BCP DR Planning
BCP DR Planning
BCP DR Planning
1
Business Continuity Planning
… a “disaster”
2
Security Management, Sec Business
Architecture & Models, Laws, Disaster Continuity &
Ethics, Physical Sec Controls,, Disaster
Access Control, OpSec, Apdev
Recovery
Sec, TNI Sec, Cryptography
… it is:
• a process to minimize the impact of a major
disruption to normal operations
• a process to enable restoration of critical
assets
• a process to restore normalcy as soon as
possible after a crisis.
… it is not just:
• recovery of information technology resources
3
Business Continuity Planning
4
Business Impact Analysis
5
Recovery Point Objective and
Recovery Time Objective
• When is it a Crisis?
Continuity Continuum
6
Business Continuity Planning
• When is it a Crisis?
Continuity Continuum
• When is it a Crisis?
Continuity Continuum
7
Business Continuity Planning
• When is it a Crisis?
Continuity Continuum
8
Business Continuity Planning
9
Business Continuity Planning
10
Business Continuity Planning
11
Business Continuity Planning
12
Business Continuity Planning
Lost Data
Restore Communications
(If necessary)
Restore Business Functions Data Synchronization
Data Recovery Objective
13
Recovery Strategies
14
Recovery Strategies
Recovery Strategies
15
Recovery Strategies
Recovery Alternatives
(continued)
16
Recovery Alternatives
(continued)
Recovery Alternatives
17
Development of Business
Continuity and Disaster
Recovery Plans
Factors to consider when developing the plans
• Pre-disaster readiness
• Evacuation procedures
• Circumstances under which a disaster should be declared
• Identification of plan responsibilities
• Identification of contract information
• Recovery option explanations
• Identification of resources for recovery and continued
operation of the organization
• Application of the constitution phase
18
Organization and Assignment
of Responsibilities (continued)
Other Issues in
Plan Development
19
Components of a Business
Continuity Plan
A business continuity plan may consist of more
than one plan document
• Continuity of operations plan (COOP)
• Disaster recovery plan (DRP)
• Business resumption plan
• Continuity of support plan / IT contingency plan
• Crisis communications plan
• Incident response plan
• Transportation plan
• Occupant emergency plan (OEP)
Components of a
Business Continuity Plan
(continued)
Components of the plan
• Key decision-making personnel
• Backup of required supplies
• Telecommunication networks disaster recovery methods
• Redundant array of inexpensive disks (RAID)
• Insurance
20