SlideShare a Scribd company logo
establishing relationship
                         RISK Management
                                        and

                      DISASTER Recovery




                                                          Sanjay Verma
source: Microsoft templates
DRIVERS
REGULATORY




LEGISLATIVE



BUSINESS


              Good business practices
                                    source: Google images
OUTCOME




          source: Google images
the FIVE
   PRINCIPLES
1   BUSINESS
    IS
     KING
source: Google images
Financial Reporting




  YOUR
BUSINESS
2
    RELATIONSHIP
BUSINESS




   IT




           source: Google images
Financial Reporting




BUSINESS PROCESS
    CONTROLS




  IT CONTROLS




                                         source: Google images
OPERATIONAL RISK

                   Risk Management   Business Continuity
                                     Management
Key Method               …………..             …………..
Key Parameters           …………..             …………..
Type of Incident         …………..             …………..
Size of events           …………..             …………..
Scope                    …………..             …………..
Intensity                …………..             …………..
OPERATIONAL RISK

                   Risk Management        Business Continuity
                                          Management
Key Method         Risk Analysis          Business Impact Analysis
Key Parameters     Impact & Probability   Impact & Time
Type of Incident           …………..                …………..
Size of events             …………..                …………..
Scope                      …………..                …………..
Intensity                  …………..                …………..
SINGLE
3   INTEGRATED
    FRAMEWORK
BUSINESS CONTINUITY MANAGEMENT
INTEGRATION OF 3 DISCIPLINES




                            CRISIS
                        MANAGEMENT
                       (Corporate issues)




          DISASTER                    BUSINESS
          RECOVERY                   CONTINUITY
            (IT system                  (Process
            availability)             contingencies)
4   ENABLING
    HOLISTIC
    APPROACH
Financial Reporting




                                                                 Internal / External Audit
Business Process
    Controls




                                            IT Risk & Security
                                               Professionals
 IT Environment




                                         source: Google images
Risk Assessment                     Selection of Controls
                       Leads to

                         reduces           Deterrent
           Threats
                                           Controls


 exploit

                         reduces           Preventive
     Vulnerabilities
                                            Controls

 causing                                         triggers

                        discovers          Detective
       Incidents
                                           Controls

affecting

                                                 triggers
           Assets


producing

                         reduces           Corrective
    Business Impact
                                            Controls

                                                            source: http://sabsa.org
SEPARATING
5   GOVERNANCE
    & MANAGEMENT
Department       People, Seats, Cost Centre, Plan Owner




        Worst Time,
                             Process #1                                         Process #2             Process Workflow State
Frequency, Criticality




           Work-            IT         IT                  Special              Internal
                                               Network                 Vital
           station       Applicat-   Special               Require-             Depen-     Suppliers      Roles
                                                Drives                Records
           Builds          ions      Needs                  ments               dencies




                              All-Hazards Approach to “Loss of Resource Type”
                                                                                                                  source: BCM Ina Box
BRIDGING
GAPS   “CORE” of RISK MANAGEMENT




                                       THE INFORMATION ‘BRIDGE’


                                                                                    Owner RTO RPO




                                                                                                                                                                      BNZ                    BNZ          BNZ         BNZ                 BNZ          BNZ                     NAB         Cert                                                NAB
                                                                                  LOC                 Auk                               Auk         Auk     Auk       BNZ                    BNZ          BNZ         BNZ                 BNZ          BNZ              Mel    Mel         Mel      Mel     Mel        Mel     Mel     Mel     Mel            Mel              Mel        Mel
                                                                                                        Analytical Marketing Database




                                                                                                                                                                        Alpha Orange Alpha
                                                                                    IT Service Name




                                                                                                                                                                                                                        Over10 database




                                                                                                                                                                                                                                                         SIG database




                                                                                                                                                                                                                                                                                                                                                                Connectivity
                                                                                                                                                                                               FTP/XCOM




                                                                                                                                                                                                                                                                                                                                                 CLS server
                                                                                                                                                                                                                                            SDR tags




                                                                                                                                                                                                                                                                                 AQ Pack
                                                                                                                                                                                                            Genesys




                                                                                                                                                                                                                                                                                                              BRAINS
                                                                                                                                          Encoder




                                                                                                                                                                                                                                                                                                                                                                                 Connex
                                                                                                                                                              TRIAD




                                                                                                                                                                                                                                                                                                                                 CDS




                                                                                                                                                                                                                                                                                                                                                                                            CPS
                                                                                                                                                      TDP




                                                                                                                                                                                                                                                                                                                         BTZ
                                                                                                                                                                                                                                                                                              B2K

                                                                                                                                                                                                                                                                                                      BIS




                                                                                                                                                                                                                                                                                                                                         CIF
                                                                                                                                                                                                                                                                          AP
        Process / IT Services matrix

        Name of Critical Process             Name of Sub-Process            MAO

        Payments / Clearing and Settlement
        Obligations
                                                                                                                                                                                                                                                                                            g                g                          g                                       g
         Cards Settlements                   Credit Card Issuing            24

         Cards Settlements         Process   Merchant Acquiring             24
                                                                                                                                                                                                                                                                                            g                                           g                                       g


         Cards Settlements           #1      EFTPOS Debit Cards             24
                                                                                                                                                                                                                                                                                                                                        g                                       g

                                                                                                                                                                                                                                                                                                                                        g                                       g
         Cards Settlements                   ATM Settlement                 24
                                             Inward & Outwards
                                                                                                                                                                                                                                                                                                                                        g
         Retail Interchange                  Interchange positions
                                             Same day Cleared               24
                                             Payments (Assured Value
                                                                                                                                                                                                                                                                                                             g                          g                                                  g
         Retail Interchange                  Payments)
                                                       Process #2
                                                                24
                                             Cheque and Lodgement
                                                                                                                                                                                                                                                                                                                                        g
         Retail Interchange                  Processing                     24
                                                                                                                                                                                                                                                                                                                                g       g                      g
         Retail Interchange                  Direct Debit Processing        24
                                                                                                                                                                                                                                                                                                                                        g                                       g
         Retail Interchange                  Direct Credit / Bill Payment   24
                                                                                                                                                                                                                                                                         g                                                              g
         Retail Interchange                  Automatic Payments             24
                                                                                                                                                                                                                                                                                                                                        g
         Retail Interchange                  Foreign Cash                   24
                                                                                                                                                                                                                                                                         g                  g        g                          g       g
         Retail Interchange                  Dishonours                     24




                      PROCESS-BY-IT SERVICES VIEW
                                                                                                                                                                                                                                                                                                                                                                                                  source: BCM Ina Box
source: Google images
Risk
PROFESSIONALS           No COMPANY can
 are divided as to         make a profit
 how to determine       without taking risk
   risk appetite




           Taking RISKS without
        consciously managing it can
           lead to the downfall of
               organisations
Thank You

More Related Content

Similar to A CIO’s Perspective: Reconciling Risk Management with Disaster Recovery Tactics by Sanjay Verma

D team weekly powerpoint presentation spqm
D team weekly powerpoint presentation spqmD team weekly powerpoint presentation spqm
D team weekly powerpoint presentation spqmMiraj Mhaisuria
 
IBM Cognos 10.1 User Interface Tools Overview
IBM Cognos 10.1 User Interface Tools OverviewIBM Cognos 10.1 User Interface Tools Overview
IBM Cognos 10.1 User Interface Tools Overview
Senturus
 
DSS ITSEC Conference 2012 - RISK & COMPLIANCE
DSS ITSEC Conference 2012 - RISK & COMPLIANCEDSS ITSEC Conference 2012 - RISK & COMPLIANCE
DSS ITSEC Conference 2012 - RISK & COMPLIANCE
Andris Soroka
 
A brief overview of operational risk
A brief overview of operational riskA brief overview of operational risk
A brief overview of operational riskDiane Christina
 
Sap risk advisory presentation
Sap risk advisory presentationSap risk advisory presentation
Sap risk advisory presentation
Rahul Bhan (CA, CIA, MBA)
 
Preso
PresoPreso
Preso
danebalia
 
Information Management: Answering Today’s Enterprise Challenge
Information Management: Answering Today’s Enterprise ChallengeInformation Management: Answering Today’s Enterprise Challenge
Information Management: Answering Today’s Enterprise Challenge
Bob Rhubart
 
Business Patterns for Software Developers
Business Patterns for Software DevelopersBusiness Patterns for Software Developers
Business Patterns for Software Developers
allan kelly
 
SCAN Health: From Flexible Work to Corporate Agility
SCAN Health:  From Flexible Work to Corporate AgilitySCAN Health:  From Flexible Work to Corporate Agility
SCAN Health: From Flexible Work to Corporate Agility
James Ware, PhD
 
Introduction to the BPM Lifecycle
Introduction to the BPM LifecycleIntroduction to the BPM Lifecycle
Introduction to the BPM Lifecycle
Michael zur Muehlen
 
Non techie journey in social internet age noiselessinnovation
Non techie journey in social internet age noiselessinnovationNon techie journey in social internet age noiselessinnovation
Non techie journey in social internet age noiselessinnovation
frameworks2go.com
 
Business processes, business rules, complex event processing, the JBoss way
Business processes, business rules, complex event processing, the JBoss wayBusiness processes, business rules, complex event processing, the JBoss way
Business processes, business rules, complex event processing, the JBoss way
Kris Verlaenen
 
Jeff Pascoe - Managing Financial Client On-boarding with BPM
Jeff Pascoe - Managing Financial Client On-boarding with BPMJeff Pascoe - Managing Financial Client On-boarding with BPM
Jeff Pascoe - Managing Financial Client On-boarding with BPMOpenText_ContentDayUK2012
 
Birdie Analysis Report
Birdie Analysis ReportBirdie Analysis Report
Birdie Analysis Report
Benjamin Kreeger
 
How to Build a World-Class Back Office
How to Build a World-Class Back OfficeHow to Build a World-Class Back Office
How to Build a World-Class Back Office
Bay Bridge Decision Technologies
 
Dubai Nov08 Erm Gs Khoo
Dubai Nov08 Erm Gs KhooDubai Nov08 Erm Gs Khoo
Dubai Nov08 Erm Gs Khoo
Guan Khoo
 

Similar to A CIO’s Perspective: Reconciling Risk Management with Disaster Recovery Tactics by Sanjay Verma (20)

Analisis de Riesgos O-ISM3
Analisis de Riesgos O-ISM3Analisis de Riesgos O-ISM3
Analisis de Riesgos O-ISM3
 
D team weekly powerpoint presentation spqm
D team weekly powerpoint presentation spqmD team weekly powerpoint presentation spqm
D team weekly powerpoint presentation spqm
 
IBM Cognos 10.1 User Interface Tools Overview
IBM Cognos 10.1 User Interface Tools OverviewIBM Cognos 10.1 User Interface Tools Overview
IBM Cognos 10.1 User Interface Tools Overview
 
DSS ITSEC Conference 2012 - RISK & COMPLIANCE
DSS ITSEC Conference 2012 - RISK & COMPLIANCEDSS ITSEC Conference 2012 - RISK & COMPLIANCE
DSS ITSEC Conference 2012 - RISK & COMPLIANCE
 
A brief overview of operational risk
A brief overview of operational riskA brief overview of operational risk
A brief overview of operational risk
 
Sap Risk Advisory Presentation
Sap Risk Advisory PresentationSap Risk Advisory Presentation
Sap Risk Advisory Presentation
 
Sap risk advisory presentation
Sap risk advisory presentationSap risk advisory presentation
Sap risk advisory presentation
 
Preso
PresoPreso
Preso
 
Information Management: Answering Today’s Enterprise Challenge
Information Management: Answering Today’s Enterprise ChallengeInformation Management: Answering Today’s Enterprise Challenge
Information Management: Answering Today’s Enterprise Challenge
 
Business Patterns for Software Developers
Business Patterns for Software DevelopersBusiness Patterns for Software Developers
Business Patterns for Software Developers
 
SCAN Health: From Flexible Work to Corporate Agility
SCAN Health:  From Flexible Work to Corporate AgilitySCAN Health:  From Flexible Work to Corporate Agility
SCAN Health: From Flexible Work to Corporate Agility
 
Introduction to the BPM Lifecycle
Introduction to the BPM LifecycleIntroduction to the BPM Lifecycle
Introduction to the BPM Lifecycle
 
Non techie journey in social internet age noiselessinnovation
Non techie journey in social internet age noiselessinnovationNon techie journey in social internet age noiselessinnovation
Non techie journey in social internet age noiselessinnovation
 
Business processes, business rules, complex event processing, the JBoss way
Business processes, business rules, complex event processing, the JBoss wayBusiness processes, business rules, complex event processing, the JBoss way
Business processes, business rules, complex event processing, the JBoss way
 
Jeff Pascoe - Managing Financial Client On-boarding with BPM
Jeff Pascoe - Managing Financial Client On-boarding with BPMJeff Pascoe - Managing Financial Client On-boarding with BPM
Jeff Pascoe - Managing Financial Client On-boarding with BPM
 
Birdie Analysis Report
Birdie Analysis ReportBirdie Analysis Report
Birdie Analysis Report
 
ITbuzz introduction Slides
ITbuzz introduction SlidesITbuzz introduction Slides
ITbuzz introduction Slides
 
How to Build a World-Class Back Office
How to Build a World-Class Back OfficeHow to Build a World-Class Back Office
How to Build a World-Class Back Office
 
Sap Risk Advisory Presentation
Sap Risk Advisory PresentationSap Risk Advisory Presentation
Sap Risk Advisory Presentation
 
Dubai Nov08 Erm Gs Khoo
Dubai Nov08 Erm Gs KhooDubai Nov08 Erm Gs Khoo
Dubai Nov08 Erm Gs Khoo
 

More from IT Network marcus evans

How CIOs Can Bridge the Gap Between Executive Leadership and IT Teams - Greg ...
How CIOs Can Bridge the Gap Between Executive Leadership and IT Teams - Greg ...How CIOs Can Bridge the Gap Between Executive Leadership and IT Teams - Greg ...
How CIOs Can Bridge the Gap Between Executive Leadership and IT Teams - Greg ...
IT Network marcus evans
 
How the IT Function Can Enable the Organisation to Achieve its Goals - Anupam...
How the IT Function Can Enable the Organisation to Achieve its Goals - Anupam...How the IT Function Can Enable the Organisation to Achieve its Goals - Anupam...
How the IT Function Can Enable the Organisation to Achieve its Goals - Anupam...
IT Network marcus evans
 
What CIOs Need to Know about the Future of Technology - Steve Sammartino, Fu...
What CIOs Need to Know about the Future of Technology  - Steve Sammartino, Fu...What CIOs Need to Know about the Future of Technology  - Steve Sammartino, Fu...
What CIOs Need to Know about the Future of Technology - Steve Sammartino, Fu...
IT Network marcus evans
 
The Low Risk Way to Expanding a Business into South East Asia Joe Fussell & D...
The Low Risk Way to Expanding a Business into South East Asia Joe Fussell & D...The Low Risk Way to Expanding a Business into South East Asia Joe Fussell & D...
The Low Risk Way to Expanding a Business into South East Asia Joe Fussell & D...
IT Network marcus evans
 
Why IT Systems Need to Conduct IT System Penetration Tests - Chris Gatford, N...
Why IT Systems Need to Conduct IT System Penetration Tests - Chris Gatford, N...Why IT Systems Need to Conduct IT System Penetration Tests - Chris Gatford, N...
Why IT Systems Need to Conduct IT System Penetration Tests - Chris Gatford, N...
IT Network marcus evans
 
Gestión, Ejecución, y Eficiencia a Escala Panregional. Desafíos a Superar-Ant...
Gestión, Ejecución, y Eficiencia a Escala Panregional. Desafíos a Superar-Ant...Gestión, Ejecución, y Eficiencia a Escala Panregional. Desafíos a Superar-Ant...
Gestión, Ejecución, y Eficiencia a Escala Panregional. Desafíos a Superar-Ant...
IT Network marcus evans
 
Time Machines: The Evolution and Application of Predictive Analytics-Dr Steve...
Time Machines: The Evolution and Application of Predictive Analytics-Dr Steve...Time Machines: The Evolution and Application of Predictive Analytics-Dr Steve...
Time Machines: The Evolution and Application of Predictive Analytics-Dr Steve...
IT Network marcus evans
 
Data Breaches and Security: Ditching Data Disasters-Michael McNeil, Philips H...
Data Breaches and Security: Ditching Data Disasters-Michael McNeil, Philips H...Data Breaches and Security: Ditching Data Disasters-Michael McNeil, Philips H...
Data Breaches and Security: Ditching Data Disasters-Michael McNeil, Philips H...
IT Network marcus evans
 
How CIOs Can Execute Change Programmes Successfully - Melissa Bell news release
How CIOs Can Execute Change Programmes Successfully - Melissa Bell news releaseHow CIOs Can Execute Change Programmes Successfully - Melissa Bell news release
How CIOs Can Execute Change Programmes Successfully - Melissa Bell news release
IT Network marcus evans
 
Transitioning to a Digital Enterprise - Dan Hushon News Release
Transitioning to a Digital Enterprise -  Dan Hushon News ReleaseTransitioning to a Digital Enterprise -  Dan Hushon News Release
Transitioning to a Digital Enterprise - Dan Hushon News Release
IT Network marcus evans
 
Grow Your Business
Grow Your Business Grow Your Business
Grow Your Business
IT Network marcus evans
 
The one-on-one meetings with potential customers is what matters most
The one-on-one meetings with potential customers is what matters mostThe one-on-one meetings with potential customers is what matters most
The one-on-one meetings with potential customers is what matters most
IT Network marcus evans
 
Where marcus evans fits in our business development mix
Where marcus evans fits in our business development mixWhere marcus evans fits in our business development mix
Where marcus evans fits in our business development mix
IT Network marcus evans
 
Crafting the Right Mobile Device Management Framework to Mitigate Risks and M...
Crafting the Right Mobile Device Management Framework to Mitigate Risks and M...Crafting the Right Mobile Device Management Framework to Mitigate Risks and M...
Crafting the Right Mobile Device Management Framework to Mitigate Risks and M...
IT Network marcus evans
 
Adaptive Transformation: Transitioning from Resource to Flow Efficiency
Adaptive Transformation: Transitioning from Resource to Flow Efficiency Adaptive Transformation: Transitioning from Resource to Flow Efficiency
Adaptive Transformation: Transitioning from Resource to Flow Efficiency
IT Network marcus evans
 
Home Hunter
Home Hunter Home Hunter
A New Approach to the CIO role by Redefining the IT Department’s Contribution...
A New Approach to the CIO role by Redefining the IT Department’s Contribution...A New Approach to the CIO role by Redefining the IT Department’s Contribution...
A New Approach to the CIO role by Redefining the IT Department’s Contribution...
IT Network marcus evans
 
Bigger and Better: Employing a Holistic Strategy for Big Data toward a Strong...
Bigger and Better: Employing a Holistic Strategy for Big Data toward a Strong...Bigger and Better: Employing a Holistic Strategy for Big Data toward a Strong...
Bigger and Better: Employing a Holistic Strategy for Big Data toward a Strong...
IT Network marcus evans
 
The Shifting Role of the CIO as a Strategic Innovator
The Shifting Role of the CIO as a Strategic InnovatorThe Shifting Role of the CIO as a Strategic Innovator
The Shifting Role of the CIO as a Strategic Innovator
IT Network marcus evans
 
Active Defence: Safeguarding Crucial Capability while Boosting Functionality ...
Active Defence: Safeguarding Crucial Capability while Boosting Functionality ...Active Defence: Safeguarding Crucial Capability while Boosting Functionality ...
Active Defence: Safeguarding Crucial Capability while Boosting Functionality ...
IT Network marcus evans
 

More from IT Network marcus evans (20)

How CIOs Can Bridge the Gap Between Executive Leadership and IT Teams - Greg ...
How CIOs Can Bridge the Gap Between Executive Leadership and IT Teams - Greg ...How CIOs Can Bridge the Gap Between Executive Leadership and IT Teams - Greg ...
How CIOs Can Bridge the Gap Between Executive Leadership and IT Teams - Greg ...
 
How the IT Function Can Enable the Organisation to Achieve its Goals - Anupam...
How the IT Function Can Enable the Organisation to Achieve its Goals - Anupam...How the IT Function Can Enable the Organisation to Achieve its Goals - Anupam...
How the IT Function Can Enable the Organisation to Achieve its Goals - Anupam...
 
What CIOs Need to Know about the Future of Technology - Steve Sammartino, Fu...
What CIOs Need to Know about the Future of Technology  - Steve Sammartino, Fu...What CIOs Need to Know about the Future of Technology  - Steve Sammartino, Fu...
What CIOs Need to Know about the Future of Technology - Steve Sammartino, Fu...
 
The Low Risk Way to Expanding a Business into South East Asia Joe Fussell & D...
The Low Risk Way to Expanding a Business into South East Asia Joe Fussell & D...The Low Risk Way to Expanding a Business into South East Asia Joe Fussell & D...
The Low Risk Way to Expanding a Business into South East Asia Joe Fussell & D...
 
Why IT Systems Need to Conduct IT System Penetration Tests - Chris Gatford, N...
Why IT Systems Need to Conduct IT System Penetration Tests - Chris Gatford, N...Why IT Systems Need to Conduct IT System Penetration Tests - Chris Gatford, N...
Why IT Systems Need to Conduct IT System Penetration Tests - Chris Gatford, N...
 
Gestión, Ejecución, y Eficiencia a Escala Panregional. Desafíos a Superar-Ant...
Gestión, Ejecución, y Eficiencia a Escala Panregional. Desafíos a Superar-Ant...Gestión, Ejecución, y Eficiencia a Escala Panregional. Desafíos a Superar-Ant...
Gestión, Ejecución, y Eficiencia a Escala Panregional. Desafíos a Superar-Ant...
 
Time Machines: The Evolution and Application of Predictive Analytics-Dr Steve...
Time Machines: The Evolution and Application of Predictive Analytics-Dr Steve...Time Machines: The Evolution and Application of Predictive Analytics-Dr Steve...
Time Machines: The Evolution and Application of Predictive Analytics-Dr Steve...
 
Data Breaches and Security: Ditching Data Disasters-Michael McNeil, Philips H...
Data Breaches and Security: Ditching Data Disasters-Michael McNeil, Philips H...Data Breaches and Security: Ditching Data Disasters-Michael McNeil, Philips H...
Data Breaches and Security: Ditching Data Disasters-Michael McNeil, Philips H...
 
How CIOs Can Execute Change Programmes Successfully - Melissa Bell news release
How CIOs Can Execute Change Programmes Successfully - Melissa Bell news releaseHow CIOs Can Execute Change Programmes Successfully - Melissa Bell news release
How CIOs Can Execute Change Programmes Successfully - Melissa Bell news release
 
Transitioning to a Digital Enterprise - Dan Hushon News Release
Transitioning to a Digital Enterprise -  Dan Hushon News ReleaseTransitioning to a Digital Enterprise -  Dan Hushon News Release
Transitioning to a Digital Enterprise - Dan Hushon News Release
 
Grow Your Business
Grow Your Business Grow Your Business
Grow Your Business
 
The one-on-one meetings with potential customers is what matters most
The one-on-one meetings with potential customers is what matters mostThe one-on-one meetings with potential customers is what matters most
The one-on-one meetings with potential customers is what matters most
 
Where marcus evans fits in our business development mix
Where marcus evans fits in our business development mixWhere marcus evans fits in our business development mix
Where marcus evans fits in our business development mix
 
Crafting the Right Mobile Device Management Framework to Mitigate Risks and M...
Crafting the Right Mobile Device Management Framework to Mitigate Risks and M...Crafting the Right Mobile Device Management Framework to Mitigate Risks and M...
Crafting the Right Mobile Device Management Framework to Mitigate Risks and M...
 
Adaptive Transformation: Transitioning from Resource to Flow Efficiency
Adaptive Transformation: Transitioning from Resource to Flow Efficiency Adaptive Transformation: Transitioning from Resource to Flow Efficiency
Adaptive Transformation: Transitioning from Resource to Flow Efficiency
 
Home Hunter
Home Hunter Home Hunter
Home Hunter
 
A New Approach to the CIO role by Redefining the IT Department’s Contribution...
A New Approach to the CIO role by Redefining the IT Department’s Contribution...A New Approach to the CIO role by Redefining the IT Department’s Contribution...
A New Approach to the CIO role by Redefining the IT Department’s Contribution...
 
Bigger and Better: Employing a Holistic Strategy for Big Data toward a Strong...
Bigger and Better: Employing a Holistic Strategy for Big Data toward a Strong...Bigger and Better: Employing a Holistic Strategy for Big Data toward a Strong...
Bigger and Better: Employing a Holistic Strategy for Big Data toward a Strong...
 
The Shifting Role of the CIO as a Strategic Innovator
The Shifting Role of the CIO as a Strategic InnovatorThe Shifting Role of the CIO as a Strategic Innovator
The Shifting Role of the CIO as a Strategic Innovator
 
Active Defence: Safeguarding Crucial Capability while Boosting Functionality ...
Active Defence: Safeguarding Crucial Capability while Boosting Functionality ...Active Defence: Safeguarding Crucial Capability while Boosting Functionality ...
Active Defence: Safeguarding Crucial Capability while Boosting Functionality ...
 

Recently uploaded

Putting the SPARK into Virtual Training.pptx
Putting the SPARK into Virtual Training.pptxPutting the SPARK into Virtual Training.pptx
Putting the SPARK into Virtual Training.pptx
Cynthia Clay
 
Premium MEAN Stack Development Solutions for Modern Businesses
Premium MEAN Stack Development Solutions for Modern BusinessesPremium MEAN Stack Development Solutions for Modern Businesses
Premium MEAN Stack Development Solutions for Modern Businesses
SynapseIndia
 
Digital Transformation in PLM - WHAT and HOW - for distribution.pdf
Digital Transformation in PLM - WHAT and HOW - for distribution.pdfDigital Transformation in PLM - WHAT and HOW - for distribution.pdf
Digital Transformation in PLM - WHAT and HOW - for distribution.pdf
Jos Voskuil
 
Meas_Dylan_DMBS_PB1_2024-05XX_Revised.pdf
Meas_Dylan_DMBS_PB1_2024-05XX_Revised.pdfMeas_Dylan_DMBS_PB1_2024-05XX_Revised.pdf
Meas_Dylan_DMBS_PB1_2024-05XX_Revised.pdf
dylandmeas
 
What are the main advantages of using HR recruiter services.pdf
What are the main advantages of using HR recruiter services.pdfWhat are the main advantages of using HR recruiter services.pdf
What are the main advantages of using HR recruiter services.pdf
HumanResourceDimensi1
 
The Parable of the Pipeline a book every new businessman or business student ...
The Parable of the Pipeline a book every new businessman or business student ...The Parable of the Pipeline a book every new businessman or business student ...
The Parable of the Pipeline a book every new businessman or business student ...
awaisafdar
 
Skye Residences | Extended Stay Residences Near Toronto Airport
Skye Residences | Extended Stay Residences Near Toronto AirportSkye Residences | Extended Stay Residences Near Toronto Airport
Skye Residences | Extended Stay Residences Near Toronto Airport
marketingjdass
 
Project File Report BBA 6th semester.pdf
Project File Report BBA 6th semester.pdfProject File Report BBA 6th semester.pdf
Project File Report BBA 6th semester.pdf
RajPriye
 
Improving profitability for small business
Improving profitability for small businessImproving profitability for small business
Improving profitability for small business
Ben Wann
 
CADAVER AS OUR FIRST TEACHER anatomt in your.pptx
CADAVER AS OUR FIRST TEACHER anatomt in your.pptxCADAVER AS OUR FIRST TEACHER anatomt in your.pptx
CADAVER AS OUR FIRST TEACHER anatomt in your.pptx
fakeloginn69
 
Brand Analysis for an artist named Struan
Brand Analysis for an artist named StruanBrand Analysis for an artist named Struan
Brand Analysis for an artist named Struan
sarahvanessa51503
 
20240425_ TJ Communications Credentials_compressed.pdf
20240425_ TJ Communications Credentials_compressed.pdf20240425_ TJ Communications Credentials_compressed.pdf
20240425_ TJ Communications Credentials_compressed.pdf
tjcomstrang
 
Introduction to Amazon company 111111111111
Introduction to Amazon company 111111111111Introduction to Amazon company 111111111111
Introduction to Amazon company 111111111111
zoyaansari11365
 
Cree_Rey_BrandIdentityKit.PDF_PersonalBd
Cree_Rey_BrandIdentityKit.PDF_PersonalBdCree_Rey_BrandIdentityKit.PDF_PersonalBd
Cree_Rey_BrandIdentityKit.PDF_PersonalBd
creerey
 
Filing Your Delaware Franchise Tax A Detailed Guide
Filing Your Delaware Franchise Tax A Detailed GuideFiling Your Delaware Franchise Tax A Detailed Guide
Filing Your Delaware Franchise Tax A Detailed Guide
YourLegal Accounting
 
Discover the innovative and creative projects that highlight my journey throu...
Discover the innovative and creative projects that highlight my journey throu...Discover the innovative and creative projects that highlight my journey throu...
Discover the innovative and creative projects that highlight my journey throu...
dylandmeas
 
Unveiling the Secrets How Does Generative AI Work.pdf
Unveiling the Secrets How Does Generative AI Work.pdfUnveiling the Secrets How Does Generative AI Work.pdf
Unveiling the Secrets How Does Generative AI Work.pdf
Sam H
 
Affordable Stationery Printing Services in Jaipur | Navpack n Print
Affordable Stationery Printing Services in Jaipur | Navpack n PrintAffordable Stationery Printing Services in Jaipur | Navpack n Print
Affordable Stationery Printing Services in Jaipur | Navpack n Print
Navpack & Print
 
Enterprise Excellence is Inclusive Excellence.pdf
Enterprise Excellence is Inclusive Excellence.pdfEnterprise Excellence is Inclusive Excellence.pdf
Enterprise Excellence is Inclusive Excellence.pdf
KaiNexus
 
Cracking the Workplace Discipline Code Main.pptx
Cracking the Workplace Discipline Code Main.pptxCracking the Workplace Discipline Code Main.pptx
Cracking the Workplace Discipline Code Main.pptx
Workforce Group
 

Recently uploaded (20)

Putting the SPARK into Virtual Training.pptx
Putting the SPARK into Virtual Training.pptxPutting the SPARK into Virtual Training.pptx
Putting the SPARK into Virtual Training.pptx
 
Premium MEAN Stack Development Solutions for Modern Businesses
Premium MEAN Stack Development Solutions for Modern BusinessesPremium MEAN Stack Development Solutions for Modern Businesses
Premium MEAN Stack Development Solutions for Modern Businesses
 
Digital Transformation in PLM - WHAT and HOW - for distribution.pdf
Digital Transformation in PLM - WHAT and HOW - for distribution.pdfDigital Transformation in PLM - WHAT and HOW - for distribution.pdf
Digital Transformation in PLM - WHAT and HOW - for distribution.pdf
 
Meas_Dylan_DMBS_PB1_2024-05XX_Revised.pdf
Meas_Dylan_DMBS_PB1_2024-05XX_Revised.pdfMeas_Dylan_DMBS_PB1_2024-05XX_Revised.pdf
Meas_Dylan_DMBS_PB1_2024-05XX_Revised.pdf
 
What are the main advantages of using HR recruiter services.pdf
What are the main advantages of using HR recruiter services.pdfWhat are the main advantages of using HR recruiter services.pdf
What are the main advantages of using HR recruiter services.pdf
 
The Parable of the Pipeline a book every new businessman or business student ...
The Parable of the Pipeline a book every new businessman or business student ...The Parable of the Pipeline a book every new businessman or business student ...
The Parable of the Pipeline a book every new businessman or business student ...
 
Skye Residences | Extended Stay Residences Near Toronto Airport
Skye Residences | Extended Stay Residences Near Toronto AirportSkye Residences | Extended Stay Residences Near Toronto Airport
Skye Residences | Extended Stay Residences Near Toronto Airport
 
Project File Report BBA 6th semester.pdf
Project File Report BBA 6th semester.pdfProject File Report BBA 6th semester.pdf
Project File Report BBA 6th semester.pdf
 
Improving profitability for small business
Improving profitability for small businessImproving profitability for small business
Improving profitability for small business
 
CADAVER AS OUR FIRST TEACHER anatomt in your.pptx
CADAVER AS OUR FIRST TEACHER anatomt in your.pptxCADAVER AS OUR FIRST TEACHER anatomt in your.pptx
CADAVER AS OUR FIRST TEACHER anatomt in your.pptx
 
Brand Analysis for an artist named Struan
Brand Analysis for an artist named StruanBrand Analysis for an artist named Struan
Brand Analysis for an artist named Struan
 
20240425_ TJ Communications Credentials_compressed.pdf
20240425_ TJ Communications Credentials_compressed.pdf20240425_ TJ Communications Credentials_compressed.pdf
20240425_ TJ Communications Credentials_compressed.pdf
 
Introduction to Amazon company 111111111111
Introduction to Amazon company 111111111111Introduction to Amazon company 111111111111
Introduction to Amazon company 111111111111
 
Cree_Rey_BrandIdentityKit.PDF_PersonalBd
Cree_Rey_BrandIdentityKit.PDF_PersonalBdCree_Rey_BrandIdentityKit.PDF_PersonalBd
Cree_Rey_BrandIdentityKit.PDF_PersonalBd
 
Filing Your Delaware Franchise Tax A Detailed Guide
Filing Your Delaware Franchise Tax A Detailed GuideFiling Your Delaware Franchise Tax A Detailed Guide
Filing Your Delaware Franchise Tax A Detailed Guide
 
Discover the innovative and creative projects that highlight my journey throu...
Discover the innovative and creative projects that highlight my journey throu...Discover the innovative and creative projects that highlight my journey throu...
Discover the innovative and creative projects that highlight my journey throu...
 
Unveiling the Secrets How Does Generative AI Work.pdf
Unveiling the Secrets How Does Generative AI Work.pdfUnveiling the Secrets How Does Generative AI Work.pdf
Unveiling the Secrets How Does Generative AI Work.pdf
 
Affordable Stationery Printing Services in Jaipur | Navpack n Print
Affordable Stationery Printing Services in Jaipur | Navpack n PrintAffordable Stationery Printing Services in Jaipur | Navpack n Print
Affordable Stationery Printing Services in Jaipur | Navpack n Print
 
Enterprise Excellence is Inclusive Excellence.pdf
Enterprise Excellence is Inclusive Excellence.pdfEnterprise Excellence is Inclusive Excellence.pdf
Enterprise Excellence is Inclusive Excellence.pdf
 
Cracking the Workplace Discipline Code Main.pptx
Cracking the Workplace Discipline Code Main.pptxCracking the Workplace Discipline Code Main.pptx
Cracking the Workplace Discipline Code Main.pptx
 

A CIO’s Perspective: Reconciling Risk Management with Disaster Recovery Tactics by Sanjay Verma

  • 1. establishing relationship RISK Management and DISASTER Recovery Sanjay Verma source: Microsoft templates
  • 2. DRIVERS REGULATORY LEGISLATIVE BUSINESS Good business practices source: Google images
  • 3. OUTCOME source: Google images
  • 4. the FIVE PRINCIPLES
  • 5. 1 BUSINESS IS KING
  • 7. Financial Reporting YOUR BUSINESS
  • 8. 2 RELATIONSHIP
  • 9. BUSINESS IT source: Google images
  • 10. Financial Reporting BUSINESS PROCESS CONTROLS IT CONTROLS source: Google images
  • 11. OPERATIONAL RISK Risk Management Business Continuity Management Key Method ………….. ………….. Key Parameters ………….. ………….. Type of Incident ………….. ………….. Size of events ………….. ………….. Scope ………….. ………….. Intensity ………….. …………..
  • 12. OPERATIONAL RISK Risk Management Business Continuity Management Key Method Risk Analysis Business Impact Analysis Key Parameters Impact & Probability Impact & Time Type of Incident ………….. ………….. Size of events ………….. ………….. Scope ………….. ………….. Intensity ………….. …………..
  • 13. SINGLE 3 INTEGRATED FRAMEWORK
  • 14. BUSINESS CONTINUITY MANAGEMENT INTEGRATION OF 3 DISCIPLINES CRISIS MANAGEMENT (Corporate issues) DISASTER BUSINESS RECOVERY CONTINUITY (IT system (Process availability) contingencies)
  • 15. 4 ENABLING HOLISTIC APPROACH
  • 16. Financial Reporting Internal / External Audit Business Process Controls IT Risk & Security Professionals IT Environment source: Google images
  • 17. Risk Assessment Selection of Controls Leads to reduces Deterrent Threats Controls exploit reduces Preventive Vulnerabilities Controls causing triggers discovers Detective Incidents Controls affecting triggers Assets producing reduces Corrective Business Impact Controls source: http://sabsa.org
  • 18. SEPARATING 5 GOVERNANCE & MANAGEMENT
  • 19. Department People, Seats, Cost Centre, Plan Owner Worst Time, Process #1 Process #2 Process Workflow State Frequency, Criticality Work- IT IT Special Internal Network Vital station Applicat- Special Require- Depen- Suppliers Roles Drives Records Builds ions Needs ments dencies All-Hazards Approach to “Loss of Resource Type” source: BCM Ina Box
  • 20. BRIDGING GAPS “CORE” of RISK MANAGEMENT THE INFORMATION ‘BRIDGE’ Owner RTO RPO BNZ BNZ BNZ BNZ BNZ BNZ NAB Cert NAB LOC Auk Auk Auk Auk BNZ BNZ BNZ BNZ BNZ BNZ Mel Mel Mel Mel Mel Mel Mel Mel Mel Mel Mel Mel Analytical Marketing Database Alpha Orange Alpha IT Service Name Over10 database SIG database Connectivity FTP/XCOM CLS server SDR tags AQ Pack Genesys BRAINS Encoder Connex TRIAD CDS CPS TDP BTZ B2K BIS CIF AP Process / IT Services matrix Name of Critical Process Name of Sub-Process MAO Payments / Clearing and Settlement Obligations g g g g Cards Settlements Credit Card Issuing 24 Cards Settlements Process Merchant Acquiring 24 g g g Cards Settlements #1 EFTPOS Debit Cards 24 g g g g Cards Settlements ATM Settlement 24 Inward & Outwards g Retail Interchange Interchange positions Same day Cleared 24 Payments (Assured Value g g g Retail Interchange Payments) Process #2 24 Cheque and Lodgement g Retail Interchange Processing 24 g g g Retail Interchange Direct Debit Processing 24 g g Retail Interchange Direct Credit / Bill Payment 24 g g Retail Interchange Automatic Payments 24 g Retail Interchange Foreign Cash 24 g g g g g Retail Interchange Dishonours 24 PROCESS-BY-IT SERVICES VIEW source: BCM Ina Box
  • 22. Risk PROFESSIONALS No COMPANY can are divided as to make a profit how to determine without taking risk risk appetite Taking RISKS without consciously managing it can lead to the downfall of organisations