Business continuity focuses on keeping the business operating. Where disaster recovery tends to deal with systems and data, business continuity is focused on overall business operations. Typically business continuity involves prioritizing various business processes and recovering the most important ones first. Thus, disaster recovery is likely to be concerned with getting the entire storage network back up while business continuity is more likely to work on getting the parts dealing with critical processes like transaction processing back first.
Business impact analysis supports business continuity by attempting to decide which processes are the most critical to recover in case of a disaster. This usually involves assigning monetary value to the protection of assets involved in specific business processes.
ITIL Risk Assessment Methodology
The typical organization has hundreds of applications all at different recoverability capability. For example some have no plan, some have out of region architectures some have not exercised in long time and some are in great shape testing every quarter.
All of the applications need to be categorizing them so that the Disaster Planning Team can start re-mediating the ones that place the enterprise at the most risk to the business from both a compliance and readiness perspective.
Using the ITIL framework, you can weigh each Critical Success Factor (CSF) and scoring their Key Performance Indicators (KPI). That allows you to create a rating system and developing a score card report by tiers.
Weighting Critical Success Factors
Examples
6 = Critical to success of recovery
3 = Required for timely recovery (could recover without but risk is increased)
1 = Needed to support recovery but only minimal impact on recovery efforts
Scoring of Key Performance Indicators
Examples
Not in place or not implemented = 0
Completed but past the KPI deadline, not accurate or incomplete = 1
In place or completed on time = 3
Final rating for each CSF and the associated KPI multiply the weight of the CSF by the score of the KPI
CSF: Conduct exercise at alternate facility (Weight 6)
KPI = Conduct an annual exercise alternate facility
CSF: Update BCP Plans (Weight 3)
KPI = Update BCP plans by <insert date> each year
CSF: Conduct Annual Tabletop of recovery Plan (Weight 3)
KPI = Conduct at least 1 annual tabletop of BCP plans by December
Disaster Planning Template Contains the BIA Questionnaire
The Disaster Recovery Plan (DRP) includes the BIA Business Impact Analysis Questionnaite. In addition the Disaster Planning and Business Continuity Planning Template include:
Disaster Recovery Plan and Business Continuity framework
Work Plan
Disaster Recovery and Business Continuity Audit Program
Pandemic Planning Checklist
Incident Communication Plan and Policy
Electronic Forms
The Disaster Recovery - Business Continuity Template purchase options are
Disaster Recovery Business Continuity Standard Edition
Disaster Recovery Business Continuity Template (WORD)
Disaster Recovery Business Continuity Audit Program - Compliant with ISO 27031 and ISO 22301
Disaster Recovery Manager Job Description
Manager Disaster Recovery & Business Continuity Job Description
Application Inventory and Business Impact Analysis Questionnaire
Incident Communication Plan and Policy with BEST PRACTICES for
News Conferences
Media Relations
Social Network Checklist
Included with the template are Electronic Forms which have been designed to lower the cost of maintenance of the plan. Electronic Forms that can be eMailed, completed via a computer or tablet, and stored electronically including:
LAN Inventory
Location Contact Numbers
Off-Site Inventory
Personnel Locations
Plan Distribution
Remote Location Contact Information
Team Call List
Vendor Contact Information
Added Bonus - Safety Program Electronic Forms
Area Safety Inspection
Employee Job Hazard Analysis
First Report of Injury
Inspection Checklist – Alternative Locations
Inspection Checklist – Office Locations
New Employee Safety Checklist
Safety Program Contact List
Training Record
Disaster Recovery Business Continuity Premium Edition
Disaster Recovery Business Continuity Template
15 Job Descriptions (WORD)
Chief Information Officer - CIO, Chief Security Officer - CSO, Chief Compliance Officer - CCO, VP Strategy and Architecture, Director Disaster Recovery and Business Continuity, Director e-Commerce, Director Media Communications, Manager Disaster Recovery, Manager Disaster Recovery and Business Continuity, Disaster Recovery Coordinator, Disaster Recovery - Special Projects Supervisor, Manager Database, Capacity Planning Supervisor, Manager Media Library Support, Manager Site Management, and Pandemic Coordinator
Disaster Recovery Business Continuity Gold Edition
Disaster Recovery Business Continuity Template
261 IT Job Descriptions including all of the job descriptions contained in the Premium edition
Disaster Recovery Business Continuity & Security Manual Templates Standard
Disaster Recovery Business Continuity Template
Security Manual Template
"Best of Breed - Best Practices Disaster Recovery Planning / Business Continuity Planning and Security Policies" according to the IT Productivity Center
Disaster Recovery Business Continuity & Security Manual Templates Premium
Disaster Recovery Business Continuity Template
Security Manual Template
25 Job Descriptions
Chief Information Officer - CIO; Chief Compliance Officer - CCO; Chief Security Officer - CSO;VP Strategy and Architecture; Director e-Commerce; Database Administrator; Data Security Administrator; Manager Data Security; Manager Database; Manager Disaster Recovery; Manager Disaster Recovery and Business Continuity; Pandemic Coordinator; Manager Facilities and Equipment; Manager Media Library Support; Manager Network and Computing Services; Manager Network Services; Manager Site Management; Manager Training and Documentation; Manager Voice and Data Communication; Manager Wireless Systems;Capacity Planning Supervisor; Disaster Recovery Coordinator; Disaster Recovery - Special Projects Supervisor; Network Security Analyst; System Administrator - Unix; System Administrator - Windows
Disaster Recovery Business Continuity & Security Manual Templates Gold
Disaster Recovery Business Continuity Template
Security Manual Template
261 Job Descriptions which includes all of the job descriptions in the premium edition
"Best of Breed - Best Practices Disaster Recovery Planning / Business Continuity Planning, Security Policies, IT Job Descriptions" according to the IT Productivity Center