Top 10 Actions A CIO Can Take To Prepare For A Hurricane. Practical advice from well prepared CIOs of Gulf Coast companies

Similar documents
Manage your response. Inform your people. Make it happen. IBM Crisis Management Services Incident Communication Services

INTELLIGENCE DRIVEN GRC FOR SECURITY

Introduction to Business continuity Planning

White Paper: Backup vs. Business Continuity. Backup vs. Business Continuity: Using RTO to Better Plan for Your Business

SOLUTION BRIEF RSA ARCHER BUSINESS RESILIENCY

CLOUDALLY EBOOK. Best Practices for Business Continuity

Backup vs. Business Continuity: Using RTO to Better Plan for Your Business

Why the Threat of Downtime Should Be Keeping You Up at Night

EMS TM Continuity

WHY BUILDING SECURITY SYSTEMS NEED CONTINUOUS AVAILABILITY

Table of Contents. Sample

An introductory guide to Disaster Recovery and how it can ultimately keep your company alive. A Publication of

Why Continuity Matters

5 Things Small Businesses Need to Know About Disaster Recovery

Florida State University

IPMA State of Washington. Disaster Recovery in. State and Local. Governments

Dell helps you simplify IT

Appendix 3 Disaster Recovery Plan

Business Continuity Management Standards A Side-by-Side Comparison

INTRODUCING VERITAS BACKUP EXEC SUITE

RECENT HURRICANE CASE STUDIES: IMPACT OF BUSINESS RECOVERY PLANNING AND TESTING. Dan Perrin, Regus Stephanie Samuels, Voya

SIEM Solutions from McAfee

Data safety for digital business. Veritas Backup Exec WHITE PAPER. One solution for hybrid, physical, and virtual environments.

4 Criteria of Intelligent Business Continuity

GET CLOUD EMPOWERED. SEE HOW THE CLOUD CAN TRANSFORM YOUR BUSINESS.

Information Infrastructure and Security. The value of smart manufacturing begins with a secure and reliable infrastructure

DATA CENTRE SOLUTIONS

CIO VIEWPOINTS: EXCHANGE 2007 RISKS & MITIGATION STRATEGIES

IBM smarter Business Resilience in the Cloud

Continuity of Business

From Single File Recovery to Full Restore: Choosing the Right Backup and Recovery Solution for Your Cloud Data

Data Protection and GDPR

Fifteen Best Practices for a Successful Data Center Migration

WHITE PAPER. Header Title. Side Bar Copy. Header Title 5 Reasons to Consider Disaster Recovery as a Service for IBM i WHITEPAPER

Business Continuity and Disaster Recovery Disaster-Proof Your Business

Disaster recovery strategic planning: How achievable will it be?

CenturyLink for Microsoft

Public and Private Interdependencies Filling a Gap in Most Continuity Plans

Optimizing Pulse Secure Access Suite with Pulse Secure Virtual Application Delivery Controller solution

A Ready Business rises above infrastructure limitations. Vodacom Power to you

A Model for Resilience

SOLUTION BRIEF RSA ARCHER IT & SECURITY RISK MANAGEMENT

Symantec Business Continuity Solutions for Operational Risk Management

Disaster Recovery Is A Business Strategy

Disaster Recovery and Mitigation: Is your business prepared when disaster hits?

Carbonite Availability. Technical overview

Build a viable plan for disaster recovery and crisis management.

White paper. Usage Trends for Flash Storage with Epic

WHO IS ONSOLVE? MIR3 Send Word Now OnSolve, LLC. All rights reserved.

Sparta Systems TrackWise Digital Solution

Introduction. Read on and learn some facts about backup and recovery that could protect your small business.

FIVE REASONS HOSPITALS VALUE ENCRYPTED PAGERS

Five Key Considerations for Selecting Cloud Recovery Services

Maintaining Resiliency Within the Defense Industrial Base Through Preparedness Response and Recovery

Symantec Security Monitoring Services

WORKSHARE SECURITY OVERVIEW

PROTECT YOUR DATA, SAFEGUARD YOUR BUSINESS

Business continuity management and cyber resiliency

UNCLASSIFIED. Mimecast UK Archiving Service Description

Alcatel-Lucent OmniTouch My Teamwork. Land Mobile Radio Conferencing and Collaboration (LMRCC)

Managed IT Services Eliminating technology pains for SMBs

Backup vs. Business Continuity

A Practical Guide to Avoiding Disasters in Mission-Critical Facilities. What is a Disaster? Associated Business Issues.

Step into the future. HP Storage Summit Converged storage for the next era of IT

Moving From Reactive to Proactive Storage Management with an On-demand Cloud Solution

INFORMATION SECURITY- DISASTER RECOVERY

BUSINESS CONTINUITY MANAGEMENT PROGRAM OVERVIEW

Corporate IT and Business User Survey,

Developing Crisis Communication Frameworks for Strategic Response

Table of Contents. Page 1 of 6 (Last updated 27 April 2017)

Manager, Infrastructure Services. Position Number Community Division/Region Yellowknife Technology Service Centre

TUFTS HEALTH PLAN CORPORATE CONTINUITY STRATEGY

UCLA AUDIT & ADVISORY SERVICES

IT SECURITY RISK ANALYSIS FOR MEANINGFUL USE STAGE I

NORTH CAROLINA NC MRITE. Nominating Category: Enterprise IT Management Initiatives

Keeping it Simple Driving BCM Program Adoption Through Simplification

IT Services. We re the IT in OrganIsaTion.

White Paper. How to select a cloud disaster recovery method that meets your requirements.

Building the Business Case for Emergency Notification

QuickStart for Data Center: Data Center Decision Makers Data Sheet

Symantec Data Center Transformation

-archiving. project roadmap CHAPTER 1. archiving Planning, policies and product selection

RSA Advanced Cyber Defence Summit

Symantec Data Center Migration Service

Hitachi Adaptable Modular Storage and Hitachi Workgroup Modular Storage

Archiving, Backup, and Recovery for Complete the Promise of Virtualisation Unified information management for enterprise Windows environments

ARM Apps. What are ARM Apps?

Controlling Costs and Driving Agility in the Datacenter

Cloud Confidence: Simple Seamless Secure. Dell EMC Data Protection for VMware Cloud on AWS

AN APPLICATION-CENTRIC APPROACH TO DATA CENTER MIGRATION

EQUINIX BUSINESS CONTINUITY ADVANCED SERVICES KEEP YOUR BUSINESS UP AND RUNNING

L18: Integrate Control Disciplines to Increase Control and Save Money

Accelerate Your Enterprise Private Cloud Initiative

IBM Security Intelligence on Cloud

SECURITY THAT FOLLOWS YOUR FILES ANYWHERE

Addressing Vulnerabilities By Integrating Your Incident Response Plans. Brian Coates Enaxis Consulting

Making the case for SD-WAN

Supporting the Cloud Transformation of Agencies across the Public Sector

University Information Systems. Administrative Computing Services. Contingency Plan. Overview

IBM Global Technology Services Provide around-the-clock expertise and protect against Internet threats.

Transcription:

Top 10 Actions A CIO Can Take To Prepare For A Hurricane Practical advice from well prepared CIOs of Gulf Coast companies 1

Overview While the 2007 hurricane season was very active with 15 named storms of which 2 were major hurricanes, costing $7.5 billion and 416 lives, the predictions for the 2008 season appear to be very similar. And, no one can forget 2005 s Hurricane Katrina that cost over $120 billion in damages and over 1,800 of lives. 1 Active hurricane seasons like these impose an unwelcome set of challenges for CIOs. Immediate concerns include the safety and security of employees as well as the prevention of damage to physical facilities. However, CIOs must also address the challenge of maintaining business continuity. Short and long-term impacts on customers, suppliers, partners, and employees can arise if communications and critical IT systems are lost for even a short period of time. In the days and months following the devastating hurricanes that struck Florida and New Orleans in 2005, a handful of businesses fared much better than average. These companies had the right programs in place, they executed strategies with built-in fl exibility to swiftly react to changing situations, and ultimately provided excellent resilience for their organizations. While most companies struggled for months to bring their operations and staff back to capacity, these select organizations remained open for business, quickly relocated staff, and were able to recover without a devastating fi nancial hit. What sets these companies apart from the rest? They are not necessarily the largest, wealthiest or most infl uential companies in their regions: in fact some organizations that fared well through the hurricanes are very small they merely had a well-executed plan and the right set of tools. 1 NOAA. Dell 2008. MessageOne is a registered trademark and, the MessageOne logo, MessageOne.com, the Email Management Services, EMS, and AlertFind are trademarks of Dell.

01 Make sure you can communicate instructions to employees no matter what happens to the prevailing communications infrastructure If you can t communicate, you can t recover. These are the fi rst words of advice heard from companies that have been through a disaster. You cannot predict which systems will be affected by a hurricane, or what your staff will have access to at any given time. Each storm may have a different and unpredictable effect on infrastructure. For example, following Katrina, BlackBerry was the only network that was available; however, POTS phone service continued to work throughout most of the Florida hurricanes of 2004. Many crisis communications systems take advantage of a limited number of communications channels. Ensure your system enables multiple communication channels with fl exible and custom escalation paths to devices that your staff may have access to. 3

02 Collect and maintain up-to-date contact information for your employees and key constituents If you do have a crisis communications system in place, it will be ineffective if you do not have the correct contact information for your recipients. Your HR system, email system and distribution lists, or other system of record for your employees contact information can be used as the system of record of current contact information and may be synchronized with any crisis communication system you implement. Develop a process that is required to collect your staff s preferred method of contact, and make sure you have several channels to reach each employee. 4

03 Plan for your post-storm roll call of employees A broadcast set of emergency instructions with no feedback or visibility into the recipient status only does half the job of a true crisis communications infrastructure. Implement a system that enables a roll call and 2-way communications, so you can locate all employees and identify any that need help. 5

04 Plan for a remote recovery facility In case your physical facilities are incapacitated for a long period of time, plan to move to a workspace with access to critical business systems. Ensure your company s work product documentation is securely archived and accessible from a remote location. Plan with the assumption that your internal local infrastructure will not be available. 6

05 If you can protect one application, protect your email you will need it Email often provides the status of work in progress and is the preferred medium for most employee communications. Email access is usually required to continue to function smoothly or to recover in times of crisis. Ensure your organization has comprehensive email protection regardless of what happens to your local infrastructure. 7

06 Have a system in place to avoid losing compliance and audit trails when there is a crisis For example, if your employees use an alternate email system such as their personal email accounts to conduct business during or following a storm, all of these messages may be unrecoverable to your primary system. Have an email continuity system in place so employees have no need to use alternate email systems. Keep archiving all of your business transactions to help ensure there will be no breaks in an audit trail. 8

07 Complete a DR audit of your vendors, especially local vendors If your website is hosted locally, it is likely to go down during a storm. Consider hosting some of your key services in other geographies. Understand the business continuity and disaster recovery plans of each of your key vendors, and plan ahead a method of communicating with them in the event of a crisis. 9

08 Complete a surprise off-hours test of your emergency plan Practice executing your emergency planning with some of your key staff members out of the loop. Ensure backup staff members are able to administer an emergency plan, send out a notifi cation, perform a roll-call, etc. Verify that you can reach key staff members through multiple channels (cell phones, pagers, home phones, remote offi ce phones). Test that your emergency communications system can escalate action items if key members can t be contacted within a prescribed amount of time. 10

09 Plan to not stick to your emergency plan You need to have a plan that is executable; however, in real situations, circumstances can change so rapidly and in unpredictable ways that you need to make ad-hoc decisions and execute on them. Your company s leadership needs the ability to change instructions rapidly and to notify employees with up to the minute information. Everyone who has managed their business through a major storm has a common experience: Nothing goes exactly according to plan and you must have the ability to change plans on the fl y. 11

10 Identify key operations and their recovery priority While conditions may dictate the availability of business operations, the overall business impact of operations and processes can be established before the storm. Prioritize and publish recovery sequence plans to minimize the outage effects on the business, customers, suppliers and employees. 12

TM Dell MessageOne AlertFind TM Crisis Communications and Collaboration During and after a hurricane, normal lines of communication often fail when you need them most. Reaching employees and their leadership teams located in unusual sites is a challenge that most companies cannot meet. That s why many leading organizations, communities, and schools, depend on Dell MessageOne AlertFind. AlertFind s crisis notifi cation service harnesses all available commercial communication channels to help fi nd people, deliver messages, and collect information. AlertFind s Incident Collaboration Center offers additional collaboration tools to manage through crisis events and accelerate recovery times. AlertFind is designed from the ground up to meet the unique needs of large enterprises for multi-team support, security, data integration, compliance auditing, and mass notifi cation to thousands of users in minutes. Automated message delivery and escalation In-bound communication lines for hard-to-reach contacts Enterprise data security and access control Real-time auditing and reporting Full global support Web services Application Protocal Interface (API) for integration with corporate systems Collaborative incident logs to track events Formal task management and secure document sharing Publicly share information via emergency website 13

TM Dell MessageOne Email Management Services Continuity, Archiving, and Security In addition to communicating with employees, email must continue to function to allow continued business operations. The Dell MessageOne Email Management Services (EMS ) is capable of providing comprehensive email protection in a single, on-demand service. EMS helps eliminate the downtime, compliance, and fi nancial risk of managing email. Deployed in a day, affordably priced, and requiring minimal maintenance, EMS integrated continuity, archiving, and security services helps lower costs and maintenance complexity. Help eliminate email downtime and data loss Make email outages virtually invisible to users Control retention, accelerate e-discovery Globally search archives in seconds Reduce data stores as much as 80% Effectively fi lter spam and viruses Achieve a low TCO for a very high level of protection EMS provides the control and fl exibility to meet evolving email challenges, EMS can effectively eliminate the risks of managing email. For more information please visit www.messageone.com 14

www.messageone.com 1-888-367-0777 Dell MessageOne 11044 Research Blvd. Building C, Fifth Floor, Austin, TX 78759 V0708 15