BCP and DR

Download as pptx, pdf, or txt
Download as pptx, pdf, or txt
You are on page 1of 15

Business Continuity Planning &

Disaster Recovery

“The time to repair the roof is when the sun is shining”


John F. Kennedy

1
Business Contingency Planning Is……
The successful response to an interruption in
normal operating procedures and thus services to
the customer community

 Flexible Response To A Crisis

 Place to Initiate Contingency Operations


(Systems/Network/Location/Personnel/Equipment)

 Alternate Resources

2
Why Business Continuity?
The Cost Of Downtime
LEGAL/REGULATORY
Contractual Requirements REVENUE
PRODUCTIVITY SLAs Direct Loss
Loss Of Productivity Regulatory Requirements Lost Future Revenue
Employees Impacted @ X
Billing Losses
Burdened Hourly Rate Investment Losses

FINANCIAL
REPUTATION PERFORMANCE
Customers Lost Market Share
Suppliers Revenue Recognition
Financial Markets Cash Flow
Banks Payment Guarantees
Business Partners Stock Price
Etc. Credit Rating
OTHER EXPENSES
Temporary employees,
Equipment Rental,
Overtime,
Extra Shipping Costs,
Travel Expenses,
Etc.
3
Disaster Recovery/ Business
Resumption Planning
 Disaster Recovery Planning  Business Resumption Planning

 The strategic and  The strategic and


detailed planning for detailed planning for
the timely the timely restoration
restoration of of vital business/
information support functions
technology, network following a disaster.
and telephony
following a disaster.
4
Introduction
What is a Disaster?

Any
Anyunplanned
unplannedevent
eventthat
thatrequires
requiresimmediate
immediateredeployment
redeployment
of
oflimited
limitedresources
resources

Sample Disasters
Natural Forces Technical Failure Human Interference
 Fire  Power Outage  Criminal Act
 Environmental  Equipment Failure  Human Error
Hazards  Network Failure  Loss of Users
 Flood / Water  Software Failure
Damage
 Extreme Weather

5
Introduction
When an incident occurs, the Disaster Recovery response
activities are likely to be the following (at a high level).

Incident Assess Confirm Transfer to Execute


Damage Response Alternate Required
Strategy Location Functions

Prepare Transfer &


New Site Execute at
New Site

Restore Transfer &


Primary Execute at
Site Primary Site

Return to
Normal Operations Generate Assess DRP
Change Effectiveness
Requests
6
Components Of
Components OfThe
The Emergency
Emergency Response
Response Plan
Plan
Assessing Impact
Ranking Characteristic Recovery Recovery Strategy
Window

Highly Critical Adverse Impact To Business Less Than 12 High Availability


1 Operations Hours Disaster Tolerance
Failover. Backups via SAN

Critical Some Impact To Clinical Care and/or 1 To 24 Hours Traditional Hotsite Strategy, possibly
2 Patient Safety. Possible Adverse coupled with internal, open systems
Impact to Critical Govt. Services solution. Backups via SAN and tape

Important Suspension of some business 24-72 Hours Traditional Hotsite Strategy, possibly
3 operations at either the Hospital but coupled with internal, open systems
no direct impact on Clinical Care, solution/. Backups via SAN and tape
Patient Safety, Critical Govt.
Services

Deferrable Minor inconveniences to business > 72 Hours. May Standard backups and restore
4 operations not be recovered procedures typical of component
until migration to failures. Backups via tape.
the warm site, or
the original site is
repaired

7
DR Team Organization
An Example of Disaster Recovery Team
DRP Management
Team

Disaster Recovery
Director

Customer Production Disaster


Administrative
Application Recovery Site Restoration
Support Liaison
Support Coordinator

System Software
and Database Security
Administration
Computer
Network
Operation and
Delivery
Off-site Storage

Application Services
Support Delivery

8
DR Team Organization
Examples of Data Center Roles & Responsibilities
Title Roles Responsibilities
DR management Act as the steering committee • Provide overall management support to DR
Team of the DR Team team
• Responsible for strategic decision and key
requirements or changes on DRP
• Make key decisions according to DRP

Disaster Recovery Act as an advisor to the • Oversee the activities of the DR team
Director DR management team. • Budget for future DR requirements
• Communicate with other management to deal
with the business process and recovery
procedures

Administrative Provide administration • Provide the DR team with administrative


Support support to the DR team resources and facilities
• Co-ordinate with lawyers for court cases and
handle legal documents
• Responsible for accounting matters on DR’s
expenses
• Investigate the amount of damaged resources and
insurance claims 9
DR Team Organization
Examples of Data Center Roles & Responsibilities
Title Roles Responsibilities
Customer Liaison Coordinate and coordinate • Notify users and clients of the disaster
with users and customers • Issue updates of recovery progress and expected
on any recovery issue time of recovery
• Help on data center migration issues and work re-
allocation
Disaster Recovery Centralized coordination for • Declare a disaster for each critical system
Coordinator the entire DR team component or for an entire site
• Inform the DR team of the decision
• Execute DR procedures and recovery strategies
• Ensure that the DRP is updated and test on a
regular basis

Site Restoration Co-ordinate the recovery • Organize security control for the disaster site and
operations should a site be alternate processing site as required
destroyed
System Software and Prepare recovery and • Responsible for the restoration of Hosts,
Database restoration of software and Servers, DB, synchronize data, etc.
Administration databases 10
DR Team Organization
Examples of Data Center Roles & Responsibilities
Title Roles Responsibilities
Computer Operations Manage storage of the • Provide ready access to the required backups
and off site storage backups • Ensure the backups are stored in a secure
environment

Application Support Manage applications with • Manage application changes to ensure they are
regard to DRP compliant with the DRP and vice versa

Security Review and monitor DR • Ensure the DR procedures comply with the firm
procedures security and audit policies

Network Delivery Manage and monitor voice • Oversee the recovery of the communication
and data network environment
• Switch users to use the alternate network
• Co-ordinate with the communication service
providers for WAN service recovery

11
DR Team Organization
Examples of Data Center Roles & Responsibilities
Title Roles Responsibilities
Service Delivery Manage IT service delivery • Oversee the service management recovery
• Provide helpdesk and end-user support as in DRP
• Work closely with Customer Liaison and Disaster
Recovery Coordinator to ensure synchronization
of communication channel to the users and the
DR team activities.

12
Example Disaster Recovery
Services
Service Providers : Consulting Services
Andersen Consulting
www.ac.com

Bell Atlantic Federal CommGuard


www.commguard.com

Comdisco
www.comdisco.com

Computer Security Consultants, Inc.


www.crciweb.com

GSA Disaster and Business Recovery


www.gsa-gsa.com

Intessera Technologies Group


www. intessera.com
13
Example Disaster Recovery
Services
Service Providers : Alternate Site Services
ARC Disaster Recovery Services
www.arcdrs.com

Comdisco
www.comdisco.com

HP Business Recovery Services


www.hp.com

IBM Business Recovery Services


www.brs.ibm.com

SunGard Recovery Services, Inc. recovery.sungard.com

14
Example Disaster Recovery
Services
Providers : Computer Quick-ship , Hardware Replacement

El Camino
www.elcamino.com

15

You might also like