Disaster Recovery and Mitigation: Is your business prepared when disaster hits?

Similar documents
Recovery at a Click - where to be in 18 months

10 Reasons Why Your DR Plan Won t Work

Disaster Recovery Guide

WHITE PAPER. Header Title. Side Bar Copy. Header Title 5 Reasons to Consider Disaster Recovery as a Service for IBM i WHITEPAPER

SERVICE DESCRIPTION MANAGED BACKUP & RECOVERY

Top Five Ways to Protect Your Organization from Data Loss & Cyber Hackers

Disaster Recovery Is A Business Strategy

SQL Server Virtualization 201

Managed Service. Managed Services. High Availability / Disaster Recovery Solutions. Cloud and Hosting Solutions. Security Solutions.

IBM SmartCloud Resilience offers cloud-based services to support a more rapid, reliable and cost-effective enterprise-wide resiliency.

CIO Guide: Disaster recovery solutions that work. Making it happen with Azure in the public cloud

NOW! Manage ALL workloads virtual, physical and cloud from a single console!

CASE STUDY: USING THE HYBRID CLOUD TO INCREASE CORPORATE VALUE AND ADAPT TO COMPETITIVE WORLD TRENDS

CANVAS DISASTER RECOVERY PLAN AND PROCEDURES

BACKUP AND RECOVERY OF A HIGHLY VIRTUALIZED ENVIRONMENT

AtoS IT Solutions and Services. Microsoft Solutions Summit 2012

Understanding As-a-service: Teradata IntelliCloud

Acronis Backup. Acronis, All rights reserved. Dual headquarters in Switzerland and Singapore. Dual headquarters in Switzerland and Singapore

Architecting a Highly Available Infrastructure: An Overview SLN187. Mark Milow Mike DiPetrillo

BUSINESS CONTINUITY PLAN Document Number: 100-P-01 v1.4

VMworld 2018 Content: Not for publication or distribution

Data Protection for Cisco HyperFlex with Veeam Availability Suite. Solution Overview Cisco Public

IPMA State of Washington. Disaster Recovery in. State and Local. Governments

Hystax. Live Migration and Disaster Recovery. Hystax B.V. Copyright

Nutanix Tech Note. Virtualizing Microsoft Applications on Web-Scale Infrastructure

Introduction to Business continuity Planning

Copyright 2012 EMC Corporation. All rights reserved.

INFORMATION SECURITY- DISASTER RECOVERY

Hybrid Cloud Data Protection & Storage

White Paper: Backup vs. Business Continuity. Backup vs. Business Continuity: Using RTO to Better Plan for Your Business

TSC Business Continuity & Disaster Recovery Session

Disaster Recovery Solutions for Oracle Database Standard Edition RAC. A Dbvisit White Paper By Anton Els

RECOVERY & BUSINESS CONTINUITY SERVICES. Protect your data. Recover your environment. Manage your recovery.

After the Attack. Business Continuity. Planning and Testing Steps. Disaster Recovery. Business Impact Analysis (BIA) Succession Planning

Now I can sleep at night

Elevate the Conversation: Put IT Resilience into Practice for Cloud Service Providers

Azure Webinar. Resilient Solutions March Sander van den Hoven Principal Technical Evangelist Microsoft

The Data Protection Rule and Hybrid Cloud Backup

20465: Designing a Data Solution with Microsoft SQL Server

Virtualizing Oracle on VMware

A Survival Guide to Continuity of Operations. David B. Little Senior Principal Product Specialist

Business Resiliency in the Cloud: Reality or Hype?

IaaS Buyer s Checklist.

Protecting Microsoft Hyper-V 3.0 Environments with Arcserve

unparalleled protection of

Backup and Restore Strategies

MyCloud Computing Business computing in the cloud, ready to go in minutes

Maximizing Availability With Hyper-Converged Infrastructure

NEC Express5800 R320f Fault Tolerant Servers & NEC ExpressCluster Software

Modernize Your Backup and DR Using Actifio in AWS

Countering ransomware with HPE data protection solutions

Backup, Disaster Recovery: Defining & Managing Your Risk. Dave Kinsey - 5/9/17

Backup vs. Business Continuity: Using RTO to Better Plan for Your Business

Copyright 2012 EMC Corporation. All rights reserved.

Emergence of Business Continuity to Ensure Business and IT Operations. Solutions to successfully meet the requirements of business continuity.

Welcome! Considering a Warm Disaster Recovery Site?

Business Continuity and Disaster Recovery Disaster-Proof Your Business

` 2017 CloudEndure 1

Configuring and Deploying a Private Cloud DURATION: Days

Protecting a Hybrid Cloud Infrastructure and Microsoft Azure Virtual Machines

Nutanix White Paper. Hyper-Converged Infrastructure for Enterprise Applications. Version 1.0 March Enterprise Applications on Nutanix

Table of Contents. Sample

Hyper-Convergence De-mystified. Francis O Haire Group Technology Director

Disaster Recovery Webinar August 11, 2015

NS2 Cloud Overview The Cloud Built for Federal Security and Export Controlled Environments. Hunter Downey, Cloud Solution Director

arcserve r16.5 Hybrid data protection

Boost your data protection with NetApp + Veeam. Schahin Golshani Technical Partner Enablement Manager, MENA

VMware Disaster Recovery

4. Are you only looking for a D/R as a service target for the VMware and IBM systems? Yes

Infrastructure Provisioning with System Center Virtual Machine Manager

EMC GLOBAL DATA PROTECTION INDEX KEY FINDINGS & RESULTS FOR ITALY

Acronis Hybrid Cloud Architecture Unified Centralized Data Protection Web-based User Interface Deployed On-premises or in the Cloud.

Hyper-Converged Infrastructure: Providing New Opportunities for Improved Availability

SAP HANA. HA and DR Guide. Issue 03 Date HUAWEI TECHNOLOGIES CO., LTD.

DISASTER RECOVERY PRIMER

What is Data Protection and Disaster Recovery?

CONSIDERATIONS BEFORE MOVING TO THE CLOUD

University Information Technology Data Backup and Recovery Policy

WEBSCALE CONVERGED APPLICATION DELIVERY PLATFORM

Wong Tze Chuan General Manager. Gadget Wearable Tech (M) Sdn Bhd

C H A P T E R Overview Figure 1-1 What is Disaster Recovery as a Service?

Availability in the Modern Datacenter

CLOUDALLY EBOOK. Best Practices for Business Continuity

HCX SERVER PRODUCT BRIEF & TECHNICAL FEATURES SUMMARY

Microsoft Operations Management Suite (OMS) Fernando Andreazi RED CLOUD

EMC GLOBAL DATA PROTECTION INDEX KEY FINDINGS & RESULTS FOR HONG KONG

Disaster Recovery. Lewan Technology, Zerto, FORTRUST & Faction Inc

5 Things Small Businesses Need to Know About Disaster Recovery

High Availability & Disaster Recovery. Witt Mathot

The Importance of Data Protection

NEXT GENERATION CLOUD SECURITY

20745B: Implementing a Software- Defined DataCenter Using System Center Virtual Machine Manager

ON CALL, ALL THE TIME DISASTER RECOVERY AS A SERVICE FROM WINDSTREAM

EMC GLOBAL DATA PROTECTION INDEX STUDY KEY RESULTS & FINDINGS FOR THE USA

Carbonite Availability. Technical overview

Transforming Data Protection with HPE: A Unified Backup and Recovery June 16, Copyright 2016 Vivit Worldwide

Protecting VMware vsphere/esx Environments with Arcserve

Software-as-a-Service. with Genero Cloud Q&A. Walter Koenigseder Regional Director. Software-as-a-Service. With Genero Cloud Page 1

Business Continuity Planning Keeping Pace with New Technology

DISASTER RECOVERY (DR): SOMETHING EVERYBODY NEEDS, BUT NEVER WANTS TO USE

Transcription:

1 Disaster Recovery and Mitigation: Is your business prepared when disaster hits?

2 Our speaker today: Catherine Roy, Director of PMO at Hosting 15 years Project Management experience At HOSTING since 2012 Project Manager on over 100 Disaster Recovery Solutions PMP, ITIL, CSPO

3 Outline of Class Overview The Difference between Business Continuity and Disaster Recovery The Five Best Practices for Disaster Recovery Plans Common Mistakes in Disaster Recovery Plans Common Risks to Application Availability The first six steps you need when Declaring a Disaster Actual DR Project Plan and scenario DR run book

Overview 4

5 Why Invest in Disaster Recovery? Gartner estimates that only 35% of SMBs have a comprehensive disaster recovery plan in place According to research companies lose an average of $50,000 - $90,000 for every hour of downtime 80% of companies that suffer a major disaster and don t have any form of contingency planning go into liquidation within 18 months

History of DR 2001 Traditional Backups 2017 End-to-End Solutions - Anywhere File level backups Block Level Backups VM Replication Data Archiving Off-Site Storage Application Aware Array Replication 3 rd Party Cloud Multi-Cloud Recovery 2001 2007 2011 2015 2016 2017 Enabling Technologies Recovery

7 Pain Points Associated with DR Data loss Multiple culprits and threats Lack of a DR plan Complex and manual coordination between teams Multiple DR solutions/ platforms Managing multiple storage arrays High costs High workload overhead

8 DR Environments AWS/AZURE one way trip to DR Rollbacks to Prod. on Azure in 2017? SRM/Zerto/Veeam (replication tools)

Business Continuity/DR 9

10 Disaster Recovery and Business Continuity Not one in the same two different definitions Business Continuity ensures that an organization s business functions will continue to operate and withstand critical incidents and disasters Disaster Recovery is part of Business Continuity Business continuity often falls into Compliance, Security, Quality and/or Risk Management

Key Considerations for Business Continuity/Disaster Recovery What level of resilience are you building your production environment to? What needs to be recovered RPO (Recovery Point Objective) RTO (Recovery Time Objective) Application dependencies Organizational changes/it changes Upgrades, acquisitions, new employees 11

12 Key Considerations for Business Continuity How replication load will affect the production environment? Rate of change

DR Plans 13

14 Common Mistakes in Disaster Recovery Plans Overdependence on the Cloud Failure to set Disaster Recovery Standards Failure to Test

15 Five Best Practices for Disaster Recovery Plans Create Thorough Disaster Recovery Plans Assign Responsibilities Arrange for Alternate Sites and Equipment Maintain, Execute and Evaluate Testing Procedures IT Specific Disaster Procedures

16 Common Risks to Application Availability Human Error Network Failure Cloud provider downtime External Threats Application scalability limitations

17 Where do I begin? Current State Assessment Requirements Gathering Initial Disaster Recovery Planning Fit Assessment Deployment Testing and Mitigation Don t overdesign

Preparing for Disasters 18

19 Preparing for Disasters key questions to ask What constitutes a Disaster for your company? Earthquake, Fire, Tornado, Cyber threats, Human error Rank each disaster and discuss with your team what each response plan should be Factor in recovery time Recovery from a site outage may be a few days and recovery from a fire or earthquake could mean months What business factors are going to cause the need to re-evaluate DR?

20 Threat Assessments Type of Threat Probability Severity Score Notes HVAC Outage 4 3 12 We only have one unit Hurricane 3 3 9 Fire 1 4 4 Power Outage 4 1 4 Earthquake 1 2 2 We have a generator that can be refilled Tornado 1 2 2 Unlikely for our area Wild fire 1 1 1 Unlikely for our area

21 Scenario Threat Assessment PCI company located in San Francisco. Your data center is located off site in Silicon Valley and your DR site is located in AWS in Western Region. You have a 4 TB SQL DB with a high rate of change. SQL backups are to a separate datacenter on the east coast. Office hours are M-F, but you do have an interactive website with weekly maintenance on Saturdays at 1am pst to 6am pst. You have 100 critical servers, 200 non critical servers, and 3 applications that are hosted elsewhere that are considered critical. What threat assessments should you consider?

22 Threat Assessments Type of Threat Probability Severity Score Notes

23 Checklist for DR Planning Testing your DR Solution What is the order that your applications need to come online? (Databases 1 st?) HIPPA,PCI DSS/ requirements you will be required to emulate in DR? What resources need to be involved for testing?

24 Checklist for DR testing How long can you run Production on your DR solution if required? Was networking tested on your DR solution? How will your servers be networked? How will your users / customers connect to the DR location? (VPNs)

25 Run Book! Every DR solution must have a run book This is a playbook that walks through what happens in the event of a disaster with a step by step scenario Possible compliance/audit or insurance requirements for your business to have runbook

26 Frequency of Disaster Recovery Testing You have a DR cloud solution in place How often have you tested your solution? Pending on regulations and requirements, testing may take place once a year or up to 4 times a year. Disaster recovery exercises may take a few attempts depending on the complexity of your solutions The point of the exercise is to find what is missed or what doesn t work!

27 Failover Test vs. Disaster Recovery Site Test Failover Test: is the process of completely failing over a recovery plan with the intention of testing. There is nothing wrong at the production location. Disaster Recovery Site Test: It is very similar to a failover test with the only difference being that the production site remains the system of record. Meaning that the production stays up and running for production users. Only the Customer staff testing/verifying the failover test will access the failover site. Any changes made to the virtual machines at the failover site will be lost at the end of the test.

28 Final thoughts Differences between Disaster Recovery and testing Disaster Recovery Local Internet connectivity Communication In a real disaster your company email could be down If a large disaster is declared, phones may be down, have you worked out an alternative way to contact appropriate parties?

Scenario Planning 29

30 Sample Company Project Plan Task Name Duration Predecessors Start Finish Production Environment 46 days Wed 1/6/16 Wed 3/9/16 Storage 10 days Wed 1/6/16 Tue 1/19/16 NAS (4000GB) 10 days Wed 1/6/16 Tue 1/19/16 SAN (500GB) for file server second drive 6 days Tue 1/12/16 Tue 1/19/16 Oracle Installation and Configuration 28 days Mon 2/1/16 Wed 3/9/16 Oracle installed/configured for Production cluster 28 days Mon 2/1/16 Wed 3/9/16 Oracle installed/configured for Dev server 2 days 6 Mon 2/15/16 Tue 2/16/16 Dev restore from backup 10 days Tue 2/16/16 Mon 2/29/16 DR Environment 119 days Fri 10/16/15 Wed 3/30/16 Cloud Enterprise to Cloud Enterprise Recovery 119 days Fri 10/16/15 Wed 3/30/16 Single Firewall 15 days Mon 12/21/15 Fri 1/8/16 Live DB (physical) 84 days Fri 10/16/15 Wed 2/10/16 Server in stock 1 day Mon 12/21/15 Mon 12/21/15 Server racked and cabled 30 days 18 Mon 12/21/15 Fri 1/29/16 Server linked to network 1 day 16,19 Mon 2/1/16 Mon 2/1/16 OS deployment 1 day 20 Mon 2/1/16 Mon 2/1/16 Network troubleshooting 1 day 21 Tue 2/2/16 Tue 2/2/16 Environment QA 5 days 22 Wed 2/3/16 Tue 2/9/16 Provisioning complete 1 day 23 Tue 2/9/16 Wed 2/10/16 Restore backup to DR DB Server for testing 3 days Fri 10/16/15 Tue 10/20/15 Recovery Environment 61 days Tue 1/5/16 Wed 3/30/16 Production buildout complete 0 days Fri 1/29/16 Fri 1/29/16 Complete VPN or ICC to DR site 0 days 27 Tue 1/5/16 Tue 1/5/16 Deploy Cloud Recovery Infrastructure 22 days 28 Wed 1/6/16 Thu 2/4/16 Configure VMs for protection 0 days Tue 2/9/16 Tue 2/9/16 DR Data Sync 15 days 30 Wed 2/10/16 Tue 3/1/16 Recovery Plans Created 0 days 31 Wed 2/10/16 Wed 2/10/16 Configure portal functionality 0 days 32 Wed 2/10/16 Wed 2/10/16 Exercise Qualification Meeting 1 day Mon 3/21/16 Mon 3/21/16 Runbook complete 1 day 34 Tue 3/22/16 Tue 3/22/16 Pre-exercise verification meeting 1 day 35 Wed 3/23/16 Wed 3/23/16 Cloud Recovery Exercise(s) 5 days 36,25 Thu 3/24/16 Wed 3/30/16

31 Scenario begin your planning You work for a company that hosts multiple dating websites. Your CTO wants you to come up with a budget/plan to implement DR. Where do you begin? Addl notes. Environment currently hosted in private cloud Some PCI compliance

Declaring a Disaster 32

33 Steps for Declaring a Disaster The first 24 hours 1. Determine degree of disaster 2. Notify senior management 3. Notify VENDOR where you re DR environment is located 4. Notify your disaster recovery team 5. Notify users of the disruption of service 6. Implement Disaster Recovery Plan 7. Contact external vendor/contacts (software)

RUNBOOK 34

Q&A 35