Dr. Gerry Firmansyah CID 610 - Business Continuity and Disaster Recovery Planning for IT (W-VI)

Slides:



Advertisements
Similar presentations
Museum Presentation Intermuseum Conservation Association.
Advertisements

Chapter 2. Customer service The group of utilities or benefits the customer expects from the supplier.
Reliability of the electrical service Business Continuity Management Business Impact Analysis (BIA) Critical ITC Services Minimum Business Continuity Objective.
Business Continuity and Disaster Recovery Planning.
1 The process of analyzing all core business functions and establishing an optimized timetable for recovery. Provides baseline for:  Justification for.
Strategic Capabilities
DISASTER CENTER Study Case DEMIRBANK ROMANIA “Piata Financiara” ConferenceJanuary 29, 2002 C 2002.
1 Disaster Recovery “Protecting City Data” Ron Bergman First Deputy Commissioner Gregory Neuhaus Assistant Commissioner THE CITY OF NEW YORK.
Introduction to Business Continuity Planning An Introduction to the Business Continuity Planning Process Including Developing your Process and the Plans.
Business Services Emergency Preparedness. Agenda Emergencies Emergencies Business Continuation Business Continuation University Plan University Plan Building.
Disaster Recovery and Business Continuity Ensuring Member Service in Times of Crisis.
Service Design – Section 4.5 Service Continuity Management.
Strategy and Cost Management
Disaster Recovery Policy & Procedures An Overview for Staff Prepared by MSM Compliance Services Pty Ltd.
MARKETING STRATEGY O.C. FERRELL • MICHAEL D. HARTLINE
“A Prepared Marylander Creates a Resilient Maryland” Essential Functions January 22, We will start momentarily… This document was prepared under.
Supply Chain Management
Crisis Management Planning Employee Health Safety and Security Expertise Panel · Presenter Name · 2008.
Business Crisis and Continuity Management (BCCM) Class Session
5-1 McGraw-Hill/Irwin Copyright © 2010 by The McGraw-Hill Companies, Inc. All rights reserved.
MODULE 4 MARKETING STRATEGY A2 Marketing and Accounting and Finance Marketing Decision-making.
Strategic Research Part 2: Planning and Strategy Chapter 6.
RBTC: Business Continuity 101 July 18, What is Business Continuity? Scenario Part 1 Why is BC important? What types of plans are needed? How do.
Module 3 Develop the Plan Planning for Emergencies – For Small Business –
Implementing and Auditing Ethics Programs
Making Business Continuity Child’s Play Solutions Ltd Business Continuity Management Contact details: Contact : Mick O’Regan Mobile :
Slide 1 D2.TCS.CL5.04. Subject Elements This unit comprises five Elements: 1.Define the need for tourism product research 2.Develop the research to be.
ISA 562 Internet Security Theory & Practice
Johnson & Johnson Overview Incorporated in 1887: Listed on NYSE in 1944 symbol JNJ 250 operating companies, 117K employees in 57 countries Three business.
2010 Virginia RIMS and PRIMA Conference October 5, 2010 Business Impact Analysis: The Road Map to Managing Risks.
IT Disaster Recovery CAUBO 2008 Information Systems and Technology.
Product Documentation Chapter 5. Required Medical Device Documentation  Business proposal  Product specification  Design specification  Software.
1 Unit 1 Information for management. 2 Introduction Decision-making is the primary role of the management function. The manager’s decision will depend.
Business Continuity and Disaster Recovery Chapter 8 Part 1 Pages 897 to 914.
Assessing Current Network Concerns Lesson 5. CERT/CC Stats.
Business Continuity Program Orientation (insert presentation date) (This presentation is a template that requires adjustments to meet your needs)
Market Research & Product Management.
Unit 3: Identifying and Safeguarding Vital Records Unit Introduction and Overview Unit objective:  Describe the elements of an effective vital records.
NFPA 1600 Disaster/Emergency Management and Business Continuity Programs.
Office of Emergency Management University of Houston-Clear Lake Business Continuity Planning.
Key Terms Business Continuity Plan (BCP) – A comprehensive written plan to maintain or resume business in the event of a disruption Critical Process –
9 juni 2009 Alex van Os de Man BCI Forum 2009 Business Impact Analysis Process.
BUSINESS MANAGEMENT. WHAT IS STRATEGY?  Strategy may be defined as a course of action, including the specification of resources required to achieve the.
Elements of a Technology Business Plan. Business Planning "In preparing for battle I have always found that plans are useless, but planning is indispensable."
Erman Taşkın. Information security aspects of business continuity management Objective: To counteract interruptions to business activities and to protect.
Chapter 3: Business Continuity Planning. Planning for Business Continuity Assess risks to business processes Minimize impact from disruptions Maintain.
Business Continuity Planning Operations. Bank Composite’s Continuity Quandry  What Business Operations Are Truly Critical Requiring Redundancy?  What.
Assessing Current Network Concerns Lesson 5. The Assessment Two important elements you will need to determine in order to produce a valuable assessment.
An Overview of Management
Business Continuity Disaster Planning
Business Continuity Management 101. KeepItSafe Professional Services The portfolio of business continuity management is to ensure we assist our clients.
CBIZ RISK & ADVISORY SERVICES BUSINESS CONTINUITY PLANNING Developing a Readiness Strategy that Mitigates Risk and is Actionable and Easy to Implement.
EXPECT THE UNEXPECTED Prepare Your Business for Disaster.
Disaster Recovery Planning (DRP) DRP: The definition of business processes, their infrastructure supports and tolerances to interruptions, and formulation.
Disaster Recovery Management By: Chris Rozic COSC 481.
References: Supply Chain Saves the World. Boston, MA: AMR Research (2006); Designing and Managing the Supply Chain – Concepts, Strategies and Case Studies;
Dr. Gerry Firmansyah CID Business Continuity and Disaster Recovery Planning for IT (W-I)
Unit 4: Impact of the Use of IT on Business Systems
THINK DIFFERENT. THINK SUCCESS.
Utilizing Your Business Continuity Plan.
The case for a disaster recovery strategy for component XYZ
IV, V, VI, VII Lessons.
Continuity of operations planning
Business Continuity / Recovery
Disaster Recovery Policy & Procedures
We will start momentarily…
What Do We Do? Managed IT services
Business Continuity Planning
UNDERSTANDING THE ENTITY AND ITS ENVIRONMENT AND ASSESSING THE RISKS OF MATERIAL MISSTATEMENT Topic 5.
Presentation transcript:

Dr. Gerry Firmansyah CID Business Continuity and Disaster Recovery Planning for IT (W-VI)

Business Impact Analysis Business impact analysis overview Understanding impact criticality Identifying business functions and processes Gathering data for the business impact analysis Determining the impact Business impact analysis data points Preparing the business impact analysis report

Business impact analysis overview four primary purposes of the business impact analysis: ❖ Obtain an understanding of the organization’s most critical objectives, the priority of each, and the timeframe for resumption of these following an unscheduled interruption. ❖ Inform a management decision on Maximum Tolerable Outage (MTO) for each function. ❖ Provide the resource information from which an appropriate recovery strategy can be determined/recommended. ❖ Outline dependencies that exist both internally and externally to achieve critical objectives.

Understanding impact criticality commonly used rating system for assessing criticality: ❖ Category 1: Critical Functions–Mission-Critical ❖ Category 2: Essential Functions–Vital ❖ Category 3: Necessary Functions–Important ❖ Category 4: Desirable Functions–Minor

Identifying business functions and processes The common business functions : ❖ Facilities and Security ❖ Finance ❖ Human Resources ❖ Information Technology ❖ Legal/Compliance ❖ Manufacturing (Assembly) ❖ Marketing and Sales ❖ Operations ❖ Research and Development ❖ Warehouse (Inventory, Order Fulfillment, Shipping, Receiving)

Gathering data for the business impact analysis Some questions you might ask of your subject matter experts to help them focus on the key aspects of the impact analysis : ❖ How would the department function if desktops, laptops, servers, , and Internet access were not available? ❖ What single points of failure exist? What, if any, risk controls or risk management systems are currently in place? ❖ What are the critical outsourced relationships and dependencies? What are the upstream and downstream risks to your business function? ❖ If a business disruption occurred, what workarounds would you use for your key business processes? ❖ What is the minimum number of staff you would need and what functions would they need to carry out? ❖ What are the key skills, knowledge, or expertise needed to recover? What are the key roles that must be present for the business to operate? ❖ What critical security or operational controls are needed if systems are down?

Determining the impact The impact of any business disruption may include: 1.Financial 2.Customers and suppliers 3.Employees and staff 4.Public relations and credibility 5.Legal 6.Regulaotry requirements 7.Environtmental 8.Operational 9.Human resources 10.Loss Exposure 11.Social and corporate image 12.Financial community credibility

Determining the impact Business Function and Criticality Matrix

Business impact analysis data points

Preparing the business impact analysis report ❖ Work-around procedures ❖ Remote work, workload shifting ❖ Business data, key records ❖ Reporting ❖ Competitive impact ❖ Investor/market impact ❖ Customer perception impact ❖ Other (business-specific data not already included) elements to include final report : ❖ Key processes and functions ❖ Process and resource interdependence ❖ IT dependencies ❖ Criticality and impact on operations ❖ Backlog information ❖ Key roles, positions, skills, knowledge, expertise needed ❖ Recovery time requirements ❖ Recovery resources ❖ Service level agreements ❖ Technology (IT and non-IT technology) ❖ Financial, legal, operations, market, staff impacts