SlideShare una empresa de Scribd logo
1 de 10
Business Continuity Plan


           Plash Chowdhary
     Information Security Consultant
Declaration
This presentation is made in Plash’s
personal capacity and does not
represent views of my employer
Business Continuity Planning

   It’s a logistics process to run mission critical process for
    survival and restoring operations from a disaster
   It is enforced by law of the land
What is at RISK?

 •   Reputation Loss
 •   Financial Loss
 •   Regulatory concerns
 •   Data Loss
 •   Loss of Life
 •   Jobs
Where is it Applicable?

                       • Vendor and you are caught in the same disaster
    Supply Chain       • Transportation Strike and you have No Inventory


                       • Quitting of critical recourses
  Human Resources      • Worker union Strikes


                       • Acts of God
  Physical Premises    • Targeted terrorist attacks


     Information       • Data leakage by Intrusion/Hacking
     Technology        • Virus outbreak


                       • Your only market is hit by a crisis
      Marketing        • your product developed a snag and needs to be recalled



   Its Applicable where a Mission Critical Service is disrupted
BCP & Regulations

  • Several laws/orders mandate BCP as part of organization strategy.
              Industry Sector                                                        Significant Laws and Regulations
                 Healthcare     Health Insurance Portability and Accountability Act (HIPAA) of 1996

                                Food and Drug Administration (FDA) Code of Federal Regulations (CFR), Title XXI, 1999

                Government      Federal Information Security Act (FISMA) of 2002, Title III of the E-Government Act of 2002 (PL 107-347, 17 December 2002)


                                Executive Order on Critical Infrastructure Protection in the Information Age, 16 October 2001

                                COOP and Continuity of Government (COG). Federal Preparedness Circular 69, 26 July 1999

                                National Institute of Standards and Technology (NIST) Special Publication (SP) 800-34, Contingency Planning Guide for Information
                                Technology Systems, June 2002


                                NIST 800-53, Recommended Security Controls for Federal Information Systems, February 2005

                  Finance       Federal Financial Institutions Examination Council (FFIEC) Handbook, 2003-2004 (Chapter 10)

                                Basel II, Basel Committee on Banking Supervision, Sound Practices for Management and Supervision, 2003


                                Interagency Paper on Sound Practices to Strengthen the Resilience of the U.S. Financial System, 2003


                                Expedited Funds Availability (EFA) Act, 1989
                  Utilities     Governmental Accounting Standards Board (GASB) Statement No. 34, June 1999

                                North American Electric Reliability Council (NERC) 1200 (1216.1), 2003

                                Federal Energy Regulatory Commission (FERC) RM01-12-00 (Appendix G), 2003

                                RUS 7 CFR Part 1730, 2005
                                Telecommunications Act of 1996, Section 256, Coordination for Interconnectivity

                                NERC Security Guidelines for the Electricity Sector, June 2001




 Source: Gartner http://www.gartner.com/DisplayDocument?doc_cd=128123
BCP Hierarchy


                                                                               Policy
                                                   BCP
                                                 Strategy




                                                 Training
                                                Employees
  Implementation
  & Monitoring
                                Implementing                  Testing BCP
                                    BCP



                                 Business
                                                                Risk
                                  Impact
                                                              Monitoring
                                 Analysis

                                                                                           Planning
                                                 Recovery
                      Risk
                                               Requirements                 Alternatives
                   Assessment
BCP Management Team


         Legal                   Finance


                   Management


    Internal Auditors           Operations
BCP Initiation and Recovery Steps


                       BCP Cycle                                                  Business Recovery Steps
                                 Identification
                                                                                  Business Recovery
        Recovery                                               Prevention




                                                                                   Facility
                                                                                  Recovery
                                                                                               Process Recovery
                                                                                                 Human
Implementation                                                      Declaration
                                                                                               Recourses
                                                                                                recovery   IT Recovery
                                                                                  Operations   Business                    Telecommunication
                                                                                                           Data Recovery
                                                                                   Recovery      Unit                           Recovery
                                                                                               Recovery
                   Containment                    Escalation
Need External Auditor?


        Planning           Implementation              Auditing
 • Strategy definition    • Employee awareness   • Reviewing BCP policy
 • Policy definition      • Selecting and        • Auditing SLA
 •  Risk Assessment         optimizing vendors   • BCP Simulation
 • Identifying critical   • Vendor Assessments
   services and
   Alternatives
 • Business Impact
   Analysis
 • Applicable Laws

Más contenido relacionado

La actualidad más candente

A Top Down Business Impact Analyses Method V5
A Top Down Business Impact Analyses Method V5A Top Down Business Impact Analyses Method V5
A Top Down Business Impact Analyses Method V5Gewurtz
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity ManagementECC International
 
BUSINESS CONTINUITY MANAGEMENT system
BUSINESS CONTINUITY MANAGEMENT systemBUSINESS CONTINUITY MANAGEMENT system
BUSINESS CONTINUITY MANAGEMENT systemKuroba Kaitou
 
Business continuity management system
Business continuity management systemBusiness continuity management system
Business continuity management systemsubbusai82
 
Business Continuity Management PowerPoint Presentation Slides
Business Continuity Management PowerPoint Presentation SlidesBusiness Continuity Management PowerPoint Presentation Slides
Business Continuity Management PowerPoint Presentation SlidesSlideTeam
 
Business Impact Analysis - The Most Important Step during BCMS Implementation
Business Impact Analysis - The Most Important Step during BCMS ImplementationBusiness Impact Analysis - The Most Important Step during BCMS Implementation
Business Impact Analysis - The Most Important Step during BCMS ImplementationPECB
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity Planningalanlund
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity Planninggcleary
 
Business Continuity Plan Development
Business Continuity Plan DevelopmentBusiness Continuity Plan Development
Business Continuity Plan DevelopmentDavid Nichols
 
Business Continuity - Business Risk & Management
Business Continuity - Business Risk & ManagementBusiness Continuity - Business Risk & Management
Business Continuity - Business Risk & ManagementAndrew Styles
 
Business continuity planning
Business continuity planningBusiness continuity planning
Business continuity planningSandeep Kashyap
 
Business continuity & Disaster recovery planing
Business continuity & Disaster recovery planingBusiness continuity & Disaster recovery planing
Business continuity & Disaster recovery planingHanaysha
 
Societal Security – the new standard ISO 22301 for Business Continuity Manage...
Societal Security – the new standard ISO 22301 for Business Continuity Manage...Societal Security – the new standard ISO 22301 for Business Continuity Manage...
Societal Security – the new standard ISO 22301 for Business Continuity Manage...Global Risk Forum GRFDavos
 
Assess Your Business Continuity Management Process
Assess Your Business Continuity Management ProcessAssess Your Business Continuity Management Process
Assess Your Business Continuity Management ProcessAnand Subramaniam
 
Business continuity planning and disaster recovery
Business continuity planning and disaster recoveryBusiness continuity planning and disaster recovery
Business continuity planning and disaster recoverymadunix
 
A to Z of Business Continuity Managment
A to Z of Business Continuity ManagmentA to Z of Business Continuity Managment
A to Z of Business Continuity ManagmentMark Conway
 

La actualidad más candente (20)

A Top Down Business Impact Analyses Method V5
A Top Down Business Impact Analyses Method V5A Top Down Business Impact Analyses Method V5
A Top Down Business Impact Analyses Method V5
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity Management
 
BUSINESS CONTINUITY MANAGEMENT system
BUSINESS CONTINUITY MANAGEMENT systemBUSINESS CONTINUITY MANAGEMENT system
BUSINESS CONTINUITY MANAGEMENT system
 
Business continuity management system
Business continuity management systemBusiness continuity management system
Business continuity management system
 
Business Continuity Management PowerPoint Presentation Slides
Business Continuity Management PowerPoint Presentation SlidesBusiness Continuity Management PowerPoint Presentation Slides
Business Continuity Management PowerPoint Presentation Slides
 
Business Impact Analysis - The Most Important Step during BCMS Implementation
Business Impact Analysis - The Most Important Step during BCMS ImplementationBusiness Impact Analysis - The Most Important Step during BCMS Implementation
Business Impact Analysis - The Most Important Step during BCMS Implementation
 
Upgrading Risk Management and Internal Control in Your Organization
Upgrading Risk Management and Internal Control in Your OrganizationUpgrading Risk Management and Internal Control in Your Organization
Upgrading Risk Management and Internal Control in Your Organization
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity Management
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity Planning
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity Planning
 
Business Continuity Plan Development
Business Continuity Plan DevelopmentBusiness Continuity Plan Development
Business Continuity Plan Development
 
Business Continuity - Business Risk & Management
Business Continuity - Business Risk & ManagementBusiness Continuity - Business Risk & Management
Business Continuity - Business Risk & Management
 
Business continuity planning
Business continuity planningBusiness continuity planning
Business continuity planning
 
Business continuity & Disaster recovery planing
Business continuity & Disaster recovery planingBusiness continuity & Disaster recovery planing
Business continuity & Disaster recovery planing
 
Societal Security – the new standard ISO 22301 for Business Continuity Manage...
Societal Security – the new standard ISO 22301 for Business Continuity Manage...Societal Security – the new standard ISO 22301 for Business Continuity Manage...
Societal Security – the new standard ISO 22301 for Business Continuity Manage...
 
Assess Your Business Continuity Management Process
Assess Your Business Continuity Management ProcessAssess Your Business Continuity Management Process
Assess Your Business Continuity Management Process
 
Introduction to Business Continuity Management
Introduction to Business Continuity ManagementIntroduction to Business Continuity Management
Introduction to Business Continuity Management
 
Business continuity planning and disaster recovery
Business continuity planning and disaster recoveryBusiness continuity planning and disaster recovery
Business continuity planning and disaster recovery
 
A to Z of Business Continuity Managment
A to Z of Business Continuity ManagmentA to Z of Business Continuity Managment
A to Z of Business Continuity Managment
 
The Basics of a Business Continuity Plan
The Basics of a Business Continuity PlanThe Basics of a Business Continuity Plan
The Basics of a Business Continuity Plan
 

Destacado

Business continuity overview slideshare
Business continuity overview slideshareBusiness continuity overview slideshare
Business continuity overview slideshareChris Greenhill
 
Business continuity & disaster recovery planning (BCP & DRP)
Business continuity & disaster recovery planning (BCP & DRP)Business continuity & disaster recovery planning (BCP & DRP)
Business continuity & disaster recovery planning (BCP & DRP)Narudom Roongsiriwong, CISSP
 
The A to Z Guide to Business Continuity and Disaster Recovery
The A to Z Guide to Business Continuity and Disaster RecoveryThe A to Z Guide to Business Continuity and Disaster Recovery
The A to Z Guide to Business Continuity and Disaster RecoverySirius
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity ManagementDiane Christina
 
What’s & Why’s of Business Continuity Planning (BCP)
What’s & Why’s of Business Continuity Planning (BCP) What’s & Why’s of Business Continuity Planning (BCP)
What’s & Why’s of Business Continuity Planning (BCP) CBIZ, Inc.
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity PlanningJohn Wilson
 
Example business continuity plan
Example business continuity planExample business continuity plan
Example business continuity planMicheal Axelsen
 
ISO 22301: The New Standard for Business Continuity Best Practice
ISO 22301: The New Standard for Business Continuity Best PracticeISO 22301: The New Standard for Business Continuity Best Practice
ISO 22301: The New Standard for Business Continuity Best PracticeMissionMode
 
Disaster Recovery Presentation
Disaster Recovery PresentationDisaster Recovery Presentation
Disaster Recovery PresentationTimSchaefer
 
Disaster Recovery Plan for IT
Disaster Recovery Plan for ITDisaster Recovery Plan for IT
Disaster Recovery Plan for IThhuihhui
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity ManagementMilan Petrásek
 
Disaster Recovery Plan
Disaster Recovery PlanDisaster Recovery Plan
Disaster Recovery PlanDavid Donovan
 
[INSIGHT OUT 2011] C27 今こそBCPを考える ~コスト・要件に応じたデータベースのディザスタ・リカバリを提案しよう!~(kishida)
[INSIGHT OUT 2011] C27 今こそBCPを考える ~コスト・要件に応じたデータベースのディザスタ・リカバリを提案しよう!~(kishida)[INSIGHT OUT 2011] C27 今こそBCPを考える ~コスト・要件に応じたデータベースのディザスタ・リカバリを提案しよう!~(kishida)
[INSIGHT OUT 2011] C27 今こそBCPを考える ~コスト・要件に応じたデータベースのディザスタ・リカバリを提案しよう!~(kishida)Insight Technology, Inc.
 
Presentation on business policy and business continuity plan (2)
Presentation on business policy and business continuity plan (2)Presentation on business policy and business continuity plan (2)
Presentation on business policy and business continuity plan (2)Kohal, Sudhir Singh
 
遠隔作業支援システム紹介資料 - NTTデータ、Vuzix M100
遠隔作業支援システム紹介資料 - NTTデータ、Vuzix M100遠隔作業支援システム紹介資料 - NTTデータ、Vuzix M100
遠隔作業支援システム紹介資料 - NTTデータ、Vuzix M100Keiichiro Fujii
 
予測不能な時代に、今 企業が実践すべきBCPとは?|アシストマイクロ
予測不能な時代に、今 企業が実践すべきBCPとは?|アシストマイクロ予測不能な時代に、今 企業が実践すべきBCPとは?|アシストマイクロ
予測不能な時代に、今 企業が実践すべきBCPとは?|アシストマイクロアシストマイクロ株式会社
 
Operational risk & business continuity management
Operational risk & business continuity managementOperational risk & business continuity management
Operational risk & business continuity managementUjjwal 'Shanu'
 

Destacado (19)

Business continuity overview slideshare
Business continuity overview slideshareBusiness continuity overview slideshare
Business continuity overview slideshare
 
Business continuity & disaster recovery planning (BCP & DRP)
Business continuity & disaster recovery planning (BCP & DRP)Business continuity & disaster recovery planning (BCP & DRP)
Business continuity & disaster recovery planning (BCP & DRP)
 
The A to Z Guide to Business Continuity and Disaster Recovery
The A to Z Guide to Business Continuity and Disaster RecoveryThe A to Z Guide to Business Continuity and Disaster Recovery
The A to Z Guide to Business Continuity and Disaster Recovery
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity Management
 
What’s & Why’s of Business Continuity Planning (BCP)
What’s & Why’s of Business Continuity Planning (BCP) What’s & Why’s of Business Continuity Planning (BCP)
What’s & Why’s of Business Continuity Planning (BCP)
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity Planning
 
Example business continuity plan
Example business continuity planExample business continuity plan
Example business continuity plan
 
ISO 22301: The New Standard for Business Continuity Best Practice
ISO 22301: The New Standard for Business Continuity Best PracticeISO 22301: The New Standard for Business Continuity Best Practice
ISO 22301: The New Standard for Business Continuity Best Practice
 
Disaster Recovery Presentation
Disaster Recovery PresentationDisaster Recovery Presentation
Disaster Recovery Presentation
 
Disaster Recovery Plan for IT
Disaster Recovery Plan for ITDisaster Recovery Plan for IT
Disaster Recovery Plan for IT
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity Management
 
Disaster Recovery Plan
Disaster Recovery PlanDisaster Recovery Plan
Disaster Recovery Plan
 
Women empowerment Today
Women empowerment  Today Women empowerment  Today
Women empowerment Today
 
Ecommerce in India
Ecommerce in IndiaEcommerce in India
Ecommerce in India
 
[INSIGHT OUT 2011] C27 今こそBCPを考える ~コスト・要件に応じたデータベースのディザスタ・リカバリを提案しよう!~(kishida)
[INSIGHT OUT 2011] C27 今こそBCPを考える ~コスト・要件に応じたデータベースのディザスタ・リカバリを提案しよう!~(kishida)[INSIGHT OUT 2011] C27 今こそBCPを考える ~コスト・要件に応じたデータベースのディザスタ・リカバリを提案しよう!~(kishida)
[INSIGHT OUT 2011] C27 今こそBCPを考える ~コスト・要件に応じたデータベースのディザスタ・リカバリを提案しよう!~(kishida)
 
Presentation on business policy and business continuity plan (2)
Presentation on business policy and business continuity plan (2)Presentation on business policy and business continuity plan (2)
Presentation on business policy and business continuity plan (2)
 
遠隔作業支援システム紹介資料 - NTTデータ、Vuzix M100
遠隔作業支援システム紹介資料 - NTTデータ、Vuzix M100遠隔作業支援システム紹介資料 - NTTデータ、Vuzix M100
遠隔作業支援システム紹介資料 - NTTデータ、Vuzix M100
 
予測不能な時代に、今 企業が実践すべきBCPとは?|アシストマイクロ
予測不能な時代に、今 企業が実践すべきBCPとは?|アシストマイクロ予測不能な時代に、今 企業が実践すべきBCPとは?|アシストマイクロ
予測不能な時代に、今 企業が実践すべきBCPとは?|アシストマイクロ
 
Operational risk & business continuity management
Operational risk & business continuity managementOperational risk & business continuity management
Operational risk & business continuity management
 

Similar a Business Continuity Plan

BUSINESS CONTINUITY MANAGEMENT
BUSINESS CONTINUITY  MANAGEMENTBUSINESS CONTINUITY  MANAGEMENT
BUSINESS CONTINUITY MANAGEMENTTalkSahana
 
Feb2008 Monthly Slides 1
Feb2008 Monthly Slides 1Feb2008 Monthly Slides 1
Feb2008 Monthly Slides 1Nadir Hussain
 
BC Components and CM Lifecycle
BC Components and  CM LifecycleBC Components and  CM Lifecycle
BC Components and CM LifecycleZaszou
 
Uks iosh inside 2 on 3
Uks iosh inside 2 on 3Uks iosh inside 2 on 3
Uks iosh inside 2 on 3Clive Burgess
 
IIE Call For Paper
IIE Call For PaperIIE Call For Paper
IIE Call For Papermdmilward
 
CMI Conference - Change or Die
CMI Conference - Change or DieCMI Conference - Change or Die
CMI Conference - Change or Diecharliemb2
 
Qualified Audit Partners Governance, Audit It, Audit Training
Qualified Audit Partners Governance, Audit It, Audit TrainingQualified Audit Partners Governance, Audit It, Audit Training
Qualified Audit Partners Governance, Audit It, Audit TrainingPatrick Soenen
 
Solvency - II Programme Setup
Solvency - II Programme SetupSolvency - II Programme Setup
Solvency - II Programme Setupgainline
 
Uks iosh inside cover 1
Uks iosh inside cover 1Uks iosh inside cover 1
Uks iosh inside cover 1Clive Burgess
 
Net challenge training_material_performance management_v05
Net challenge training_material_performance management_v05Net challenge training_material_performance management_v05
Net challenge training_material_performance management_v05netchallenge
 
Itam Presentation by Cydney Davis
Itam Presentation by Cydney DavisItam Presentation by Cydney Davis
Itam Presentation by Cydney DavisCydney Davis
 
Supply chain process in the UN
Supply chain process in the UNSupply chain process in the UN
Supply chain process in the UNKate Allen
 
BCM Roadmap
BCM RoadmapBCM Roadmap
BCM Roadmapbtrmuray
 
Transforming the Washington Metro\'s IT Renewal Program
Transforming the Washington Metro\'s IT Renewal ProgramTransforming the Washington Metro\'s IT Renewal Program
Transforming the Washington Metro\'s IT Renewal ProgramWayne Huang
 
The Perfume Giant
The Perfume GiantThe Perfume Giant
The Perfume GiantVipul Shah
 
Traffic-Light-Tool presentation 2010
Traffic-Light-Tool presentation 2010Traffic-Light-Tool presentation 2010
Traffic-Light-Tool presentation 2010michir
 

Similar a Business Continuity Plan (20)

BUSINESS CONTINUITY MANAGEMENT
BUSINESS CONTINUITY  MANAGEMENTBUSINESS CONTINUITY  MANAGEMENT
BUSINESS CONTINUITY MANAGEMENT
 
Feb2008 Monthly Slides 1
Feb2008 Monthly Slides 1Feb2008 Monthly Slides 1
Feb2008 Monthly Slides 1
 
Organization-wide ICD-10 Training
Organization-wide ICD-10 TrainingOrganization-wide ICD-10 Training
Organization-wide ICD-10 Training
 
BC Components and CM Lifecycle
BC Components and  CM LifecycleBC Components and  CM Lifecycle
BC Components and CM Lifecycle
 
Uks iosh inside 2 on 3
Uks iosh inside 2 on 3Uks iosh inside 2 on 3
Uks iosh inside 2 on 3
 
IIE Call For Paper
IIE Call For PaperIIE Call For Paper
IIE Call For Paper
 
TripleTree eDiscovery
TripleTree  eDiscoveryTripleTree  eDiscovery
TripleTree eDiscovery
 
CMI Conference - Change or Die
CMI Conference - Change or DieCMI Conference - Change or Die
CMI Conference - Change or Die
 
Simplifying IT GRC
Simplifying IT GRCSimplifying IT GRC
Simplifying IT GRC
 
PD25888: Recovery Planning
PD25888: Recovery PlanningPD25888: Recovery Planning
PD25888: Recovery Planning
 
Qualified Audit Partners Governance, Audit It, Audit Training
Qualified Audit Partners Governance, Audit It, Audit TrainingQualified Audit Partners Governance, Audit It, Audit Training
Qualified Audit Partners Governance, Audit It, Audit Training
 
Solvency - II Programme Setup
Solvency - II Programme SetupSolvency - II Programme Setup
Solvency - II Programme Setup
 
Uks iosh inside cover 1
Uks iosh inside cover 1Uks iosh inside cover 1
Uks iosh inside cover 1
 
Net challenge training_material_performance management_v05
Net challenge training_material_performance management_v05Net challenge training_material_performance management_v05
Net challenge training_material_performance management_v05
 
Itam Presentation by Cydney Davis
Itam Presentation by Cydney DavisItam Presentation by Cydney Davis
Itam Presentation by Cydney Davis
 
Supply chain process in the UN
Supply chain process in the UNSupply chain process in the UN
Supply chain process in the UN
 
BCM Roadmap
BCM RoadmapBCM Roadmap
BCM Roadmap
 
Transforming the Washington Metro\'s IT Renewal Program
Transforming the Washington Metro\'s IT Renewal ProgramTransforming the Washington Metro\'s IT Renewal Program
Transforming the Washington Metro\'s IT Renewal Program
 
The Perfume Giant
The Perfume GiantThe Perfume Giant
The Perfume Giant
 
Traffic-Light-Tool presentation 2010
Traffic-Light-Tool presentation 2010Traffic-Light-Tool presentation 2010
Traffic-Light-Tool presentation 2010
 

Último

Independent Call Girls Andheri Nightlaila 9967584737
Independent Call Girls Andheri Nightlaila 9967584737Independent Call Girls Andheri Nightlaila 9967584737
Independent Call Girls Andheri Nightlaila 9967584737Riya Pathan
 
Youth Involvement in an Innovative Coconut Value Chain by Mwalimu Menza
Youth Involvement in an Innovative Coconut Value Chain by Mwalimu MenzaYouth Involvement in an Innovative Coconut Value Chain by Mwalimu Menza
Youth Involvement in an Innovative Coconut Value Chain by Mwalimu Menzaictsugar
 
8447779800, Low rate Call girls in Uttam Nagar Delhi NCR
8447779800, Low rate Call girls in Uttam Nagar Delhi NCR8447779800, Low rate Call girls in Uttam Nagar Delhi NCR
8447779800, Low rate Call girls in Uttam Nagar Delhi NCRashishs7044
 
Kenya’s Coconut Value Chain by Gatsby Africa
Kenya’s Coconut Value Chain by Gatsby AfricaKenya’s Coconut Value Chain by Gatsby Africa
Kenya’s Coconut Value Chain by Gatsby Africaictsugar
 
International Business Environments and Operations 16th Global Edition test b...
International Business Environments and Operations 16th Global Edition test b...International Business Environments and Operations 16th Global Edition test b...
International Business Environments and Operations 16th Global Edition test b...ssuserf63bd7
 
8447779800, Low rate Call girls in Tughlakabad Delhi NCR
8447779800, Low rate Call girls in Tughlakabad Delhi NCR8447779800, Low rate Call girls in Tughlakabad Delhi NCR
8447779800, Low rate Call girls in Tughlakabad Delhi NCRashishs7044
 
Flow Your Strategy at Flight Levels Day 2024
Flow Your Strategy at Flight Levels Day 2024Flow Your Strategy at Flight Levels Day 2024
Flow Your Strategy at Flight Levels Day 2024Kirill Klimov
 
Future Of Sample Report 2024 | Redacted Version
Future Of Sample Report 2024 | Redacted VersionFuture Of Sample Report 2024 | Redacted Version
Future Of Sample Report 2024 | Redacted VersionMintel Group
 
Buy gmail accounts.pdf Buy Old Gmail Accounts
Buy gmail accounts.pdf Buy Old Gmail AccountsBuy gmail accounts.pdf Buy Old Gmail Accounts
Buy gmail accounts.pdf Buy Old Gmail AccountsBuy Verified Accounts
 
8447779800, Low rate Call girls in Saket Delhi NCR
8447779800, Low rate Call girls in Saket Delhi NCR8447779800, Low rate Call girls in Saket Delhi NCR
8447779800, Low rate Call girls in Saket Delhi NCRashishs7044
 
2024 Numerator Consumer Study of Cannabis Usage
2024 Numerator Consumer Study of Cannabis Usage2024 Numerator Consumer Study of Cannabis Usage
2024 Numerator Consumer Study of Cannabis UsageNeil Kimberley
 
The CMO Survey - Highlights and Insights Report - Spring 2024
The CMO Survey - Highlights and Insights Report - Spring 2024The CMO Survey - Highlights and Insights Report - Spring 2024
The CMO Survey - Highlights and Insights Report - Spring 2024christinemoorman
 
Call Girls In Sikandarpur Gurgaon ❤️8860477959_Russian 100% Genuine Escorts I...
Call Girls In Sikandarpur Gurgaon ❤️8860477959_Russian 100% Genuine Escorts I...Call Girls In Sikandarpur Gurgaon ❤️8860477959_Russian 100% Genuine Escorts I...
Call Girls In Sikandarpur Gurgaon ❤️8860477959_Russian 100% Genuine Escorts I...lizamodels9
 
BEST Call Girls In Old Faridabad ✨ 9773824855 ✨ Escorts Service In Delhi Ncr,
BEST Call Girls In Old Faridabad ✨ 9773824855 ✨ Escorts Service In Delhi Ncr,BEST Call Girls In Old Faridabad ✨ 9773824855 ✨ Escorts Service In Delhi Ncr,
BEST Call Girls In Old Faridabad ✨ 9773824855 ✨ Escorts Service In Delhi Ncr,noida100girls
 
Innovation Conference 5th March 2024.pdf
Innovation Conference 5th March 2024.pdfInnovation Conference 5th March 2024.pdf
Innovation Conference 5th March 2024.pdfrichard876048
 
APRIL2024_UKRAINE_xml_0000000000000 .pdf
APRIL2024_UKRAINE_xml_0000000000000 .pdfAPRIL2024_UKRAINE_xml_0000000000000 .pdf
APRIL2024_UKRAINE_xml_0000000000000 .pdfRbc Rbcua
 
BEST Call Girls In Greater Noida ✨ 9773824855 ✨ Escorts Service In Delhi Ncr,
BEST Call Girls In Greater Noida ✨ 9773824855 ✨ Escorts Service In Delhi Ncr,BEST Call Girls In Greater Noida ✨ 9773824855 ✨ Escorts Service In Delhi Ncr,
BEST Call Girls In Greater Noida ✨ 9773824855 ✨ Escorts Service In Delhi Ncr,noida100girls
 
Call Girls In Sikandarpur Gurgaon ❤️8860477959_Russian 100% Genuine Escorts I...
Call Girls In Sikandarpur Gurgaon ❤️8860477959_Russian 100% Genuine Escorts I...Call Girls In Sikandarpur Gurgaon ❤️8860477959_Russian 100% Genuine Escorts I...
Call Girls In Sikandarpur Gurgaon ❤️8860477959_Russian 100% Genuine Escorts I...lizamodels9
 
Call Girls In Radisson Blu Hotel New Delhi Paschim Vihar ❤️8860477959 Escorts...
Call Girls In Radisson Blu Hotel New Delhi Paschim Vihar ❤️8860477959 Escorts...Call Girls In Radisson Blu Hotel New Delhi Paschim Vihar ❤️8860477959 Escorts...
Call Girls In Radisson Blu Hotel New Delhi Paschim Vihar ❤️8860477959 Escorts...lizamodels9
 
Case study on tata clothing brand zudio in detail
Case study on tata clothing brand zudio in detailCase study on tata clothing brand zudio in detail
Case study on tata clothing brand zudio in detailAriel592675
 

Último (20)

Independent Call Girls Andheri Nightlaila 9967584737
Independent Call Girls Andheri Nightlaila 9967584737Independent Call Girls Andheri Nightlaila 9967584737
Independent Call Girls Andheri Nightlaila 9967584737
 
Youth Involvement in an Innovative Coconut Value Chain by Mwalimu Menza
Youth Involvement in an Innovative Coconut Value Chain by Mwalimu MenzaYouth Involvement in an Innovative Coconut Value Chain by Mwalimu Menza
Youth Involvement in an Innovative Coconut Value Chain by Mwalimu Menza
 
8447779800, Low rate Call girls in Uttam Nagar Delhi NCR
8447779800, Low rate Call girls in Uttam Nagar Delhi NCR8447779800, Low rate Call girls in Uttam Nagar Delhi NCR
8447779800, Low rate Call girls in Uttam Nagar Delhi NCR
 
Kenya’s Coconut Value Chain by Gatsby Africa
Kenya’s Coconut Value Chain by Gatsby AfricaKenya’s Coconut Value Chain by Gatsby Africa
Kenya’s Coconut Value Chain by Gatsby Africa
 
International Business Environments and Operations 16th Global Edition test b...
International Business Environments and Operations 16th Global Edition test b...International Business Environments and Operations 16th Global Edition test b...
International Business Environments and Operations 16th Global Edition test b...
 
8447779800, Low rate Call girls in Tughlakabad Delhi NCR
8447779800, Low rate Call girls in Tughlakabad Delhi NCR8447779800, Low rate Call girls in Tughlakabad Delhi NCR
8447779800, Low rate Call girls in Tughlakabad Delhi NCR
 
Flow Your Strategy at Flight Levels Day 2024
Flow Your Strategy at Flight Levels Day 2024Flow Your Strategy at Flight Levels Day 2024
Flow Your Strategy at Flight Levels Day 2024
 
Future Of Sample Report 2024 | Redacted Version
Future Of Sample Report 2024 | Redacted VersionFuture Of Sample Report 2024 | Redacted Version
Future Of Sample Report 2024 | Redacted Version
 
Buy gmail accounts.pdf Buy Old Gmail Accounts
Buy gmail accounts.pdf Buy Old Gmail AccountsBuy gmail accounts.pdf Buy Old Gmail Accounts
Buy gmail accounts.pdf Buy Old Gmail Accounts
 
8447779800, Low rate Call girls in Saket Delhi NCR
8447779800, Low rate Call girls in Saket Delhi NCR8447779800, Low rate Call girls in Saket Delhi NCR
8447779800, Low rate Call girls in Saket Delhi NCR
 
2024 Numerator Consumer Study of Cannabis Usage
2024 Numerator Consumer Study of Cannabis Usage2024 Numerator Consumer Study of Cannabis Usage
2024 Numerator Consumer Study of Cannabis Usage
 
The CMO Survey - Highlights and Insights Report - Spring 2024
The CMO Survey - Highlights and Insights Report - Spring 2024The CMO Survey - Highlights and Insights Report - Spring 2024
The CMO Survey - Highlights and Insights Report - Spring 2024
 
Call Girls In Sikandarpur Gurgaon ❤️8860477959_Russian 100% Genuine Escorts I...
Call Girls In Sikandarpur Gurgaon ❤️8860477959_Russian 100% Genuine Escorts I...Call Girls In Sikandarpur Gurgaon ❤️8860477959_Russian 100% Genuine Escorts I...
Call Girls In Sikandarpur Gurgaon ❤️8860477959_Russian 100% Genuine Escorts I...
 
BEST Call Girls In Old Faridabad ✨ 9773824855 ✨ Escorts Service In Delhi Ncr,
BEST Call Girls In Old Faridabad ✨ 9773824855 ✨ Escorts Service In Delhi Ncr,BEST Call Girls In Old Faridabad ✨ 9773824855 ✨ Escorts Service In Delhi Ncr,
BEST Call Girls In Old Faridabad ✨ 9773824855 ✨ Escorts Service In Delhi Ncr,
 
Innovation Conference 5th March 2024.pdf
Innovation Conference 5th March 2024.pdfInnovation Conference 5th March 2024.pdf
Innovation Conference 5th March 2024.pdf
 
APRIL2024_UKRAINE_xml_0000000000000 .pdf
APRIL2024_UKRAINE_xml_0000000000000 .pdfAPRIL2024_UKRAINE_xml_0000000000000 .pdf
APRIL2024_UKRAINE_xml_0000000000000 .pdf
 
BEST Call Girls In Greater Noida ✨ 9773824855 ✨ Escorts Service In Delhi Ncr,
BEST Call Girls In Greater Noida ✨ 9773824855 ✨ Escorts Service In Delhi Ncr,BEST Call Girls In Greater Noida ✨ 9773824855 ✨ Escorts Service In Delhi Ncr,
BEST Call Girls In Greater Noida ✨ 9773824855 ✨ Escorts Service In Delhi Ncr,
 
Call Girls In Sikandarpur Gurgaon ❤️8860477959_Russian 100% Genuine Escorts I...
Call Girls In Sikandarpur Gurgaon ❤️8860477959_Russian 100% Genuine Escorts I...Call Girls In Sikandarpur Gurgaon ❤️8860477959_Russian 100% Genuine Escorts I...
Call Girls In Sikandarpur Gurgaon ❤️8860477959_Russian 100% Genuine Escorts I...
 
Call Girls In Radisson Blu Hotel New Delhi Paschim Vihar ❤️8860477959 Escorts...
Call Girls In Radisson Blu Hotel New Delhi Paschim Vihar ❤️8860477959 Escorts...Call Girls In Radisson Blu Hotel New Delhi Paschim Vihar ❤️8860477959 Escorts...
Call Girls In Radisson Blu Hotel New Delhi Paschim Vihar ❤️8860477959 Escorts...
 
Case study on tata clothing brand zudio in detail
Case study on tata clothing brand zudio in detailCase study on tata clothing brand zudio in detail
Case study on tata clothing brand zudio in detail
 

Business Continuity Plan

  • 1. Business Continuity Plan Plash Chowdhary Information Security Consultant
  • 2. Declaration This presentation is made in Plash’s personal capacity and does not represent views of my employer
  • 3. Business Continuity Planning  It’s a logistics process to run mission critical process for survival and restoring operations from a disaster  It is enforced by law of the land
  • 4. What is at RISK? • Reputation Loss • Financial Loss • Regulatory concerns • Data Loss • Loss of Life • Jobs
  • 5. Where is it Applicable? • Vendor and you are caught in the same disaster Supply Chain • Transportation Strike and you have No Inventory • Quitting of critical recourses Human Resources • Worker union Strikes • Acts of God Physical Premises • Targeted terrorist attacks Information • Data leakage by Intrusion/Hacking Technology • Virus outbreak • Your only market is hit by a crisis Marketing • your product developed a snag and needs to be recalled Its Applicable where a Mission Critical Service is disrupted
  • 6. BCP & Regulations • Several laws/orders mandate BCP as part of organization strategy. Industry Sector Significant Laws and Regulations Healthcare Health Insurance Portability and Accountability Act (HIPAA) of 1996 Food and Drug Administration (FDA) Code of Federal Regulations (CFR), Title XXI, 1999 Government Federal Information Security Act (FISMA) of 2002, Title III of the E-Government Act of 2002 (PL 107-347, 17 December 2002) Executive Order on Critical Infrastructure Protection in the Information Age, 16 October 2001 COOP and Continuity of Government (COG). Federal Preparedness Circular 69, 26 July 1999 National Institute of Standards and Technology (NIST) Special Publication (SP) 800-34, Contingency Planning Guide for Information Technology Systems, June 2002 NIST 800-53, Recommended Security Controls for Federal Information Systems, February 2005 Finance Federal Financial Institutions Examination Council (FFIEC) Handbook, 2003-2004 (Chapter 10) Basel II, Basel Committee on Banking Supervision, Sound Practices for Management and Supervision, 2003 Interagency Paper on Sound Practices to Strengthen the Resilience of the U.S. Financial System, 2003 Expedited Funds Availability (EFA) Act, 1989 Utilities Governmental Accounting Standards Board (GASB) Statement No. 34, June 1999 North American Electric Reliability Council (NERC) 1200 (1216.1), 2003 Federal Energy Regulatory Commission (FERC) RM01-12-00 (Appendix G), 2003 RUS 7 CFR Part 1730, 2005 Telecommunications Act of 1996, Section 256, Coordination for Interconnectivity NERC Security Guidelines for the Electricity Sector, June 2001 Source: Gartner http://www.gartner.com/DisplayDocument?doc_cd=128123
  • 7. BCP Hierarchy Policy BCP Strategy Training Employees Implementation & Monitoring Implementing Testing BCP BCP Business Risk Impact Monitoring Analysis Planning Recovery Risk Requirements Alternatives Assessment
  • 8. BCP Management Team Legal Finance Management Internal Auditors Operations
  • 9. BCP Initiation and Recovery Steps BCP Cycle Business Recovery Steps Identification Business Recovery Recovery Prevention Facility Recovery Process Recovery Human Implementation Declaration Recourses recovery IT Recovery Operations Business Telecommunication Data Recovery Recovery Unit Recovery Recovery Containment Escalation
  • 10. Need External Auditor? Planning Implementation Auditing • Strategy definition • Employee awareness • Reviewing BCP policy • Policy definition • Selecting and • Auditing SLA • Risk Assessment optimizing vendors • BCP Simulation • Identifying critical • Vendor Assessments services and Alternatives • Business Impact Analysis • Applicable Laws