Business Continuity

docx

School

The University of Nairobi *

*We aren’t endorsed by this school

Course

MISC

Subject

Management

Date

Nov 24, 2024

Type

docx

Pages

5

Uploaded by MagistrateFog22013

Report
1 Business Continuity Student’s Name Institutional Affiliation
2 Introduction The BCP assignment will detail the following elements: resources required and defined stakeholder roles business impact analysis recommended preventative controls recovery strategies contingency plan that includes implementation and maintenance guidelines and defined procedures for testing the plan Scope Consider what aspects of business continuity the BCP will address, such as business recovery, contingency planning, and disaster recovery. Submit a brief description for feedback (one page or less) of the topic areas to be covered in the BCP. Conduct a Business Impact Analysis Business Impact Analysis Template Threat Impacts Priority Assessment Recovery Methods
3 Note: You can add more rows to the bottom of the table if needed. Identify Key Resources and Stakeholders Key Resources and Stakeholders Template Copy the BIA findings into the table below and add information on the resources that are needed and person or groups accountable for that specific aspect of the BCP. Threat Impacts Priority Assessment Recovery Methods Accountab
Your preview ends here
Eager to read complete document? Join bartleby learn and gain access to the full version
  • Access to all documents
  • Unlimited textbook solutions
  • 24/7 expert homework help
4 Note: You can add more rows to the bottom of the table if needed. Consider Preventive Controls Either way, the BCP should contain controls that can be classified as measures taken in advance of a catastrophe that are designed to reduce the risk of a negative impact. In the process of itemizing the controls, make sure they are properly aligned with organizational goals and the strategic direction of the enterprise. The preventative controls selected should be aligned with the organizational goals and strategies. You will list these controls in the next step. List Preventive Controls Upload a description of the preventative controls to be used in the BCP here for feedback. Research Recovery Strategies The DRP is usually more technical, very specific, and very much a necessity in today's highly connected technology infrastructure. The DRP includes descriptions of data backup strategies , recovery sites , and postincident requirements . Document Recovery Strategies Upload a description of the planned recovery strategies here for feedback. Develop Implementation and Maintenance Procedures for the Contingency Plan
5 You've documented recovery strategies and are well on the way to completing the BCP. But writing a BCP is not enough. You must also have a clear plan for implementing and maintaining the BCP. Answer these questions: What resources are needed? Under what conditions, such as fire, natural disasters, occurrence of a terrorist attack, etc., will the BCP will be activated? How will stakeholders be made aware of the policies and procedures of the BCP? How will employees be trained on the plan? How often will training occur? Will there be a general training for all employees or role-based trainings for people in specific functional areas? How/where will the plan for stored for safekeeping and accessibility when needed? When and how will BCP maintenance reviews be scheduled? How will updates and changes to the plan be handled? How often will the plan be updated? In this step, begin to develop a strategy for how the BCP will be implemented and maintained. This information will be used in Step 11, in which the contingency plan will be documented. Next, you will develop testing procedures for the plan. Develop Testing Procedures for the Contingency Plan Taking time to develop, document, and test consistent processes and controls will also help you prepare for the annual audit of your information security system under any of the commonly used security and audit frameworks . Under these security and audit methodologies , auditors will gather information about the organization's security systems, confirm that appropriate security measures are in place, and provide a report on their findings. Document the Contingency Plan However, an effective BCP must outline how the plan will be implemented and maintained and also how it will be tested to ensure its viability in a real emergency situation. Therefore, an integral part of the BCP should be a discussion of plans for implementation and maintenance and for business continuity testing.