix 3 Disaster Recovery Plan
Appendix 3 Disaster Recovery Plan December 13, 2006 Revision XXQwest Government Services, Inc. 4250 North Fairfax DriveArlington, VA 22203(Delete this page)revision history Revision Number Revision Date
DRAFT BUSINESS CONTINUITY MANAGEMENT POLICY
DRAFT BUSINESS CONTINUITY MANAGEMENT POLICY This document outlines a set of policies and procedures for formalising a Business Continuity programme, and provides guidelines for developing, maintaining
BCP and DR. P K Patel AGM, MoF
BCP and DR P K Patel AGM, MoF Key difference between BS 25999 and ISO 22301 ISO 22301 puts a much greater emphasis on setting the objectives, monitoring performance and metrics aligning BC to top management
Risk mitigation for business resilience White paper. A comprehensive, best-practices approach to business resilience and risk mitigation.
Risk mitigation for business resilience White paper A comprehensive, best-practices approach to business resilience and risk mitigation. September 2007 2 Contents 2 Overview: Why traditional risk mitigation
Interagency Statement on Pandemic Planning
Interagency Statement on Pandemic Planning PURPOSE The FFIEC agencies 1 are jointly issuing guidance to remind financial institutions that business continuity plans should address the threat of a pandemic
CENTRAL BANK OF KENYA (CBK) PRUDENTIAL GUIDELINE ON BUSINESS CONTINUITY MANAGEMENT (BCM) FOR INSTITUTIONS LICENSED UNDER THE BANKING ACT
CENTRAL BANK OF KENYA (CBK) PRUDENTIAL GUIDELINE ON BUSINESS CONTINUITY MANAGEMENT (BCM) FOR INSTITUTIONS LICENSED UNDER THE BANKING ACT JANUARY 2008 GUIDELINE ON BUSINESS CONTINUITY GUIDELINE CBK/PG/14
Building and Maintaining a Business Continuity Program
Building and Maintaining a Business Continuity Program Successful strategies for financial institutions for effective preparation and recovery Table of Contents Introduction...3 This white paper was written
BUSINESS CONTINUITY POLICY
BUSINESS CONTINUITY POLICY Last Review Date Approving Body n/a Audit Committee Date of Approval 9 th January 2014 Date of Implementation 1 st February 2014 Next Review Date February 2017 Review Responsibility
OPERATIONAL CAPABILITY TECHNOLOGY QUESTIONNAIRE
OPERATIONAL CAPABILITY TECHNOLOGY QUESTIONNAIRE Please provide all relevant documents responsive to the information requests listed within each area below. In addition to the specific documents requested,
Data Center Assistance Group, Inc. DCAG Contact: Tom Bronack Phone: (718) 591-5553 Email: [email protected] Fax: (718) 380-7322
Business Continuity and Disaster Recovery Job Descriptions Table of Contents Business Continuity Services Organization Chart... 2 Director Business Continuity Services Group... 3 Manager of Business Recovery
2015 CEO & Board University Taking Your Business Continuity Plan To The Next Level. Tracy L. Hall, MBCP
2015 CEO & Board University Taking Your Business Continuity Plan To The Next Level Tracy L. Hall, MBCP MEMBER OF PKF NORTH AMERICA, AN ASSOCIATION OF LEGALLY INDEPENDENT FIRMS 2015 Wolf & Company, P.C.
FFIEC Cybersecurity Assessment Tool
Overview In light of the increasing volume and sophistication of cyber threats, the Federal Financial Institutions Examination Council 1 (FFIEC) developed the Cybersecurity Tool (), on behalf of its members,
Institute for Business Continuity Training 1623 Military Road, # 377 Niagara Falls, NY 14304-1745
ECP - 601: Effective Business Continuity Management: ISO 22301 This 3-day course provides an intensive, hands-on workshop covering all major aspects for the design of an effective Business Continuity Plan
DESIGNATED CONTRACT MARKET OPERATIONAL CAPABILITY TECHNOLOGY QUESTIONNAIRE
DESIGNATED CONTRACT MARKET OPERATIONAL CAPABILITY TECHNOLOGY QUESTIONNAIRE Please provide all relevant documents responsive to the information requests listed within each area below. In addition to the
Intel Business Continuity Practices
Intel Business Continuity Practices As a global corporation with locations and suppliers all over the world, Intel requires every designated Intel organization to embed business continuity as a core business
South West Lincolnshire NHS Clinical Commissioning Group Business Continuity Policy
South West Lincolnshire NHS Clinical Commissioning Group Business Continuity Policy Reference No: CG 01 Version: Version 1 Approval date 18 December 2013 Date ratified: 18 December 2013 Name of Author
Overview of how to test a. Business Continuity Plan
Overview of how to test a Business Continuity Plan Prepared by: Thomas Bronack Phone: (718) 591-5553 Email: [email protected] BRP/DRP Test Plan Creation and Exercise Page: 1 Table of Contents BCP/DRP Test
Contingency Planning Guide
Institutional and Sector Modernisation Facility ICT Standards Contingency Planning Guide Document number: ISMF-ICT/3.03 - ICT Security/MISP/SD/CP Version: 1.20 Project Funded by the European Union 1 Document
DISASTER RECOVERY PLANNING GUIDE
DISASTER RECOVERY PLANNING GUIDE AN INTRODUCTION TO BUSINESS CONTINUITY PLANNING FOR JD EDWARDS SOFTWARE CUSTOMERS www.wts.com WTS Disaster Recovery Planning Guide Page 1 Introduction This guide will provide
Emergency Response Plan
Emergency Response Plan Public Version Contents INTRODUCTION... 4 SCOPE... 5 DEFINITION OF AN EMERGENCY... 5 AUTHORITY... 6 ACTION PRIOR TO DECLARATION... 6 FREEDOM OF INFORMATION & PRIVACY PROTECTION...
Ohio Supercomputer Center
Ohio Supercomputer Center IT Business Continuity Planning No: Effective: OSC-13 06/02/2009 Issued By: Kevin Wohlever Director of Supercomputer Operations Published By: Ohio Supercomputer Center Original
EMERGENCY PREPAREDNESS POLICY
EMERGENCY PREPAREDNESS POLICY CONTROLLED DOCUMENT CATEGORY: CLASSIFICATION: Policy Emergency Planning PURPOSE This document sets out the strategic framework for the management of emergency preparedness
Why Should Companies Take a Closer Look at Business Continuity Planning?
whitepaper Why Should Companies Take a Closer Look at Business Continuity Planning? How Datalink s business continuity and disaster recovery solutions can help organizations lessen the impact of disasters
10-POINT FRAMEWORK. for Pandemic Influenza Business Preparedness
10-POINT FRAMEWORK for Pandemic Influenza Business Preparedness In using this business framework, keep in mind the following principles: The framework is intended to serve as a guideline to trigger business
Temple university. Auditing a business continuity management BCM. November, 2015
Temple university Auditing a business continuity management BCM November, 2015 Auditing BCM Agenda 1. Introduction 2. Definitions 3. Standards 4. BCM key elements IT Governance class - IT audit program
THORNBURG INVESTMENT MANAGEMENT THORNBURG INVESTMENT TRUST. Business Continuity Plan
THORNBURG INVESTMENT MANAGEMENT THORNBURG INVESTMENT TRUST Business Continuity Plan June 2012 Purpose The purpose of this Business Continuity Plan ( BCP ) is to define the strategies and the plans which
Continuity of Business
White Paper Continuity of Business SAS Continuity of Business initiative reflects our commitment to our employees, to our customers, and to all of the stakeholders in our global business community to be
state of south dakota Bureau of Information & Telecommunications Provide a Reliable, Secure & Modern Infrastructure services well-designed innovative
Strategic Plan 2015-2017 state of south dakota Bureau of Information & Telecommunications 1GOAL ONE: Provide a Reliable, Secure & Modern Infrastructure services security technology assets well-designed
BUSINESS CONTINUITY PLAN OVERVIEW
BUSINESS CONTINUITY PLAN OVERVIEW INTRODUCTION The purpose of this document is to provide Loomis customers with an overview of the company s Business Continuity Plan (BCP). Because of the specific and
Testimony of. Edward L. Yingling. On Behalf of the AMERICAN BANKERS ASSOCIATION. Before the. Subcommittee on Oversight and Investigations.
Testimony of Edward L. Yingling On Behalf of the AMERICAN BANKERS ASSOCIATION Before the Subcommittee on Oversight and Investigations Of the Committee on Financial Services United States House of Representatives
Business Continuity Management Software
Business Continuity Management (BCM) Software 1 Business Continuity Management Software All In One Continuity Management Solution A Single Platform Approach Manage entire lifecycle with comprehensive BC
Disaster Recovery Policy
Disaster Recovery Policy INTRODUCTION This policy provides a framework for the ongoing process of planning, developing and implementing disaster recovery management for IT Services at UCD. A disaster is
Top Ten Technology Risks Facing Colleges and Universities
Top Ten Technology Risks Facing Colleges and Universities Chris Watson, MBA, CISA, CRISC Manager, Internal Audit and Risk Advisory Services [email protected] April 23, 2012 Overview Technology
SWAP EXECUTION FACILITY OPERATIONAL CAPABILITY TECHNOLOGY QUESTIONNAIRE
SWAP EXECUTION FACILITY OPERATIONAL CAPABILITY TECHNOLOGY QUESTIONNAIRE Please provide all relevant documents responsive to the information requests listed within each area below. In addition to the specific
Appendix J: Strengthening the Resilience of Outsourced Technology Services
Appendix J: Strengthening the Resilience of Outsourced Technology Services Background and Purpose Many financial institutions depend on third-party service providers to perform or support critical operations.
Building a strong business continuity plan
Building a strong business continuity plan Protect your clients and firm with a well-planned business continuity plan A solid business continuity plan (BCP) is about more than simply staying in compliance.
Thanks to Jim Goble, National City Corporation, for providing the resource material contained in this guide.
Pandemic Planning for Business Thanks to Jim Goble, National City Corporation, for providing the resource material contained in this guide. CHARACTERISTICS AND CHALLENGES OF A PANDEMIC Source: http://www.pandemicflu.gov/general/whatis.html
OREGON STATE UNIVERSITY MASTER EMERGENCY MANAGEMENT PLAN
OREGON STATE UNIVERSITY MASTER EMERGENCY MANAGEMENT PLAN Last Edit 2/8/2011 OVERVIEW This document provides a management framework for responding to incidents that may threaten the health and safety of
DISASTER RECOVERY PLANNING FOR CITY COMPUTER FACILITIES
APPENDIX 1 DISASTER RECOVERY PLANNING FOR CITY COMPUTER FACILITIES March 2008 Auditor General s Office Jeffrey Griffiths, C.A., C.F.E. Auditor General City of Toronto TABLE OF CONTENTS EXECUTIVE SUMMARY...1
Principles for BCM requirements for the Dutch financial sector and its providers.
Principles for BCM requirements for the Dutch financial sector and its providers. Platform Business Continuity Vitale Infrastructuur Financiële sector (BC VIF) Werkgroep BCM requirements 21 September 2011
Creating a Business Continuity Plan for your Health Center
Creating a Business Continuity Plan for your Health Center 1 Page Left Intentionally Blank 2 About This Manual This tool is the result of collaboration between the Primary Care Development Corporation
Business Continuity Plan
Business Continuity Plan October 2007 Agenda Business continuity plan definition Evolution of the business continuity plan Business continuity plan life cycle FFIEC & Business continuity plan Questions
Kuala Lumpur, Malaysia, 25 26 May 2010. Report
Cooperative Arrangement for the Prevention of Spread of Communicable Disease through Air travel (CAPSCA) Workshop / Seminar on Aviation Business Continuity Planning Kuala Lumpur, Malaysia, 25 26 May 2010
BUSINESS CONTINUITY MANAGEMENT GUIDELINES FOR BANKS AND FINANCIAL INSTITUTIONS
BUSINESS CONTINUITY MANAGEMENT GUIDELINES FOR BANKS AND FINANCIAL INSTITUTIONS DIRECTORATE OF BANKING SUPERVISION AUGUST 2009 TABLE OF CONTENTS PAGE 1.0 INTRODUCTION..3 1.1 Background...3 1.2 Citation...3
JOB ANNOUNCEMENT. Chief Security Officer, Cheniere Energy, Inc.
JOB ANNOUNCEMENT Chief Security Officer, Cheniere Energy, Inc. Position Overview The Vice President and Chief Security Risk Officer (CSRO) reports to the Chairman, Chief Executive Officer and President
EMERGENCY PREPAREDNESS PLAN Business Continuity Plan
EMERGENCY PREPAREDNESS PLAN Business Continuity Plan GIS Bankers Insurance Group Powered by DISASTER PREPAREDNESS Implementation Small Business Guide to Business Continuity Planning Surviving a Catastrophic
The University of Iowa. Enterprise Information Technology Disaster Plan. Version 3.1
Version 3.1 November 22, 2004 TABLE OF CONTENTS PART 1: DISASTER RECOVERY EXPECTATIONS... 3 OVERVIEW...3 EXPECTATIONS PRIOR TO AN INCIDENT OCCURRENCE...3 EXPECTATIONS PRIOR TO A DISASTER OCCURRENCE...4
PREPARING YOUR ORGANIZATION FOR PANDEMIC FLU. Pandemic Influenza:
PREPARING YOUR ORGANIZATION FOR PANDEMIC FLU Pandemic Influenza: What Business and Organization Leaders Need to Know About Pandemic Influenza Planning State of Alaska Frank H. Murkowski, Governor Department
Page Administrative Summary...3 Introduction Comprehensive Approach Conclusion
TABLE OF CONTENTS Page Administrative Summary...3 Introduction Comprehensive Approach Conclusion PART 1: PLANNING General Considerations and Planning Guidelines... 4 Policy Group Oversight Committee Extended
All-Hazard Continuity of Operations Plan. [Department/College Name] [Date]
d All-Hazard Continuity of Operations Plan [Department/College Name] [Date] TABLE OF CONTENTS SECTION I: INTRODUCTION... 3 Executive Summary... 3 Introduction... 3 Goal... 4 Purpose... 4 Objectives...
MEDIA RELEASE. IOSCO reports on business continuity plans for trading venues and intermediaries
IOSCO/MR/54/2015 Madrid, 22 December 2015 IOSCO reports on business continuity plans for trading venues and intermediaries The Board of the (IOSCO) today published two reports that seek to enhance the
Business Continuity Management and The Extended Enterprise
WHITE PAPER Business Continuity Business Continuity Management and The Extended Enterprise Continuous Availability in a Real-Time Economy Business Continuity is receiving a great deal of attention in the
STEP-BY-STEP BUSINESS CONTINUITY AND EMERGENCY PLANNING MAY 27 2015
STEP-BY-STEP BUSINESS CONTINUITY AND EMERGENCY PLANNING MAY 27 2015 AGENDA: Emergency Management Business Continuity Planning Q & A MONTH DAY, YEAR TITLE OF THE PRESENTATION 2 CANADIAN RED CROSS Disaster
Cyber Security Incident Handling Policy. Information Technology Services Center (ITSC) of The Hong Kong University of Science and Technology
Cyber Security Incident Handling Policy Information Technology Services Center (ITSC) of The Hong Kong University of Science and Technology Date: Oct 9, 2015 i Document Control Document Owner Classification
Preparing for the Worst: Disaster Recovery and Business Continuity Planning for Investment Firms An Eze Castle Integration ebook
Preparing for the Worst: Disaster Recovery and Business Continuity Planning for Investment Firms An Eze Castle Integration ebook Table of Contents 1. Introduction to Business Continuity Planning and Disaster
Computer Security Incident Response Plan. Date of Approval: 23- FEB- 2015
Name of Approver: Mary Ann Blair Date of Approval: 23- FEB- 2015 Date of Review: 22- FEB- 2015 Effective Date: 23- FEB- 2015 Name of Reviewer: John Lerchey Table of Contents Table of Contents... 2 Introduction...
Guideline on Business Continuity Management
Circular No. 033/B/2009-DSB/AMCM (Date: 14/8/2009) Guideline on Business Continuity Management The Monetary Authority of Macao (AMCM), under the powers conferred by Article 9 of the Charter approved by
Business Continuity Overview
Business Continuity Overview Beverley A. Retjos Senior Manager WW SWG Security & Controls 03/12/07 Business Continuity Management (BCM) Process of ensuring that a business is prepared to survive any disruption
Domain 1 The Process of Auditing Information Systems
Certified Information Systems Auditor (CISA ) Certification Course Description Our 5-day ISACA Certified Information Systems Auditor (CISA) training course equips information professionals with the knowledge
IT Disaster Recovery Plan Template
HOPONE INTERNET CORP IT Disaster Recovery Plan Template Compliments of: Tim Sexton 1/1/2015 An information technology (IT) disaster recovery (DR) plan provides a structured approach for responding to unplanned
Global Statement of Business Continuity
Business Continuity Management Version 1.0-2014 Date October 18, 2014 Status Author Business Continuity Management (BCM) Page 1 of 8 Table of Contents 1. Credit Suisse Business Continuity Statement 3 2.
Boost BCM Program Maturity: Arm Your Team with the Right Tools. Jason Zimmerman Vice President Operations
Boost BCM Program Maturity: Arm Your Team with the Right Tools Jason Zimmerman Vice President Operations Gartner Rates Incident Management Systems Benefit High In their 2014 Hype Cycle Report, Gartner
SECTION 15 INFORMATION TECHNOLOGY
SECTION 15 INFORMATION TECHNOLOGY 15.1 Purpose 15.2 Authorization 15.3 Internal Controls 15.4 Computer Resources 15.5 Network/Systems Access 15.6 Disaster Recovery Plan (DRP) 15.1 PURPOSE The Navajo County
BUSINESS IMPACT ANALYSIS.5
Table of Contents I. GENERAL.3 Introduction.3 Scope.3 Components.3 II. BUSINESS IMPACT ANALYSIS.5 Academic Affairs...5 Finance and Administration.6 Planning and Accountability..8 Student Affairs.8 Institutional
Security in Space: Intelsat Information Assurance
Security in Space: Intelsat Information Assurance 14/03/6997 Intelsat Information Assurance Intelsat maintains the highest standards of Information Assurance by assessing and building the Intelsat infrastructure,
How to Design and Implement a Successful Disaster Recovery Plan
How to Design and Implement a Successful Disaster Recovery Plan Feb. 21 ASA Office-Administrative Section is Sponsored by Today s ASAPro Webinar is Brought to You by the How to Ask a Question Questions
BUSINESS CONTINUITY PLANNING GUIDELINES
BUSINESS CONTINUITY PLANNING GUIDELINES Washington University in St. Louis The purpose of this guide is to serve as a tool to all departments, divisions, and labs across the University in building a Business
How To Prepare For A Disaster
Building an effective Tabletop Exercise Presented by: Ken M. Shaurette, CISSP, CISA, CISM, CRISC FIPCO Director IT Services 3/26/2013 #1 Continuity Plan Testing Flowchart 3/26/2013 #2 1 Ongoing Multi-Year
INCIDENT RESPONSE MANAGEMENT PLAN DECEMBER 2015
INCIDENT RESPONSE MANAGEMENT PLAN DECEMBER 2015 DOCUMENT CONTROL Document Controller: Resilience Coordinator Date of last update: December 2015 Date of next update: December 2016 HPRM reference: HW2007-900/27/9.009
How to Plan for Disaster Recovery and Business Continuity
A TAMP Systems White Paper TAMP Systems 1-516-623-2038 www.drsbytamp.com How to Plan for Disaster Recovery and Business Continuity By Tom Abruzzo, President and CEO Contents Introduction 1 Definitions
DIVISION OF INFORMATION SECURITY (DIS) Information Security Policy Threat and Vulnerability Management V1.0 April 21, 2014
DIVISION OF INFORMATION SECURITY (DIS) Information Security Policy Threat and Vulnerability Management V1.0 April 21, 2014 Revision History Update this table every time a new edition of the document is
Plan Development Getting from Principles to Paper
Plan Development Getting from Principles to Paper March 22, 2015 Table of Contents / Agenda Goals of the workshop Overview of relevant standards Industry standards Government regulations Company standards
Why Use Business Continuity Management Software? Bratislava, Slovak Republic Steve Kokol Vice President of International Sales. www.sungardas.
Why Use Business Continuity Management Software? Bratislava, Slovak Republic Steve Kokol Vice President of International Sales www.sungardas.com Risk is a business issue, NOT an IT issue! Business Continuity
www.pwc.com Business Resiliency Business Continuity Management - January 14, 2014
www.pwc.com Business Resiliency Business Continuity Management - January 14, 2014 Agenda Key Definitions Risks Business Continuity Management Program BCM Capability Assessment Process BCM Value Proposition
BUSINESS CONTINUITY STRATEGY 2014-2017
BUSINESS CONTINUITY STRATEGY 2014-2017 This strategy covers the period 01 April 2014 31 March 2017 and was approved by the Major Incident Working Group 19.03.2014 Caroline Rushmer Major Incident and Business
SCADA Business Continuity and Disaster Recovery. Presented By: William Biehl, P.E. 913-601-0104 (mobile) [email protected]
SCADA Business Continuity and Disaster Recovery Presented By: William Biehl, P.E. 913-601-0104 (mobile) [email protected] Business Continuity Planning, a Sound Process A Business Continuity Plan: "A
ASX CLEAR (FUTURES) OPERATING RULES Guidance Note 10
BUSINESS CONTINUITY AND DISASTER RECOVERY The purpose of this Guidance Note The main points it covers To assist participants to understand the disaster recovery and business continuity arrangements they
Federal Financial Institutions Examination Council FFIEC BCP. Business Continuity Planning MARCH 2003 IT EXAMINATION H ANDBOOK
Federal Financial Institutions Examination Council FFIEC Business Continuity Planning MARCH 2003 BCP IT EXAMINATION H ANDBOOK TABLE OF CONTENTS INTRODUCTION... 1 BOARD AND SENIOR MANAGEMENT RESPONSIBILITIES...
Enterprise Resiliency & Response Program Customer Overview May 2014
Customer Overview May 2014 Table of Contents Section I Enterprise Resiliency & Response Overview... 1 Background... 1 Mission Statement... 1 Policy... 1 Objective... 2 Program Strategy... 2 The Layered
Business Continuity / Disaster Recovery Context
Capability Business Continuity / Disaster Recovery Context What is Business Continuity? The Business Continuity Program Life Cycle Copyright: Virtual Corporation, 1994 2006 Modified U.S. DoD Graphic Normal
LAMAR STATE COLLEGE - ORANGE INFORMATION RESOURCES SECURITY MANUAL. for INFORMATION RESOURCES
LAMAR STATE COLLEGE - ORANGE INFORMATION RESOURCES SECURITY MANUAL for INFORMATION RESOURCES Updated: June 2007 Information Resources Security Manual 1. Purpose of Security Manual 2. Audience 3. Acceptable
Federal Financial Institutions Examination Council FFIEC BCP. Business Continuity Planning FEBRUARY 2015 IT EXAMINATION H ANDBOOK
Federal Financial Institutions Examination Council FFIEC Business Continuity Planning BCP FEBRUARY 2015 IT EXAMINATION H ANDBOOK Table of Contents Introduction 1 Board and Senior Management Responsibilities
Table of Contents ESF-12-1 034-00-13
Table of Contents Primary Coordinating Agency... 2 Local Supporting Agencies... 2 State, Regional, and Federal Agencies and Organizations... 2 Purpose... 3 Situations and Assumptions... 4 Direction and
What is an Exercise? Agenda. Types of Exercises. Tabletop Exercises for Executives. Defining the Tabletop Exercise. Types of Tabletop Exercises
Tabletop Exercises for Executives Kathy Lee Patterson, CBCP, PMP Independence Blue Cross Defining the Tabletop Exercise Types of Tabletop Exercises Advantages to conducting Exercises Agenda 12 Step Approach
It also provides guidance for rapid alerting and warning to key officials and the general public of a potential or occurring emergency or disaster.
Emergency Support Function #2 Communications ESF Coordinator: Information Technology Department Support Agencies: Tucson Fire Department Parks and Recreation Department Tucson Police Department Tucson
<Client Name> IT Disaster Recovery Plan Template. By Paul Kirvan, CISA, CISSP, FBCI, CBCP
IT Disaster Recovery Plan Template By Paul Kirvan, CISA, CISSP, FBCI, CBCP Revision History REVISION DATE NAME DESCRIPTION Original 1.0 2 Table of Contents Information Technology Statement
Business Resilience Communications. Planning and executing communication flows that support business continuity and operational effectiveness
Business Resilience Communications Planning and executing communication flows that support business continuity and operational effectiveness Introduction Whispir have spent the last 14 years helping organisations
Business Continuity and Disaster Recovery Planning
Business Continuity and Disaster Recovery Planning Jennifer Brandt, CISA A p r i l 16, 2015 HISTORY OF STINNETT & ASSOCIATES Stinnett & Associates (Stinnett) is a professional advisory firm offering services
Business Continuity (Policy & Procedure)
Business Continuity (Policy & Procedure) Publication Scheme Y/N Can be published on Force Website Department of Origin Force Operations Policy Holder Ch Supt Head of Force Ops Author Business Continuity
ASX SETTLEMENT OPERATING RULES Guidance Note 10
BUSINESS CONTINUITY AND DISASTER RECOVERY The purpose of this Guidance Note The main points it covers To assist participants to understand the disaster recovery and business continuity arrangements they
IT Security Incident Management Policies and Practices
IT Security Incident Management Policies and Practices Information Technology Services Center (ITSC) of The Hong Kong University of Science and Technology Date: Feb 6, 2015 i Document Control Document
Technology Infrastructure Services
LOB #303: DISASTER RECOVERY Technology Infrastructure Services Purpose Disaster Recovery (DR) for IT is a capability to restore enterprise-wide technology infrastructure, applications and data that are
