bcp

Backup and Disaster Recovery Policies for ISO 27001

IT Policies and Auditing and testing companies will need to have written to obtain the ISO 27001 Certification

Backup and Recovery

Development of a policy and documentation that defines what a company backs up and how the backup is performed. It will also cover recovery and retention with appropriate service level agreements for critical data such as RPO and RTO.

Test backup and recovery process

A full test of all backups to ensure that they are valid and that the SLA's can be met.

Business Continuity Plan

Development of a business continuity plan to ensure operations continue in the event of a disaster or office closure.

Test business continuity plan with staff

A simulated test of the above business continuity plan across all staff to ensure the plan works and the goals can be achieved within the timeframes required.

Disaster Recovery Plan Template (DRP) / Business Continuity Plan (BCP)

As Wikipedia put it a  Disaster Recovery Plan is

a documented process or set of procedures to recover and protect a business IT infrastructure in the event of a disaster. Such a plan, ordinarily documented in written form, specifies procedures an organization is to follow in the event of a disaster.

As Wikipedia put its a Business Continuity Plan is

the process of creating systems of prevention and recovery to deal with potential threats to a company.

THE TWO ARE DIFFERENT!

Disaster Recovery Plans should be oriented towards business recovery following a disaster, and mitigating the negative consequences of a disaster. In contrast, Business Continuity Plans focus on creating a plan of action that focuses on preventing the negative consequences of a disaster from occurring at all.

Business Continuity Plan

You should identify any potential risks and threats facing the company and the likely hood of them happening. Then you should list the likely hood of these effecting the company in what ways e.g. Loss of Sales , Fines and loss of customers

Disaster Recovery Plan

Some questions that should be put forward are

1) Is my Data covered in the event of a Diaster , can I recover?

2) What is my current recovery time in regards to services and 100% Business Availability

The cloud helps business' keep their data offsite usually in well-equipped data centers that are also replicated between different data centers to cover a natural disaster affecting their service. However customers should always operate the 3 level backup model and use methods to be able to make sure they can export and backup their cloud data.

Here's a link to a predefined template which can be filled out and actioned by a company and their IT Provider

Let Response IT help build your Disaster Recovery Plan and Business Continuity Plan to failure proof your business ! Contact Us Today