Post on 07-Apr-2018
transcript
8/6/2019 BCP and DR
1/15
Business Continuity Planning &Disaster Recovery
The time to repair the roof is when the sun is shining
John F. Kennedy
1
8/6/2019 BCP and DR
2/15
Business Contingency Planning Is
Flexible Response To A Crisis
Place to Initiate Contingency Operations
(Systems/Network/Location/Personnel/Equipment)
Alternate Resources
The successful response to an interruption innormal operating procedures and thus services to
the customer community
2
8/6/2019 BCP and DR
3/15
REVENUE
Direct Loss
Lost Future Revenue
Billing Losses
Investment Losses
FINANCIAL
PERFORMANCE
Lost Market Share
Revenue Recognition
Cash Flow
Payment GuaranteesStock Price
Credit Rating
OTHER EXPENSES
Temporary employees,
Equipment Rental,
Overtime,
Extra Shipping Costs,
Travel Expenses,
Etc.
REPUTATION
Customers
Suppliers
Financial Markets
BanksBusiness Partners
Etc.
PRODUCTIVITY
Loss Of Productivity
Employees Impacted @ X
Burdened Hourly Rate
LEGAL/REGULATORY
Contractual Requirements
SLAs
Regulatory Requirements
Why Business Continuity?Why Business Continuity?
3
8/6/2019 BCP and DR
4/15
Disaster Recovery Planning
The strategic and
detailed planning for thetimely restoration ofinformation technology,network and telephony
following a disaster.
Business Resumption Planning
The strategic and detailed
planning for the timelyrestoration of vital business/support functions followinga disaster.
4
8/6/2019 BCP and DR
5/15
What is a Disaster?
Any unplanned event that requires immediate redeployment
of limited resources
Natural Forces Fire Environmental
Hazards Flood /Water
Damage ExtremeWeather
Technical Failure Power Outage Equipment Failure Network Failure Software Failure
Human Interference Criminal Act Human Error Loss of Users
Sample Disasters
Introduction
5
8/6/2019 BCP and DR
6/15
Assess
Damage
Restore
Primary
Site
Prepare
New Site
Confirm
Response
Strategy
Execute
Required
Functions
Transfer &
Execute at
New Site
Transfer to
Alternate
Location
Incident
Return to
Normal Operations
Transfer &
Execute at
Primary Site
Generate
Change
Requests
Assess DRP
Effectiveness
When an incident occurs, the Disaster Recovery responseactivities are likely to be the following (at a high level).
Introduction
6
8/6/2019 BCP and DR
7/15
Ranking Characteristic Recovery
Window
Recovery Strategy
Highly Critical
1
Adverse Impact To Business
Operations
Less Than 12
Hours
High Availability
Disaster Tolerance
Failover. Backups via SAN
Critical
2
Some Impact To Clinical Care and/or
Patient Safety. Possible Adverse
Impact to Critical Govt. Services
1 To 24 Hours Traditional Hotsite Strategy, possibly
coupled with internal, open systems
solution. Backups via SAN and tape
Important
3
Suspension of some business
operations at either the Hospital but
no direct impact on Clinical Care,
Patient Safety, Critical Govt.
Services
24-72 Hours Traditional Hotsite Strategy, possibly
coupled with internal, open systems
solution/. Backups via SAN and tape
Deferrable
4
Minor inconveniences to business
operations
> 72 Hours.May
not be recovered
until migration to
the warm site, or
the original site is
repaired
Standard backups and restore
procedures typical of component
failures. Backups via tape.
Assessing ImpactAssessing Impact
Components Of The Emergency Response PlanComponents Of The Emergency Response Plan
7
8/6/2019 BCP and DR
8/15
An Example of Disaster Recovery Team
AdministrativeSupport
Customer
Liaison
System Softwareand Database
Administration
Security
Computer
Operation and
Off-site Storage
Network
Delivery
Application
Support
Services
Delivery
Production
Application
Support
Disaster
RecoveryCoordinator
Site Restoration
Disaster Recovery
Director
DRP Management
Team
DR Team Organization
8
8/6/2019 BCP and DR
9/15
Examples of Data Center Roles & Responsibilities
Title Roles Responsibilities
Disaster Recovery
Director
Act as an advisor to the
DR management team.
Administrative
Support
Provide administration
support to the DR team
DR management
Team
Act as the steering committee
of the DR Team
Provide overall management support to DR
team
Responsible for strategic decision and key
requirements or changes on DRP
Make key decisions according to DRP
DR Team Organization
Oversee the activities of the DR team
Budget for future DR requirements Communicate with other management to deal
with the business process and recovery
procedures
Provide the DR team with administrative
resources and facilities Co-ordinate with lawyers for court cases and
handle legal documents
Responsible for accounting matters on DRs
expenses
Investigate the amount of damaged resources andinsurance claims 9
8/6/2019 BCP and DR
10/15
Disaster Recovery
Coordinator
Centralized coordination for
the entire DR team
Declare a disaster for each critical system
component or for an entire site
Inform the DR team of the decision
Execute DR procedures and recovery strategies
Ensure that the DRP is updated and test on aregular basis
Site Restoration Co-ordinate the recovery
operations should a site be
destroyed
Organize security control for the disaster site and
alternate processing site as required
SystemSoftware and
DatabaseAdministration
Prepare recovery and
restoration of software anddatabases
Customer Liaison Coordinate and coordinate
with users and customers
on any recovery issue
Notify users and clients of the disaster
Issue updates of recovery progress and expected
time of recovery
Help on data center migration issues and work re-
allocation
Responsible for the restoration of Hosts,
Servers, DB, synchronize data, etc.
DR Team OrganizationExamples of Data Center Roles & Responsibilities
Title Roles Responsibilities
10
8/6/2019 BCP and DR
11/15
Computer Operations
and off site storage
Manage storage of the
backups
Provide ready access to the required backups
Ensure the backups are stored in a secure
environment
DR Team OrganizationExamples of Data Center Roles & Responsibilities
Title Roles Responsibilities
Application Support Manage applications with
regard to DRP
Manage application changes to ensure they are
compliant with the DRP and vice versa
Network Delivery Manage and monitor voiceand data network
Oversee the recovery of the communicationenvironment
Switch users to use the alternate network
Co-ordinate with the communication service
providers forWAN service recovery
Security Review and monitor DR
procedures
Ensure the DR procedures comply with the firm
security and audit policies
11
8/6/2019 BCP and DR
12/15
DR Team OrganizationExamples of Data Center Roles & Responsibilities
Title Roles ResponsibilitiesService Delivery Manage IT service delivery Oversee the service management recovery
Provide helpdesk and end-user support as in DRP
Work closely with Customer Liaison and DisasterRecovery Coordinator to ensure synchronization
of communication channel to the users and the
DR team activities.
12
8/6/2019 BCP and DR
13/15
Service Providers : Consulting Services
Andersen Consultingwww.ac.com
Bell Atlantic Federal CommGuardwww.commguard.com
Comdiscowww.comdisco.com
Computer Security Consultants, Inc.www.crciweb.com
GSA Disaster and Business Recoverywww.gsa-gsa.com
Intessera Technologies Group
www. intessera.com
Example Disaster Recovery
Services
13
8/6/2019 BCP and DR
14/15
Service Providers :Alternate Site Services
ARC Disaster Recovery Serviceswww.arcdrs.com
Comdiscowww.comdisco.com
HP Business Recovery Serviceswww.hp.com
IBM Business Recovery Serviceswww.brs.ibm.com
SunGard Recovery Services, Inc. recovery.sungard.com
Example Disaster Recovery
Services
14
8/6/2019 BCP and DR
15/15
El Caminowww.elcamino.com
Providers : Computer Quick-ship , Hardware Replacement
Example Disaster Recovery
Services
15