You're about to create your best presentation ever

Business Continuity Presentation Template

Create your presentation by reusing one of our great community templates.

Business Continuity

Transcript: What is business continuity? Continuing to do business! Not just disaster recovery Developing robust IT operations Consider... Single application failure Single machine failure Single peripheral failure 1 - Monitor critical devices 2 - Add a layer of protection in the cloud 3 - Document your network 4 - Automate maintenance A maintained PC is a happy PC 5 - Strengthen the weak link 6 - Re-evaluate your backup strategy It's time for tape to go... Bring on cloud backup... 7 - Test test test Scott Roberts sroberts@khamma.com System vault, flexible location Surprise your staff Doumentation isn't important ...until it is Mayhem runs from mild... Many networks still rely on tape backup Support contracts and logins Domain name registrations What do I document? How do I document? Administrative Info OpenDNS Enterprise blocks requests for malicious pages using DNS lookups Presentation URL: If nothing else, teach users 2 basic concepts Tape has long been better than the next best option Trojans Schedule tasks with Windows Task Scheduler and batch files Limited flexibility Some of the issues with tape backup: Highly reliable Server hard drives Q&A Your solution should be/have Passwords APC Part# AP9631 $350 street price Visit strange websites No tape issues Intermediate Limit permissions On-site backup server and generally cause mayhem Make names self documenting where possible Webroot uses proxy server technology Monitor: UPS battery status Power events Environment - temperature Environment - humidity Develop standards LinkedIn.com/in/scottroberts1 Bare metal restore Physical and virtual machines Typically unencrypted Technical Information Improving Business Continuity Weatherbug widgets Restore backups - Disk defragmentation - Temp file deletion - Light backup tasks Software licensing End-to-end encryption Block known apps with Group Policy Traditional anti-virus protection stops threats at the computer, maybe the network perimiter Tackling advanced persistent threats means giving up the idea it's possible to protect everything. This is no longer realistic. Botnets WAN optimized Ask yourself "What if..." You can always make incremental improvements If you aren't sure, ask Disk free space System logs Exchange server databases And now... Advanced Persistent Threats aka APT Block level incremental Common file elimination Compression Use WSUS for Windows updates Users will... Install toolbars Install applications Beyond 'viruses' "Cyber criminals have aggressively shifted their targets and tactics," Art Coviello, Executive Chairman, RSA Rootkits Bank There will always be points of failure Other monitoring candidates - Many pre-configured tasks - Built in monitoring tools - Built in reporting tools There are no magic bullets Server configuration details Regulators want it Flexible restores Turn on Windows updates Advanced Bank Branch Thanks for the cool program with embedded malware! www.khamma.com/cbai A RAID array with a failed drive is not redundant... www.khamma.com Flash player, Java, etc. IP Addresses Set other apps to update automatically Use a 3rd party tool or service to manage maintenance from a central console Be suspicious About me Hybrid cloud backup is ready to take over The threats have changed... Basic Select a machine to "turn off" Highly flexible Drive maintenance Co-located bank server Managed backup provider server sroberts@khamma.com Cloud-based security services stop malicious traffic before it occurs Switch - router - firewall configuration To wild... Relatively unreliable Use a spreadsheet Give your users a little help... Click on fake AV pop-ups Start small Computer crime is big business Security for Business Innovation Council report, August, 2011 Falling for various spear-phishing attacks Power systems 7 Steps to a better network It's really very helpful Focusing on fortifying the perimeter is a losing battle.

Business Continuity

Transcript: What is Business continuity? The efficiency of an organization to continue the products and services with the predefined strategies in the case of disruptive incidents occurred. There are many terms are used to describe Business continuity. Organization Resiliency Disaster Recovery Emergency and Crisis Management Emergency Response Contingency Planning • Organization Resiliency • Disaster Recovery Natural Disasters • Wildfires • Floods • Hurricanes • Tornadoes • Winter storms • Earthquakes Man made Disasters • Communications, public transportation, or electricity failures • Cyber attacks • Civil disturbances, terrorism, war • Loss of key suppliers • Explosions Emergency management is a discipline to avoid the risk or to respond to the emergency situations which might affect the public, community or the entire country. • Emergency Response • Contingency Planning Continuity Process Business Impact Analysis Preparedness Responds Recovery Information Risk Management Infrastructure Applications Data Communications Hardware Assets Threats to information Security 1. Errors and omissions 2. Fraud and theft 3. Employee sabotage 4. Hackers 5. Privacy threats 6. Computer viruses 7. Phishing Thank You Business Continuity Mohamed Ayas MSc Informationi Technology • Emergency and Crisis Management The ability to respond, adopt and evolve the short term shocks such as natural disasters, manmade disasters or the significant changes in the industry and the market Where should i go? What should i do? When should i do? Organizing, coordinating and directing of available resources to react in the emergency to under control the situation and to protect the public, community and the environment. to minimize the impact Plan B Analyzing the situation which might happen or might not, especially when the plan A fails

Business Continuity

Transcript: 3.2% Employees STEP THREE: In your day-to-day life, you would probably identify access to a car as a critical activity. You need it to get to work, get the kids to school, go shopping and other necessary tasks. Improve your business This reduces the risk a lot but you can't get rid of it entirely Remain competitive your car is serviced annually insurance a spare tire Identify critical activities Assess the risks to those activities Reduce these risks as much as possible Plan some contingency measures to cover the risks STEP FOUR DEVELOP STRATEGIES The Process Resources TOP TIP STEP SIX Not all risks are insurable. Insurance companies may provide financial assistance but you remain out of business. A business continuity plan aims to keep your business running and makes it easier to resume operations after a disruption. No matter how big your insurance payout is, it cannot help you retain your customers. STEP ONE: $9.9B Business Continuity ANALYZE YOUR BUSINESS $150M $5B STEP FIVE In the event of a disaster, employees may be unable to report to work as they are responding to their own family’s needs. Encourage your employees to have a personal family plan and a 72-hour emergency preparedness kit. Reduce Financial Loss What is the purpose of your business What products/ services do you provide How do you provide your products and services Do your service providers have business continuity plans in place Who is involved (employees, suppliers) What are the minimum resource requirements (personnel, equipment, records) Who are your customers REVIEW YOUR PLAN So you need a contingency – in this case you could use public transport or call a taxi. It might not be as convenient and it might cost more, but it means you can still function but in a slightly limited capacity. To reduce or mitigate the risk: The Payoff Cross-training of staff Borrowing equipment from another business Keeping old equipment as a back-up Identifying alternative suppliers Storing important data and documents in a safe location Succession planning Off-site inventory of goods Uninterruptible power supply (UPS) Alternative work location Establish work-from-home protocols Promote personal and family preparedness Discuss with your employees how they will communicate with you or report to work in the event of a disruption 1% There are lots of risks to your car, it can break down, get stolen or you could be involved in an accident. All of which would disrupt the activity. So what do you do? STEP TWO: Identify Weaknesses BUT I HAVE BUISNESS INSURANCE... Business Continuity isn't rocket science We do it everyday without even thinking about it 1. Analyze your business 2. Assess the risks 3. Develop strategies 4. Make a plan 5. Exercise your plan 6. Review your plan ASSESS THE RISKS We have to Consider this real world example MAKE A PLAN EXERCISE YOUR PLAN The unthinkable only becomes thinkable after something happens. www.ready.gov/business www.publicsafety.gc.ca www.rmwb.ca/bcp www.ibc.ca/bc www.aema.alberta.ca www.preparemybusiness.org/ What could go wrong? If something goes wrong, how could it affect my business How would the essential services resume in a timely manner? 0.036% Ask yourself

Business Continuity

Transcript: Centre Director - Strategic Make contact with AEW and CBRE Senior Management. Establish the Meeting Point for the Management Recovery Team Chair the Management Recovery Team meeting and strategic implementation of the plan ensuring that all information gathering, decisions and responsibilities for tasks to be carried out are done promptly, effectively and in a positive manner. Liaise with the emergency services Strategic Command Liaise with the Marketing Manager to work with AEW , PR, general Media and ensure that no employee or other individuals make any statements to tenants, media, public etc. Attend Crisis Communication meeting Arrange for progress meeting with the Management Recovery Team and to update CBRE/AEW /Insurers at regular intervals. How will it effect you? During a major incident that invokes the BCP there is a need to constantly update and monitor Facebook, Twitter and the Festival Place website, this is keep the public calm, informed and monitor any escalating situations Using the IPad we are able to update all three of the above from a fall back location Command Structure Escalation Flow Chart Emergency Contact No’s (CBRE, AEW , Staff, Retailers, Contractors) Tasks & Responsibilities Appendices (Mapping,Media Statements,other Contacts) What is a Business Continuity Plan ? Task’s & Responsibilities Command Structure Command Structure Command Structure A business continuity plan makes life easier for employees and management when there is an unexpected disruption. It provides focus and guidance when there is an unplanned event that could rock the entire organization Media / Press Social Media Each member of the Management team has a specific responsibilities when implementing the BCP, for example; Festival Place regularly conducts table top exercises including Senior Managers and Duty Managers to insure we are all familiar with procedures and plans. (Cabinet Office) Festival Place also takes part in table top exercises involving Hampshire County Council, BDBC, Hants Constabulary and Hampshire fire & Rescue The command structure within the plan mimics that of the emergency services Incident Response Plan GOLD - Strategic Overall command of resources and is responsible for formulating the strategy for dealing with the incident, but delegates tactical decisions to his/her Tactical command. Strategic Command should be away from the scene. What is Contained in the Plan? Any Questions? The command structure within the plan mimics that of the emergency services Incident Response Plan (Strategic) Overall command of resources and is responsible for formulating the strategy for dealing with the incident, but delegates tactical decisions to his/her Tactical command. Strategic Command should be away from the scene. Exactly what has happened. Where to report and when. For those staying away: that doing so, in short term, is equally valuable. For those called in: what tasks they will be working on and what conditions they should expect, for instance, wear old clothes and to ensure that they have their ID cards with them. You will be asked whether anything will prevent you from doing what is asked of you, and, if so, what? Problems such as additional childcare Training A business continuity plan is a procedure document that guides an organisation to respond, recover, resume and restore to a pre-defined level of operation following a major disruption. Why Do we need a BCP ? SILVER - Tactical Tactical command will be at the scene of the incident, take charge and be responsible for making tactical decisions in order to achieve the strategic requirements set out by Strategic Command. FP Equivalents Task’s & Responsibilities BRONZE - Operational Operational Command will control and deploy the resources of their respective service/department in order to achieve the tactical requirements set out by Tactical. There is only one Strategic and Tactical though there can be unlimited Operational Remote Access Control Room Supervisor (Ops) Attend the meeting point for the Management Recovery Team. Set up secondary Control Room and communications if needed. Contact Business Communications to organise extra radio’s if needed. Prepare a Recovery Action Plan for responsible area. Liaise with local Police and pass on updates accordingly. Co-ordinate and record incident activities with the Control Room. Contact additional staff if required. Business Continuity Task’s & Responsibilities Command Structure No staff may make comments to the media other than the Senior Managers whom are Media trained, - Centre Director Strategic - Centre Director aided by CBRE and AEW. Tactical - Centre Manager Operational – All other department managers "Flexible" In the event that Senior Managers relocate to one of our fall back locations we can still gain access to the plans in order to co-ordinate operations, Internet, Ipads, USB

Now you can make any subject more engaging and memorable