Best-in-Class Crisis Preparation: Maximize Readiness with the Four T s. Business Continuity Readiness Overview

Similar documents
Business Continuity Management Program Overview

BUSINESS CONTINUITY MANAGEMENT PROGRAM OVERVIEW

Keeping it Simple Driving BCM Program Adoption Through Simplification

Appendix 3 Disaster Recovery Plan

BPS Suite and the OCEG Capability Model. Mapping the OCEG Capability Model to the BPS Suite s product capability.

WHITE PAPER OCTOBER 2017 VMWARE ENTERPRISE RESILIENCY. Integrating Resiliency into Our Culture and DNA

Building a BC/DR Control Library and Regulatory Response Program

Introduction to Business Continuity Management

What Does the Future Look Like for Business Continuity Professionals?

Integrating Cyber Security with Business Continuity Management to Build the Resilient Enterprise

Enterprise GRC Implementation

TSC Business Continuity & Disaster Recovery Session

Disaster Recovery and Business Continuity Planning (Mile2)

Maintaining Resiliency Within the Defense Industrial Base Through Preparedness Response and Recovery

B13: The Case for Integration Converting the BCM Silo into an Enterprise Risk Foundation

Business continuity management and cyber resiliency

Building the Business Case for Emergency Notification

RSA Advanced Cyber Defence Summit

Facilities Management and Business Continuity. 10 May 2017

3.4 DISASTER RECOVERY (L , M.3.9, comp_req_id 806)

Business Continuity Management Standards A Side-by-Side Comparison

PECB Change Log Form

RSA IT Security Risk Management

Introduction to Business continuity Planning

Business Continuity Management: How to get started. Presented by: Tony Drewitt, Managing Director IT Governance Ltd 19 April 2018

How to choose the right Data Governance resources. by First San Francisco Partners

How to Derive Value from Business Continuity Planning

Cyber Resilience. Think18. Felicity March IBM Corporation

Role of BC / DR in CISRP. Ramesh Warrier Director ebrp Solutions

BUSINESS CONTINUITY. Topics covered in this checklist include: General Planning

Implementing a BCM Programme

GIS in Situational and Operational Awareness: Supporting Public Safety from the Operations Center to the Field

SM04: Transforming Your Security Command Post into a Strategic Information Nerve Center

Cyber Risk Program Maturity Assessment UNDERSTAND AND MANAGE YOUR ORGANIZATION S CYBER RISK.

SOLUTION BRIEF RSA ARCHER BUSINESS RESILIENCY

Exam4Tests. Latest exam questions & answers help you to pass IT exam test easily

Business Continuity Management

Mapping Your Requirements to the NIST Cybersecurity Framework. Industry Perspective

Using International Standards to Implement a Business Continuity Management System (BCMS)

Best Practices for Incident Communications: Simplifying the Mass Notification Process for Government

Internet Area Network Inc.

locuz.com SOC Services

Using ITIL to Measure Your BCP

Driving Global Resilience

Table of Contents. Sample

A Disciplined Approach to Cyber Security Transformation

Risk: Security s New Compliance. Torsten George VP Worldwide Marketing and Products, Agiliance Professional Strategies - S23

,000+ What is the BCI Corporate Partnership? What are the benefits of becoming a Corporate Partner? Levels of Partnership

Session 5: Business Continuity, with Business Impact Analysis

TRUSTED IT: REDEFINE SOCIAL, MOBILE & CLOUD INFRASTRUCTURE. John McDonald

MHA Consulting BCM Metrics Resiliency Through Measurement

TACOMA PUBLIC UTILITIES CYBERSECURITY PROGRAM NIAC WORKSHOP JUNE 2017

NUIT Tech Talk. Emergency Preparedness. March 1, Sharlene Mielke. Jay Bagley. Disaster Recovery / Business Continuity Coordinator

DISASTER RECOVERY PRIMER

Preparing your C-Suite for a Cyber Crisis

Integration of Business Continuity, Emergency Preparedness, and Emergency Response

IBM Security Systems. IBM X-Force 2012 & CISO Survey. Cyber Security Threat Landscape IBM Corporation IBM Corporation

Business Continuity An Integral Part of Risk Management At Constellation Energy

INTELLIGENCE DRIVEN GRC FOR SECURITY

Six Weeks to Security Operations The AMP Story. Mike Byrne Cyber Security AMP

Microsoft Security Management

RSA Cybersecurity Poverty Index : APJ

Improving Data Governance in Your Organization. Faire Co Regional Manger, Information Management Software, ASEAN

Government IT Modernization and the Adoption of Hybrid Cloud

Frontiers of Risk. Don t Be Afraid: Business Continuity Plan Development Only Hurts A Little!

BCM s Role in Effective Risk Management: A Risk Manager s Point of View

SOLUTION BRIEF RSA ARCHER IT & SECURITY RISK MANAGEMENT

Mission: Continuity BUILDING RESILIENCE AGAINST UNPLANNED SERVICE INTERRUPTIONS

Isaca EXAM - CISM. Certified Information Security Manager. Buy Full Product.

Business Context: Key for Successful Risk Management

HOTEL RESILIENT Plan ahead stay ahead. With support from the German Government through

Certified Information Systems Auditor (CISA)

ArcGIS in the Cloud. Andrew Sakowicz & Alec Walker

Best Practices for Campus Security. January 26, 2017

Presented by Ingrid Fredeen and Pamela Passman. Copyright 2017NAVEXGlobal,Inc. AllRightsReserved. Page 0

Contents. Chapter 3: Chapter 4: Critical Server Ranking Classifying Systems for Recovery Priority Mission-Critical Only, Please...

Physical security advisory services Securing your organisation s future

Cybersecurity for Service Providers

Supply Chain Integrity and Security Assurance for ICT. Mats Nilsson

IBM Resilient Incident Response Platform On Cloud

Information backup - diagnostic review Abertawe Bro Morgannwg University Health Board. Issued: September 2013 Document reference: 495A2013

Think Oslo 2018 Where Technology Meets Humanity. Oslo. Felicity March Cyber Resilience - Europe

Understanding Cyber Insurance & Regulatory Drivers for Business Continuity

CISO as Change Agent: Getting to Yes

ERO Enterprise IT Projects Update

REPORT 2015/149 INTERNAL AUDIT DIVISION

Business Continuity Policy

Demystifying GRC. Abstract

Global Statement of Business Continuity

Promoting the Art and Science of Business Continuity Management Worldwide. Partner of the DRJ

MARCH 2016 ONE BILLION COALITION FOR RESILIENCE

Continuity of Business

VirtualAgility solutions for. Smarter Public Safety. Michael V Kay VP European Operations VirtualAgility Inc.

RSA Cybersecurity Poverty Index

FFIEC Cyber Security Assessment Tool. Overview and Key Considerations

Number: USF System Emergency Management Responsible Office: Administrative Services

A Data-Centric Approach to Endpoint Security

7 th BICSI Southeast Asia Conference 2009 Building the Next Generation Broadband Network

Backup, Disaster Recovery: Defining & Managing Your Risk. Dave Kinsey - 5/9/17

How Organizations Are Effectively Leveraging BCM Benchmarking Data. October 7, 2014

Transcription:

Best-in-Class Crisis Preparation: Maximize Readiness with the Four T s Robert Edson Vice President, Global Sales and Marketing Business Continuity Readiness Overview Business Continuity Management (BCM) as a discipline continues to develop rapidly, but 75% of companies worldwide are failing in terms of Disaster Readiness Source: CI/KPMG 2013 2014 Benchmark Study Source: Disaster Recovery Preparedness Benchmark Survey, 2014

MissionMode Readiness Survey Average respondent Readiness Score only 58/100! MissionMode Readiness Survey (cont.) 60% of respondents have underdeveloped planning/testing

MissionMode Readiness Survey (cont.) Only 20% have detailed templates and collaboration tools in place Best-in-Class Crisis Preparedness BCM is Hard. Many programs have yet to reach their goals Team The Four T s Approach provides a framework for success Tools KPI s Templates Success multiplies when program linked to specific KPIs Testing

Right Team Executive Sponsorship Multiple studies have shown the linkage between C-Level involvement and BCM Program success Executive Sponsor Roles Select/review BCM team leadership Secure funding to support BC/DR initiatives Lead steering committee Weigh-in on key decisions Request/review key metrics Create a business continuity culture

Right Team BC Team Roles 63% of companies claim between 0-2 of full-time employees dedicated to BC/DR. Let s Explore Three Key Roles: BCM Director/Lead Functional Leads External Stakeholders Case Study: Creating a Continuity Culture Gap, Inc. Challenge: Building relevancy for a new global business continuity program in an organization that had only spotty BC/DR initiatives previously Keys to Success: Clear Source of Power Short chain of command to executive sponsor Company wide visibility Foster team-wide relationships/break-down organizational silos Technology-driven processes Celebrate wins

The Right Templates What templates are required depends on the event types you need to prepare for. Top threats include: 1. Severe Weather 2. IT Issues (outages, breach, virus ) 3. Power Outages 4. Natural disaster (flood, earthquake) 5. Physical Violence 6. Fire 7. Epidemic 8. Product delivery/quality 9. Scandal/reputation 10. Theft Template Creation Team ID Primary Alternates Risk Assessment Situation Monitoring Team Activation Impact Assessment (Go/No Go) Impact Assessment Go / No Go Decision Response Planning Communications Functional Assessment Plan Checklists Recovery Communications Damage Assessment Repair planning Vendor Impacts Metrics Review Pre Event ID Decision Speed Communication effectiveness Recovery speed

Case Study Xcel Energy Standardizing Incident Management Challenge: Poor response record to outages based on siloed approach to emergency response Keys to Success: Regulatory driven requirement to improve metrics Top-down mandate to create standardized approach Lead appointed to champion enterprise-wide effort Flexible tool selected to pre-populate templates (teams members, contact preferences, messages, task lists) Standard process, customizable by division flexibility System applied to both emergency and routine operational events Drills Practice Makes Perfect Writing a plan on paper and making it work in a real emergency are wildly different. Testing critical for: Team training Breaking departmental silos Validating plan effectiveness Testing support tool configuration

How to Run a Successful Test Create a Test Plan Plan Optimization Pre test review Post Test Evaluation Test Simulation The Right Tools: Incident Management in the Digital age Business Continuity has gone virtual for good reasons: Redundancy/systems access key in an emergency Increasing geographic dispersion of BCM teams Simplified information access speeds decision making Affordable, easy to use tools remove barriers to automation

Key Functionality for BCM Efficiency Effective Communications Intelligent Alert system Escalates alerts across devices Personalized message delivery GIS mapping for locationspecific alerts 2 way messaging with one touch response Easily integrates with IT systems Real time dashboard for delivery/receipt Simplified Project Management Virtual Collaboration Platform Pre populated templates Messages Task checklists Document library Centralized event dashboard Operational logs with time stamping Intelligent alerting Rich media sharing Mobile app Case Study: Driving Efficiency with better tools - Birmingham Airport Challenge: Consolidated emergency response teams across the airport. Needed paperless, centralized system for logging and managing both routine operational and emergency issues. Keys to success: Ease of use Accessible anytime/anywhere No need to change current processes easy start up Logged activities are time/date stamped for regulatory compliance Centralized dashboard of events allows management to get up to speed quickly great for shift changes Use system daily becomes second nature vs. only for crises

Metrics Matter BCM programs that systematically track and report on key performance indicators reach maturity faster. Most commonly tracked metrics: Completion of drills Incident response performance Completion of objectives Awareness generation Operational performance (SLAs) Source: Continuity Central Survey Don t be a Statistic 25% small businesses close each year due to inability to recover from a disaster 180 of 350 businesses shut down in the World Trade Center disaster never reopened Instead Build BCM Program Maturity with the Four T s Approach

Questions? Thank You!