Business Continuity Planning (BCP)
The set of controls designed to keep a business running in the face of adversity, whether natural or man-made
Continuity of Operations Planning (COOP)
Business Continuity Planning (BCP) (Focus)
Keep business operations running
Primary control that supports the security objective of Availability
BCP Scope
What business activities will the plan cover
What systems will it cover
What controls will it consider
BCP (Cloud)
Business continuity planning in the cloud requires collaboration between providers and customers.
Business Continuity Controls
Redundancy
Single Point of Failure Analysis (SPOF)
Succession planning
Redundancy
Protects against the failure of a single component
Single Point of Failure Analysis (SPOF)
continues until the cost of addressing risks outweighs the benefit
Succession planning
When someone leaves the organization have a replacement or successor ready for that position.
High Availability
Uses multiple systems to protect against service failure
Fault Tolerance
Makes a single system resilient against technical failures
Load Balancing
Spreads demand across systems
Different than High Availability (They have different goals)
Common Points of Failure (3)
Power Supply
Storage media
Networking