SlideShare a Scribd company logo
Business Continuity Plan


           Plash Chowdhary
     Information Security Consultant
Declaration
This presentation is made in Plash’s
personal capacity and does not
represent views of my employer
Business Continuity Planning

   It’s a logistics process to run mission critical process for
    survival and restoring operations from a disaster
   It is enforced by law of the land
What is at RISK?

 •   Reputation Loss
 •   Financial Loss
 •   Regulatory concerns
 •   Data Loss
 •   Loss of Life
 •   Jobs
Where is it Applicable?

                       • Vendor and you are caught in the same disaster
    Supply Chain       • Transportation Strike and you have No Inventory


                       • Quitting of critical recourses
  Human Resources      • Worker union Strikes


                       • Acts of God
  Physical Premises    • Targeted terrorist attacks


     Information       • Data leakage by Intrusion/Hacking
     Technology        • Virus outbreak


                       • Your only market is hit by a crisis
      Marketing        • your product developed a snag and needs to be recalled



   Its Applicable where a Mission Critical Service is disrupted
BCP & Regulations

  • Several laws/orders mandate BCP as part of organization strategy.
              Industry Sector                                                        Significant Laws and Regulations
                 Healthcare     Health Insurance Portability and Accountability Act (HIPAA) of 1996

                                Food and Drug Administration (FDA) Code of Federal Regulations (CFR), Title XXI, 1999

                Government      Federal Information Security Act (FISMA) of 2002, Title III of the E-Government Act of 2002 (PL 107-347, 17 December 2002)


                                Executive Order on Critical Infrastructure Protection in the Information Age, 16 October 2001

                                COOP and Continuity of Government (COG). Federal Preparedness Circular 69, 26 July 1999

                                National Institute of Standards and Technology (NIST) Special Publication (SP) 800-34, Contingency Planning Guide for Information
                                Technology Systems, June 2002


                                NIST 800-53, Recommended Security Controls for Federal Information Systems, February 2005

                  Finance       Federal Financial Institutions Examination Council (FFIEC) Handbook, 2003-2004 (Chapter 10)

                                Basel II, Basel Committee on Banking Supervision, Sound Practices for Management and Supervision, 2003


                                Interagency Paper on Sound Practices to Strengthen the Resilience of the U.S. Financial System, 2003


                                Expedited Funds Availability (EFA) Act, 1989
                  Utilities     Governmental Accounting Standards Board (GASB) Statement No. 34, June 1999

                                North American Electric Reliability Council (NERC) 1200 (1216.1), 2003

                                Federal Energy Regulatory Commission (FERC) RM01-12-00 (Appendix G), 2003

                                RUS 7 CFR Part 1730, 2005
                                Telecommunications Act of 1996, Section 256, Coordination for Interconnectivity

                                NERC Security Guidelines for the Electricity Sector, June 2001




 Source: Gartner http://www.gartner.com/DisplayDocument?doc_cd=128123
BCP Hierarchy


                                                                               Policy
                                                   BCP
                                                 Strategy




                                                 Training
                                                Employees
  Implementation
  & Monitoring
                                Implementing                  Testing BCP
                                    BCP



                                 Business
                                                                Risk
                                  Impact
                                                              Monitoring
                                 Analysis

                                                                                           Planning
                                                 Recovery
                      Risk
                                               Requirements                 Alternatives
                   Assessment
BCP Management Team


         Legal                   Finance


                   Management


    Internal Auditors           Operations
BCP Initiation and Recovery Steps


                       BCP Cycle                                                  Business Recovery Steps
                                 Identification
                                                                                  Business Recovery
        Recovery                                               Prevention




                                                                                   Facility
                                                                                  Recovery
                                                                                               Process Recovery
                                                                                                 Human
Implementation                                                      Declaration
                                                                                               Recourses
                                                                                                recovery   IT Recovery
                                                                                  Operations   Business                    Telecommunication
                                                                                                           Data Recovery
                                                                                   Recovery      Unit                           Recovery
                                                                                               Recovery
                   Containment                    Escalation
Need External Auditor?


        Planning           Implementation              Auditing
 • Strategy definition    • Employee awareness   • Reviewing BCP policy
 • Policy definition      • Selecting and        • Auditing SLA
 •  Risk Assessment         optimizing vendors   • BCP Simulation
 • Identifying critical   • Vendor Assessments
   services and
   Alternatives
 • Business Impact
   Analysis
 • Applicable Laws

More Related Content

What's hot

Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity Planning
Institute for Business Continuity Training
 
Business continuity & Disaster recovery planing
Business continuity & Disaster recovery planingBusiness continuity & Disaster recovery planing
Business continuity & Disaster recovery planing
Hanaysha
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity ManagementECC International
 
Business Continuity Management PowerPoint Presentation Slides
Business Continuity Management PowerPoint Presentation SlidesBusiness Continuity Management PowerPoint Presentation Slides
Business Continuity Management PowerPoint Presentation Slides
SlideTeam
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity Planning
Bharath Rao
 
Business continuity overview slideshare
Business continuity overview slideshareBusiness continuity overview slideshare
Business continuity overview slideshare
Chris Greenhill
 
What’s & Why’s of Business Continuity Planning (BCP)
What’s & Why’s of Business Continuity Planning (BCP) What’s & Why’s of Business Continuity Planning (BCP)
What’s & Why’s of Business Continuity Planning (BCP)
CBIZ, Inc.
 
Assess Your Business Continuity Management Process
Assess Your Business Continuity Management ProcessAssess Your Business Continuity Management Process
Assess Your Business Continuity Management Process
Anand Subramaniam
 
BCP Awareness
BCP Awareness BCP Awareness
BCP Awareness
Imad Almurib
 
Awareness iso 22301 danang suryo
Awareness iso 22301 danang suryoAwareness iso 22301 danang suryo
Awareness iso 22301 danang suryo
Danang suryo Wardhono
 
Business Continuity Planning Presentation
Business Continuity Planning PresentationBusiness Continuity Planning Presentation
Business Continuity Planning Presentation
The Chamber For a Greater Chapel Hill-Carrboro
 
Effective Business Continuity Plan Powerpoint Presentation Slides
Effective Business Continuity Plan Powerpoint Presentation SlidesEffective Business Continuity Plan Powerpoint Presentation Slides
Effective Business Continuity Plan Powerpoint Presentation Slides
SlideTeam
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity Planning
John Wilson
 
Bcp
BcpBcp
Bcp
madunix
 
Business continuity overview
Business continuity overviewBusiness continuity overview
Business continuity overview
Rod Davis
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity Management
Diane Christina
 
Disaster Recovery Plan / Enterprise Continuity Plan
Disaster Recovery Plan / Enterprise Continuity PlanDisaster Recovery Plan / Enterprise Continuity Plan
Disaster Recovery Plan / Enterprise Continuity Plan
Marcelo Silva
 
Business continuity planning
Business continuity planningBusiness continuity planning
Business continuity planningSandeep Kashyap
 

What's hot (20)

Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity Planning
 
Business continuity & Disaster recovery planing
Business continuity & Disaster recovery planingBusiness continuity & Disaster recovery planing
Business continuity & Disaster recovery planing
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity Management
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity Management
 
Business Continuity Management PowerPoint Presentation Slides
Business Continuity Management PowerPoint Presentation SlidesBusiness Continuity Management PowerPoint Presentation Slides
Business Continuity Management PowerPoint Presentation Slides
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity Planning
 
Business continuity overview slideshare
Business continuity overview slideshareBusiness continuity overview slideshare
Business continuity overview slideshare
 
What’s & Why’s of Business Continuity Planning (BCP)
What’s & Why’s of Business Continuity Planning (BCP) What’s & Why’s of Business Continuity Planning (BCP)
What’s & Why’s of Business Continuity Planning (BCP)
 
Assess Your Business Continuity Management Process
Assess Your Business Continuity Management ProcessAssess Your Business Continuity Management Process
Assess Your Business Continuity Management Process
 
BCP Awareness
BCP Awareness BCP Awareness
BCP Awareness
 
Awareness iso 22301 danang suryo
Awareness iso 22301 danang suryoAwareness iso 22301 danang suryo
Awareness iso 22301 danang suryo
 
Business Continuity Planning Presentation
Business Continuity Planning PresentationBusiness Continuity Planning Presentation
Business Continuity Planning Presentation
 
Effective Business Continuity Plan Powerpoint Presentation Slides
Effective Business Continuity Plan Powerpoint Presentation SlidesEffective Business Continuity Plan Powerpoint Presentation Slides
Effective Business Continuity Plan Powerpoint Presentation Slides
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity Planning
 
Bcp
BcpBcp
Bcp
 
Business continuity overview
Business continuity overviewBusiness continuity overview
Business continuity overview
 
Introduction to Business Continuity Management
Introduction to Business Continuity ManagementIntroduction to Business Continuity Management
Introduction to Business Continuity Management
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity Management
 
Disaster Recovery Plan / Enterprise Continuity Plan
Disaster Recovery Plan / Enterprise Continuity PlanDisaster Recovery Plan / Enterprise Continuity Plan
Disaster Recovery Plan / Enterprise Continuity Plan
 
Business continuity planning
Business continuity planningBusiness continuity planning
Business continuity planning
 

Viewers also liked

Business continuity & disaster recovery planning (BCP & DRP)
Business continuity & disaster recovery planning (BCP & DRP)Business continuity & disaster recovery planning (BCP & DRP)
Business continuity & disaster recovery planning (BCP & DRP)
Narudom Roongsiriwong, CISSP
 
The A to Z Guide to Business Continuity and Disaster Recovery
The A to Z Guide to Business Continuity and Disaster RecoveryThe A to Z Guide to Business Continuity and Disaster Recovery
The A to Z Guide to Business Continuity and Disaster Recovery
Sirius
 
Example business continuity plan
Example business continuity planExample business continuity plan
Example business continuity plan
Micheal Axelsen
 
ISO 22301: The New Standard for Business Continuity Best Practice
ISO 22301: The New Standard for Business Continuity Best PracticeISO 22301: The New Standard for Business Continuity Best Practice
ISO 22301: The New Standard for Business Continuity Best Practice
MissionMode
 
Disaster Recovery Presentation
Disaster Recovery PresentationDisaster Recovery Presentation
Disaster Recovery PresentationTimSchaefer
 
Disaster Recovery Plan for IT
Disaster Recovery Plan for ITDisaster Recovery Plan for IT
Disaster Recovery Plan for IThhuihhui
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity Management
Milan Petrásek
 
Disaster Recovery Plan
Disaster Recovery PlanDisaster Recovery Plan
Disaster Recovery PlanDavid Donovan
 
Women empowerment Today
Women empowerment  Today Women empowerment  Today
Women empowerment Today
Nivya Sree Avula
 
Ecommerce in India
Ecommerce in IndiaEcommerce in India
Ecommerce in India
Nivya Sree Avula
 
[INSIGHT OUT 2011] C27 今こそBCPを考える ~コスト・要件に応じたデータベースのディザスタ・リカバリを提案しよう!~(kishida)
[INSIGHT OUT 2011] C27 今こそBCPを考える ~コスト・要件に応じたデータベースのディザスタ・リカバリを提案しよう!~(kishida)[INSIGHT OUT 2011] C27 今こそBCPを考える ~コスト・要件に応じたデータベースのディザスタ・リカバリを提案しよう!~(kishida)
[INSIGHT OUT 2011] C27 今こそBCPを考える ~コスト・要件に応じたデータベースのディザスタ・リカバリを提案しよう!~(kishida)Insight Technology, Inc.
 
Presentation on business policy and business continuity plan (2)
Presentation on business policy and business continuity plan (2)Presentation on business policy and business continuity plan (2)
Presentation on business policy and business continuity plan (2)Kohal, Sudhir Singh
 
遠隔作業支援システム紹介資料 - NTTデータ、Vuzix M100
遠隔作業支援システム紹介資料 - NTTデータ、Vuzix M100遠隔作業支援システム紹介資料 - NTTデータ、Vuzix M100
遠隔作業支援システム紹介資料 - NTTデータ、Vuzix M100
Keiichiro Fujii
 
予測不能な時代に、今 企業が実践すべきBCPとは?|アシストマイクロ
予測不能な時代に、今 企業が実践すべきBCPとは?|アシストマイクロ予測不能な時代に、今 企業が実践すべきBCPとは?|アシストマイクロ
予測不能な時代に、今 企業が実践すべきBCPとは?|アシストマイクロ
アシストマイクロ株式会社
 
Operational risk & business continuity management
Operational risk & business continuity managementOperational risk & business continuity management
Operational risk & business continuity managementUjjwal 'Shanu'
 

Viewers also liked (15)

Business continuity & disaster recovery planning (BCP & DRP)
Business continuity & disaster recovery planning (BCP & DRP)Business continuity & disaster recovery planning (BCP & DRP)
Business continuity & disaster recovery planning (BCP & DRP)
 
The A to Z Guide to Business Continuity and Disaster Recovery
The A to Z Guide to Business Continuity and Disaster RecoveryThe A to Z Guide to Business Continuity and Disaster Recovery
The A to Z Guide to Business Continuity and Disaster Recovery
 
Example business continuity plan
Example business continuity planExample business continuity plan
Example business continuity plan
 
ISO 22301: The New Standard for Business Continuity Best Practice
ISO 22301: The New Standard for Business Continuity Best PracticeISO 22301: The New Standard for Business Continuity Best Practice
ISO 22301: The New Standard for Business Continuity Best Practice
 
Disaster Recovery Presentation
Disaster Recovery PresentationDisaster Recovery Presentation
Disaster Recovery Presentation
 
Disaster Recovery Plan for IT
Disaster Recovery Plan for ITDisaster Recovery Plan for IT
Disaster Recovery Plan for IT
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity Management
 
Disaster Recovery Plan
Disaster Recovery PlanDisaster Recovery Plan
Disaster Recovery Plan
 
Women empowerment Today
Women empowerment  Today Women empowerment  Today
Women empowerment Today
 
Ecommerce in India
Ecommerce in IndiaEcommerce in India
Ecommerce in India
 
[INSIGHT OUT 2011] C27 今こそBCPを考える ~コスト・要件に応じたデータベースのディザスタ・リカバリを提案しよう!~(kishida)
[INSIGHT OUT 2011] C27 今こそBCPを考える ~コスト・要件に応じたデータベースのディザスタ・リカバリを提案しよう!~(kishida)[INSIGHT OUT 2011] C27 今こそBCPを考える ~コスト・要件に応じたデータベースのディザスタ・リカバリを提案しよう!~(kishida)
[INSIGHT OUT 2011] C27 今こそBCPを考える ~コスト・要件に応じたデータベースのディザスタ・リカバリを提案しよう!~(kishida)
 
Presentation on business policy and business continuity plan (2)
Presentation on business policy and business continuity plan (2)Presentation on business policy and business continuity plan (2)
Presentation on business policy and business continuity plan (2)
 
遠隔作業支援システム紹介資料 - NTTデータ、Vuzix M100
遠隔作業支援システム紹介資料 - NTTデータ、Vuzix M100遠隔作業支援システム紹介資料 - NTTデータ、Vuzix M100
遠隔作業支援システム紹介資料 - NTTデータ、Vuzix M100
 
予測不能な時代に、今 企業が実践すべきBCPとは?|アシストマイクロ
予測不能な時代に、今 企業が実践すべきBCPとは?|アシストマイクロ予測不能な時代に、今 企業が実践すべきBCPとは?|アシストマイクロ
予測不能な時代に、今 企業が実践すべきBCPとは?|アシストマイクロ
 
Operational risk & business continuity management
Operational risk & business continuity managementOperational risk & business continuity management
Operational risk & business continuity management
 

Similar to Business Continuity Plan

BUSINESS CONTINUITY MANAGEMENT
BUSINESS CONTINUITY  MANAGEMENTBUSINESS CONTINUITY  MANAGEMENT
BUSINESS CONTINUITY MANAGEMENT
TalkSahana
 
Feb2008 Monthly Slides 1
Feb2008 Monthly Slides 1Feb2008 Monthly Slides 1
Feb2008 Monthly Slides 1Nadir Hussain
 
Organization-wide ICD-10 Training
Organization-wide ICD-10 TrainingOrganization-wide ICD-10 Training
Organization-wide ICD-10 Training
Care Communications, Inc.
 
BC Components and CM Lifecycle
BC Components and  CM LifecycleBC Components and  CM Lifecycle
BC Components and CM Lifecycle
Zaszou
 
Uks iosh inside 2 on 3
Uks iosh inside 2 on 3Uks iosh inside 2 on 3
Uks iosh inside 2 on 3
Clive Burgess
 
IIE Call For Paper
IIE Call For PaperIIE Call For Paper
IIE Call For Papermdmilward
 
CMI Conference - Change or Die
CMI Conference - Change or DieCMI Conference - Change or Die
CMI Conference - Change or Die
charliemb2
 
PD25888: Recovery Planning
PD25888: Recovery PlanningPD25888: Recovery Planning
PD25888: Recovery Planning
BSI British Standards Institution
 
Qualified Audit Partners Governance, Audit It, Audit Training
Qualified Audit Partners Governance, Audit It, Audit TrainingQualified Audit Partners Governance, Audit It, Audit Training
Qualified Audit Partners Governance, Audit It, Audit Training
Patrick Soenen
 
Solvency - II Programme Setup
Solvency - II Programme SetupSolvency - II Programme Setup
Solvency - II Programme Setupgainline
 
Uks iosh inside cover 1
Uks iosh inside cover 1Uks iosh inside cover 1
Uks iosh inside cover 1
Clive Burgess
 
Net challenge training_material_performance management_v05
Net challenge training_material_performance management_v05Net challenge training_material_performance management_v05
Net challenge training_material_performance management_v05netchallenge
 
Itam Presentation by Cydney Davis
Itam Presentation by Cydney DavisItam Presentation by Cydney Davis
Itam Presentation by Cydney DavisCydney Davis
 
Supply chain process in the UN
Supply chain process in the UNSupply chain process in the UN
Supply chain process in the UN
Kate Allen
 
BCM Roadmap
BCM RoadmapBCM Roadmap
BCM Roadmapbtrmuray
 
Transforming the Washington Metro\'s IT Renewal Program
Transforming the Washington Metro\'s IT Renewal ProgramTransforming the Washington Metro\'s IT Renewal Program
Transforming the Washington Metro\'s IT Renewal Program
Wayne Huang
 
The Perfume Giant
The Perfume GiantThe Perfume Giant
The Perfume Giant
Vipul Shah
 
Traffic-Light-Tool presentation 2010
Traffic-Light-Tool presentation 2010Traffic-Light-Tool presentation 2010
Traffic-Light-Tool presentation 2010michir
 

Similar to Business Continuity Plan (20)

BUSINESS CONTINUITY MANAGEMENT
BUSINESS CONTINUITY  MANAGEMENTBUSINESS CONTINUITY  MANAGEMENT
BUSINESS CONTINUITY MANAGEMENT
 
Feb2008 Monthly Slides 1
Feb2008 Monthly Slides 1Feb2008 Monthly Slides 1
Feb2008 Monthly Slides 1
 
Organization-wide ICD-10 Training
Organization-wide ICD-10 TrainingOrganization-wide ICD-10 Training
Organization-wide ICD-10 Training
 
BC Components and CM Lifecycle
BC Components and  CM LifecycleBC Components and  CM Lifecycle
BC Components and CM Lifecycle
 
Uks iosh inside 2 on 3
Uks iosh inside 2 on 3Uks iosh inside 2 on 3
Uks iosh inside 2 on 3
 
IIE Call For Paper
IIE Call For PaperIIE Call For Paper
IIE Call For Paper
 
TripleTree eDiscovery
TripleTree  eDiscoveryTripleTree  eDiscovery
TripleTree eDiscovery
 
CMI Conference - Change or Die
CMI Conference - Change or DieCMI Conference - Change or Die
CMI Conference - Change or Die
 
Simplifying IT GRC
Simplifying IT GRCSimplifying IT GRC
Simplifying IT GRC
 
PD25888: Recovery Planning
PD25888: Recovery PlanningPD25888: Recovery Planning
PD25888: Recovery Planning
 
Qualified Audit Partners Governance, Audit It, Audit Training
Qualified Audit Partners Governance, Audit It, Audit TrainingQualified Audit Partners Governance, Audit It, Audit Training
Qualified Audit Partners Governance, Audit It, Audit Training
 
Solvency - II Programme Setup
Solvency - II Programme SetupSolvency - II Programme Setup
Solvency - II Programme Setup
 
Uks iosh inside cover 1
Uks iosh inside cover 1Uks iosh inside cover 1
Uks iosh inside cover 1
 
Net challenge training_material_performance management_v05
Net challenge training_material_performance management_v05Net challenge training_material_performance management_v05
Net challenge training_material_performance management_v05
 
Itam Presentation by Cydney Davis
Itam Presentation by Cydney DavisItam Presentation by Cydney Davis
Itam Presentation by Cydney Davis
 
Supply chain process in the UN
Supply chain process in the UNSupply chain process in the UN
Supply chain process in the UN
 
BCM Roadmap
BCM RoadmapBCM Roadmap
BCM Roadmap
 
Transforming the Washington Metro\'s IT Renewal Program
Transforming the Washington Metro\'s IT Renewal ProgramTransforming the Washington Metro\'s IT Renewal Program
Transforming the Washington Metro\'s IT Renewal Program
 
The Perfume Giant
The Perfume GiantThe Perfume Giant
The Perfume Giant
 
Traffic-Light-Tool presentation 2010
Traffic-Light-Tool presentation 2010Traffic-Light-Tool presentation 2010
Traffic-Light-Tool presentation 2010
 

Recently uploaded

The effects of customers service quality and online reviews on customer loyal...
The effects of customers service quality and online reviews on customer loyal...The effects of customers service quality and online reviews on customer loyal...
The effects of customers service quality and online reviews on customer loyal...
balatucanapplelovely
 
Brand Analysis for an artist named Struan
Brand Analysis for an artist named StruanBrand Analysis for an artist named Struan
Brand Analysis for an artist named Struan
sarahvanessa51503
 
Search Disrupted Google’s Leaked Documents Rock the SEO World.pdf
Search Disrupted Google’s Leaked Documents Rock the SEO World.pdfSearch Disrupted Google’s Leaked Documents Rock the SEO World.pdf
Search Disrupted Google’s Leaked Documents Rock the SEO World.pdf
Arihant Webtech Pvt. Ltd
 
LA HUG - Video Testimonials with Chynna Morgan - June 2024
LA HUG - Video Testimonials with Chynna Morgan - June 2024LA HUG - Video Testimonials with Chynna Morgan - June 2024
LA HUG - Video Testimonials with Chynna Morgan - June 2024
Lital Barkan
 
Introduction to Amazon company 111111111111
Introduction to Amazon company 111111111111Introduction to Amazon company 111111111111
Introduction to Amazon company 111111111111
zoyaansari11365
 
Kseniya Leshchenko: Shared development support service model as the way to ma...
Kseniya Leshchenko: Shared development support service model as the way to ma...Kseniya Leshchenko: Shared development support service model as the way to ma...
Kseniya Leshchenko: Shared development support service model as the way to ma...
Lviv Startup Club
 
CADAVER AS OUR FIRST TEACHER anatomt in your.pptx
CADAVER AS OUR FIRST TEACHER anatomt in your.pptxCADAVER AS OUR FIRST TEACHER anatomt in your.pptx
CADAVER AS OUR FIRST TEACHER anatomt in your.pptx
fakeloginn69
 
April 2024 Nostalgia Products Newsletter
April 2024 Nostalgia Products NewsletterApril 2024 Nostalgia Products Newsletter
April 2024 Nostalgia Products Newsletter
NathanBaughman3
 
ModelingMarketingStrategiesMKS.CollumbiaUniversitypdf
ModelingMarketingStrategiesMKS.CollumbiaUniversitypdfModelingMarketingStrategiesMKS.CollumbiaUniversitypdf
ModelingMarketingStrategiesMKS.CollumbiaUniversitypdf
fisherameliaisabella
 
ikea_woodgreen_petscharity_cat-alogue_digital.pdf
ikea_woodgreen_petscharity_cat-alogue_digital.pdfikea_woodgreen_petscharity_cat-alogue_digital.pdf
ikea_woodgreen_petscharity_cat-alogue_digital.pdf
agatadrynko
 
Tata Group Dials Taiwan for Its Chipmaking Ambition in Gujarat’s Dholera
Tata Group Dials Taiwan for Its Chipmaking Ambition in Gujarat’s DholeraTata Group Dials Taiwan for Its Chipmaking Ambition in Gujarat’s Dholera
Tata Group Dials Taiwan for Its Chipmaking Ambition in Gujarat’s Dholera
Avirahi City Dholera
 
Meas_Dylan_DMBS_PB1_2024-05XX_Revised.pdf
Meas_Dylan_DMBS_PB1_2024-05XX_Revised.pdfMeas_Dylan_DMBS_PB1_2024-05XX_Revised.pdf
Meas_Dylan_DMBS_PB1_2024-05XX_Revised.pdf
dylandmeas
 
Skye Residences | Extended Stay Residences Near Toronto Airport
Skye Residences | Extended Stay Residences Near Toronto AirportSkye Residences | Extended Stay Residences Near Toronto Airport
Skye Residences | Extended Stay Residences Near Toronto Airport
marketingjdass
 
ENTREPRENEURSHIP TRAINING.ppt for graduating class (1).ppt
ENTREPRENEURSHIP TRAINING.ppt for graduating class (1).pptENTREPRENEURSHIP TRAINING.ppt for graduating class (1).ppt
ENTREPRENEURSHIP TRAINING.ppt for graduating class (1).ppt
zechu97
 
Sustainability: Balancing the Environment, Equity & Economy
Sustainability: Balancing the Environment, Equity & EconomySustainability: Balancing the Environment, Equity & Economy
Sustainability: Balancing the Environment, Equity & Economy
Operational Excellence Consulting
 
The Influence of Marketing Strategy and Market Competition on Business Perfor...
The Influence of Marketing Strategy and Market Competition on Business Perfor...The Influence of Marketing Strategy and Market Competition on Business Perfor...
The Influence of Marketing Strategy and Market Competition on Business Perfor...
Adam Smith
 
BeMetals Presentation_May_22_2024 .pdf
BeMetals Presentation_May_22_2024   .pdfBeMetals Presentation_May_22_2024   .pdf
BeMetals Presentation_May_22_2024 .pdf
DerekIwanaka1
 
Discover the innovative and creative projects that highlight my journey throu...
Discover the innovative and creative projects that highlight my journey throu...Discover the innovative and creative projects that highlight my journey throu...
Discover the innovative and creative projects that highlight my journey throu...
dylandmeas
 
Cracking the Workplace Discipline Code Main.pptx
Cracking the Workplace Discipline Code Main.pptxCracking the Workplace Discipline Code Main.pptx
Cracking the Workplace Discipline Code Main.pptx
Workforce Group
 
The-McKinsey-7S-Framework. strategic management
The-McKinsey-7S-Framework. strategic managementThe-McKinsey-7S-Framework. strategic management
The-McKinsey-7S-Framework. strategic management
Bojamma2
 

Recently uploaded (20)

The effects of customers service quality and online reviews on customer loyal...
The effects of customers service quality and online reviews on customer loyal...The effects of customers service quality and online reviews on customer loyal...
The effects of customers service quality and online reviews on customer loyal...
 
Brand Analysis for an artist named Struan
Brand Analysis for an artist named StruanBrand Analysis for an artist named Struan
Brand Analysis for an artist named Struan
 
Search Disrupted Google’s Leaked Documents Rock the SEO World.pdf
Search Disrupted Google’s Leaked Documents Rock the SEO World.pdfSearch Disrupted Google’s Leaked Documents Rock the SEO World.pdf
Search Disrupted Google’s Leaked Documents Rock the SEO World.pdf
 
LA HUG - Video Testimonials with Chynna Morgan - June 2024
LA HUG - Video Testimonials with Chynna Morgan - June 2024LA HUG - Video Testimonials with Chynna Morgan - June 2024
LA HUG - Video Testimonials with Chynna Morgan - June 2024
 
Introduction to Amazon company 111111111111
Introduction to Amazon company 111111111111Introduction to Amazon company 111111111111
Introduction to Amazon company 111111111111
 
Kseniya Leshchenko: Shared development support service model as the way to ma...
Kseniya Leshchenko: Shared development support service model as the way to ma...Kseniya Leshchenko: Shared development support service model as the way to ma...
Kseniya Leshchenko: Shared development support service model as the way to ma...
 
CADAVER AS OUR FIRST TEACHER anatomt in your.pptx
CADAVER AS OUR FIRST TEACHER anatomt in your.pptxCADAVER AS OUR FIRST TEACHER anatomt in your.pptx
CADAVER AS OUR FIRST TEACHER anatomt in your.pptx
 
April 2024 Nostalgia Products Newsletter
April 2024 Nostalgia Products NewsletterApril 2024 Nostalgia Products Newsletter
April 2024 Nostalgia Products Newsletter
 
ModelingMarketingStrategiesMKS.CollumbiaUniversitypdf
ModelingMarketingStrategiesMKS.CollumbiaUniversitypdfModelingMarketingStrategiesMKS.CollumbiaUniversitypdf
ModelingMarketingStrategiesMKS.CollumbiaUniversitypdf
 
ikea_woodgreen_petscharity_cat-alogue_digital.pdf
ikea_woodgreen_petscharity_cat-alogue_digital.pdfikea_woodgreen_petscharity_cat-alogue_digital.pdf
ikea_woodgreen_petscharity_cat-alogue_digital.pdf
 
Tata Group Dials Taiwan for Its Chipmaking Ambition in Gujarat’s Dholera
Tata Group Dials Taiwan for Its Chipmaking Ambition in Gujarat’s DholeraTata Group Dials Taiwan for Its Chipmaking Ambition in Gujarat’s Dholera
Tata Group Dials Taiwan for Its Chipmaking Ambition in Gujarat’s Dholera
 
Meas_Dylan_DMBS_PB1_2024-05XX_Revised.pdf
Meas_Dylan_DMBS_PB1_2024-05XX_Revised.pdfMeas_Dylan_DMBS_PB1_2024-05XX_Revised.pdf
Meas_Dylan_DMBS_PB1_2024-05XX_Revised.pdf
 
Skye Residences | Extended Stay Residences Near Toronto Airport
Skye Residences | Extended Stay Residences Near Toronto AirportSkye Residences | Extended Stay Residences Near Toronto Airport
Skye Residences | Extended Stay Residences Near Toronto Airport
 
ENTREPRENEURSHIP TRAINING.ppt for graduating class (1).ppt
ENTREPRENEURSHIP TRAINING.ppt for graduating class (1).pptENTREPRENEURSHIP TRAINING.ppt for graduating class (1).ppt
ENTREPRENEURSHIP TRAINING.ppt for graduating class (1).ppt
 
Sustainability: Balancing the Environment, Equity & Economy
Sustainability: Balancing the Environment, Equity & EconomySustainability: Balancing the Environment, Equity & Economy
Sustainability: Balancing the Environment, Equity & Economy
 
The Influence of Marketing Strategy and Market Competition on Business Perfor...
The Influence of Marketing Strategy and Market Competition on Business Perfor...The Influence of Marketing Strategy and Market Competition on Business Perfor...
The Influence of Marketing Strategy and Market Competition on Business Perfor...
 
BeMetals Presentation_May_22_2024 .pdf
BeMetals Presentation_May_22_2024   .pdfBeMetals Presentation_May_22_2024   .pdf
BeMetals Presentation_May_22_2024 .pdf
 
Discover the innovative and creative projects that highlight my journey throu...
Discover the innovative and creative projects that highlight my journey throu...Discover the innovative and creative projects that highlight my journey throu...
Discover the innovative and creative projects that highlight my journey throu...
 
Cracking the Workplace Discipline Code Main.pptx
Cracking the Workplace Discipline Code Main.pptxCracking the Workplace Discipline Code Main.pptx
Cracking the Workplace Discipline Code Main.pptx
 
The-McKinsey-7S-Framework. strategic management
The-McKinsey-7S-Framework. strategic managementThe-McKinsey-7S-Framework. strategic management
The-McKinsey-7S-Framework. strategic management
 

Business Continuity Plan

  • 1. Business Continuity Plan Plash Chowdhary Information Security Consultant
  • 2. Declaration This presentation is made in Plash’s personal capacity and does not represent views of my employer
  • 3. Business Continuity Planning  It’s a logistics process to run mission critical process for survival and restoring operations from a disaster  It is enforced by law of the land
  • 4. What is at RISK? • Reputation Loss • Financial Loss • Regulatory concerns • Data Loss • Loss of Life • Jobs
  • 5. Where is it Applicable? • Vendor and you are caught in the same disaster Supply Chain • Transportation Strike and you have No Inventory • Quitting of critical recourses Human Resources • Worker union Strikes • Acts of God Physical Premises • Targeted terrorist attacks Information • Data leakage by Intrusion/Hacking Technology • Virus outbreak • Your only market is hit by a crisis Marketing • your product developed a snag and needs to be recalled Its Applicable where a Mission Critical Service is disrupted
  • 6. BCP & Regulations • Several laws/orders mandate BCP as part of organization strategy. Industry Sector Significant Laws and Regulations Healthcare Health Insurance Portability and Accountability Act (HIPAA) of 1996 Food and Drug Administration (FDA) Code of Federal Regulations (CFR), Title XXI, 1999 Government Federal Information Security Act (FISMA) of 2002, Title III of the E-Government Act of 2002 (PL 107-347, 17 December 2002) Executive Order on Critical Infrastructure Protection in the Information Age, 16 October 2001 COOP and Continuity of Government (COG). Federal Preparedness Circular 69, 26 July 1999 National Institute of Standards and Technology (NIST) Special Publication (SP) 800-34, Contingency Planning Guide for Information Technology Systems, June 2002 NIST 800-53, Recommended Security Controls for Federal Information Systems, February 2005 Finance Federal Financial Institutions Examination Council (FFIEC) Handbook, 2003-2004 (Chapter 10) Basel II, Basel Committee on Banking Supervision, Sound Practices for Management and Supervision, 2003 Interagency Paper on Sound Practices to Strengthen the Resilience of the U.S. Financial System, 2003 Expedited Funds Availability (EFA) Act, 1989 Utilities Governmental Accounting Standards Board (GASB) Statement No. 34, June 1999 North American Electric Reliability Council (NERC) 1200 (1216.1), 2003 Federal Energy Regulatory Commission (FERC) RM01-12-00 (Appendix G), 2003 RUS 7 CFR Part 1730, 2005 Telecommunications Act of 1996, Section 256, Coordination for Interconnectivity NERC Security Guidelines for the Electricity Sector, June 2001 Source: Gartner http://www.gartner.com/DisplayDocument?doc_cd=128123
  • 7. BCP Hierarchy Policy BCP Strategy Training Employees Implementation & Monitoring Implementing Testing BCP BCP Business Risk Impact Monitoring Analysis Planning Recovery Risk Requirements Alternatives Assessment
  • 8. BCP Management Team Legal Finance Management Internal Auditors Operations
  • 9. BCP Initiation and Recovery Steps BCP Cycle Business Recovery Steps Identification Business Recovery Recovery Prevention Facility Recovery Process Recovery Human Implementation Declaration Recourses recovery IT Recovery Operations Business Telecommunication Data Recovery Recovery Unit Recovery Recovery Containment Escalation
  • 10. Need External Auditor? Planning Implementation Auditing • Strategy definition • Employee awareness • Reviewing BCP policy • Policy definition • Selecting and • Auditing SLA • Risk Assessment optimizing vendors • BCP Simulation • Identifying critical • Vendor Assessments services and Alternatives • Business Impact Analysis • Applicable Laws