Business Continuity and Disaster Recovery Planning
By: Dr. Mohammad Shoab
Business Continuity and Disaster Planning Basics
What Is a Disaster
3
Natural Disasters
4
Man-made Disasters
5
Man-made Disasters (cont.)
6
How Disasters Affect Businesses
7
How BCP and DRP�Support Security
8
BCP and DRP Differences �and Similarities
9
Industry Standards Supporting �BCP and DRP
10
Industry Standards Supporting �BCP and DRP (cont.)
11
Industry Standards Supporting �BCP and DRP (cont.)
12
Benefits of BCP and DRP Planning
13
The Role of Prevention
14
Running a BCP / DRP Project
Running a BCP / DRP Project
16
Pre-project Activities
17
Business Impact Assessment (BIA)
Performing a Business �Impact Assessment
19
Survey In-scope �Business Processes
20
Threat and Risk Analysis
21
Determine Maximum �Tolerable Downtime (MTD)
22
Determine Maximum �Tolerable Downtime (cont.)
23
Develop Statements of Impact
24
Record Other Key Metrics
25
Ascertain Current Continuity and Recovery Capabilities
26
Develop Key Recovery Targets
27
Develop Key Recovery �Targets (cont.)
28
Sample Recovery Time Objectives
RPO | Technology(ies) required |
8-14 days | New equipment, data recovery from backup |
4-7 days | Cold systems, data recovery from backup |
2-3 days | Warm systems, data recovery from backup |
12-24 hours | Warm systems, recovery from high speed backup media |
29
Sample Recovery �Time Objectives (cont.)
RPO | Technology(ies) required |
6-12 hours | Hot systems, recovery from high speed backup media |
3-6 hours | Hot systems, data replication |
1-3 hours | Clustering, data replication |
< 1 hour | Clustering, near real time data replication |
30
Criticality Analysis
31
Improve System and �Process Resilience
32
Develop Business Continuity and Recovery Plans
Select Recovery Team Members
34
Emergency Response
35
Emergency Response (cont.)
36
Damage Assessment and Salvage
37
Notification
38
Personnel Safety
39
Communications
40
Public Utilities and Infrastructure
41
Logistics and Supplies
42
Business Resumption Planning
43
Restoration and Recovery
44
Improving System Resilience �and Recovery
45
Training Staff
46
Testing Business Continuity �and Disaster Recovery Plans
Testing Business Continuity �and Disaster Recovery Plans
48
Document Review
49
Walkthrough
50
Simulation
51
Parallel Test
52
Cutover Test
53
Thank You
54