The Special publication
on IT contingency Planning mainly focuses on the methodology of creating a good
contingency plan in the eventuality of a Risk. IT contingency plan in term of
Risk Management has two vital functions, which are identifying the threats and
vulnerability of the system so as a proper control of the Risk will be in place
and Identifying Residue Risk for which contingency plan must also be in place.
Contingency planning is
seen as an element of Risk Management. A risk assessment identifies the system
vulnerability to attack which necessitates a proper assignment of a Risk level;
Either high, Medium, or Low. The publication found that there is a strong
correlation between IT system and Business process it supports. A proper coordination between plans is
necessary to fine tune the Planning process with the Firms' business strategy.
Contingency Planning
involves; Business Continuing Planning (BCP); which keeps the company in
operations after an event or disaster. Continuity of Operations Plan; which
focuses on restoring the organizational operations. IT Contingency Plan, Crisis
Communication Plan; which deals with effective and efficient mode of
communication after a crisis, Disaster Recovery plan and Occupant Emergency
Plan.
The publication also investigated
system architecture and line of succession. The organization's line of
succession deals with reorganizing t decision-making hierarchy in the event of
a crisis.
No comments:
Post a Comment