2. National Continuity
National Continuity Solutions Ensure:
- Enduring Constitution of Government (ECG)
(Classified)
- Continuity of Government (COG)
(Classified)
- Continuity of Operations (COOP)
(Unclassified – FOUO)
Foundation for ECG and COG
COOP Components Include:
• Information Assurance
• Enterprise Architecture
• Critical Infrastructure Protection
• Disaster Recovery Centers
• Business Continuity Plans
• Alternate Facilities
• Logistics, Provisioning, & Sustainment
• Route Planning
• Personnel Rotation & Management
• Test Training and Exercise Program Representative Directives,Standards and Guidelines
• Multi-Year Strategy and Program Management Plan
HSPD 20, FCD 1&2, DoD 3020.26
(FIPS) Publication 87, NIST SP, FISMA
3. National Continuity Model
National Continuity Objectives
Authority Level
NEFs
Leadership Level
PMEFs
Operational Level
MEFs/PMEFs
Industry Critical Infrastructure/Vendors
4. COOP is hard to develop and difficult to maintain
Strategy - Build COOP into routine processes
5. Managing COOP Tasks: Easier said than Done
• Alert and Notification • Operating Procedures
• Line of Succession • Other Personnel Issues
• Delegation of Authorities • Security
• Alternate Facilities • Communications
– Logistics, Provisioning, – Single Point of Failure
and Sustainment Prevention
– Route Planning – Multiple basing options
– Personnel Rotation – “No lag” seamless transfer
and Management to backup system(s)
• Safekeeping Vital Records/Databases • Test Training and Exercises
• Administration and Logistics • Multi-Year Strategy Program
Management Plan
Requires significant information management and process review
6. A Repeatable & Scalable Process
Sage Automated Solution
Entities, Assets,
Vulnerabilities, Checks
People Facilities Processes
Analysis &
Workflow Engine
Test Controls
Perform Checks
Laptops Servers Databases Applications Transform into Risk
Regulations
Standards Risk-led • Secure
Frameworks Determine Control • Revise
action
Threats Results and • Import
Risks Recommend Mitigation
• Encrypt
Controls
Collect and consolidate information Combine results from eSurvey Roles-based dashboards allow
from servers and applications as well automation with results from security Executives, IT Operations, and
as people, processes etc, and link to automation systems and transform IT Security to work from one source
controls into risk of data
7. Thank you for your time.
We would like to offer you a
Demonstration
Mike O’Dell, CBCP Dennis R. Schrader, PE
mike.odell@sage-mgt.net dschrader@comcast.net
304-596-3140 443-472-5871