IF DISASTER STRIKES IS YOUR BUSINESS READY?



Similar documents
Continuity of Operations Planning. A step by step guide for business

The 9 Ugliest Mistakes Made with Data Backup and How to Avoid Them

Disaster Recovery and Business Continuity What Every Executive Needs to Know

Business Continuity Planning and Disaster Recovery Planning

Disaster Recovery Plan (DRP) / Business Continuity Plan (BCP)

DISASTER RECOVERY AND CONTINGENCY PLANNING CHECKLIST FOR ICT SYSTEMS

The 7 Disaster Planning Essentials

BCP and DR. P K Patel AGM, MoF

PAPER-6 PART-4 OF 5 CA A.RAFEQ, FCA

Powered by DATTO. Backup vs. Business Continuity: Using a Recovery Time Objective (RTO) to Better Plan for Your Business

Technology Solutions That Make Business Sense. The 10 Disaster Planning Essentials For A Small Business Network

DRAFT Disaster Recovery Policy Template

How to Design and Implement a Successful Disaster Recovery Plan

With 57% of small to medium-sized businesses (SMBs) having no formal disaster

The 10 Disaster Planning Essentials For A Small Business Network

The Shift Cloud Computing Brings to Disaster Recovery

Disaster Recovery Planning

EMERGENCY PREPAREDNESS PLAN Business Continuity Plan

Disaster Recovery Plan Checklist

Disaster Recovery. Hendry Taylor Tayori Limited

DISASTER RECOVERY PLANNING GUIDE

How to Plan for Disaster Recovery and Business Continuity

Whitepaper: Backup vs. Business Continuity

Disaster Recovery Planning Procedures and Guidelines

BUSINESS CONTINUITY MANAGEMENT GUIDELINES FOR BANKS AND FINANCIAL INSTITUTIONS

JUMP START DISASTER RECOVERY PLAN FOR HOSPITALITY

Unit Guide to Business Continuity/Resumption Planning

NCUA LETTER TO CREDIT UNIONS

Interactive-Network Disaster Recovery

11 Common Disaster Planning Mistakes

DISASTER RECOVERY PLANNING

Disaster Recovery Plan Documentation for Agencies Instructions

Disaster Recovery. 1.1 Introduction. 1.2 Reasons for Disaster Recovery. EKAM Solutions Ltd Disaster Recovery

Technology Recovery Plan Instructions

Business Continuity Management

DISASTER RECOVERY PLAN

Business Continuity Planning. Donna Curran, Director Audit and Risk Management February, 2014

Disaster Recovery and Business Continuity Plan

5 Essential Benefits of Hybrid Cloud Backup

Temple university. Auditing a business continuity management BCM. November, 2015

Which Backup Option is Best?

Can Your Business Survive Application Downtime?

Business Continuity Planning and Disaster Recovery Planning. Ed Crowley IAM/IEM

2014 NABRICO Conference

New Clerk Academy. August 13, 2015

White Paper: Backup vs. Business Continuity. Backup vs. Business Continuity: Using RTO to Better Plan for Your Business

CISM Certified Information Security Manager

courtesy of F5 NETWORKS New Technologies For Disaster Recovery/Business Continuity overview f5 networks P

Running Successful Disaster Recovery Tests

A GUIDE TO Business Continuity Planning and Disaster Recovery Solutions

Read this guide and you ll discover:

12 Little-Known Facts and Insider Secrets Every Business Owner Should Know About Backing Up Their Data and Choosing a Remote Backup Service

business continuity plan for:

Information Security Management: Business Continuity Planning. Presentation by Stanislav Nurilov March 9th, 2005 CS 996: Info. Sec. Mgmt.

Business Continuity Planning

NORTH HAMPSHIRE CLINICAL COMMISSIONING GROUP BUSINESS CONTINUITY MANAGEMENT POLICY AND PLAN (COR/017/V1.00)

Clinic Business Continuity Plan Guidelines

Business Continuity Glossary

Building a strong business continuity plan

Disaster Recovery Remote off-site Storage for single server environment

Business Continuity Management For Small to Medium-Sized Businesses

Prepared by Rod Davis, ABCP, MCSA November, 2011

Business Continuity Plan Template

Saving SharePoint. Presented By: Sean McDonough Product Manager, SharePoint Products Idera

Business Continuity Planning and Disaster Recovery Planning

Business Continuity Training and Testing: Narrowing the Gaps

Assessing Your Disaster. Andrews Hooper Pavlik PLC. Andrews Hooper Pavlik PLC

Disaster Recovery Planning

BUSINESS CONTINUITY PLAN OVERVIEW

Overview of Business Continuity Planning Sally Meglathery Payoff

a Disaster Recovery Plan

Preparing for the Worst: Disaster Recovery and Business Continuity Planning for Investment Firms An Eze Castle Integration ebook

This white paper describes the three reasons why backup is a strategic element of your IT plan and why it is critical to your business that you plan

OVERVIEW. In all, this report makes recommendations in 14 areas, such as. Page iii

Blackboard Managed Hosting SM Disaster Recovery Planning Document

CENTRAL BANK OF KENYA (CBK) PRUDENTIAL GUIDELINE ON BUSINESS CONTINUITY MANAGEMENT (BCM) FOR INSTITUTIONS LICENSED UNDER THE BANKING ACT

Top 10 Disaster Recovery Pitfalls

Rapid recovery from bare metal, to dissimilar hardware or to and from virtual environments.

PPSADOPTED: OCT BACKGROUND POLICY STATEMENT PHYSICAL FACILITIES. PROFESSIONAL PRACTICE STATEMENT Developing a Business Continuity Plan

A Study on Cloud Computing Disaster Recovery

Table of contents. Providing continuity for your key business processes. A white paper on HP s Business Continuity and Availability Solutions

A BrightCloud Overview. N3 Computer Recovery on Demand Disaster Recovery for IT

Transcription:

1 IF DISASTER STRIKES IS YOUR BUSINESS READY? DISASTER RECOVERY and BUSINESS CONTINUITY: WHAT YOU NEED TO KNOW Realize the Power of Technology

Many business owners put off disaster planning, perhaps thinking that it won t happen to them. Most business owners would agree that it is a smart choice to have an up-to-date Disaster Recovery and Business Continuity plan that documents the process, policies and procedures to follow in order to protect a business and its assets in the event of a disaster. A plan needs to be designed so that a business can get back up and running as quickly as possible after a disaster. A 011 survey by Symantec revealed that: 0% 1% of small and medium-sized businesses (SMBs) do not have a disaster recovery plan in place. don t think a disaster plan is necessary. Businesses without a plan are flirting with disaster and may ultimately hurt their employees, customers, clients, shareholders, supply chain, and the overall viability of the business. According to the Insurance Information Institute, 0 percent of SMBs that are forced to close because of a disaster will never re-open. Other studies show that between 70 and 90 percent of all businesses hit by a disaster are out of business within two years. Don t be a business without a current plan. Creating one will provide security and peace of mind that your business will be up and running and will survive in the event of a disaster.

Disasters Come in All Shapes and Sizes

What Are Disaster Recovery and Business Continuity Plans? Disaster Recovery Plan A Disaster Recovery Plan defines actions to take in response to a disaster with the goal of restoring the availability of specific services, systems and/or facilities that have been made unavailable by the disaster. Business Continuity Plan A Business Continuity Plan prepares a business well in advance for disasters. It is designed to ensure that following a disaster critical business functions will be available to customers, suppliers, regulators, and other entities.

1 Business Risk Business Impact Disaster Recovery Plan Implement Solutions

6 1 Business Business Risk Begin preparing your plan by considering the risk to your business, employees and customers if any of the following occur: No Internet connection Office burns down Floods destroy all office equipment Massive power outage Computer system sabotage 1 Risk Business Impact Disaster Recovery Plan Implement Solutions Important files and documents accidentally deleted Terrorist attack or other global event

7 Business Impact Identify functions that are critical to your business and the systems required to support them. Consider the impact on your employees, clients, customers, supply chain, legal requirements, loss of revenue, and the company s overall reputation if the following were not available: Access to files, documents Fulfillment system, product order inventory Distribution/Delivery Email 1 Business Risk Business Impact Disaster Recovery Plan Implement Solutions Internal and external communications Production Telephone Medical or Financial Records Payroll System

8 Business Impact (cont.) Theoretical Example: Hospital HIGHLY CRITICAL Adverse impact to business operations. Less than 1 hours High availability disaster tolerance failover. Back up via SAN. CRITICAL Some impact to clinical care and/ or patient safety. Possible adverse impact to critical govt. services. 1 - hours Traditional hotsite strategy, possibly coupled with internal, open systems solution. Back up via VAN and tape. IMPORTANT Suspension of some business operations at the hospital but no direct impact on clinical care, patient safety, critical govt. services - 7 hours Traditional hotsite strategy, possibly coupled with internal, open systems solution. Back up via VAN and tape. DEFERRABLE Minor inconveniences to business operations > 7 hours. May not be recovered until migration to the warm site, or the original site is repaired. Standard backups and restore procedures typical of component failures. Back up via tape.

9 Disaster Recovery Plan Start your plan by identifying key assets. This will include an inventory of all IT equipment such as computers, associated hardware, and telecom equipment. Be sure to have good documentation of your network infrastructure with up-to-date network diagrams. You want to list components such as: Fulfillment system, product order inventory and related items Email system Files, documents, images on your network Also, list non IT-related office equipment. Be sure to include the value of everything on the list. 1 Business Risk Business Impact Disaster Recovery Plan Implement Solutions Determine how the loss of each item will affect the business and the best protection needed for each. Security Policy Be sure to address data security issues and vulnerabilities. Understand your current network and what risks you may be exposed to. It s advisable for a third party to conduct a security assessment and help you create a plan that is understood by everyone in the company.

10 Disaster Recovery Plan (cont.) Recovery Time Objective (RTO) and Recovery Point Objective (RPO) are critical metrics that need to be determined when creating a disaster recovery and business continuity plan. Recovery Time Objective This is the estimated amount of time it will take for systems, applications and/or IT functions to recover from a disaster. Different functions will have varying RTOs. Figuring out how quickly recovery needs to happen will determine the type of preparations required such as how data is backed up and stored, a relocation site, and staffing and personnel information. Recovery Point Objective This is the number of hours or days in which systems and data would be restored after a disaster based on current operations. This information can be used to develop backup strategies, and to determine the amount of data that may need to be recreated after the systems or functions have been recovered. The more specific one can be with the time required for both RTO and RPO, the more likely the business will successfully recover from a disaster.

11 Implement Solutions The plan needs to include information on how to implement it. Employees and any related personnel should be very familiar with their roles and responsibilities including: Communication Who is responsible for communicating information? Who is the information to be communicated to? Employees? Customers? How will it be sent? Have alternative communication methods been included in the plan and what are the procedures that will be activated? Should the company sign up with a third-party conferencing and emergency communications service? Which personnel are allowed to speak to the media? 1 Business Risk Business Impact Disaster Recovery Plan Implement Solutions Location of Critical Components Maintain detailed records of hardware, software, network equipment., emergency supplies. List of Passwords/Access codes

1 Implement Solutions (cont.) Emergency Contact Information Include contact information and regularly update it for the following: Police Department Fire Department Ambulance Gas and Electric Company Water Company Insurance Company Employees Vendors Alternative Worksite-Hot, Warm or Cold? Should a disaster make your company s office space unavailable, having plans in place for an alternative worksite will be a key factor in recovering from a disaster. There are various types of sites if the office is no longer available: HOT SITE: A facility that s powered up with computers, telecommunications and the environmental infrastructure required to run a business. WARM SITE: A facility with some hardware and communications interfaces, electrical and environmental conditioning, which is only capable of providing backup after additional provisioning, software or customization is performed. COLD SITE: A site that contains physical space and building infrastructure. Everything must be brought in to do business. Other terms used to refer to this type of site: Backup site, Recovery site, Alternate site.

1 Periodically test and audit your disaster recovery plan. The plan won t do any good if it s old and collecting dust on the shelf or in someone s files. Frequent testing for multiple contingencies ensures that it will actually work if disaster strikes. After testing ask the following: Were the test objectives met? What problems were encountered? During the test, were there deviations from the plan? Based on the above information: Revise and update plan Modify and/or replace solutions Keep strategies and solutions current Assign the right people to the right tasks Be sure the plan and procedures are easily understood so a non-it person can implement it. 1 Business Risk Business Impact Disaster Recovery Plan Implement Solutions

1 (cont.) Disaster Recovery Planning Checklist Action Assigned To Completed Notes Data backup and storage information Network infrastructure documentation Emergency contacts Back up communications service Emergency supplies List of passwords/ access codes Alternative worksite Plan tested

1 IS YOUR DISASTER RECOVERY PLAN READY? Visit us online or give us a call to request your Free Disaster Recovery Plan. We will come to your site and review your Disaster Recovery Plan to test its readiness. Even if you ve tested your plan, an independent review can point out assumptions that may spell trouble for you in the future. Realize the Power of Technology (800) 9-0690 www.