SlideShare a Scribd company logo
A small handout on
Alternative Work Area in
Business
Continuity
Management
                         About Author




                         Amit Abhyankar
                         AVP & Practice Head - BCP
                         Amit Abhyankar is an AVP and a Practice Head for
                         Omnitech’s Business Continuity Services division. He
                         has a total of 20 years of professional experience, of
                         which, the past 4 years have been exclusively spent in
                         developing the Business Continuity Services for
                         Omnitech. His present role as a Practice Head involves
                         evangelizing BCM, business development, driving top
                         line as well bottom line growth for the division and
                         identifying strategic geographical locations where
                         Omnitech can o er Business Continuity Services to a


January 2011             global clientele. He has recently been awarded the
                         Member grade by the BCI.




www.omnitechglobal.com
01




Introduction
As businesses become increasingly competitive, the pressure of being able to meet customer and regulatory mandates increases multifold.
Compliances such as BASEL II, HIPAA, and SOX cannot be wished away. Add to this, Corporate Governance policies and stricter SLAs and we
have a perfect recipe for insomnia!


While most CIOs would be confident about the resilience of their IT systems, one needs to introspect honestly whether their CEOs exude the
same confidence with respect to availability of ‘personnel’ and ‘processes’ during potential outages.




Pillars of Business Continuity
CIOs are responsible for IT Disaster Recovery (DR) plans but these
plans generally do not cover People and Processes since it’s beyond
scope.
DR focuses on recovery of Data and Equipment. But Business Continu-
ity Management (BCM) is an inclusive term and a superset of DR.
Hence, IT teams must realize that while they may have IT DR in place,
they may not have resilience at business level.


Two additional pillars ensuring successful recovery are ‘People’ and
‘Processes’. For both one may need a formal site known as Alternate
Work Area and the strategy of keeping such recovery sites in
‘perpetual readiness’ is called Work Area Recovery (WAR) prepared-
ness. There are schools of thought that profess ‘work from home’ or
other ad hoc solutions which may be effective but not necessarily
robust and bound by SLAs.




A typical Work Area
Recovery Site
An ‘alternate site’ is an arrangement done to continue work at alternate premises in case of an outage. Such a site has to address the require-
ments for recovery of Processes, Equipments and People pillars adequately to qualify as a WAR site as follows

     Processes – Workstations, access to applications, databases, voice solutions, resilient power (UPS+DG Set) determined by the process
     RTOs

     ICT – Structured cabling, networking equipment, resilient connectivity, communication infrastructure, reprographics, NOC

     Security – Secured access, physical and logical security, Intelligent Building Management Systems, SOC

     People – Ergonomic furniture, on-demand medical assistance, R&R (Recuperation & Recreation) Cafeteria, Dormitory, TV, indoor games




Copyright © 2011 Omnitech InfoSolutions Ltd                                    Alternative Work Area in Business Continuity Management
02




BCM is more about People
People are likely to react differently, guided by circumstances and emotions. Even trained key personnel can fumble in adverse situations, feel
despair, or completely give-up. Worse-they may refuse to report to work, citing family priorities. This will lead to a complete collapse of
planned recovery procedures as no organization has 100% automation and people dependence is inevitable.


During outage, IT teams can simply switch pointers to the DRC but the process teams need to move to the alternate site, sometimes under
adverse conditions such as fire, malicious insider attack, terror attack, or a catastrophe. They are likely to have witnessed loss of human life
and the stress can be overwhelming. Under such conditions, simply ‘switching’ over to the alternate site and resuming operation can be
extremely challenging!


Experts across the world agree that BCM is all about people. To ensure that recovery strategies are implemented and executed successfully
one has to invest in people, training, motivation, and wellbeing.


The R&R facilities of professional WAR sites will are much needed during these trying times, as they can help mitigate trauma and allow recov-
ery personnel to focus more on given tasks and achieve the RTO and RPO as desired and bring about recovery.




BCM Initiatives
By making BCM a Boardroom Agenda and driving it through a formal BCM policy is the surest way of ensuring BCM readiness.


It has to get embedded in the organization’s culture! This involves training, practicing, learning from mistakes, carrying out Root Cause Analy-
sis, followed by retraining.


The organization should provide incentives to personnel to voluntarily become a part of BCM culture and reward employees who display
high level of enthusiasm.




Way Ahead
While the approach to BCM is always a Science, its adaptation to meet the local compulsions will always remain an Art! However, ambiguities
can be put to rest by referring to BS25999, which is the global standard, defined by BSI and accepted globally.


Organizations have positions of independent BC Managers with clear career paths and certifications in BCM equip candidates with requisite
knowledge and qualifications.


Protecting revenues through BCM is as important as focusing on growth. The dictum of “a penny saved is a penny earned” is relevant in
business as an outage may not only mean temporarily lost revenues but permanently lost reputation and customers.




Copyright © 2011 Omnitech InfoSolutions Ltd                                     Alternative Work Area in Business Continuity Management
03




About Omnitech
Omnitech is a global IT solutions and services provider company in the areas of business availability, business continuity and business
enhancement services. With over 23 years of fostering client relationships, we at Omnitech are agile to establish the best global credentials
through world class quality certifications. Besides the conduct of ISO 9001:2008 Surveillance audit for quality management, we have also
gained ISO 20000, ISO 27001and BS 25999 standards.


As an intensely technology focused company, Omnitech banks upon its ability to anticipate and address IT requirements across business in
a cost effective manner. Omnitech InfoSolutions helps customers to align their IT with their business goals and offers value added services at
different phases of their IT planning and deployment cycle. We help them to derive optimum utilization of their IT resources and lower their
cost of operations. Within the broad direction, Omnitech innovates in order to compete successfully. Emerging as a pioneer in business
continuity services, Omnitech introduced first of its kind disaster recovery centre in India meeting all the global standards, thereby demon-
strating both its knowledge of technology and skills of implementation.




                                                                     Copyright
                                                                     All content / information present here is the exclusive property of Omnitech
                                                                     InfoSolutions Ltd. The content / information contained here is correct at the time
                                                                     of publishing. No material from here should be copied, modified, reproduced,
                                                                     republished, uploaded, transmitted, posted or distributed in any form without
                                                                     prior written permission from Omnitech InfoSolutions Ltd. Unauthorized use of
                                                                     the content / information appearing here may violate copyright, trademark and
                                                                     other applicable laws, and could result in criminal or civil penalties.
                                                                     Copyright © 2011 Omnitech InfoSolutions Ltd.



                                                                     Disclaimer
                                                                     The views presented in this document are the personal views/opinions of the
                                                                     author and not of the organization he represents and is only informative in
                                                                     nature. It is neither purported to be relied upon nor be used as a substitute for
                                                                     specific professional advice.




Copyright © 2011 Omnitech InfoSolutions Ltd                                    Alternative Work Area in Business Continuity Management

More Related Content

Viewers also liked

Business Continuity Management in India (white paper)
Business Continuity Management in India (white paper)Business Continuity Management in India (white paper)
Business Continuity Management in India (white paper)
OmniComm
 
Business Continuity Management in India white paper
Business Continuity Management in India white paperBusiness Continuity Management in India white paper
Business Continuity Management in India white paper
OmniComm
 
BCM whitepaper
BCM whitepaperBCM whitepaper
BCM whitepaper
OmniComm
 
What Is Corporate Resilience
What Is Corporate ResilienceWhat Is Corporate Resilience
What Is Corporate ResilienceBBRAES
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity ManagementECC International
 
32 Ways a Digital Marketing Consultant Can Help Grow Your Business
32 Ways a Digital Marketing Consultant Can Help Grow Your Business32 Ways a Digital Marketing Consultant Can Help Grow Your Business
32 Ways a Digital Marketing Consultant Can Help Grow Your Business
Barry Feldman
 

Viewers also liked (8)

Business Continuity Management in India (white paper)
Business Continuity Management in India (white paper)Business Continuity Management in India (white paper)
Business Continuity Management in India (white paper)
 
Business continuity
Business continuityBusiness continuity
Business continuity
 
Business Continuity Management in India white paper
Business Continuity Management in India white paperBusiness Continuity Management in India white paper
Business Continuity Management in India white paper
 
BCM whitepaper
BCM whitepaperBCM whitepaper
BCM whitepaper
 
Building organisational resilience
Building organisational resilienceBuilding organisational resilience
Building organisational resilience
 
What Is Corporate Resilience
What Is Corporate ResilienceWhat Is Corporate Resilience
What Is Corporate Resilience
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity Management
 
32 Ways a Digital Marketing Consultant Can Help Grow Your Business
32 Ways a Digital Marketing Consultant Can Help Grow Your Business32 Ways a Digital Marketing Consultant Can Help Grow Your Business
32 Ways a Digital Marketing Consultant Can Help Grow Your Business
 

Similar to Alternative Work Area in BCM

There's an App for That, and That, and That: Managing Mobile in the Workforce
There's an App for That, and That, and That: Managing Mobile in the WorkforceThere's an App for That, and That, and That: Managing Mobile in the Workforce
There's an App for That, and That, and That: Managing Mobile in the Workforce
Human Capital Media
 
Open it sm solutions final
Open it sm solutions   finalOpen it sm solutions   final
Open it sm solutions finalRick Lemieux
 
The Most Recommended Disaster Recovery Companies To Watch Out.pdf
The Most Recommended Disaster Recovery Companies To Watch Out.pdfThe Most Recommended Disaster Recovery Companies To Watch Out.pdf
The Most Recommended Disaster Recovery Companies To Watch Out.pdf
CIO Look Magazine
 
The ‘success trap’ of new, emerging and disruptive technologies
The ‘success trap’ of new, emerging and disruptive technologiesThe ‘success trap’ of new, emerging and disruptive technologies
The ‘success trap’ of new, emerging and disruptive technologies
Livingstone Advisory
 
LCS Brochure
LCS BrochureLCS Brochure
LCS Brochure
LCSTraining
 
What the heck is a Fractional CIO and why would I want one
What the heck is a Fractional CIO and why would I want oneWhat the heck is a Fractional CIO and why would I want one
What the heck is a Fractional CIO and why would I want oneCraig Bickel
 
Ihtnl Profile New
Ihtnl Profile NewIhtnl Profile New
Ihtnl Profile Newihtindia
 
New Agile Ways of Working Remotely
New Agile Ways of Working RemotelyNew Agile Ways of Working Remotely
New Agile Ways of Working Remotely
Dipesh Pala
 
Corporate_Profile
Corporate_ProfileCorporate_Profile
Corporate_ProfileGayathri M
 
IT Service Management (ITSM) Model for Business & IT Alignement
IT Service Management (ITSM) Model for Business & IT AlignementIT Service Management (ITSM) Model for Business & IT Alignement
IT Service Management (ITSM) Model for Business & IT Alignement
Rick Lemieux
 
Salesforce execlunch
Salesforce execlunchSalesforce execlunch
Salesforce execlunch
peter williams
 
Mohd hossam
Mohd hossamMohd hossam
Mohd hossam
Mohamed Hossam
 
It Senior Manager
It Senior ManagerIt Senior Manager
It Senior Manager
davidjh
 
5 Keys to Mastering Today's Communication Domain
5 Keys to Mastering Today's Communication Domain5 Keys to Mastering Today's Communication Domain
5 Keys to Mastering Today's Communication Domain
Avaya Inc.
 
Insights of Facility Management Innovations
Insights of Facility Management InnovationsInsights of Facility Management Innovations
Insights of Facility Management Innovations
Naveen Kumar Vadde
 
Company Profile Sophumelela IT Solutions
Company Profile   Sophumelela IT SolutionsCompany Profile   Sophumelela IT Solutions
Company Profile Sophumelela IT Solutions
Akhona Siyabulela Stuurman
 
The 50 most influential business leaders in tech 2021 compressed
The 50 most influential business leaders in tech 2021 compressedThe 50 most influential business leaders in tech 2021 compressed
The 50 most influential business leaders in tech 2021 compressed
Insights success media and technology pvt ltd
 
Multisoft@Corporate Presentation
Multisoft@Corporate   PresentationMultisoft@Corporate   Presentation
Multisoft@Corporate PresentationMultisoftSystems
 

Similar to Alternative Work Area in BCM (20)

There's an App for That, and That, and That: Managing Mobile in the Workforce
There's an App for That, and That, and That: Managing Mobile in the WorkforceThere's an App for That, and That, and That: Managing Mobile in the Workforce
There's an App for That, and That, and That: Managing Mobile in the Workforce
 
Open it sm solutions final
Open it sm solutions   finalOpen it sm solutions   final
Open it sm solutions final
 
The Most Recommended Disaster Recovery Companies To Watch Out.pdf
The Most Recommended Disaster Recovery Companies To Watch Out.pdfThe Most Recommended Disaster Recovery Companies To Watch Out.pdf
The Most Recommended Disaster Recovery Companies To Watch Out.pdf
 
The ‘success trap’ of new, emerging and disruptive technologies
The ‘success trap’ of new, emerging and disruptive technologiesThe ‘success trap’ of new, emerging and disruptive technologies
The ‘success trap’ of new, emerging and disruptive technologies
 
LCS Brochure
LCS BrochureLCS Brochure
LCS Brochure
 
What the heck is a Fractional CIO and why would I want one
What the heck is a Fractional CIO and why would I want oneWhat the heck is a Fractional CIO and why would I want one
What the heck is a Fractional CIO and why would I want one
 
Ihtnl Profile New
Ihtnl Profile NewIhtnl Profile New
Ihtnl Profile New
 
New Agile Ways of Working Remotely
New Agile Ways of Working RemotelyNew Agile Ways of Working Remotely
New Agile Ways of Working Remotely
 
Corporate_Profile
Corporate_ProfileCorporate_Profile
Corporate_Profile
 
HT_Profile_2010_b
HT_Profile_2010_bHT_Profile_2010_b
HT_Profile_2010_b
 
IT Service Management (ITSM) Model for Business & IT Alignement
IT Service Management (ITSM) Model for Business & IT AlignementIT Service Management (ITSM) Model for Business & IT Alignement
IT Service Management (ITSM) Model for Business & IT Alignement
 
Salesforce execlunch
Salesforce execlunchSalesforce execlunch
Salesforce execlunch
 
Mohd hossam
Mohd hossamMohd hossam
Mohd hossam
 
It Senior Manager
It Senior ManagerIt Senior Manager
It Senior Manager
 
5 Keys to Mastering Today's Communication Domain
5 Keys to Mastering Today's Communication Domain5 Keys to Mastering Today's Communication Domain
5 Keys to Mastering Today's Communication Domain
 
Insights of Facility Management Innovations
Insights of Facility Management InnovationsInsights of Facility Management Innovations
Insights of Facility Management Innovations
 
agraNii Corporate Presentation
agraNii Corporate PresentationagraNii Corporate Presentation
agraNii Corporate Presentation
 
Company Profile Sophumelela IT Solutions
Company Profile   Sophumelela IT SolutionsCompany Profile   Sophumelela IT Solutions
Company Profile Sophumelela IT Solutions
 
The 50 most influential business leaders in tech 2021 compressed
The 50 most influential business leaders in tech 2021 compressedThe 50 most influential business leaders in tech 2021 compressed
The 50 most influential business leaders in tech 2021 compressed
 
Multisoft@Corporate Presentation
Multisoft@Corporate   PresentationMultisoft@Corporate   Presentation
Multisoft@Corporate Presentation
 

Recently uploaded

By Design, not by Accident - Agile Venture Bolzano 2024
By Design, not by Accident - Agile Venture Bolzano 2024By Design, not by Accident - Agile Venture Bolzano 2024
By Design, not by Accident - Agile Venture Bolzano 2024
Pierluigi Pugliese
 
The Art of the Pitch: WordPress Relationships and Sales
The Art of the Pitch: WordPress Relationships and SalesThe Art of the Pitch: WordPress Relationships and Sales
The Art of the Pitch: WordPress Relationships and Sales
Laura Byrne
 
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdfFIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance
 
Monitoring Java Application Security with JDK Tools and JFR Events
Monitoring Java Application Security with JDK Tools and JFR EventsMonitoring Java Application Security with JDK Tools and JFR Events
Monitoring Java Application Security with JDK Tools and JFR Events
Ana-Maria Mihalceanu
 
UiPath Test Automation using UiPath Test Suite series, part 4
UiPath Test Automation using UiPath Test Suite series, part 4UiPath Test Automation using UiPath Test Suite series, part 4
UiPath Test Automation using UiPath Test Suite series, part 4
DianaGray10
 
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
DanBrown980551
 
Why You Should Replace Windows 11 with Nitrux Linux 3.5.0 for enhanced perfor...
Why You Should Replace Windows 11 with Nitrux Linux 3.5.0 for enhanced perfor...Why You Should Replace Windows 11 with Nitrux Linux 3.5.0 for enhanced perfor...
Why You Should Replace Windows 11 with Nitrux Linux 3.5.0 for enhanced perfor...
SOFTTECHHUB
 
Generative AI Deep Dive: Advancing from Proof of Concept to Production
Generative AI Deep Dive: Advancing from Proof of Concept to ProductionGenerative AI Deep Dive: Advancing from Proof of Concept to Production
Generative AI Deep Dive: Advancing from Proof of Concept to Production
Aggregage
 
The Future of Platform Engineering
The Future of Platform EngineeringThe Future of Platform Engineering
The Future of Platform Engineering
Jemma Hussein Allen
 
Elevating Tactical DDD Patterns Through Object Calisthenics
Elevating Tactical DDD Patterns Through Object CalisthenicsElevating Tactical DDD Patterns Through Object Calisthenics
Elevating Tactical DDD Patterns Through Object Calisthenics
Dorra BARTAGUIZ
 
Climate Impact of Software Testing at Nordic Testing Days
Climate Impact of Software Testing at Nordic Testing DaysClimate Impact of Software Testing at Nordic Testing Days
Climate Impact of Software Testing at Nordic Testing Days
Kari Kakkonen
 
GraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge GraphGraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge Graph
Guy Korland
 
State of ICS and IoT Cyber Threat Landscape Report 2024 preview
State of ICS and IoT Cyber Threat Landscape Report 2024 previewState of ICS and IoT Cyber Threat Landscape Report 2024 preview
State of ICS and IoT Cyber Threat Landscape Report 2024 preview
Prayukth K V
 
Securing your Kubernetes cluster_ a step-by-step guide to success !
Securing your Kubernetes cluster_ a step-by-step guide to success !Securing your Kubernetes cluster_ a step-by-step guide to success !
Securing your Kubernetes cluster_ a step-by-step guide to success !
KatiaHIMEUR1
 
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
James Anderson
 
Epistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI supportEpistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI support
Alan Dix
 
National Security Agency - NSA mobile device best practices
National Security Agency - NSA mobile device best practicesNational Security Agency - NSA mobile device best practices
National Security Agency - NSA mobile device best practices
Quotidiano Piemontese
 
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptx
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptxSecstrike : Reverse Engineering & Pwnable tools for CTF.pptx
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptx
nkrafacyberclub
 
GridMate - End to end testing is a critical piece to ensure quality and avoid...
GridMate - End to end testing is a critical piece to ensure quality and avoid...GridMate - End to end testing is a critical piece to ensure quality and avoid...
GridMate - End to end testing is a critical piece to ensure quality and avoid...
ThomasParaiso2
 
A tale of scale & speed: How the US Navy is enabling software delivery from l...
A tale of scale & speed: How the US Navy is enabling software delivery from l...A tale of scale & speed: How the US Navy is enabling software delivery from l...
A tale of scale & speed: How the US Navy is enabling software delivery from l...
sonjaschweigert1
 

Recently uploaded (20)

By Design, not by Accident - Agile Venture Bolzano 2024
By Design, not by Accident - Agile Venture Bolzano 2024By Design, not by Accident - Agile Venture Bolzano 2024
By Design, not by Accident - Agile Venture Bolzano 2024
 
The Art of the Pitch: WordPress Relationships and Sales
The Art of the Pitch: WordPress Relationships and SalesThe Art of the Pitch: WordPress Relationships and Sales
The Art of the Pitch: WordPress Relationships and Sales
 
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdfFIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
 
Monitoring Java Application Security with JDK Tools and JFR Events
Monitoring Java Application Security with JDK Tools and JFR EventsMonitoring Java Application Security with JDK Tools and JFR Events
Monitoring Java Application Security with JDK Tools and JFR Events
 
UiPath Test Automation using UiPath Test Suite series, part 4
UiPath Test Automation using UiPath Test Suite series, part 4UiPath Test Automation using UiPath Test Suite series, part 4
UiPath Test Automation using UiPath Test Suite series, part 4
 
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
 
Why You Should Replace Windows 11 with Nitrux Linux 3.5.0 for enhanced perfor...
Why You Should Replace Windows 11 with Nitrux Linux 3.5.0 for enhanced perfor...Why You Should Replace Windows 11 with Nitrux Linux 3.5.0 for enhanced perfor...
Why You Should Replace Windows 11 with Nitrux Linux 3.5.0 for enhanced perfor...
 
Generative AI Deep Dive: Advancing from Proof of Concept to Production
Generative AI Deep Dive: Advancing from Proof of Concept to ProductionGenerative AI Deep Dive: Advancing from Proof of Concept to Production
Generative AI Deep Dive: Advancing from Proof of Concept to Production
 
The Future of Platform Engineering
The Future of Platform EngineeringThe Future of Platform Engineering
The Future of Platform Engineering
 
Elevating Tactical DDD Patterns Through Object Calisthenics
Elevating Tactical DDD Patterns Through Object CalisthenicsElevating Tactical DDD Patterns Through Object Calisthenics
Elevating Tactical DDD Patterns Through Object Calisthenics
 
Climate Impact of Software Testing at Nordic Testing Days
Climate Impact of Software Testing at Nordic Testing DaysClimate Impact of Software Testing at Nordic Testing Days
Climate Impact of Software Testing at Nordic Testing Days
 
GraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge GraphGraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge Graph
 
State of ICS and IoT Cyber Threat Landscape Report 2024 preview
State of ICS and IoT Cyber Threat Landscape Report 2024 previewState of ICS and IoT Cyber Threat Landscape Report 2024 preview
State of ICS and IoT Cyber Threat Landscape Report 2024 preview
 
Securing your Kubernetes cluster_ a step-by-step guide to success !
Securing your Kubernetes cluster_ a step-by-step guide to success !Securing your Kubernetes cluster_ a step-by-step guide to success !
Securing your Kubernetes cluster_ a step-by-step guide to success !
 
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
 
Epistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI supportEpistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI support
 
National Security Agency - NSA mobile device best practices
National Security Agency - NSA mobile device best practicesNational Security Agency - NSA mobile device best practices
National Security Agency - NSA mobile device best practices
 
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptx
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptxSecstrike : Reverse Engineering & Pwnable tools for CTF.pptx
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptx
 
GridMate - End to end testing is a critical piece to ensure quality and avoid...
GridMate - End to end testing is a critical piece to ensure quality and avoid...GridMate - End to end testing is a critical piece to ensure quality and avoid...
GridMate - End to end testing is a critical piece to ensure quality and avoid...
 
A tale of scale & speed: How the US Navy is enabling software delivery from l...
A tale of scale & speed: How the US Navy is enabling software delivery from l...A tale of scale & speed: How the US Navy is enabling software delivery from l...
A tale of scale & speed: How the US Navy is enabling software delivery from l...
 

Alternative Work Area in BCM

  • 1. A small handout on Alternative Work Area in Business Continuity Management About Author Amit Abhyankar AVP & Practice Head - BCP Amit Abhyankar is an AVP and a Practice Head for Omnitech’s Business Continuity Services division. He has a total of 20 years of professional experience, of which, the past 4 years have been exclusively spent in developing the Business Continuity Services for Omnitech. His present role as a Practice Head involves evangelizing BCM, business development, driving top line as well bottom line growth for the division and identifying strategic geographical locations where Omnitech can o er Business Continuity Services to a January 2011 global clientele. He has recently been awarded the Member grade by the BCI. www.omnitechglobal.com
  • 2. 01 Introduction As businesses become increasingly competitive, the pressure of being able to meet customer and regulatory mandates increases multifold. Compliances such as BASEL II, HIPAA, and SOX cannot be wished away. Add to this, Corporate Governance policies and stricter SLAs and we have a perfect recipe for insomnia! While most CIOs would be confident about the resilience of their IT systems, one needs to introspect honestly whether their CEOs exude the same confidence with respect to availability of ‘personnel’ and ‘processes’ during potential outages. Pillars of Business Continuity CIOs are responsible for IT Disaster Recovery (DR) plans but these plans generally do not cover People and Processes since it’s beyond scope. DR focuses on recovery of Data and Equipment. But Business Continu- ity Management (BCM) is an inclusive term and a superset of DR. Hence, IT teams must realize that while they may have IT DR in place, they may not have resilience at business level. Two additional pillars ensuring successful recovery are ‘People’ and ‘Processes’. For both one may need a formal site known as Alternate Work Area and the strategy of keeping such recovery sites in ‘perpetual readiness’ is called Work Area Recovery (WAR) prepared- ness. There are schools of thought that profess ‘work from home’ or other ad hoc solutions which may be effective but not necessarily robust and bound by SLAs. A typical Work Area Recovery Site An ‘alternate site’ is an arrangement done to continue work at alternate premises in case of an outage. Such a site has to address the require- ments for recovery of Processes, Equipments and People pillars adequately to qualify as a WAR site as follows Processes – Workstations, access to applications, databases, voice solutions, resilient power (UPS+DG Set) determined by the process RTOs ICT – Structured cabling, networking equipment, resilient connectivity, communication infrastructure, reprographics, NOC Security – Secured access, physical and logical security, Intelligent Building Management Systems, SOC People – Ergonomic furniture, on-demand medical assistance, R&R (Recuperation & Recreation) Cafeteria, Dormitory, TV, indoor games Copyright © 2011 Omnitech InfoSolutions Ltd Alternative Work Area in Business Continuity Management
  • 3. 02 BCM is more about People People are likely to react differently, guided by circumstances and emotions. Even trained key personnel can fumble in adverse situations, feel despair, or completely give-up. Worse-they may refuse to report to work, citing family priorities. This will lead to a complete collapse of planned recovery procedures as no organization has 100% automation and people dependence is inevitable. During outage, IT teams can simply switch pointers to the DRC but the process teams need to move to the alternate site, sometimes under adverse conditions such as fire, malicious insider attack, terror attack, or a catastrophe. They are likely to have witnessed loss of human life and the stress can be overwhelming. Under such conditions, simply ‘switching’ over to the alternate site and resuming operation can be extremely challenging! Experts across the world agree that BCM is all about people. To ensure that recovery strategies are implemented and executed successfully one has to invest in people, training, motivation, and wellbeing. The R&R facilities of professional WAR sites will are much needed during these trying times, as they can help mitigate trauma and allow recov- ery personnel to focus more on given tasks and achieve the RTO and RPO as desired and bring about recovery. BCM Initiatives By making BCM a Boardroom Agenda and driving it through a formal BCM policy is the surest way of ensuring BCM readiness. It has to get embedded in the organization’s culture! This involves training, practicing, learning from mistakes, carrying out Root Cause Analy- sis, followed by retraining. The organization should provide incentives to personnel to voluntarily become a part of BCM culture and reward employees who display high level of enthusiasm. Way Ahead While the approach to BCM is always a Science, its adaptation to meet the local compulsions will always remain an Art! However, ambiguities can be put to rest by referring to BS25999, which is the global standard, defined by BSI and accepted globally. Organizations have positions of independent BC Managers with clear career paths and certifications in BCM equip candidates with requisite knowledge and qualifications. Protecting revenues through BCM is as important as focusing on growth. The dictum of “a penny saved is a penny earned” is relevant in business as an outage may not only mean temporarily lost revenues but permanently lost reputation and customers. Copyright © 2011 Omnitech InfoSolutions Ltd Alternative Work Area in Business Continuity Management
  • 4. 03 About Omnitech Omnitech is a global IT solutions and services provider company in the areas of business availability, business continuity and business enhancement services. With over 23 years of fostering client relationships, we at Omnitech are agile to establish the best global credentials through world class quality certifications. Besides the conduct of ISO 9001:2008 Surveillance audit for quality management, we have also gained ISO 20000, ISO 27001and BS 25999 standards. As an intensely technology focused company, Omnitech banks upon its ability to anticipate and address IT requirements across business in a cost effective manner. Omnitech InfoSolutions helps customers to align their IT with their business goals and offers value added services at different phases of their IT planning and deployment cycle. We help them to derive optimum utilization of their IT resources and lower their cost of operations. Within the broad direction, Omnitech innovates in order to compete successfully. Emerging as a pioneer in business continuity services, Omnitech introduced first of its kind disaster recovery centre in India meeting all the global standards, thereby demon- strating both its knowledge of technology and skills of implementation. Copyright All content / information present here is the exclusive property of Omnitech InfoSolutions Ltd. The content / information contained here is correct at the time of publishing. No material from here should be copied, modified, reproduced, republished, uploaded, transmitted, posted or distributed in any form without prior written permission from Omnitech InfoSolutions Ltd. Unauthorized use of the content / information appearing here may violate copyright, trademark and other applicable laws, and could result in criminal or civil penalties. Copyright © 2011 Omnitech InfoSolutions Ltd. Disclaimer The views presented in this document are the personal views/opinions of the author and not of the organization he represents and is only informative in nature. It is neither purported to be relied upon nor be used as a substitute for specific professional advice. Copyright © 2011 Omnitech InfoSolutions Ltd Alternative Work Area in Business Continuity Management