A Risk Management Approach to Business Continuity

Slides:



Advertisements
Similar presentations
EMS Checklist (ISO model)
Advertisements

Risk Management at Harvard – Panel Discussion Harvard IT Summit
THE ROLE OF CSDs DURING ENVIRONMENTAL CRISIS OR OPERATIONAL DISRUPTION THE ROLE OF CSDs DURING ENVIRONMENTAL CRISIS OR OPERATIONAL DISRUPTION A PRESENTATION.
Risk The chance of something happening that will have an impact on objectives. A risk is often specified in terms of an event or circumstance and the consequences.
Lisanne Sison Director ERM Bickmore
INTRODUCTION AS (3.3) Apply business knowledge to address a complex problem in a given global business context.
ISO General Awareness Training
Organisational risk management
Crisis Management Planning Employee Health Safety and Security Expertise Panel · Presenter Name · 2008.
FUNCTION 6 – CONTINGENCY PLAN, PREPAREDNESS AND CAPACITY BUILDING
An Overview of Environmental Management Systems (EMS)
Equity Housing Group Risk Management. 05 August 2002 © MazarsEquity Housing Group: Risk Management 2 Agenda Introduction: what is Risk Management? The.
Stephen Vink Senior Vice President Group Risk Management and Internal Audit Lessons learned from ERM.
BOTSWANA NATIONAL CYBER SECURITY STRATEGY PROJECT
Hazards Identification and Risk Assessment
Geneva Association/International Insurance Society Research Presentation, Chicago Enterprise Risk Management in the Insurance Industry Madhusudan.
Environment and Disaster Planning Hari Srinivas, GDRC Rajib Shaw, Kyoto University Contents of the presentation: -What is the problem? -Precautionary Principles.
Slide 1 Security Engineering. Slide 2 Objectives l To introduce issues that must be considered in the specification and design of secure software l To.
Erman Taşkın. Information security aspects of business continuity management Objective: To counteract interruptions to business activities and to protect.
Dolly Dhamodiwala CEO, Business Beacon Management Consultants
OHSAS Occupational health and safety management system.
Donald JG Chiarella, PhD, CISM, CDMP, PEM, CHS-CIA, MBA.
Cyber Security Phillip Davies Head of Content, Cyber and Investigations.

JMFIP Financial Management Conference
ISO The first international standard on sustainable procurement to achieve best practice.
Article by Caroline Moser
What is a business Write down what you think the word business means. Then look it up and jot down 2-3 other definitions. To be “in business” means an.
Title of the Change Project
GuildHE: Council Meeting 25th May 2017
An Overview on Risk Management
Chris Lintern Co-operative Financial Services
Approaches to Defining Risk
Conduction of a simulation considering cascading effects
REGIONAL POLICY DIALOGUE
Sendai Framework for Disaster Risk Reduction
CAPACITY BUILDING PROGRAMME ON BOARD INDUCTION AND EVALUATION
Strategic Planning for Learning Organizations
Implementing and Auditing Ethics Programs
Security Engineering.
What is performance management?
Information Technology Service Management
INTRODUCTION TO ISO 9001:2015 FOR IMPLEMENTATION Varinder Kumar CISA, ISO27001 LA, ISO 9001 LA, ITIL, CEH, MEPGP IT, Certificate course in PII & Privacy.
Risk Management in Plain English
International Organization International Organization
Suicide Prevention Coalitions: The Backbone of Community Prevention
America’s First National Critical Infrastructure Exercise
IS4550 Security Policies and Implementation
Risk and Decision Making
Communication and Consultation with Interested Parties by the RB
Lockheed Martin Canada’s SMB Mentoring Program
Information Security Risk Management
QUALITY MATTERS - OVERVIEW OF ISO QUALITY MANAGEMENT SYSTEM
CAYMAN ISLANDS MONETARY AUTHORITY
Conduction of a simulation considering cascading effects
EMS Checklist (ISO model)
EU activities in disaster prevention and risk management
Cybersecurity ATD technical
SOUTH AFRICAN INSURANCE ASSOCIATION
Business Continuity Basics
Meeting of the Maritime Security, Environmental Protection and Operations (MSEPO) Freetown, Sierra Leone October 2017 “Environmental Management.
International Organization International Organization
UNDMTP Presentation, Session V: Early Warning Symposium 24 May 2006
Basic overview of an EMS
Why important? Heavy reliance on IT Pressure to deliver IT services Increasing range of threats.
Plan your journey.
Cyber Security in a Risk Management Framework
International Organization International Organization
International Organization International Organization
A Risk Management Approach to Business Continuity
Presentation transcript:

A Risk Management Approach to Business Continuity An introduction to Business Continuity

A Risk Management Approach to Business Continuity Twelve week course delivered through a combination of: Lectures Visual and audio aides Class discussion Case studies Projects Possible field trips Guest lectures Quizzes Text: A Risk Management Approach to Business Continuity: Graham and Kaye - 2006

A Risk Management Approach to Business Continuity Syllabus objectives: Week 1- relationship between risk and continuity Week 2 - stakeholders and their importance Week 3 - context, emergency services, government and engagement of the Board Week 4 - business continuity management cycle Week 5 - business impact analysis Week 6 - technology continuity planning

A Risk Management Approach to Business Continuity Syllabus objectives: Week 7 - production line, suppliers, outsourcing and business support Week 8 - application of business continuity management tools and techniques to other operational risk areas Week 9 - people issues, communication and training Week 10 - the relationship between business continuity management and insurance Week 11 - plan review and maintenance, quality assurance, compliance and audit Week 12 - putting theory into practice

A Risk Management Approach to Business Continuity 100 points: Research paper: 35 Presentations: 10 Quizzes: 45 Projects: 10 General housekeeping Attendance

A Risk Management Approach to Business Continuity Week One Why worry about business continuity?

Why Worry About Business Continuity? Week One Objectives: Examine the link between Risk Management and Business Continuity Consider Business Continuity as part of the Risk Management Framework Explore disasters that affect organizations Discuss the impact September 11, 2001 had on world business and economy

The Language: useful terms Supports common understanding No generally accepted global definitions Generic sources include: ISO, BSi, Standards Australia, DRI and the course text Risk Risk Management Business Continuity Definitions may be developed to reflect industry sectors

Risk Management “Something that might happen and its effect(s) on the achievement of objectives.” ISO 31000/BSi 31100 – draft Upside and downside Concerned with both Engineering/safety roots typically more focussed on the negative

Operational Risk Loss resulting from inadequate or failed internal processes, people and systems, or from external events High people factor Often hard to quantify Can be the most damaging Yet the most difficult to transfer Business Continuity often forms part of the Operational Risk function of an organization

What keeps CEOs awake at night? The top 10 includes: 1: loss of Reputation 2: business interruption 3. failure to change 4. product liability/tamper 5. impact of regulation and legislation Source: Risk management and Financing Survey AON

What keeps CEOs awake at night? Three trends: Rising tide of the intangible risk at the expense of tangible, measurable and transferable risk Increasing concern over risks difficult to predict and consequently difficult to plan for Aggregation and domino effects in an increasingly global business world

Business Continuity Management Definitions are based on the principle that it is a key responsibility of an organization’s directors (or equivalent) to ensure continuation of its operations at all times. Chartered Management Institute Definition key words: holistic, management process identification of potential threats resilience effective response stakeholder protection

The Evolution of Risk Management London coffee houses to 9/11 Risk financing limitations raise awareness of risk based solutions Risk management is a balancing act Enterprise risk management - the future?

The Board Agenda Risk and Business Continuity are issues for Board governance The Risk Management framework Facilitates articulation of objectives Policies, processes, tools, techniques, information and scenarios Business continuity may be managed as part of facilities, IT, risk management, or as a stand-alone management activity, but it is an enterprise-wide risk control

Capturing Board Commitment The Board Establish the vision, mission and values Set the strategy and structure Delegate to management Exercise accountability to stakeholders The Champion Engage Participate

Survival planning Risk decisions into the board room A business, not just a facilities, matter Focus on the critical arteries and dependencies best value is from prevention emergency response structure

Framework components Breaking down silos A common infrastructure Business continuity as part of the risk framework Business continuity as part of governance and management

Disasters That Affect Organizations Natural Weather Floods Earthquake Pandemics

Earthquake – case study

Storm – case study

Pandemics – case study Understanding the threat Sources of information Strategies Medical aspects and information Implementing strategies Responding to threat levels

Disasters That Affect Organizations Environmental Chemical spills Power Outages, etc

Power outage – case study

Disasters That Affect Organizations Incited Workplace violence Homicide Suicide Kidnap for ransom Cyber attacks on information

Workplace violence – case study

The Impact of 9 September 2001 Discussion

Course work