Download presentation
Presentation is loading. Please wait.
Published byEverett Richard Modified over 6 years ago
1
BIR BCP/DRP JIM M. ZABALA OIC-Head Revenue Executive Assistant
Information Systems Operations Service Information Systems Group
2
Computerization at BIR
1994 1995 2000 2003 2009 TCP Development eServices IT Outsourcing Mass Rollout EFPS Rearch EFPS Enhancement ITS Premyo sa Resibo Standardization eTIS The BIR’s headlong thrust into the realms of modern computing got a big boost in 1994 with the start of the Tax Computerization Project. ITS is the core application with 13 modules. In 1998 or 1999 we started the mass rollout. We were only able to roll out 44 BIR branches out of 117. Reason: almost 80% of nationwide tax collection Another reason is that during those time telco infrastructure is not as extensive as today. No DSL yet. In year 2000, after the Y2K issue; ITS was continuously enhanced based on the users feedback. On the same period it not just the application we are enhancing our network infrastructure, multiple firewalls were installed. BIR’s IP addressing scheme was standardized. System documentation too was standardized. A DR plan was already introduced in a smaller scale. Compare to what we had now. the launch of the BIR’s website in 2000 DR Plan eITS Document Imaging Helpdesk Data Ctr Outsourced Services BIR Website BCP/DRP HRIS BIR CC NRCS HDesk Apps TCVD eReg TIN Verification Data Center Rehab Etc…
3
BCP/DRP Objectives Continuity of Service to Taxpayers
Securing Taxpayer Data Clear-cut instructions and procedures Recovery Time Objective Recovery Point Objective Augment Human Resources Personnel Readiness Facilities/resources are in place To get and utilized new technology DRP is meant for providing clear-cut instructions in case of emergency, indicating activities required to recover the critical data or services and optionally people responsible for these activities There are two main recovery objectives. First is the recovery time objective meaning how long a business can continue to function without the critical data or services. And the survey results* show the recovery time objectives are currently reduced to 4 hours. Second one is the recovery point objective which stands for from what time can an organization recover damaged or lost data, which practically means how often an organization should back up their data and how much info they are prepared to lose.
4
BCP/DR Components Facilities
Primary IDC and Secondary (DR Sites) are ISO certified Physical and environmentally secured Operations System Access control System Maintenance System Backup / Restore Replication Hardware Facilities to be provided must be physically secured the following but shall not be limited to: Fire Suppression System Cooling System Room for Growth Redundant Uninterruptible Power Supply Security Access and Surveillance System All critical areas must be equipped with high quality security access and surveillance system to secure, filter and monitor access on the critical areas.
5
BCP/DR Components Redundancy/HA cluster configuration
Connectivity (Multi Telco, Backup links, Delta setup, firewalls, IPS Multi-tier Load Balancing Documentation OM, UAT, DRP, As Built Diagrams System Configurations Reports System Performance, Utilization Reports Helpdesk Log Management Facilities to be provided must be physically secured the following but shall not be limited to: Fire Suppression System Cooling System Room for Growth Redundant Uninterruptible Power Supply Security Access and Surveillance System All critical areas must be equipped with high quality security access and surveillance system to secure, filter and monitor access on the critical areas.
6
BCP/DR Components Technology Support- Personnel Training Testing UAT
Audit Facilities to be provided must be physically secured the following but shall not be limited to: Fire Suppression System Cooling System Room for Growth Redundant Uninterruptible Power Supply Security Access and Surveillance System All critical areas must be equipped with high quality security access and surveillance system to secure, filter and monitor access on the critical areas.
7
BCP Coverage – Critical System
Applications Hot DR Solution Electronic Filing and Payment System eRegistration RTO is within 2 hours RPO is not more than 30 minutes
8
BCP Coverage -’Sensitive’
Applications Cold DR Solution Integrated Tax System TIN Verification System Datawarehouse eSales / eAccreditation eSubmission eComplaint eBroadcasting eCorrespondence Tax Compliance and Verification Drive
9
BCP Coverage Applications Cold DR Solution RTO is within 8 hours
RPO is not more than 24 hours
10
DR Infrastructure Primary Site (NCR) Secondary Site (Cebu)
11
DR Infrastructure On going test of the EFPS DRP
12
DR infrastructure
13
DR infrastructure
14
Common concerns/pitfalls
Document are not updated Different plans which addresses different scenario but offer only single solution Test plans in a thorough and systematic way Undocumented incidents that were resolved Data Backup is available but no restoration test Sterile document - document which are seldom looked again. It is not updated. There might be solutions that will be a lot faster
15
End of Presentation Thank you! jaime.zabala@bir.gov.ph
Sterile document - document which are seldom looked again. It is not updated.
Similar presentations
© 2025 SlidePlayer.com. Inc.
All rights reserved.