Emergencies: Protecting Staff & Assets. Presented By: Tom Heebner, CSP, ARM, ABCP AVP / Risk Consultant HUB International Limited

Size: px
Start display at page:

Download "Emergencies: Protecting Staff & Assets. Presented By: Tom Heebner, CSP, ARM, ABCP AVP / Risk Consultant HUB International Limited"

Transcription

1 Emergencies: Protecting Staff & Assets Presented By: Tom Heebner, CSP, ARM, ABCP AVP / Risk Consultant HUB International Limited

2 Agenda Why is Planning Important? Lessons Learned From Recent Events The Planning Process Where Should You Go From Here? Preparing Your Staff

3 WHY IS PLANNING IMPORTANT?

4 OSHA Emergency Action Plan Requirements Means of reporting fires or other emergencies Evacuation procedures and emergency escape route assignments Procedures to be followed by employees who remain to operate critical operations before they evacuate Procedures to account for all employees after an emergency evacuation has been completed Rescue and medical duties for those employees who are to perform them Names or job titles of persons who can be contacted for further information or explanation of duties under the plan

5 Events Impact. People Facilities & Assets Technology Operations Customer Trust Customer Confidence

6 Events Result In Loss of Life and/or Loss of Property Other significant losses Reduced Productivity Financial Interrupted Services Damaged Reputation Other Expenses

7 Benefits of Good Planning. Decreases notification time Improves coordination of resources Safeguard health and safety Minimize property damage and business interruption Restore critical functions quickly Maintain revenue stream / avoid loss of market share Increases an organization s public image Businesses & Governments Response / Continuity Teams Prepared Organization Plans, Training & Exercising Occupants and Visitors

8 Statistics Show Companies that aren t able to resume operations within ten days are not likely to survive 50% will be out of business within five years 75% of companies without business continuity plans fail within three years of a disaster Of those businesses that experience a disaster and have no plan 43% never reopen Of those that do reopen, only 29% are still operating two years later

9 LESSONS LEARNED FROM RECENT EVENTS

10 Lessons of September 11th, 2001 All types of threats must be considered Plans must be updated and tested frequently Dependencies and interdependencies should be carefully analyzed Key personnel may be unavailable Telecommunications are essential Alternate sites for IT backup should not be situated close to the primary site Employee support (counseling) is important Copies of plans should be stored at a secure off-site location Sizable security perimeters can impede personnel

11 Lessons From Hurricane Sandy Just because you are not on the coastline when a storm strikes doesn t mean you will not be heavily affected. It is important to identify establish notification processes with your employees and to utilize multiple channels to communicate (ex. SMS, Twitter, landline, , etc.). Although it may take some time, having a relationship with a restoration contractor before an event is invaluable. Fuel was not easy to come by following Hurricane Sandy and without fuel many could not operate their vehicle, chainsaws, generators and other equipment that was needed to be used during the recovery. Although we routinely pay for items using credit cards or by quickly going to an ATM machine, these items aren t likely to work if there is a power outage. When you have a claim, it is important to call your insurance carriers and report it as soon as possible and not speculate as to the cause.

12 Lessons From a Practice Fire The fire started at another property The fire department had not visited the practice prior to the event The practice manager indicated the fireman had to consult with their technicians to assess the layout of the practice and to identify the locations of special hazards The practice worked very hard on keeping in contact with clients throughout the process (relied on social media and local chamber of commerce) The practice had business interruption coverage The practice moved the office to one house and set up a network The practice had a manual data backup process and was successful in backing up data before the event The Practice Manager wishes they had planned and had a better idea of what they would do to keep things moving after the incident

13 Medical Emergencies Adjacent Facility Emergency Workplace Violence Fire/Explosion Bomb Threat Loss of Utilities (steam, electricity, natural gas) Hazardous Materials Release Technological Issues Potential Events Transportation Accident Terrorist Attack - CBRNE Suspicious Package Civil Disorders Flooding, Tornado, Earthquake and other Natural Hazards Contamination of Food/Water Structural Collapse Emerging Diseases What Else?

14 THE PLANNING PROCESS

15 The Big Picture Understand Your Business Develop Risk Mitigation Strategies Develop BCM Strategies Establish Planning Committee Review Organizational Strategy Business Impact Analysis Risk Assessment Protection Systems Hazard Elimination / Process Change Duplication of Resources Alternate Operating Strategies Corporate Strategy Process Level Strategy Resource Recovery Strategy Department Business Functions Business Process Steps Emergency Response Crisis Management Development BCM Documentation Emergency Response Plan Crisis Management Plan Business Continuity/Recovery Plan People IT Support Components Records Voice & Data Equip & Hardware Suppliers & Vendors Facilities Business Continuation BCM Implementation & Training Assessing Awareness Develop / Monitor Awareness, Skills, & Culture * Business Continuity Programs reduce risk through upfront mitigation and post disaster response, recovery and restoration BCM Exercising, Maintenance & Auditing

16 Lifecycle of an Event Business Continuity Detection Crisis Management Recovery Emergency Response Minutes Hours Weeks

17 Intensity Levels of Phases Emergency Response Crisis Management Business Restoration Normalization (Recovery) Intensity

18 DISASTER MANAGEMENT ERP: Emergency Response Plan Event Driven Response (Site Impact) Contamination, Bomb-threat, Fire, Earthquake, Wind, Etc. ERP IT-DRP Depending on Event, The integration of all Plans is Possible. IT-DRP: IT Disaster Recovery Plan (Technology - Voice & Data Impact) Network Failure, Sabotage, Virus, Physical Loss of Systems Etc. BCP CMP: Crisis Management Plan Event Escalation Response (Corporate Impact) Non-physical or physical impacts, Examples: Exxon Valdez Oil Spill, J&J Tylenol Tampering Hudson Foods Meat Threat CMP BCP: Business Continuity Plan Time Driven Response (Site and Business and Image Impact) Infrastructure Disruptions, Business Unit Disruptions, Department Disruptions (Failure to deliver product or service)

19 WHERE SHOULD YOU GO FROM HERE?

20 What plans does a practice need? Crisis Management Plan Emergency Response Plan Business Continuity Plan IT Disaster Recovery Plan

21 Focus on Outcomes Not Causes 1. Loss of Technology the technology you use is not available or doesn t work (telephone, website, accounting systems, membership databases, etc.) 2. Loss of a Building all or part of building is destroyed or out of action 3. Denial of Access to a building your staff and/or tenants are not allowed into their place of work

22 Focus on Outcomes Not Causes cont. Scenarios cont. 4. Loss of Staff key staff are unable to attend work (chain of command, cross training needs, etc.) 5. Loss of a Supplier a supplier or vendor is unable to provide critical services, products or resources (contractors, consultants, etc.)

23 Business Impact Analysis Identify the risks that threaten the operations Identify Critical Functions Analyze/Estimate impact on business operations Indentify/Analyze Resources/Capabilities

24 Risk & Vulnerability Assessment Naturally Occurring Human-Caused Technological Hazards Fire/Explosion Natural Hazards Terrorism Workplace Violence Pandemic Disease Utility Outage Assets at Risk People Buildings Equipment Information Technology Business Operations Cash/Financial Assets Impacts Casualties Property Damage Business Interruption Loss of Customers Financial Loss Fines/Penalties Lawsuits Hazard Identification Vulnerability Assessment Impact Analysis

25 Disaster Declarations (Federal)

26 Critical Functions Assessment Identify all organization functions Identify critical processes/services Identify dependencies & interdependencies Identify priorities Recovery Time Objective (RTO) Staff Facility / Equipment Technology Files *Critical Function - Function that must be delivered during a disruption, even if it is at a reduced level, for the business to survive (ex. payroll, online systems, accounts payable)

27 Internal Personnel Equipment Facilities Organizational capabilities Resource Assessment External Local emergency management office Fire / Police Departments Hazmat Response Emergency medical services Utilities Critical Contractors / Suppliers

28 Mitigate risks that threaten the health and safety of people, company assets, operations, or the environment Mitigation Strategies Hazard Elimination / Minimization Installation of Protection Systems Duplication of Critical Resources / Processes Relocation (personnel/patients) Qualification of Secondary Suppliers Outsourcing

29 Example Mitigation Strategies Substitution of Less Hazardous Components Fire Protection/Suppression Systems Security Systems/Controls Building Construction Vendor Readiness IT Backup Strategies / DR Sites

30 Business Continuity Strategies Corporate Process-Level Resource Recovery Workarounds Remote Working Mutual Agreements Third-Party Alternate Sites Outsourcing Do nothing

31 Crisis Management Plan Overview Provides for the safety of personnel Provides step by step action plan for facility and people-related issues Establishes a communication system for response/recovery team mobilization Establishes alternate operating and data processing facilities

32 Emergency Response Plan Overview Management Elements Direction and control Communications Life safety Property protection Community outreach Recovery and restoration Administration and logistics Response Elements Threat-specific procedures Protective Actions Training Resource Management Termination, Reporting, and Follow-up

33 Business Continuity Plan Overview Step-by-step procedures for operating critical business functions during recovery from an incident/disaster Establishes: Pre-positioned contingencies to mitigate the downtime impact on critical business functions Principle: Critical business functions need to be recovered within 48 hours our your business is at risk of failing at recovery

34 IT Disaster Recovery Plan Overview Illustrates how IT supports the business Maps out step-by-step procedures to ensure the recovery of each critical component of the IT infrastructure Hardware Data (electronic and paper) Applications Telecommunications Specialized Equipment Supplies

35 Emergency Call Lists Resource lists Supporting Documentation Detailed Building / Site Maps Business Unit Procedures Alternate Sites Critical Vendor Lists (primary and secondary)

36 EDUCATING & PREPARING YOUR STAFF

37 Relocation Protective Action Planning Used when an emergency is confined to a single floor/area Evacuation Used when potential for massive fire or explosion or when practical Long duration incidents Shelter In Place Short to mid-duration incidents It s a greater hazard to attempt to move or impractical to evacuate

38 In a Disaster, Communication is King! Clear Procedures for Notifying Affected Parties Where to report Emergency Status Easy methods Voic , Hotline, Call Trees, , Public News, Social Media, etc.

39 Training Teams should be organized to execute on plan elements Training should be provided to all team members Orientation / Ongoing Create an awareness campaign for all staff Develop a culture of preparedness

40 General Employee Training Roles and responsibilities Information about threats, hazards and protective actions Notification, warning and communications procedures Emergency response procedures Location / use of common emergency equipment Emergency shutdown procedures BCP Procedures / Alternate Operating Strategies

41 Drills / Exercises Regularly Test/Exercise the Plan Tabletop Functional Full-Scale Test Protective Actions Relocation Evacuation Shelter-in-Place Test Continuity/Recovery Strategies Integrate Internal and External Responders

42 Sample Table Top Exercise 8:00AM Plenty of discussion on the past weekend in the NFL 1:30PM Fire Reported in the kennel area Attempts to extinguish fire were unsuccessful 4 employees report smoke inhalation and are sent to hospital 2:30PM Facilities Crisis Leader completes initial assessment Report of severe damage to 25% of the building; Remainder of facility with only smoke damage 3 employees admitted into the hospital due to injuries/illnesses Media representatives report to location for statement 9:30PM Further assessment estimates a practice downtime is 4-6 weeks What actions should be taken at this point if it were your practice?

43 TAKEAWAYS

44 Gather a team Your Action Items Assess Risks and Vulnerabilities Develop Plans to Mitigate Hazards Develop Plans to Respond to Events Develop a Plan to Ensure Continuity of Your Business Train Update Plans Discuss and Practice Strategies

45 Resources AVMA Emergency Preparedness and Response Guide ( pid=160013&icid=b484&cookie%5ftest=1 Insurance carrier resources Written materials Educational events

46 It can happen, so plan for It before It strikes

47 Questions? Tom Heebner, CSP, ARM, ABCP AVP / Risk Consultant HUB International Risk Services Division P: E: thomas.heebner@hubinternational.com

Business Continuity: How to Keep City Departments in Business after a Disaster

Business Continuity: How to Keep City Departments in Business after a Disaster Business Continuity: How to Keep City Departments in Business after a Disaster Shannon Spence, PE Red Oak Consulting, an ARCADIS group Agenda Security, Resilience and All Hazards The Hazards Cycle and

More information

Table of Contents. Sample

Table of Contents. Sample TABLE OF CONTENTS... 1 CHAPTER 1 INTRODUCTION... 4 1.1 GOALS AND OBJECTIVES... 5 1.2 REQUIRED REVIEW... 5 1.3 APPLICABILITY... 5 1.4 ROLES AND RESPONSIBILITIES SENIOR MANAGEMENT AND BOARD OF DIRECTORS...

More information

Introduction to Business continuity Planning

Introduction to Business continuity Planning Week - 06 Introduction to Business continuity Planning 1 Introduction The purpose of this lecture is to give an overview of what is Business Continuity Planning and provide some guidance and resources

More information

Prepare your Emergency respons, continuity plan, recovery plan

Prepare your Emergency respons, continuity plan, recovery plan Prepare your Emergency respons, continuity plan, recovery plan Panel Discussion with PortAventura,Europa Park, Disneyland Paris,Liseberg,the Safety Committee members with Q & A from attendees Septembre

More information

BCP At Bangkok Bank, Thailand

BCP At Bangkok Bank, Thailand BCP At Bangkok Bank, Thailand Bhakorn Vanuptikul, BCCE Executive Vice President Bangkok Bank Public Company Limited 10 May 2012 1 Agenda Business Continuity Management at Bangkok Bank Success Factors in

More information

Florida State University

Florida State University Florida State University Disaster Recovery & Business Continuity Planning Overview October 24, 2017 1 Key Readiness Questions Has your department identified the business functions and infrastructure that

More information

NHS Gloucestershire Clinical Commissioning Group. Business Continuity Strategy

NHS Gloucestershire Clinical Commissioning Group. Business Continuity Strategy NHS Gloucestershire Clinical Commissioning Group 1 Document Control Title of Document Gloucestershire CCG Author A Ewens (Emergency Planning and Business Continuity Officer) Review Date February 2017 Classification

More information

Business Continuity Management Program Overview

Business Continuity Management Program Overview Business Continuity Management Program Overview Improving the lives of our customers by connecting them to the power of the digital world CenturyLink Key Objective CenturyLink may modify or terminate this

More information

BUSINESS CONTINUITY MANAGEMENT PROGRAM OVERVIEW

BUSINESS CONTINUITY MANAGEMENT PROGRAM OVERVIEW BUSINESS CONTINUITY MANAGEMENT PROGRAM OVERVIEW EXECUTIVE SUMMARY CenturyLink is committed to ensuring business resiliency and survivability during an incident or business disruption. Our Corporate Business

More information

MassMutual Business Continuity Disclosure Statement

MassMutual Business Continuity Disclosure Statement MassMutual Business Continuity Disclosure Statement Overview Resiliency is a high priority at Massachusetts Mutual Life Insurance Company ( MassMutual or the Company ). To that end, significant investments

More information

Facilities Management and Business Continuity. 10 May 2017

Facilities Management and Business Continuity. 10 May 2017 Facilities Management and Business Continuity 10 May 2017 1 Introductions Business Continuity Institute BCI SADC Chapter The Caridon Group 2 The BCI 3 The Caridon Group Consulting Group of select experienced

More information

THE LINK BETWEEN ENTERPRISE RISK MANAGEMENT AND DISASTER MANAGEMENT

THE LINK BETWEEN ENTERPRISE RISK MANAGEMENT AND DISASTER MANAGEMENT THE LINK BETWEEN ENTERPRISE RISK MANAGEMENT AND DISASTER MANAGEMENT International Recovery Forum 2014 ~ The Role of Private Sector in Disaster Recovery ~ 21 January 2014 Kobe, Japan Dr Janet L. Asherson

More information

Railroad Infrastructure Security

Railroad Infrastructure Security TRB Annual Meeting January 14, 2002 Session 107 - Railroad Security William C. Thompson william.thompson@jacobs.com 402-697-5011 Thanks to: Bob Ulrich Dr. William Harris Byron Ratcliff Frank Thigpen John

More information

NATIONAL CAPITAL REGION HOMELAND SECURITY STRATEGIC PLAN SEPTEMBER 2010 WASHINGTON, DC

NATIONAL CAPITAL REGION HOMELAND SECURITY STRATEGIC PLAN SEPTEMBER 2010 WASHINGTON, DC NATIONAL CAPITAL REGION HOMELAND SECURITY STRATEGIC PLAN SEPTEMBER 2010 WASHINGTON, DC Draft Version incorporating Management Review [MR] Edits and Comments Document Date: July 2013 Goal One: Ensure Interoperable

More information

Business Continuity Policy

Business Continuity Policy Business Continuity Policy Version Number: 3.6 Page 1 of 14 Business Continuity Policy First published: 07-01-2014 Amendment record Version Date Reviewer Comment 1.0 07/01/2014 Debbie Campbell 2.0 11/07/2014

More information

Business continuity management and cyber resiliency

Business continuity management and cyber resiliency Baker Tilly refers to Baker Tilly Virchow Krause, LLP, an independently owned and managed member of Baker Tilly International. Business continuity management and cyber resiliency Introductions Eric Wunderlich,

More information

Business Continuity - An Inside Perspective

Business Continuity - An Inside Perspective Business Continuity - An Inside Perspective Tom McIlvaine Business Continuity Manager May 24, 2011 Agenda Where It All Begins Private Sector & Government Applicability Business Continuity Planning A Corporate

More information

Template. IT Disaster Recovery Planning: A Template

Template. IT Disaster Recovery Planning: A Template Template IT Disaster Recovery Planning: A Template When disaster strikes, business suffers. A goal of business planning is to mitigate disruption of product and services delivery to the greatest degree

More information

Disaster Recovery and Business Continuity Planning (Mile2)

Disaster Recovery and Business Continuity Planning (Mile2) Disaster Recovery and Business Continuity Planning (Mile2) Course Number: DRBCP Length: 4 Day(s) Certification Exam This course will help you prepare for the following exams: ABCP: Associate Business Continuity

More information

Public and Private Interdependencies Filling a Gap in Most Continuity Plans

Public and Private Interdependencies Filling a Gap in Most Continuity Plans Public and Private Interdependencies Filling a Gap in Most Continuity Plans John A Jackson Executive Vice President Fusion Risk Management, Inc. The evolution of the continuity industrytechnology advancement

More information

Disaster Recovery Planning: Is Your Plan in Place? Presented by: Steve Shofner, CISA, CGEIT

Disaster Recovery Planning: Is Your Plan in Place? Presented by: Steve Shofner, CISA, CGEIT Disaster Recovery Planning: Is Your Plan in Place? Presented by: Steve Shofner, CISA, CGEIT 1 The material appearing in this presentation is for informational purposes only and is not legal or accounting

More information

Business Continuity Planning

Business Continuity Planning Business Continuity Planning The Unexpected Happens Be Ready Copyright -Business Survival Partners, llc. 2011 - All Rights Reserved www.survivalpartners.biz RISK 2 Risks to National Security A secure and

More information

Emergency Management & Disaster Planning

Emergency Management & Disaster Planning Emergency Management & Disaster Planning What we re going to talk about What is Emergency Management and Disaster Planning? What are the key elements of an EM Plan? Where does the University Architect

More information

TSC Business Continuity & Disaster Recovery Session

TSC Business Continuity & Disaster Recovery Session TSC Business Continuity & Disaster Recovery Session Mohamed Ashmawy Infrastructure Consulting Pursuit Hewlett-Packard Enterprise Saudi Arabia Mohamed.ashmawy@hpe.com Session Objectives and Outcomes Objectives

More information

TEL2813/IS2820 Security Management

TEL2813/IS2820 Security Management TEL2813/IS2820 Security Management Contingency Planning Jan 22, 2008 Introduction Planning for the unexpected event, when the use of technology is disrupted and business operations come close to a standstill

More information

Implementing a Global Business

Implementing a Global Business GLOBAL OPERATIONS Implementing a Global Business Continuity Management Program Disaster Recovery Journal Spring World 2010 Conference Pfizer Inc. Managing Business Continuity on a Global Scale This presentation

More information

PECB Change Log Form

PECB Change Log Form GENERAL INFORMATION Owner / Department* Approver / Department * Training Development Department Quality Assurance Department Date of Approval* 2019-01-09 Course name: Language: New Version: Previous Version:

More information

Appendix 3 Disaster Recovery Plan

Appendix 3 Disaster Recovery Plan Appendix 3 Disaster Recovery Plan DRAFT March 5, 2007 Revision XX Qwest Government Services, Inc. 4250 North Fairfax Drive Arlington, VA 22203 A3-i RFP: TQC-JTB-05-0002 March 5, 2007 REVISION HISTORY Revision

More information

HOTEL RESILIENT Plan ahead stay ahead. With support from the German Government through

HOTEL RESILIENT Plan ahead stay ahead. With support from the German Government through HOTEL RESILIENT Plan ahead stay ahead With support from the German Government through WHAT CAN GO WRONG WILL GO WRONG Murphy s Law More than 40% of hotels do not reopen after large disasters FEMA 2010

More information

NUIT Tech Talk. Emergency Preparedness. March 1, Sharlene Mielke. Jay Bagley. Disaster Recovery / Business Continuity Coordinator

NUIT Tech Talk. Emergency Preparedness. March 1, Sharlene Mielke. Jay Bagley. Disaster Recovery / Business Continuity Coordinator NUIT Tech Talk Emergency Preparedness March 1, 2011 Sharlene Mielke Disaster Recovery / Business Continuity Coordinator Jay Bagley Distributed Support Specialist Information and Systems Security/Compliance

More information

securivy INFORMATION SYSTEMS MANAGEMENT ILLINOIS INSTITUTE OF TECHNOLOGY A New Model for Business Contingency Operations Ray Trygstad

securivy INFORMATION SYSTEMS MANAGEMENT ILLINOIS INSTITUTE OF TECHNOLOGY A New Model for Business Contingency Operations Ray Trygstad information technology & management INFORMATION SYSTEMS securivy t MANAGEMENT ILLINOIS INSTITUTE OF TECHNOLOGY A New Model for Business Contingency Operations Ray Trygstad 2008 Ray Trygstad Director of

More information

South East Region THIRA

South East Region THIRA South East Region THIRA The THIRA follows a four-step process, as described in Comprehensive Preparedness Guide 201, Second Edition: 1. Identify the Threats and Hazards of Concern. Based on a combination

More information

Contingency Planning

Contingency Planning Contingency Planning Introduction Planning for the unexpected event, when the use of technology is disrupted and business operations come close to a standstill Procedures are required that will permit

More information

Corporate Security & Emergency Management Summary of Submitted 2015 Budget From Rates

Corporate Security & Emergency Management Summary of Submitted 2015 Budget From Rates Corporate Security & Emergency Management Summary of Submitted 2015 From Rates Service Expense 2014 2015 Revised Non Tax Revenue Net Tax Supported Expense Draft Non Tax Revenue Net Tax Supported Increase

More information

INFORMATION SECURITY- DISASTER RECOVERY

INFORMATION SECURITY- DISASTER RECOVERY Information Technology Services Administrative Regulation ITS-AR-1505 INFORMATION SECURITY- DISASTER RECOVERY 1.0 Purpose and Scope The objective of this Administrative Regulation is to outline the strategy

More information

2 ESF 2 Communications

2 ESF 2 Communications 2 ESF 2 Communications THIS PAGE LEFT BLANK INTENTIONALLY Table of Contents 1 Introduction... 1 1.1 Purpose and Scope... 1 1.2 Relationship to Other ESF Annexes... 1 1.3 Policies and Agreements... 1 2

More information

Introduction to Business Continuity Management

Introduction to Business Continuity Management Introduction to Business Continuity Management Audio Presented by ABD s Occupational Health and Safety Team Featuring The Cross Connection JULY 24, 2018 Speaker Panel ABD Insurance & Financial Services

More information

Introduction. Overview. Every Crisis Management Team Needs a Critical Decision Checklist. Presented by Roseanne Rostron, CBCP President Raido Response

Introduction. Overview. Every Crisis Management Team Needs a Critical Decision Checklist. Presented by Roseanne Rostron, CBCP President Raido Response Every Crisis Management Team Needs a Critical Decision Checklist Presented by Roseanne Rostron, CBCP President Raido Response Tuesday, May 9, 2006 Introduction Roseanne Rostron, CBCP - President Raido

More information

National Level Exercise 2018 After-Action Findings

National Level Exercise 2018 After-Action Findings National Level Exercise 2018 After-Action Findings National Level Exercise (NLE) 2018 examined the ability of all levels of government, private industry, and nongovernmental organizations to protect against,

More information

Keys To Disaster Preparedness

Keys To Disaster Preparedness Keys To Disaster Preparedness Presented By: Rob Robbins 2012 Setting up your Chess Board Identify your Queen Decide who s going to be King How many assets to protect and in what order (moving your pieces)

More information

BUSINESS CONTINUITY. Topics covered in this checklist include: General Planning

BUSINESS CONTINUITY. Topics covered in this checklist include: General Planning BUSINESS CONTINUITY Natural and manmade disasters are happening with alarming regularity. If your organization doesn t have a great business continuity plan the repercussions will range from guaranteed

More information

Certified Information Systems Auditor (CISA)

Certified Information Systems Auditor (CISA) Certified Information Systems Auditor (CISA) 1. Domain 1 The Process of Auditing Information Systems Provide audit services in accordance with IT audit standards to assist the organization in protecting

More information

Community-Based Water Resiliency

Community-Based Water Resiliency Community-Based Water Resiliency Helping Water Utilities Build Stronger Communities Presentation to the Mid-Atlantic APWA Chapter Conference Virginia Beach, VA May 10, 2013 What is Community-Based Water

More information

Bundling Arrows: Making a Business Case for Adopting an Incident Command System (ICS) 2012 The Flynt Group, Inc.; All Rights Reserved. FlyntGroup.

Bundling Arrows: Making a Business Case for Adopting an Incident Command System (ICS) 2012 The Flynt Group, Inc.; All Rights Reserved. FlyntGroup. Bundling Arrows: Making a Business Case for Adopting an Incident Command System (ICS) 2012 The Flynt Group, Inc.; All Rights Reserved FlyntGroup.com Flynt Group White Paper Bundling Arrows: Making a Business

More information

Now I can sleep at night

Now I can sleep at night Now I can sleep at night Presented by Reliant Data, LLC He who fails to plan is planning to fail Winston Churchill What you will learn today The difference between Backup, Disaster Recovery and Business

More information

Disaster Preparedness Community Emergency Response Team

Disaster Preparedness Community Emergency Response Team Disaster Preparedness Community Emergency Response Team Berkeley CERT Disaster Preparedness Unit Objectives Describe the types of hazards to which your community is vulnerable Describe the functions of

More information

Building the Business Case for Emergency Notification

Building the Business Case for Emergency Notification Building the Business Case for Emergency Notification Presented by Michelle Gjerde, Marketing Director Amcom Software The Big Picture The fast growing BCM software market includes four components: Business

More information

July 31, University of Maryland Emergency Management Faculty Staff Essentials

July 31, University of Maryland Emergency Management Faculty Staff Essentials July 31, 2015 University of Maryland Emergency Management Faculty Staff Essentials What is Emergency Management? 2 What is Emergency Management? The process of preparing for, mitigating, responding to

More information

A Practical Guide to Avoiding Disasters in Mission-Critical Facilities. What is a Disaster? Associated Business Issues.

A Practical Guide to Avoiding Disasters in Mission-Critical Facilities. What is a Disaster? Associated Business Issues. A Practical Guide to Avoiding Disasters in Mission-Critical Facilities Todd Bermont What is a Disaster? An event that can unexpectedly impact the continuity of your business Anything that injures or has

More information

Mississippi Emergency Support Function #12 Energy Annex

Mississippi Emergency Support Function #12 Energy Annex ESF #12 Coordinator Mississippi Public Utilities Staff Primary Agencies Mississippi Public Utilities Staff Support Agencies Mississippi Emergency Management Agency Mississippi Public Service Commission

More information

Global Crisis Management at Target

Global Crisis Management at Target 2011/EPWG/WKSP/008 Session 1 Global Crisis Management at Target Submitted by: Target Workshop on Private Sector Emergency Preparedness Sendai, Japan 1-3 August 2011 Global Crisis Management at Target Bryan

More information

2013 STRATEGIC PLANNING SCHEDULE

2013 STRATEGIC PLANNING SCHEDULE 2013 STRATEGIC PLANNING SCHEDULE Overall Agency Priorities 1. Prepare for the 2013 Hurricane Conference 2. Coordinate the Adoption and Implementation of the Employee State of Emergency Work Assignment

More information

STANDARD OPERATING PROCEDURE Critical Infrastructure Credentialing/Access Program Hurricane Season

STANDARD OPERATING PROCEDURE Critical Infrastructure Credentialing/Access Program Hurricane Season STANDARD OPERATING PROCEDURE Critical Infrastructure Credentialing/Access Program Hurricane Season IBERIA PARISH STATE OF LOUISIANA STANDARD OPERATING PROCEDURE Critical Infrastructure Owners/Operators

More information

Global Crisis Management at Target

Global Crisis Management at Target Global Crisis Management at Target Bryan Strawser Group Manager, Global Crisis Management Target & Chairman, Private Sector Committee, National Emergency Management Association (US) Global Crisis Management

More information

CIPMA CRITICAL INFRASTRUCTURE PROTECTION MODELLING & ANALYSIS. Overview of CIP in Australia

CIPMA CRITICAL INFRASTRUCTURE PROTECTION MODELLING & ANALYSIS. Overview of CIP in Australia CIPMA CRITICAL INFRASTRUCTURE PROTECTION MODELLING & ANALYSIS Overview of CIP in Australia Greg Scott Leader, Critical Infrastructure Project Risk & Impact Analysis Group Geoscience Australia Greg.Scott@ga.gov.au

More information

Our key considerations include:

Our key considerations include: October 2017 We recognize that our ability to continue to function as an organization is critical to our clients, who rely heavily on our firm and our people to keep their own real estate functioning properly.

More information

Making YOUR Organization More Efficient and Effective Through Business Continuity / Continuity of Operations Planning

Making YOUR Organization More Efficient and Effective Through Business Continuity / Continuity of Operations Planning 2017 California Higher Education Collaborative Conference Making YOUR Organization More Efficient and Effective Through Business Continuity / Continuity of Operations Planning Introductions Rick Blackburn,

More information

Lifeguard Station. Emergency Management

Lifeguard Station. Emergency Management Lifeguard Station Emergency Management Developing Campus Emergency Response Plans and Business Continuity Plans Lennette Dease and Barbara Andersen James Lee Witt Associates Part of Global Options Group,

More information

COPYRIGHTED MATERIAL. Contents. xv xxi. Preface About the Web Site

COPYRIGHTED MATERIAL. Contents. xv xxi. Preface About the Web Site Preface About the Web Site CHAPTER 1 Business Continuity Management Plan 1 Crisis Management 4 The Value 5 Common Failings 7 Business Continuity Goals 9 Defining a Crisis 10 Mapping Risks 11 Critical Dependencies

More information

BCM Program Development

BCM Program Development BCM Program Development Course Description: The BCM Program Development course provides you with knowledge to develop an auditable and actionable business continuity program for your organization. This

More information

Business Continuity Planning. PDI January 14 th, 2018

Business Continuity Planning. PDI January 14 th, 2018 Business Continuity Planning PDI January 14 th, 2018 Presenters Sally Alexander, Director & CRO Office of Risk Management & Insurance Tel: 970 491 7726 Email sally.alexander@colostate.edu Angela Gray,

More information

L18: Integrate Control Disciplines to Increase Control and Save Money

L18: Integrate Control Disciplines to Increase Control and Save Money L18: Integrate Control Disciplines to Increase Control and Save Money Kathleen Lucey, FBCI Montague Risk kalucey@montaguetm.com tel: 1.516.676.9234 Connections Information Security (computer security,

More information

Continuity of Business

Continuity of Business White Paper Continuity of Business SAS Continuity of Business initiative reflects our commitment to our employees, to our customers, and to all of the stakeholders in our global business community to be

More information

UL and Business Continuity

UL and Business Continuity UL and Business Continuity David Stowe, CBCP Business Continuity Manager APEC EPWG Workshop: Private Sector Emergency Preparedness Hotel Monterey Sendai 3 rd August 2011 2011 Underwriters Laboratories

More information

Business Continuity Management Standards A Side-by-Side Comparison

Business Continuity Management Standards A Side-by-Side Comparison Business Continuity Standards A Side-by-Side Comparison By Brian Zawada (CBCP) & Jared Schwartz (CBCP) Whether your organization has begun a grassroots initiative to develop a business continuity plan

More information

Implementing NFPA 3000 (PS)

Implementing NFPA 3000 (PS) Implementing NFPA 3000 (PS) Standard for an Active Shooter / Hostile Event Response (ASHER) Program IT S A BIG WORLD. LET S PROTECT IT TOGETHER. Need for Guidance Leads to New Standard 2 Active Shooter

More information

SAMPLE REPORT. Business Continuity Gap Analysis Report. Prepared for XYZ Business by CSC Business Continuity Services Date: xx/xx/xxxx

SAMPLE REPORT. Business Continuity Gap Analysis Report. Prepared for XYZ Business by CSC Business Continuity Services Date: xx/xx/xxxx SAMPLE REPORT Business Continuity Gap Analysis Report Prepared for XYZ Business by CSC Business Continuity Services Date: xx/xx/xxxx COMMERCIAL-IN-CONFIDENCE PAGE 1 OF 11 Contact Details CSC Contacts CSC

More information

Shared Responsibility: Roles and Responsibilities in Emergency Management Geoff Hay

Shared Responsibility: Roles and Responsibilities in Emergency Management Geoff Hay Shared Responsibility: Roles and Responsibilities in Emergency Management Geoff Hay Assistant Director General Office of State Security and Emergency Coordination Department of the Premier and Cabinet

More information

Principles for BCM requirements for the Dutch financial sector and its providers.

Principles for BCM requirements for the Dutch financial sector and its providers. Principles for BCM requirements for the Dutch financial sector and its providers. Platform Business Continuity Vitale Infrastructuur Financiële sector (BC VIF) Werkgroep BCM requirements 21 September 2011

More information

Testimony of Donald D. Kittell Executive Vice President Securities Industry Association

Testimony of Donald D. Kittell Executive Vice President Securities Industry Association Testimony of Donald D. Kittell Executive Vice President Securities Industry Association "Government and Industry Efforts to Protect Our Money During Blackouts, Hurricanes and Other Disasters" Opening Remarks

More information

ACTIVE SHOOTER RESPONSE CAPABILITY STATEMENT. Dynamiq - Active Shooter Response

ACTIVE SHOOTER RESPONSE CAPABILITY STATEMENT. Dynamiq - Active Shooter Response ACTIVE SHOOTER RESPONSE CAPABILITY STATEMENT ACTIVE SHOOTER RESPONSE Responding to armed assault acts of terrorism and active shooter incidents Acts of terrorism and shootings in public places have become

More information

Emergency Management BCERMS Orientation

Emergency Management BCERMS Orientation Emergency Management BCERMS Orientation May 2008 Orientation Objectives Describe the primary responsibilities of emergency management programs for all levels of government in BC Explain BCERMS British

More information

Developing a Holistic Strategy To Achieve Community Health Resilience

Developing a Holistic Strategy To Achieve Community Health Resilience Developing a Holistic Strategy To Achieve Community Health Resilience Paula Scalingi, Director Pacific Northwest Center for Regional Disaster Resilience Pacific Northwest Border Health Alliance Seventh

More information

National Preparedness System (NPS) Kathleen Fox, Acting Assistant Administrator National Preparedness Directorate, FEMA April 27, 2015

National Preparedness System (NPS) Kathleen Fox, Acting Assistant Administrator National Preparedness Directorate, FEMA April 27, 2015 National Preparedness System (NPS) Kathleen Fox, Acting Assistant Administrator National Preparedness Directorate, FEMA April 27, 2015 The Post Katrina Emergency Management Reform Act (2006) Required the

More information

Business Continuity Plan Executive Overview

Business Continuity Plan Executive Overview Business Continuity Plan Executive Overview In terms of business continuity and disaster recovery planning, Harland Clarke s mission is to ensure the availability of critical business functions and Information

More information

Security Guidelines for the Electricity Sector

Security Guidelines for the Electricity Sector Security Guidelines for the Electricity Sector 116-390 Village Blvd. Princeton, NJ 08540 609-452-8060 609-452-9550 www.nerc.com Security Guidelines for the Electricity Sector Overview Vulnerability and

More information

3.4 DISASTER RECOVERY (L , M.3.9, comp_req_id 806)

3.4 DISASTER RECOVERY (L , M.3.9, comp_req_id 806) 3.4 DISASTER RECOVERY (L.34.2.3.4, M.3.9, comp_req_id 806) Three key objectives that GSA has as part of the award of the Networx contract are to ensure service continuity, high-quality service, and operations

More information

EXHIBIT A. - HIPAA Security Assessment Template -

EXHIBIT A. - HIPAA Security Assessment Template - Department/Unit: Date: Person(s) Conducting Assessment: Title: 1. Administrative Safeguards: The HIPAA Security Rule defines administrative safeguards as, administrative actions, and policies and procedures,

More information

NORTH AMERICAN SECURITIES ADMINISTRATORS ASSOCIATION Cybersecurity Checklist for Investment Advisers

NORTH AMERICAN SECURITIES ADMINISTRATORS ASSOCIATION Cybersecurity Checklist for Investment Advisers Identify Protect Detect Respond Recover Identify: Risk Assessments & Management 1. Risk assessments are conducted frequently (e.g. annually, quarterly). 2. Cybersecurity is included in the risk assessment.

More information

Chapter 1. Chapter 2. Chapter 3

Chapter 1. Chapter 2. Chapter 3 Contents Preface ix Chapter 1 Terrorism 1 Terrorism in General 2 Definition of Terrorism 3 Why Choose Terrorism 4 Goals of Terrorists 5 Selection of Targets and Timing of Attacks 6 Perpetrators 7 Weapons

More information

GIS in Situational and Operational Awareness: Supporting Public Safety from the Operations Center to the Field

GIS in Situational and Operational Awareness: Supporting Public Safety from the Operations Center to the Field GIS in Situational and Operational Awareness: Supporting Public Safety from the Operations Center to the Field Glasgow Bombings- June 2007 Law Enforcement, Public Safety and Homeland Security Organizations

More information

TSA/FTA Security and Emergency Management Action Items for Transit Agencies

TSA/FTA Security and Emergency Management Action Items for Transit Agencies TSA/FTA Security and Emergency Management Action Items for Transit Agencies AACTION ITEM LIST Management and Accountability 1. Establish Written System Security Programs and Emergency Management Plans:

More information

Business Continuity. Policies. Promotion Framework

Business Continuity. Policies. Promotion Framework Business Continuity For many years NEC has been involved in the construction of social infrastructure through information and communications technologies. Social infrastructures, such as communication

More information

DISASTER RECOVERY PRIMER

DISASTER RECOVERY PRIMER DISASTER RECOVERY PRIMER 1 Site Faliure Occurs Power Faliure / Virus Outbreak / ISP / Ransomware / Multiple Servers Sample Disaster Recovery Process Site Faliure Data Centre 1: Primary Data Centre Data

More information

Addressing Vulnerabilities By Integrating Your Incident Response Plans. Brian Coates Enaxis Consulting

Addressing Vulnerabilities By Integrating Your Incident Response Plans. Brian Coates Enaxis Consulting Addressing Vulnerabilities By Integrating Your Incident Response Plans Brian Coates Enaxis Consulting Contents Enaxis Introduction Presenter Bio: Brian Coates Incident Response / Incident Management in

More information

November 14, Emergency Management and Hurricane Irma. Florida Human Resources People and Strategy (FLHRPS)

November 14, Emergency Management and Hurricane Irma. Florida Human Resources People and Strategy (FLHRPS) November 14, 2017 Emergency Management and Hurricane Irma Florida Human Resources People and Strategy (FLHRPS) 1 Agenda Hurricane Irma recap Dianne Merrill Emergency Management Process Susan Mueller Lessons

More information

TUFTS HEALTH PLAN CORPORATE CONTINUITY STRATEGY

TUFTS HEALTH PLAN CORPORATE CONTINUITY STRATEGY JUNE 2017 TUFTS HEALTH PLAN CORPORATE CONTINUITY STRATEGY OVERVIEW The intent of this document is to provide external customers and auditors with a high-level overview of the Tufts Health Plan Corporate

More information

STRATEGIC PLAN. USF Emergency Management

STRATEGIC PLAN. USF Emergency Management 2016-2020 STRATEGIC PLAN USF Emergency Management This page intentionally left blank. Organization Overview The Department of Emergency Management (EM) is a USF System-wide function based out of the Tampa

More information

Disaster Recovery Self-Audit

Disaster Recovery Self-Audit Disaster Recovery Self-Audit Disaster Recovery Audit There are 3 steps to this process: 1. Identify all data and IT-related functions (like credit card processing, documents on your file server, member

More information

Mission: Continuity BUILDING RESILIENCE AGAINST UNPLANNED SERVICE INTERRUPTIONS

Mission: Continuity BUILDING RESILIENCE AGAINST UNPLANNED SERVICE INTERRUPTIONS Mission: Continuity BUILDING RESILIENCE AGAINST UNPLANNED SERVICE INTERRUPTIONS Stephanie Poe, DNP, RN-BC CNIO, The Johns Hopkins Hospital and Health System Discussion Topics The Age of Acceleration Cyber

More information

Global Statement of Business Continuity

Global Statement of Business Continuity Business Continuity Management Version 1.0-2017 Date January 25, 2017 Status Author Business Continuity Management (BCM) Table of Contents 1. Credit Suisse Business Continuity Statement 3 2. BCM Program

More information

Crisis Management at Disneyland Paris Eric Cosset (Disneyland Paris) 27/09/2017

Crisis Management at Disneyland Paris Eric Cosset (Disneyland Paris) 27/09/2017 Crisis Management at Disneyland Paris Eric Cosset (Disneyland Paris) 27/09/2017 Summary 1. Introduction and definition 2. DLP Crisis management evolution 3. Kinetics of a crisis 4. Tools and processes

More information

MHCC Emergency Notification System (ENS) Protocols

MHCC Emergency Notification System (ENS) Protocols MHCC Emergency Notification System (ENS) Protocols Introduction MHCC has an Emergency Notification System (ENS) with multi communication capabilities. MHCC s ENS is intended to rapidly disseminate emergency

More information

Using International Standards to Implement a Business Continuity Management System (BCMS)

Using International Standards to Implement a Business Continuity Management System (BCMS) Using International Standards to Implement a Business Continuity Management System (BCMS) Dr. Abdulrahman AlEnezi Dr. Fawaz AlEnezi Eng. Maryam AlRadhwan Dr. Sultan AlEnezi Agenda Introduction Business

More information

Energy Assurance Energy Assurance and Interdependency Workshop Fairmont Hotel, Washington D.C. December 2 3, 2013

Energy Assurance Energy Assurance and Interdependency Workshop Fairmont Hotel, Washington D.C. December 2 3, 2013 + Energy Assurance Energy Assurance and Interdependency Workshop Fairmont Hotel, Washington D.C. December 2 3, 2013 Jeffrey R. Pillon, Director, Energy Assurance Programs National Association of State

More information

BCP evolution at the Colombian Central Bank

BCP evolution at the Colombian Central Bank BCP evolution at the Colombian Central Bank Fabio Mauricio Pinzón González. General Director Office of Technology Management CEMLA Santiago Chile 2011 AGENDA I. The Organization Evolution II. BCMS The

More information

Solving Safety and Security Concerns at Meetings and Events

Solving Safety and Security Concerns at Meetings and Events Solving Safety and Security Concerns at Meetings and Events Chris Gernentz Safety and Security, Carlson Rezidor Hotel Group 22 years in Safety and Security Hospitality, manufacturing, petro chem, medical.

More information

Emergency Response for Demand Response Transportation Systems

Emergency Response for Demand Response Transportation Systems Emergency Response for Demand Response Transportation Systems Trapeze Rapid Response North America Copyright 2011 Trapeze Software Inc., its subsidiaries and affiliates. All rights reserved. March 22,

More information

Please indicate below the principle nature of your department s operations (check all that apply): Student life support.

Please indicate below the principle nature of your department s operations (check all that apply): Student life support. BUSINESS 2016 A. BUSINESS CONTINUITY PLAN (BCP) To be better prepared, UH personnel and its programs may use this form to complete a Business Continuity Plan (BCP) checklist to describe how your program

More information

Emergency Operations Center Management Exercise Evaluation Guide

Emergency Operations Center Management Exercise Evaluation Guide Emergency Operations Center Management Exercise Evaluation Guide I respectfully submit the completed Exercise Evaluation Guide for the Canopy Oaks Tabletop Exercise conducted March 25 2010 for the Leon

More information