SlideShare a Scribd company logo
1 of 57
Implementing business continuity with  BS25999  standard  Presenter Dennis Kaburu
What is BS 25999? ,[object Object],[object Object],[object Object]
BS25999-1 :code of Practice ,[object Object],[object Object],[object Object],[object Object]
What does BS25999-1 do? ,[object Object],[object Object],[object Object],[object Object]
What are the outcomes of BS25999-1? ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
BS25999-2 :Specification ,[object Object],[object Object]
How BS25999-2 does this? ,[object Object],[object Object],[object Object],[object Object],[object Object]
The BCM lifecycle as contained in BS 25999 is illustrated below
1.  BCM Culture ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
BCM Culture ,[object Object],[object Object],[object Object],[object Object],[object Object]
Embedding BCM in the organization's culture ,[object Object]
BCM  Documentation ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
BCM  Documentation (contd) ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Developing and implementing a BCM response ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
[object Object],[object Object],[object Object]
Incident Timeline
[object Object]
4.  The  I ncident  M anagement  P lan  ( IMP) ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
6.  The  B usiness  C ontinuity  P lan(s) [BCP(s)] ,[object Object],[object Object],[object Object]
7.  Contents of the BCP ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
7.  Contents of the BCP ,[object Object],[object Object],[object Object],[object Object],[object Object]
7.  Contents of the BCP ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
7.  Contents of the BCP ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
7.  Contents of the BCP ,[object Object],[object Object],[object Object],[object Object]
Creating a BCP ,[object Object],[object Object],[object Object],[object Object],[object Object]
The five BCP phases ,[object Object],[object Object],[object Object],[object Object],[object Object]
I - Project management & initiation ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
II - Business Impact Analysis (BIA) ,[object Object],[object Object]
II - Business Impact Analysis (BIA) ,[object Object],[object Object]
II - BIA phases  ,[object Object],[object Object],[object Object],[object Object],[object Object]
II - BIA phases (continued) ,[object Object],[object Object],[object Object],[object Object]
III – Recovery strategies ,[object Object],[object Object],[object Object]
III – Recovery strategies ,[object Object],[object Object],[object Object],[object Object],[object Object]
III – Recovery strategies ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
III – Recovery strategies ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
IV – BCP development / implementation ,[object Object],[object Object],[object Object],[object Object],[object Object]
IV – BCP development / implementation ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
V – BCP final phase ,[object Object],[object Object],[object Object],[object Object]
V – BCP final phase - testing ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
V – BCP final phase - maintenance ,[object Object],[object Object],[object Object],[object Object],[object Object]
V – BCP final phase  ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
V – BCP final phase ,[object Object],[object Object],[object Object],[object Object]
BCM Awareness ,[object Object],[object Object],[object Object],[object Object]
BCM Awareness ,[object Object],[object Object],[object Object],[object Object],[object Object]

More Related Content

Similar to Implementing Business Continuity With The Bs25999 Standard By Dennis

Big is beautiful - Defind Contribution Pension Schemes & Master Trusts
Big is beautiful - Defind Contribution Pension Schemes & Master TrustsBig is beautiful - Defind Contribution Pension Schemes & Master Trusts
Big is beautiful - Defind Contribution Pension Schemes & Master TrustsRichard Butcher
 
Business Continuity (ISO22301) is relevant to PCI DSS v3.2.1 【Continuous Study】
Business Continuity (ISO22301) is relevant to PCI DSS v3.2.1 【Continuous Study】Business Continuity (ISO22301) is relevant to PCI DSS v3.2.1 【Continuous Study】
Business Continuity (ISO22301) is relevant to PCI DSS v3.2.1 【Continuous Study】Jerimi Soma
 
NQA ISO 22301 Business Continuity Checklist
NQA ISO 22301 Business Continuity ChecklistNQA ISO 22301 Business Continuity Checklist
NQA ISO 22301 Business Continuity ChecklistNQA
 
Strategy Implementation of Financial and General Services Development (FGSD)
Strategy Implementation of Financial and General Services Development (FGSD)  Strategy Implementation of Financial and General Services Development (FGSD)
Strategy Implementation of Financial and General Services Development (FGSD) jo bitonio
 
Healthcare Business Continuity Planning - BCP
Healthcare Business Continuity Planning - BCPHealthcare Business Continuity Planning - BCP
Healthcare Business Continuity Planning - BCPMohammed Al Ayoubi
 
TISA-Important-Business-Services-Guide-November-2021.pdf
TISA-Important-Business-Services-Guide-November-2021.pdfTISA-Important-Business-Services-Guide-November-2021.pdf
TISA-Important-Business-Services-Guide-November-2021.pdfAbdetaImi
 
Business continuity management www.reconglobal.in
Business continuity management   www.reconglobal.inBusiness continuity management   www.reconglobal.in
Business continuity management www.reconglobal.inSatya Yadav
 
You have been hired as a consultant to design BCP for SanGrafix, a v.docx
You have been hired as a consultant to design BCP for SanGrafix, a v.docxYou have been hired as a consultant to design BCP for SanGrafix, a v.docx
You have been hired as a consultant to design BCP for SanGrafix, a v.docxshantayjewison
 
Grooming A BCM Culture Eneni Oduwoles Ambci
Grooming A BCM Culture  Eneni Oduwoles AmbciGrooming A BCM Culture  Eneni Oduwoles Ambci
Grooming A BCM Culture Eneni Oduwoles AmbciEneni Oduwole
 
Ea As A Strategy M Veeraragaloo Approach
Ea As A Strategy   M Veeraragaloo ApproachEa As A Strategy   M Veeraragaloo Approach
Ea As A Strategy M Veeraragaloo ApproachMaganathin Veeraragaloo
 
Module 3 business continuity student slides ver 1.0
Module 3 business continuity   student slides ver 1.0Module 3 business continuity   student slides ver 1.0
Module 3 business continuity student slides ver 1.0Aladdin Dandis
 
5 Is For Grooming A Bcm Culture Eneni Oduwoles Presentation
5 Is For Grooming A Bcm Culture   Eneni Oduwoles Presentation5 Is For Grooming A Bcm Culture   Eneni Oduwoles Presentation
5 Is For Grooming A Bcm Culture Eneni Oduwoles PresentationEneni Oduwole
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity PlanningDipankar Ghosh
 
BCM Presentation.ppt
BCM Presentation.pptBCM Presentation.ppt
BCM Presentation.pptauditgamer
 
RICS New Rules of Measurement - RICS Article
RICS New Rules of Measurement - RICS ArticleRICS New Rules of Measurement - RICS Article
RICS New Rules of Measurement - RICS ArticleDonnie MacNicol
 
Crafting a Robust Business-Continuity Strategy: Key Steps and Best Practices
Crafting a Robust Business-Continuity Strategy: Key Steps and Best PracticesCrafting a Robust Business-Continuity Strategy: Key Steps and Best Practices
Crafting a Robust Business-Continuity Strategy: Key Steps and Best PracticesBluechip Gulf IT Services
 
Improving the alignment of strategic objectives in the outsourced projects ma...
Improving the alignment of strategic objectives in the outsourced projects ma...Improving the alignment of strategic objectives in the outsourced projects ma...
Improving the alignment of strategic objectives in the outsourced projects ma...Edilson Giffhorn
 
Article on Emergency Management and Corporate Certification
Article on Emergency Management and Corporate CertificationArticle on Emergency Management and Corporate Certification
Article on Emergency Management and Corporate CertificationThomas Bronack
 

Similar to Implementing Business Continuity With The Bs25999 Standard By Dennis (20)

Big is beautiful - Defind Contribution Pension Schemes & Master Trusts
Big is beautiful - Defind Contribution Pension Schemes & Master TrustsBig is beautiful - Defind Contribution Pension Schemes & Master Trusts
Big is beautiful - Defind Contribution Pension Schemes & Master Trusts
 
Business Continuity (ISO22301) is relevant to PCI DSS v3.2.1 【Continuous Study】
Business Continuity (ISO22301) is relevant to PCI DSS v3.2.1 【Continuous Study】Business Continuity (ISO22301) is relevant to PCI DSS v3.2.1 【Continuous Study】
Business Continuity (ISO22301) is relevant to PCI DSS v3.2.1 【Continuous Study】
 
NQA ISO 22301 Business Continuity Checklist
NQA ISO 22301 Business Continuity ChecklistNQA ISO 22301 Business Continuity Checklist
NQA ISO 22301 Business Continuity Checklist
 
Strategy Implementation of Financial and General Services Development (FGSD)
Strategy Implementation of Financial and General Services Development (FGSD)  Strategy Implementation of Financial and General Services Development (FGSD)
Strategy Implementation of Financial and General Services Development (FGSD)
 
Chris Gould - BCM case
Chris Gould - BCM caseChris Gould - BCM case
Chris Gould - BCM case
 
Healthcare Business Continuity Planning - BCP
Healthcare Business Continuity Planning - BCPHealthcare Business Continuity Planning - BCP
Healthcare Business Continuity Planning - BCP
 
TISA-Important-Business-Services-Guide-November-2021.pdf
TISA-Important-Business-Services-Guide-November-2021.pdfTISA-Important-Business-Services-Guide-November-2021.pdf
TISA-Important-Business-Services-Guide-November-2021.pdf
 
Business continuity management www.reconglobal.in
Business continuity management   www.reconglobal.inBusiness continuity management   www.reconglobal.in
Business continuity management www.reconglobal.in
 
You have been hired as a consultant to design BCP for SanGrafix, a v.docx
You have been hired as a consultant to design BCP for SanGrafix, a v.docxYou have been hired as a consultant to design BCP for SanGrafix, a v.docx
You have been hired as a consultant to design BCP for SanGrafix, a v.docx
 
Grooming A BCM Culture Eneni Oduwoles Ambci
Grooming A BCM Culture  Eneni Oduwoles AmbciGrooming A BCM Culture  Eneni Oduwoles Ambci
Grooming A BCM Culture Eneni Oduwoles Ambci
 
Ea As A Strategy M Veeraragaloo Approach
Ea As A Strategy   M Veeraragaloo ApproachEa As A Strategy   M Veeraragaloo Approach
Ea As A Strategy M Veeraragaloo Approach
 
Iso 22301 Checklist
Iso 22301 ChecklistIso 22301 Checklist
Iso 22301 Checklist
 
Module 3 business continuity student slides ver 1.0
Module 3 business continuity   student slides ver 1.0Module 3 business continuity   student slides ver 1.0
Module 3 business continuity student slides ver 1.0
 
5 Is For Grooming A Bcm Culture Eneni Oduwoles Presentation
5 Is For Grooming A Bcm Culture   Eneni Oduwoles Presentation5 Is For Grooming A Bcm Culture   Eneni Oduwoles Presentation
5 Is For Grooming A Bcm Culture Eneni Oduwoles Presentation
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity Planning
 
BCM Presentation.ppt
BCM Presentation.pptBCM Presentation.ppt
BCM Presentation.ppt
 
RICS New Rules of Measurement - RICS Article
RICS New Rules of Measurement - RICS ArticleRICS New Rules of Measurement - RICS Article
RICS New Rules of Measurement - RICS Article
 
Crafting a Robust Business-Continuity Strategy: Key Steps and Best Practices
Crafting a Robust Business-Continuity Strategy: Key Steps and Best PracticesCrafting a Robust Business-Continuity Strategy: Key Steps and Best Practices
Crafting a Robust Business-Continuity Strategy: Key Steps and Best Practices
 
Improving the alignment of strategic objectives in the outsourced projects ma...
Improving the alignment of strategic objectives in the outsourced projects ma...Improving the alignment of strategic objectives in the outsourced projects ma...
Improving the alignment of strategic objectives in the outsourced projects ma...
 
Article on Emergency Management and Corporate Certification
Article on Emergency Management and Corporate CertificationArticle on Emergency Management and Corporate Certification
Article on Emergency Management and Corporate Certification
 

More from Discover JKUAT

Paper on entrepreneurship and organization performance - Samule Obino Mokaya
Paper on entrepreneurship and organization performance - Samule Obino MokayaPaper on entrepreneurship and organization performance - Samule Obino Mokaya
Paper on entrepreneurship and organization performance - Samule Obino MokayaDiscover JKUAT
 
Project control tools by Samuel obino mokaya
Project control tools by Samuel obino mokayaProject control tools by Samuel obino mokaya
Project control tools by Samuel obino mokayaDiscover JKUAT
 
Paper on risk management by Samuel Obino Mokaya
Paper on risk management by Samuel Obino MokayaPaper on risk management by Samuel Obino Mokaya
Paper on risk management by Samuel Obino MokayaDiscover JKUAT
 
Paper on intrepreneurship and organization performance by Samuel Obino Mokaya
Paper on intrepreneurship and organization performance by Samuel Obino MokayaPaper on intrepreneurship and organization performance by Samuel Obino Mokaya
Paper on intrepreneurship and organization performance by Samuel Obino MokayaDiscover JKUAT
 
Project monitoring and evaluation by Samuel Obino Mokaya
Project monitoring and evaluation by Samuel Obino MokayaProject monitoring and evaluation by Samuel Obino Mokaya
Project monitoring and evaluation by Samuel Obino MokayaDiscover JKUAT
 
Information Security Management Systems(ISMS) By Dr Wafula
Information Security Management Systems(ISMS) By Dr  WafulaInformation Security Management Systems(ISMS) By Dr  Wafula
Information Security Management Systems(ISMS) By Dr WafulaDiscover JKUAT
 

More from Discover JKUAT (6)

Paper on entrepreneurship and organization performance - Samule Obino Mokaya
Paper on entrepreneurship and organization performance - Samule Obino MokayaPaper on entrepreneurship and organization performance - Samule Obino Mokaya
Paper on entrepreneurship and organization performance - Samule Obino Mokaya
 
Project control tools by Samuel obino mokaya
Project control tools by Samuel obino mokayaProject control tools by Samuel obino mokaya
Project control tools by Samuel obino mokaya
 
Paper on risk management by Samuel Obino Mokaya
Paper on risk management by Samuel Obino MokayaPaper on risk management by Samuel Obino Mokaya
Paper on risk management by Samuel Obino Mokaya
 
Paper on intrepreneurship and organization performance by Samuel Obino Mokaya
Paper on intrepreneurship and organization performance by Samuel Obino MokayaPaper on intrepreneurship and organization performance by Samuel Obino Mokaya
Paper on intrepreneurship and organization performance by Samuel Obino Mokaya
 
Project monitoring and evaluation by Samuel Obino Mokaya
Project monitoring and evaluation by Samuel Obino MokayaProject monitoring and evaluation by Samuel Obino Mokaya
Project monitoring and evaluation by Samuel Obino Mokaya
 
Information Security Management Systems(ISMS) By Dr Wafula
Information Security Management Systems(ISMS) By Dr  WafulaInformation Security Management Systems(ISMS) By Dr  Wafula
Information Security Management Systems(ISMS) By Dr Wafula
 

Recently uploaded

Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 3652toLead Limited
 
SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024Lorenzo Miniero
 
Understanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitectureUnderstanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitecturePixlogix Infotech
 
Science&tech:THE INFORMATION AGE STS.pdf
Science&tech:THE INFORMATION AGE STS.pdfScience&tech:THE INFORMATION AGE STS.pdf
Science&tech:THE INFORMATION AGE STS.pdfjimielynbastida
 
Scanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsScanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsRizwan Syed
 
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
"Federated learning: out of reach no matter how close",Oleksandr LapshynFwdays
 
Designing IA for AI - Information Architecture Conference 2024
Designing IA for AI - Information Architecture Conference 2024Designing IA for AI - Information Architecture Conference 2024
Designing IA for AI - Information Architecture Conference 2024Enterprise Knowledge
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Mark Simos
 
Benefits Of Flutter Compared To Other Frameworks
Benefits Of Flutter Compared To Other FrameworksBenefits Of Flutter Compared To Other Frameworks
Benefits Of Flutter Compared To Other FrameworksSoftradix Technologies
 
Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions
 
CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):comworks
 
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticsKotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticscarlostorres15106
 
My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024The Digital Insurer
 
Unraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfUnraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfAlex Barbosa Coqueiro
 
WordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your BrandWordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your Brandgvaughan
 
"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr Bagan"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr BaganFwdays
 
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...shyamraj55
 

Recently uploaded (20)

Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
 
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptxE-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
 
SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024
 
Hot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort Service
Hot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort ServiceHot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort Service
Hot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort Service
 
Understanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitectureUnderstanding the Laravel MVC Architecture
Understanding the Laravel MVC Architecture
 
Science&tech:THE INFORMATION AGE STS.pdf
Science&tech:THE INFORMATION AGE STS.pdfScience&tech:THE INFORMATION AGE STS.pdf
Science&tech:THE INFORMATION AGE STS.pdf
 
DMCC Future of Trade Web3 - Special Edition
DMCC Future of Trade Web3 - Special EditionDMCC Future of Trade Web3 - Special Edition
DMCC Future of Trade Web3 - Special Edition
 
Scanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsScanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL Certs
 
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
 
Designing IA for AI - Information Architecture Conference 2024
Designing IA for AI - Information Architecture Conference 2024Designing IA for AI - Information Architecture Conference 2024
Designing IA for AI - Information Architecture Conference 2024
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
 
Benefits Of Flutter Compared To Other Frameworks
Benefits Of Flutter Compared To Other FrameworksBenefits Of Flutter Compared To Other Frameworks
Benefits Of Flutter Compared To Other Frameworks
 
Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food Manufacturing
 
CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):
 
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticsKotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
 
My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024
 
Unraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfUnraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdf
 
WordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your BrandWordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your Brand
 
"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr Bagan"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr Bagan
 
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
 

Implementing Business Continuity With The Bs25999 Standard By Dennis

  • 1. Implementing business continuity with BS25999 standard Presenter Dennis Kaburu
  • 2.
  • 3.
  • 4.
  • 5.
  • 6.
  • 7.
  • 8. The BCM lifecycle as contained in BS 25999 is illustrated below
  • 9.
  • 10.
  • 11.
  • 12.
  • 13.
  • 14.
  • 15.
  • 16.
  • 17.
  • 18.
  • 19.
  • 20.
  • 21.
  • 22.
  • 23.
  • 24.
  • 25.
  • 26.
  • 27.
  • 28.
  • 30.
  • 31.
  • 32.
  • 33.
  • 34.
  • 35.
  • 36.
  • 37.
  • 38.
  • 39.
  • 40.
  • 41.
  • 42.
  • 43.
  • 44.
  • 45.
  • 46.
  • 47.
  • 48.
  • 49.
  • 50.
  • 51.
  • 52.
  • 53.
  • 54.
  • 55.
  • 56.
  • 57.

Editor's Notes

  1. The PDCA cycle is the means of ensuring that business continuity is effectively managed and improved.PDCA cycle applies to all parts of the BCM cycle.
  2. Initial creation of the plan is treated like a project, using traditional project management techniques. However, business needs change, new processes may be added. If they are “critical,” they must become part of the BCP. Part of the project to create the BCP must build in business processes for plan maintenance.
  3. Phases are covered in detail in next slides
  4. If you don’t establish need, how can you get management support? A BCP costs a lot to develop and maintain. No ROI either. Functional leads are necessary because the IT staff don’t understand the business. The BCC is the project manager for the BCP creation, the most important person. The work plan will be like the phases of a traditionally managed project
  5. A lot of the BCP creation is driven by the MTDs assigned to various business functions, so the BIA is very important.
  6. On the second bullet, for instance, the question is not “how likely is it we’ll suffer a total loss of our data center from a fire?” The question is “what would be the loss to the business if we suffered the total loss of our data center?” Some losses may be quantified fairly exactly. Others have to be estimated as carefully as possible. An example of the latter would the cost to the business in loss of consumer confidence from an extended outage. For instance, what if Purdue were unable to hold classes for four weeks because we couldn’t deliver our electronic instruction? How would parents of potential Purdue students react to that? And how much would it cost?
  7. There are nine phases to the BIA. Selection of interviewees is very important. These will be the subject matter experts from the business units, and they have to be the people who know the business. Customize questionnaire: there is no standard set of questions – it varies with each business Time-criticality – some processes are more critical than others. Printing a payroll is important, but not time-critical usually. if you’re Amazon.com, keeping your web site up is critical. The business won’t go under if you print paychecks a couple of days late, but they would lose millions in potential revenue if their web site were down for a day. The BIA aims to rank-order business processes in these terms.
  8. MTD – maximum tolerable downtime MAO – maximum allowable downtime Recovery options will range in price and effort – must match them appropriately with the criticality of business functions
  9. Predefined means we don’t have to make it up as we go along. We have a documented, tested plan in place. Management approved means you will get the resources to implement the BCP.
  10. Driven by business requirements means going back to the BIA, which identified critical business processes and ranked them in terms of the MTD/MAO.
  11. Business operations were enumerated in the BIA – what IT and other requirements are necessary to support them? Facilities and supplies – where do I sit at the DR site? Where is my conference room? Do I get a whiteboard? And by the way, I need a pencil. Users – can manual processes be used as part of DR? If so, how does the manual processing get integrated back into the electronic processing later? Do we need housing, transportation? Recovery of data centers and networks is an obvious necessity requiring careful planning. There are technical solutions available, though. (Bring money.) You mean we’ve got all these computers in the DR site and no data? Who forgot the DATA?? I’m only going to go into detail on the last two bullets. The first three are also quite detailed planning processes.
  12. Full backups are what you think they are – everything. Incremental backups are files changed since *previous* backup, which might be a full backup or an incremental. Potentially a long recovery period. Differential backups are all files changed since previous full backup – quicker recovery. Continuous backups – like a journal file system, or like Oracle’s Dataguard hot spare environment. Geographically separated systems are kept up to date in real time.
  13. Step one above is what you might think of as the BCP, but the next 3 bullets are equally important.
  14. Plan phases – i.e., what would happen if a disaster occurred. The last phase, interacting with external entities, may actually begin immediately, probably with the decision that a disaster has occurred and the business is going to implement the BCP. An initial communication may be out to stakeholders at that point.
  15. Structured walk-through – step-by-step review of the BCP by functional reps who meet together – no one is actually walking anywhere Checklist – similar to SWT but checklists are distributed to business units, who review the checklists individually Simulation – kind of like “war games” – simulation stops at point where equipment would be relocated Parallel – DR site is put into full operation without taking down the primary – results compared between the two Full interruption – Full-scale test of BCP by a planned fail-over to the secondary site and fail-back to the primary. Risky. Note: more than one kind of test may be useful. For instance, a simulation and a parallel test complement each other.