SlideShare a Scribd company logo
1 of 57
Implementing business continuity with  BS25999  standard  Presenter Dennis Kaburu
What is BS 25999? ,[object Object],[object Object],[object Object]
BS25999-1 :code of Practice ,[object Object],[object Object],[object Object],[object Object]
What does BS25999-1 do? ,[object Object],[object Object],[object Object],[object Object]
What are the outcomes of BS25999-1? ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
BS25999-2 :Specification ,[object Object],[object Object]
How BS25999-2 does this? ,[object Object],[object Object],[object Object],[object Object],[object Object]
The BCM lifecycle as contained in BS 25999 is illustrated below
1.  BCM Culture ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
BCM Culture ,[object Object],[object Object],[object Object],[object Object],[object Object]
Embedding BCM in the organization's culture ,[object Object]
BCM  Documentation ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
BCM  Documentation (contd) ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Determining BC Strategy ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Developing and implementing a BCM response ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
[object Object],[object Object],[object Object]
Incident Timeline
[object Object]
4.  The  I ncident  M anagement  P lan  ( IMP) ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
6.  The  B usiness  C ontinuity  P lan(s) [BCP(s)] ,[object Object],[object Object],[object Object]
7.  Contents of the BCP ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
7.  Contents of the BCP ,[object Object],[object Object],[object Object],[object Object],[object Object]
7.  Contents of the BCP ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
7.  Contents of the BCP ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
7.  Contents of the BCP ,[object Object],[object Object],[object Object],[object Object]
Creating a BCP ,[object Object],[object Object],[object Object],[object Object],[object Object]
The five BCP phases ,[object Object],[object Object],[object Object],[object Object],[object Object]
I - Project management & initiation ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
II - Business Impact Analysis (BIA) ,[object Object],[object Object]
II - Business Impact Analysis (BIA) ,[object Object],[object Object]
II - BIA phases  ,[object Object],[object Object],[object Object],[object Object],[object Object]
II - BIA phases (continued) ,[object Object],[object Object],[object Object],[object Object]
III – Recovery strategies ,[object Object],[object Object],[object Object]
III – Recovery strategies ,[object Object],[object Object],[object Object],[object Object],[object Object]
III – Recovery strategies ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
III – Recovery strategies ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
IV – BCP development / implementation ,[object Object],[object Object],[object Object],[object Object],[object Object]
IV – BCP development / implementation ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
V – BCP final phase ,[object Object],[object Object],[object Object],[object Object]
V – BCP final phase - testing ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
V – BCP final phase - maintenance ,[object Object],[object Object],[object Object],[object Object],[object Object]
V – BCP final phase  ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
V – BCP final phase ,[object Object],[object Object],[object Object],[object Object]
BCM Awareness ,[object Object],[object Object],[object Object],[object Object]
BCM Awareness ,[object Object],[object Object],[object Object],[object Object],[object Object]

More Related Content

Similar to Implementing Business Continuity With The Bs25999 Standard By Dennis

Big is beautiful - Defind Contribution Pension Schemes & Master Trusts
Big is beautiful - Defind Contribution Pension Schemes & Master TrustsBig is beautiful - Defind Contribution Pension Schemes & Master Trusts
Big is beautiful - Defind Contribution Pension Schemes & Master TrustsRichard Butcher
 
Business Continuity (ISO22301) is relevant to PCI DSS v3.2.1 【Continuous Study】
Business Continuity (ISO22301) is relevant to PCI DSS v3.2.1 【Continuous Study】Business Continuity (ISO22301) is relevant to PCI DSS v3.2.1 【Continuous Study】
Business Continuity (ISO22301) is relevant to PCI DSS v3.2.1 【Continuous Study】Jerimi Soma
 
NQA ISO 22301 Business Continuity Checklist
NQA ISO 22301 Business Continuity ChecklistNQA ISO 22301 Business Continuity Checklist
NQA ISO 22301 Business Continuity ChecklistNQA
 
Strategy Implementation of Financial and General Services Development (FGSD)
Strategy Implementation of Financial and General Services Development (FGSD)  Strategy Implementation of Financial and General Services Development (FGSD)
Strategy Implementation of Financial and General Services Development (FGSD) jo bitonio
 
Healthcare Business Continuity Planning - BCP
Healthcare Business Continuity Planning - BCPHealthcare Business Continuity Planning - BCP
Healthcare Business Continuity Planning - BCPMohammed Al Ayoubi
 
TISA-Important-Business-Services-Guide-November-2021.pdf
TISA-Important-Business-Services-Guide-November-2021.pdfTISA-Important-Business-Services-Guide-November-2021.pdf
TISA-Important-Business-Services-Guide-November-2021.pdfAbdetaImi
 
Business continuity management www.reconglobal.in
Business continuity management   www.reconglobal.inBusiness continuity management   www.reconglobal.in
Business continuity management www.reconglobal.inSatya Yadav
 
You have been hired as a consultant to design BCP for SanGrafix, a v.docx
You have been hired as a consultant to design BCP for SanGrafix, a v.docxYou have been hired as a consultant to design BCP for SanGrafix, a v.docx
You have been hired as a consultant to design BCP for SanGrafix, a v.docxshantayjewison
 
Grooming A BCM Culture Eneni Oduwoles Ambci
Grooming A BCM Culture  Eneni Oduwoles AmbciGrooming A BCM Culture  Eneni Oduwoles Ambci
Grooming A BCM Culture Eneni Oduwoles AmbciEneni Oduwole
 
Ea As A Strategy M Veeraragaloo Approach
Ea As A Strategy   M Veeraragaloo ApproachEa As A Strategy   M Veeraragaloo Approach
Ea As A Strategy M Veeraragaloo ApproachMaganathin Veeraragaloo
 
Module 3 business continuity student slides ver 1.0
Module 3 business continuity   student slides ver 1.0Module 3 business continuity   student slides ver 1.0
Module 3 business continuity student slides ver 1.0Aladdin Dandis
 
5 Is For Grooming A Bcm Culture Eneni Oduwoles Presentation
5 Is For Grooming A Bcm Culture   Eneni Oduwoles Presentation5 Is For Grooming A Bcm Culture   Eneni Oduwoles Presentation
5 Is For Grooming A Bcm Culture Eneni Oduwoles PresentationEneni Oduwole
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity PlanningDipankar Ghosh
 
BCM Presentation.ppt
BCM Presentation.pptBCM Presentation.ppt
BCM Presentation.pptauditgamer
 
RICS New Rules of Measurement - RICS Article
RICS New Rules of Measurement - RICS ArticleRICS New Rules of Measurement - RICS Article
RICS New Rules of Measurement - RICS ArticleDonnie MacNicol
 
Crafting a Robust Business-Continuity Strategy: Key Steps and Best Practices
Crafting a Robust Business-Continuity Strategy: Key Steps and Best PracticesCrafting a Robust Business-Continuity Strategy: Key Steps and Best Practices
Crafting a Robust Business-Continuity Strategy: Key Steps and Best PracticesBluechip Gulf IT Services
 
Improving the alignment of strategic objectives in the outsourced projects ma...
Improving the alignment of strategic objectives in the outsourced projects ma...Improving the alignment of strategic objectives in the outsourced projects ma...
Improving the alignment of strategic objectives in the outsourced projects ma...Edilson Giffhorn
 
Article on Emergency Management and Corporate Certification
Article on Emergency Management and Corporate CertificationArticle on Emergency Management and Corporate Certification
Article on Emergency Management and Corporate CertificationThomas Bronack
 

Similar to Implementing Business Continuity With The Bs25999 Standard By Dennis (20)

Big is beautiful - Defind Contribution Pension Schemes & Master Trusts
Big is beautiful - Defind Contribution Pension Schemes & Master TrustsBig is beautiful - Defind Contribution Pension Schemes & Master Trusts
Big is beautiful - Defind Contribution Pension Schemes & Master Trusts
 
Business Continuity (ISO22301) is relevant to PCI DSS v3.2.1 【Continuous Study】
Business Continuity (ISO22301) is relevant to PCI DSS v3.2.1 【Continuous Study】Business Continuity (ISO22301) is relevant to PCI DSS v3.2.1 【Continuous Study】
Business Continuity (ISO22301) is relevant to PCI DSS v3.2.1 【Continuous Study】
 
NQA ISO 22301 Business Continuity Checklist
NQA ISO 22301 Business Continuity ChecklistNQA ISO 22301 Business Continuity Checklist
NQA ISO 22301 Business Continuity Checklist
 
Strategy Implementation of Financial and General Services Development (FGSD)
Strategy Implementation of Financial and General Services Development (FGSD)  Strategy Implementation of Financial and General Services Development (FGSD)
Strategy Implementation of Financial and General Services Development (FGSD)
 
Chris Gould - BCM case
Chris Gould - BCM caseChris Gould - BCM case
Chris Gould - BCM case
 
Healthcare Business Continuity Planning - BCP
Healthcare Business Continuity Planning - BCPHealthcare Business Continuity Planning - BCP
Healthcare Business Continuity Planning - BCP
 
TISA-Important-Business-Services-Guide-November-2021.pdf
TISA-Important-Business-Services-Guide-November-2021.pdfTISA-Important-Business-Services-Guide-November-2021.pdf
TISA-Important-Business-Services-Guide-November-2021.pdf
 
Business continuity management www.reconglobal.in
Business continuity management   www.reconglobal.inBusiness continuity management   www.reconglobal.in
Business continuity management www.reconglobal.in
 
You have been hired as a consultant to design BCP for SanGrafix, a v.docx
You have been hired as a consultant to design BCP for SanGrafix, a v.docxYou have been hired as a consultant to design BCP for SanGrafix, a v.docx
You have been hired as a consultant to design BCP for SanGrafix, a v.docx
 
Grooming A BCM Culture Eneni Oduwoles Ambci
Grooming A BCM Culture  Eneni Oduwoles AmbciGrooming A BCM Culture  Eneni Oduwoles Ambci
Grooming A BCM Culture Eneni Oduwoles Ambci
 
Ea As A Strategy M Veeraragaloo Approach
Ea As A Strategy   M Veeraragaloo ApproachEa As A Strategy   M Veeraragaloo Approach
Ea As A Strategy M Veeraragaloo Approach
 
Iso 22301 Checklist
Iso 22301 ChecklistIso 22301 Checklist
Iso 22301 Checklist
 
Module 3 business continuity student slides ver 1.0
Module 3 business continuity   student slides ver 1.0Module 3 business continuity   student slides ver 1.0
Module 3 business continuity student slides ver 1.0
 
5 Is For Grooming A Bcm Culture Eneni Oduwoles Presentation
5 Is For Grooming A Bcm Culture   Eneni Oduwoles Presentation5 Is For Grooming A Bcm Culture   Eneni Oduwoles Presentation
5 Is For Grooming A Bcm Culture Eneni Oduwoles Presentation
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity Planning
 
BCM Presentation.ppt
BCM Presentation.pptBCM Presentation.ppt
BCM Presentation.ppt
 
RICS New Rules of Measurement - RICS Article
RICS New Rules of Measurement - RICS ArticleRICS New Rules of Measurement - RICS Article
RICS New Rules of Measurement - RICS Article
 
Crafting a Robust Business-Continuity Strategy: Key Steps and Best Practices
Crafting a Robust Business-Continuity Strategy: Key Steps and Best PracticesCrafting a Robust Business-Continuity Strategy: Key Steps and Best Practices
Crafting a Robust Business-Continuity Strategy: Key Steps and Best Practices
 
Improving the alignment of strategic objectives in the outsourced projects ma...
Improving the alignment of strategic objectives in the outsourced projects ma...Improving the alignment of strategic objectives in the outsourced projects ma...
Improving the alignment of strategic objectives in the outsourced projects ma...
 
Article on Emergency Management and Corporate Certification
Article on Emergency Management and Corporate CertificationArticle on Emergency Management and Corporate Certification
Article on Emergency Management and Corporate Certification
 

More from Discover JKUAT

Paper on entrepreneurship and organization performance - Samule Obino Mokaya
Paper on entrepreneurship and organization performance - Samule Obino MokayaPaper on entrepreneurship and organization performance - Samule Obino Mokaya
Paper on entrepreneurship and organization performance - Samule Obino MokayaDiscover JKUAT
 
Project control tools by Samuel obino mokaya
Project control tools by Samuel obino mokayaProject control tools by Samuel obino mokaya
Project control tools by Samuel obino mokayaDiscover JKUAT
 
Paper on risk management by Samuel Obino Mokaya
Paper on risk management by Samuel Obino MokayaPaper on risk management by Samuel Obino Mokaya
Paper on risk management by Samuel Obino MokayaDiscover JKUAT
 
Paper on intrepreneurship and organization performance by Samuel Obino Mokaya
Paper on intrepreneurship and organization performance by Samuel Obino MokayaPaper on intrepreneurship and organization performance by Samuel Obino Mokaya
Paper on intrepreneurship and organization performance by Samuel Obino MokayaDiscover JKUAT
 
Project monitoring and evaluation by Samuel Obino Mokaya
Project monitoring and evaluation by Samuel Obino MokayaProject monitoring and evaluation by Samuel Obino Mokaya
Project monitoring and evaluation by Samuel Obino MokayaDiscover JKUAT
 
Information Security Management Systems(ISMS) By Dr Wafula
Information Security Management Systems(ISMS) By Dr  WafulaInformation Security Management Systems(ISMS) By Dr  Wafula
Information Security Management Systems(ISMS) By Dr WafulaDiscover JKUAT
 

More from Discover JKUAT (6)

Paper on entrepreneurship and organization performance - Samule Obino Mokaya
Paper on entrepreneurship and organization performance - Samule Obino MokayaPaper on entrepreneurship and organization performance - Samule Obino Mokaya
Paper on entrepreneurship and organization performance - Samule Obino Mokaya
 
Project control tools by Samuel obino mokaya
Project control tools by Samuel obino mokayaProject control tools by Samuel obino mokaya
Project control tools by Samuel obino mokaya
 
Paper on risk management by Samuel Obino Mokaya
Paper on risk management by Samuel Obino MokayaPaper on risk management by Samuel Obino Mokaya
Paper on risk management by Samuel Obino Mokaya
 
Paper on intrepreneurship and organization performance by Samuel Obino Mokaya
Paper on intrepreneurship and organization performance by Samuel Obino MokayaPaper on intrepreneurship and organization performance by Samuel Obino Mokaya
Paper on intrepreneurship and organization performance by Samuel Obino Mokaya
 
Project monitoring and evaluation by Samuel Obino Mokaya
Project monitoring and evaluation by Samuel Obino MokayaProject monitoring and evaluation by Samuel Obino Mokaya
Project monitoring and evaluation by Samuel Obino Mokaya
 
Information Security Management Systems(ISMS) By Dr Wafula
Information Security Management Systems(ISMS) By Dr  WafulaInformation Security Management Systems(ISMS) By Dr  Wafula
Information Security Management Systems(ISMS) By Dr Wafula
 

Recently uploaded

Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CVKhem
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAndrey Devyatkin
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfsudhanshuwaghmare1
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native ApplicationsWSO2
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024The Digital Insurer
 
Corporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxCorporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxRustici Software
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...DianaGray10
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobeapidays
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...Martijn de Jong
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Jeffrey Haguewood
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodJuan lago vázquez
 
A Beginners Guide to Building a RAG App Using Open Source Milvus
A Beginners Guide to Building a RAG App Using Open Source MilvusA Beginners Guide to Building a RAG App Using Open Source Milvus
A Beginners Guide to Building a RAG App Using Open Source MilvusZilliz
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FMESafe Software
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyKhushali Kathiriya
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherRemote DBA Services
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...apidays
 
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...Zilliz
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...apidays
 

Recently uploaded (20)

Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native Applications
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024
 
Corporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxCorporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptx
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
A Beginners Guide to Building a RAG App Using Open Source Milvus
A Beginners Guide to Building a RAG App Using Open Source MilvusA Beginners Guide to Building a RAG App Using Open Source Milvus
A Beginners Guide to Building a RAG App Using Open Source Milvus
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : Uncertainty
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 

Implementing Business Continuity With The Bs25999 Standard By Dennis

  • 1. Implementing business continuity with BS25999 standard Presenter Dennis Kaburu
  • 2.
  • 3.
  • 4.
  • 5.
  • 6.
  • 7.
  • 8. The BCM lifecycle as contained in BS 25999 is illustrated below
  • 9.
  • 10.
  • 11.
  • 12.
  • 13.
  • 14.
  • 15.
  • 16.
  • 17.
  • 18.
  • 19.
  • 20.
  • 21.
  • 22.
  • 23.
  • 24.
  • 25.
  • 26.
  • 27.
  • 28.
  • 30.
  • 31.
  • 32.
  • 33.
  • 34.
  • 35.
  • 36.
  • 37.
  • 38.
  • 39.
  • 40.
  • 41.
  • 42.
  • 43.
  • 44.
  • 45.
  • 46.
  • 47.
  • 48.
  • 49.
  • 50.
  • 51.
  • 52.
  • 53.
  • 54.
  • 55.
  • 56.
  • 57.

Editor's Notes

  1. The PDCA cycle is the means of ensuring that business continuity is effectively managed and improved.PDCA cycle applies to all parts of the BCM cycle.
  2. Initial creation of the plan is treated like a project, using traditional project management techniques. However, business needs change, new processes may be added. If they are “critical,” they must become part of the BCP. Part of the project to create the BCP must build in business processes for plan maintenance.
  3. Phases are covered in detail in next slides
  4. If you don’t establish need, how can you get management support? A BCP costs a lot to develop and maintain. No ROI either. Functional leads are necessary because the IT staff don’t understand the business. The BCC is the project manager for the BCP creation, the most important person. The work plan will be like the phases of a traditionally managed project
  5. A lot of the BCP creation is driven by the MTDs assigned to various business functions, so the BIA is very important.
  6. On the second bullet, for instance, the question is not “how likely is it we’ll suffer a total loss of our data center from a fire?” The question is “what would be the loss to the business if we suffered the total loss of our data center?” Some losses may be quantified fairly exactly. Others have to be estimated as carefully as possible. An example of the latter would the cost to the business in loss of consumer confidence from an extended outage. For instance, what if Purdue were unable to hold classes for four weeks because we couldn’t deliver our electronic instruction? How would parents of potential Purdue students react to that? And how much would it cost?
  7. There are nine phases to the BIA. Selection of interviewees is very important. These will be the subject matter experts from the business units, and they have to be the people who know the business. Customize questionnaire: there is no standard set of questions – it varies with each business Time-criticality – some processes are more critical than others. Printing a payroll is important, but not time-critical usually. if you’re Amazon.com, keeping your web site up is critical. The business won’t go under if you print paychecks a couple of days late, but they would lose millions in potential revenue if their web site were down for a day. The BIA aims to rank-order business processes in these terms.
  8. MTD – maximum tolerable downtime MAO – maximum allowable downtime Recovery options will range in price and effort – must match them appropriately with the criticality of business functions
  9. Predefined means we don’t have to make it up as we go along. We have a documented, tested plan in place. Management approved means you will get the resources to implement the BCP.
  10. Driven by business requirements means going back to the BIA, which identified critical business processes and ranked them in terms of the MTD/MAO.
  11. Business operations were enumerated in the BIA – what IT and other requirements are necessary to support them? Facilities and supplies – where do I sit at the DR site? Where is my conference room? Do I get a whiteboard? And by the way, I need a pencil. Users – can manual processes be used as part of DR? If so, how does the manual processing get integrated back into the electronic processing later? Do we need housing, transportation? Recovery of data centers and networks is an obvious necessity requiring careful planning. There are technical solutions available, though. (Bring money.) You mean we’ve got all these computers in the DR site and no data? Who forgot the DATA?? I’m only going to go into detail on the last two bullets. The first three are also quite detailed planning processes.
  12. Full backups are what you think they are – everything. Incremental backups are files changed since *previous* backup, which might be a full backup or an incremental. Potentially a long recovery period. Differential backups are all files changed since previous full backup – quicker recovery. Continuous backups – like a journal file system, or like Oracle’s Dataguard hot spare environment. Geographically separated systems are kept up to date in real time.
  13. Step one above is what you might think of as the BCP, but the next 3 bullets are equally important.
  14. Plan phases – i.e., what would happen if a disaster occurred. The last phase, interacting with external entities, may actually begin immediately, probably with the decision that a disaster has occurred and the business is going to implement the BCP. An initial communication may be out to stakeholders at that point.
  15. Structured walk-through – step-by-step review of the BCP by functional reps who meet together – no one is actually walking anywhere Checklist – similar to SWT but checklists are distributed to business units, who review the checklists individually Simulation – kind of like “war games” – simulation stops at point where equipment would be relocated Parallel – DR site is put into full operation without taking down the primary – results compared between the two Full interruption – Full-scale test of BCP by a planned fail-over to the secondary site and fail-back to the primary. Risky. Note: more than one kind of test may be useful. For instance, a simulation and a parallel test complement each other.