An executive summary should include the purpose of having a BCP for your business and highlight the key points in your plan:

Size: px
Start display at page:

Download "An executive summary should include the purpose of having a BCP for your business and highlight the key points in your plan:"

Transcription

1 A Business Continuity Plan (BCP) helps you prepare for a major disruption to your business. It puts processes and plans in place to respond to these events and enable you to limit the impact these events have on your critical business functions. This template is a high level overview of the fundamental steps in putting together this plan. Business name: Date: Created by: EXECUTIVE SUMMARY An executive summary should include the purpose of having a BCP for your business and highlight the key points in your plan: SCOPE Determining the scope of your Business Continuity Programme is the first step in creating a workable BC Plan. It is important to ensure you understand the drivers behind identifying what is included and excluded from the scope to ensure effective deployment of resources. Deciding what products and services should be included in the scope can be driven by Customer requirements Legal and regulatory requirements High risk locations physical threats or proximity to industrial premises High income-generating product or service Business Continuity Plan 1

2 BUSINESS IMPACT ANALYSIS Based on the scope of your programme, the next step is to identify the critical processes within scope as part of the Business Impact Analysis (BIA). This can be done at a strategic level then filter down to an operational level where the systems and people who support those critical processes are identified. In order to prioritise critical processes for inclusion in the BCP, it is essential to understand how long the business can survive without those processes and/or systems before the disruption becomes intolerable this is known as the Maximum Acceptable Outage (MAO). More analysis needs to be carried out on how long that particular process or system takes to recover ideally this should be less that the MAO. If not, the organisation needs to set some Recovery Time Objectives (RTOs) and take action to bring the RTO to well within the MAO. Some consideration should also be given to how much data loss is acceptable to the business and targets set to minimise the impact of data loss this is known as Recovery Point Objective (RPO) and will determine your backup and recovery procedures. List here your critical processes and underlying systems and the impact of their loss: Business Process/System Est. revenue loss per day Estimated recovery time RTO RPO Priority Rating Scale 1 = Very Low 2 = Low 3 = Medium 4 = High 5 = Very High Business Continuity Plan 2

3 THREAT ANALYSIS Now you have determined the scope and identified critical processes and systems, the next step is to analyse potential threats to those processes/systems. Threat analysis uses common risk identification and assessment techniques to understand unacceptable concentrations of risks or single points of failure that could jeopardise critical business processes. Threat analysis should take into account people, premises, resources and suppliers. Threats can be different from one organisation to another however there are some common threats that all organisations face. These range from natural events such as a flood, fire, earthquakes, to human error, sabotage, cyber-attacks, power failure, no site access etc. Below are the most common threat events that have materialised for Interactive s customers. You can use the list as a start to determining your own threat analysis and mitigation strategy. Use a risk rating that does not over-emphasise the impact of minor events (i.e. should a low probability/high impact event have the same significance as a high probability/low impact event?) Threat Probability Impact Rating Mitigation Other Considerations Flood Loss of power Loss of Comms No site access OH&S events Rating Scale 1 = Very Low 2 = Low 3 = Medium 4 = High 5 = Very High Business Continuity Plan 3

4 RECOVERY SOLUTIONS How can you recover if a threat materialises? Having a recovery solution in place is key. Essentially this is your back-up plan. What s yours? For example, do you have insurance? Is your data backed up and easily recoverable? Are there any single points of failure in your technology infrastructure as well as in your processes and people? Threat Recovery Plan Estimated recovery time Responsibility Action point E.g. Disruption to call centre and/or staff contact insurance provider to make a claim re-locate call centre staff to office recovery stations 2-4 weeks IT manager to make insurance claim HR to manage relocation of staff Delegate personnel to manage relationship and contracts with insurance provider Call centre staff to resume day-to-day operations at recovery office station Loss of data Breach of security Business Continuity Plan 4

5 SUPPLIERS & KEY CONTACTS It will be important for you to put a team in place to manage rapid recovery in the case of an emergency. A team will be able to see the gaps that need to be filled as they put the pieces back in place. Who do you need to contact in case of an emergency? What are the first steps to take to mitigate further disaster and to start righting the ship? Suppliers Provider Type Key Contact & Details Alternate Contact & Details Notes Insurance Security Telecommunications provider BC provider Business Continuity Plan 5

6 Key Internal Contacts Keep all internal contacts in one sheet and identify key roles and responsibilities of individuals involved in the recovery of a business. Role Team Members Involved Contact Details Alternate Contact Roles & Responsibilities BC Team Sarah Gully BC manager Tom Bennett BC advisor Sarah Gully S.gully@name.com.au Tom Bennett t.bennett@name.com.au In the declaration of a disaster, BC team will liaise with key internal and external folders to implement BCP They will officially declare a disaster and be the main point of contact. In the event of a major disruption, every business will have specific needs to restore its day to day business operations. Interactive offers alternative premises, system restoration and backup solutions. Contact our team at to schedule a meeting and Business Continuity facility tour. Business Continuity Plan 6

Business Continuity Plan

Business Continuity Plan Business Continuity Plan IMMEDIATE ACTIONS Manager/Supervisor 1. Ensure emergency services contacted 2. Ensure safety of personnel 3. Co-ordinate with the emergency services 4. Contact Senior members of

More information

ASX CLEAR OPERATING RULES Guidance Note 10

ASX CLEAR OPERATING RULES Guidance Note 10 BUSINESS CONTINUITY AND DISASTER RECOVERY The purpose of this Guidance Note The main points it covers To assist participants to understand the disaster recovery and business continuity arrangements they

More information

GROUP RESILIENCE & CONTINUITY POLICY (INCLUDING INCIDENT MANAGEMENT) SUMMARY FOR THIRD PARTY SUPPLIERS

GROUP RESILIENCE & CONTINUITY POLICY (INCLUDING INCIDENT MANAGEMENT) SUMMARY FOR THIRD PARTY SUPPLIERS GROUP RESILIENCE & CONTINUITY POLICY (INCLUDING INCIDENT MANAGEMENT) SUMMARY FOR THIRD PARTY RATIONALE This Policy has been designed to assist in managing the risk of potential interruptions from a range

More information

GROUP RESILIENCE & CONTINUITY POLICY (INCLUDING INCIDENT MANAGEMENT) SUMMARY FOR THIRD PARTY SUPPLIERS

GROUP RESILIENCE & CONTINUITY POLICY (INCLUDING INCIDENT MANAGEMENT) SUMMARY FOR THIRD PARTY SUPPLIERS GROUP RESILIENCE & CONTINUITY POLICY (INCLUDING INCIDENT MANAGEMENT) SUMMARY FOR THIRD PARTY RATIONALE This Policy sets out the Group's requirements for a robust resilience and continuity approach to protect

More information

Enterprise England is a small charity, currently with no staff and relying upon outsourced consultants.

Enterprise England is a small charity, currently with no staff and relying upon outsourced consultants. Issue 2: 1 February 2018 Business Continuity Plan Introduction Enterprise England is committed to ensuring business continuity in the event of an unplanned crisis or incident. This document aims analyse

More information

CITY UNIVERSITY OF HONG KONG Business Continuity Management Standard

CITY UNIVERSITY OF HONG KONG Business Continuity Management Standard CITY UNIVERSITY OF HONG KONG Business Continuity Management Standard (Approved by the Information Strategy and Governance Committee in December 2013; revision 1.1 approved by Chief Information Officer

More information

AUSTRACLEAR REGULATIONS Guidance Note 10

AUSTRACLEAR REGULATIONS Guidance Note 10 BUSINESS CONTINUITY AND DISASTER RECOVERY The purpose of this Guidance Note The main points it covers To assist participants to understand the disaster recovery and business continuity arrangements they

More information

South Lincolnshire NHS Clinical Commissioning Group Business Continuity Policy

South Lincolnshire NHS Clinical Commissioning Group Business Continuity Policy South Lincolnshire NHS Clinical Commissioning Group Business Continuity Policy Reference No: CG001 Version: Version 1 Approval date 27 March 2014 Date ratified: 27 March 2014 Name of Author and Lead Jules

More information

INTEGRATING RISK MANAGEMENT AND BUSINESS CONTINUITY

INTEGRATING RISK MANAGEMENT AND BUSINESS CONTINUITY INTEGRATING RISK MANAGEMENT AND BUSINESS CONTINUITY June 2012 Sami Ahmed Assistant Vice President - MRC Paolo De Rosa Senior Vice President - MRC Introduction Purpose Raise your knowledge and awareness

More information

Clinic Business Continuity Plan Guidelines

Clinic Business Continuity Plan Guidelines Clinic Business Continuity Plan Guidelines Emergency Notification Contacts Primary Role Name Address Home Phone Mobile/Cell Phone Clinic Business Continuity Plan Coordinator EMR Vendor Business Continuity

More information

Business Continuity Plan. The 12 Steps Model. Business Continuity Plan. Emergency Contingency Crisis Castastrophe Disaster.

Business Continuity Plan. The 12 Steps Model. Business Continuity Plan. Emergency Contingency Crisis Castastrophe Disaster. 1 Origin (Manufactur er / Supplier) Dispatching Port Business Continuity Plan. Unloading Port The 12 Steps Model Destination Fundamentals 2 Emergency Contingency Crisis Castastrophe Disaster 1 Emergencies

More information

Disaster Recovery Planning: The essentials. A guide for IT Professionals

Disaster Recovery Planning: The essentials. A guide for IT Professionals A guide for IT Professionals Contents + Introduction + Assess Your Business Needs + Are You Missing 'Silent' Disasters? + Going Beyond Business Impact Analysis + Match Your Service Level Agreements to

More information

Security+ Guide to Network Security Fundamentals, Third Edition. Chapter 14 Security Policies and Training

Security+ Guide to Network Security Fundamentals, Third Edition. Chapter 14 Security Policies and Training Security+ Guide to Network Security Fundamentals, Third Edition Chapter 14 Security Policies and Training What Is a Security Policy? Security policy A written document that states how an organization plans

More information

Procedure: Risk management

Procedure: Risk management Procedure: Risk management Purpose To outline the procedures involved for identification, assessment and management of risks. Procedure Introduction 1. This procedure outlines the University s Risk Awareness

More information

IT Risk in Credit Unions - Thematic Review Findings

IT Risk in Credit Unions - Thematic Review Findings IT Risk in Credit Unions - Thematic Review Findings January 2018 Central Bank of Ireland Findings from IT Thematic Review in Credit Unions Page 2 Table of Contents 1. Executive Summary... 3 1.1 Purpose...

More information

DISASTER RECOVERY PLANNING. To print to A4, print at 75%.

DISASTER RECOVERY PLANNING. To print to A4, print at 75%. DISASTER RECOVERY PLANNING To print to A4, print at 75%. TABLE OF CONTENTS EXECUTIVE SUMMARY WHAT IS A DISASTER RECOVERY PLAN (DRP)? WHY SHOULD MY COMPANY HAVE ONE? CHAPTER CHAPTER EXECUTIVE SUMMARY WHAT

More information

Principal risks and uncertainties

Principal risks and uncertainties Principal risks and uncertainties Strategic report Principal risks are a risk or a combination of risks that, given the Group s current position, could seriously affect the performance, future prospects

More information

Operational Risk Management

Operational Risk Management Operational Risk Management An Iceberg but Icebergs can melt DMF Stakeholders Forum Berlin, May 2013 Mike Williams mike.williams@mj-w.net Operational risk is: The risk of loss (financial or nonfinancial)

More information

RISK MANAGEMENT POLICY

RISK MANAGEMENT POLICY B A R R A M U N D I L I M I T E D RISK MANAGEMENT POLICY February 2018 THE OBJECTIVES OF RI SK MANAGEMENT Risk management is the systematic process of managing an organisation's risk exposures to achieve

More information

BCMS APPROACH. Implementing Business Continuity for Organization

BCMS APPROACH. Implementing Business Continuity for Organization BCMS APPROACH Implementing Business Continuity for Organization BC INSTANCES Flight EK521 arriving from Trivandrum, India crash-lands in Dubai 282 passengers and 18 crew on board including 24 Britons One

More information

RISK AND BUSINESS CONTINUITY MANAGEMENT

RISK AND BUSINESS CONTINUITY MANAGEMENT RISK AND BUSINESS CONTINUITY MANAGEMENT EFFECTIVE: 18 MAY 2010 VERSION: 1.4 FINAL Last updated date: 29 September 2015 Uncontrolled when printed 2 Effective: 18 May 2010 CONTENTS 1 POLICY STATEMENT...

More information

Risk Management Services. Business Continuity Planning Guidance Notes. Reading this overview document will assist you in:

Risk Management Services. Business Continuity Planning Guidance Notes. Reading this overview document will assist you in: Risk Management Services Business Continuity Planning Guidance Notes Reading this overview document will assist you in: Identifying and describing the main points of Business Continuity Planning Aid in

More information

Preparing a business continuity plan

Preparing a business continuity plan Preparing a business continuity plan Disaster strikes when you least expect it. Hopefully, a disaster will never happen, but if it does you need to be prepared so that the disruption to your organisation

More information

Policy Flowchart. Policy Title: Business Continuity Management Policy. Reference and Version No: RM17 Version 5

Policy Flowchart. Policy Title: Business Continuity Management Policy. Reference and Version No: RM17 Version 5 Policy Title: Business Continuity Management Policy Reference and Version No: RM17 Version 5 Author and Job Title: Sally Thompson Associate Director of Operations Emergency and Anaesthetic Care Services

More information

Code Subsidiary Document No. 0007: Business Continuity Management

Code Subsidiary Document No. 0007: Business Continuity Management Code Subsidiary Document No. 0007: Change History Version Number Date of Issue Reason For Change Change Control Reference Sections Affected Version 1.0 Page 2 of 28 Table of Contents 1. Introduction...

More information

Contents. Copyright The City of Calgary. All rights reserved. Reprinted with Permission.

Contents. Copyright The City of Calgary. All rights reserved. Reprinted with Permission. Contents 1 What is business continuity? 3 Why should my business have a plan? 3 How to develop a business continuity plan 4 STEP ONE: Analyze your business 5 STEP TWO: Assess the risks 6 STEP THREE: Develop

More information

COMMISSION OF THE EUROPEAN COMMUNITIES

COMMISSION OF THE EUROPEAN COMMUNITIES EN EN EN COMMISSION OF THE EUROPEAN COMMUNITIES Brussels, 23.2.2009 COM(2009) 82 final COMMUNICATION FROM THE COMMISSION TO THE EUROPEAN PARLIAMENT, THE COUNCIL, THE EUROPEAN ECONOMIC AND SOCIAL COMMITTEE

More information

Introduction. Aim. Respond to a disruptive incident (Incident Management Phase)

Introduction. Aim. Respond to a disruptive incident (Incident Management Phase) Page no: 1 of 10 Approved: 18 July 2016 Introduction... 1 Aim... 1 Action in the event of disruption... 2 Incident Management Phase... 2 Business Continuity Phase... 2 Resumption and Recovery Phase...

More information

Cyber ERM Proposal Form

Cyber ERM Proposal Form Cyber ERM Proposal Form This document allows Chubb to gather the needed information to assess the risks related to the information systems of the prospective insured. Please note that completing this proposal

More information

The Business Continuity Blueprint. A practical guide to. business continuity planning. PART 1 An Introduction

The Business Continuity Blueprint. A practical guide to. business continuity planning. PART 1 An Introduction The Business Continuity Blueprint A practical guide to business continuity planning PART 1 An Introduction CONTENTS FOREWORD A practical guide to Business Continuity Planning Part 1 - An Introduction It

More information

Financial Risk. Operational Risk. Strategic Risk. Compliance Risk. Chapter 2 Risk management. What is risk?

Financial Risk. Operational Risk. Strategic Risk. Compliance Risk. Chapter 2 Risk management. What is risk? Chapter 2 Risk management What is risk? Business risk is a circumstance or factor that may have a significant negative impact on the operations or profitability of a given business. Business risk can result

More information

GLP2 Risk Management GLP6 Work Health & Safety. Responsible Organisational Unit Infrastructure Services and Development

GLP2 Risk Management GLP6 Work Health & Safety. Responsible Organisational Unit Infrastructure Services and Development Responsible Officer Approved by Chief Operating Officer Vice-Chancellor Approved and commenced January 2019 Review by January 2022 Relevant Legislation, Ordinance, Rule and/or Governance Level Principle

More information

Nagement. Revenue Scotland. Risk Management Framework. Revised [ ]February Table of Contents Nagement... 0

Nagement. Revenue Scotland. Risk Management Framework. Revised [ ]February Table of Contents Nagement... 0 Nagement Revenue Scotland Risk Management Framework Revised [ ]February 2016 Table of Contents Nagement... 0 1. Introduction... 2 1.2 Overview of risk management... 2 2. Policy Statement... 3 3. Risk Management

More information

7075/1/09 REV 1 (en, de, fr) CF/ap 1 DGH4

7075/1/09 REV 1 (en, de, fr) CF/ap 1 DGH4 COUNCIL OF THE EUROPEAN UNION Brussels, 4 March 2009 7075/1/09 REV 1 (en, de, fr) PROCIV 26 JAI 122 ENV 160 FORETS 22 AGRI 82 RECH 58 SAN 43 TELECOM 34 RELEX 192 ELARG 7 MED 4 ECOFIN 166 ATO 23 CHIMIE

More information

Business Interruption Losses from Hurricane Harvey Have Started: Billions of Dollars of Insurance Claims Expected

Business Interruption Losses from Hurricane Harvey Have Started: Billions of Dollars of Insurance Claims Expected Business Interruption Losses from Hurricane Harvey Have Started: Billions of Dollars of Insurance Claims Expected BY SCOTT A. BARNES, CPA, CFF, CGMA specializes in assisting policyholders in developing

More information

Business Continuity Planning. A guide to loss prevention

Business Continuity Planning. A guide to loss prevention Business Continuity Planning A guide to loss prevention There are many statistics quoted about the effect that a lack of planning for a disaster has on a business. What s certain is that any unplanned

More information

Business Continuity Planning

Business Continuity Planning Small Business Webinar Series Business Continuity Planning State of Queensland, 2013. The Queensland Government supports and encourages the dissemination and exchange of its information. The copyright

More information

January 23, Yours sincerely, (Mrs. Tarisa Watanagase) Governor

January 23, Yours sincerely, (Mrs. Tarisa Watanagase) Governor Unofficial Translation by the courtesy of The Foreign Banks' Association This translation is for the convenience of those unfamiliar with the Thai language. Please refer to the Thai text for the official

More information

Formulating Your Business Continuity Plan. ds-inc.com (609)

Formulating Your Business Continuity Plan. ds-inc.com (609) Formulating Your Business Continuity Plan ds-inc.com (609) 655 1707 Formulating Your Business Continuity Plan The first step to protecting your business from any negative setbacks is creating a systematic

More information

Client Risk Solutions Going beyond insurance. Risk solutions for the Manufacturing sector. Start

Client Risk Solutions Going beyond insurance. Risk solutions for the Manufacturing sector. Start Client Risk Solutions Going beyond insurance Risk solutions for the Manufacturing sector Start Partnering to Reduce Risk Manufacturers are faced with a myriad of challenges including a rapid pace of innovation,

More information

IBTTA Facilities Management and Maintenance Workshop October 23-25, 2011 Nashville, TN Ray Szczucki ACE USA Inland Marine ACE USA

IBTTA Facilities Management and Maintenance Workshop October 23-25, 2011 Nashville, TN Ray Szczucki ACE USA Inland Marine ACE USA Business Continuity Planning. Recovering From Disasters IBTTA Facilities Management and Maintenance Workshop October 23-25, 2011 Nashville, TN Ray Szczucki Inland Marine Any opinions or positions expressed

More information

SMALL BUSINESS. Guide to Business. Continuity Planning. Ensure your business continues to operate in the event of a disruption.

SMALL BUSINESS. Guide to Business. Continuity Planning. Ensure your business continues to operate in the event of a disruption. SMALL BUSINESS Guide to Business Continuity Planning Ensure your business continues to operate in the event of a disruption. You don t expect your home to burn down. However, you buy insurance to be prepared

More information

Risk Management. Policy No. 14. Document uncontrolled when printed DOCUMENT CONTROL. SSAA Vic

Risk Management. Policy No. 14. Document uncontrolled when printed DOCUMENT CONTROL. SSAA Vic Document uncontrolled when printed Policy No. 14 Risk Management DOCUMENT CONTROL Version: Date approved by Board: On behalf of Board: Jack Wegman 17 March 2015 26 March 2015 Denis Moroney President Next

More information

ENTERPRISE RISK MANAGEMENT POLICY FRAMEWORK

ENTERPRISE RISK MANAGEMENT POLICY FRAMEWORK ANNEXURE A ENTERPRISE RISK MANAGEMENT POLICY FRAMEWORK CONTENTS 1. Enterprise Risk Management Policy Commitment 3 2. Introduction 4 3. Reporting requirements 5 3.1 Internal reporting processes for risk

More information

TABLE OF CONTENTS INTRODUCTION:... 2

TABLE OF CONTENTS INTRODUCTION:... 2 TABLE OF CONTENTS TABLE OF CONTENTS... 1 1. INTRODUCTION:... 2 1.1 General Code of Conduct... 2 1.2 Definitions... 3 1.3 Risk Management Strategies... 3 1.4 Types of risks:... 4 2. ETHICS AS A FOUNDATION

More information

Nagement. Revenue Scotland. Risk Management Framework

Nagement. Revenue Scotland. Risk Management Framework Nagement Revenue Scotland Risk Management Framework Table of Contents 1. Introduction... 2 1.2 Overview of risk management... 2 2. Policy statement... 3 3. Risk management approach... 4 3.1 Risk management

More information

The University of Texas

The University of Texas The University of Texas Disaster Recovery Plan for Operating Technology Utilities and Energy Management ROBERTO DEL REAL, P.E. ASSOCIATE DIRECTOR UTILITIES AND ENERGY MANAGEMENT Disaster Recovery Plan

More information

Preparing for Disaster: What You Need to Know

Preparing for Disaster: What You Need to Know Preparing for Disaster: What You Need to Know Tom Halpin, Senior Vice President Treasury Services U.S. Dollar Clearing Frank Fogliano, Vice President Treasury Services Sales October 2006 Are You Prepared?

More information

Formulating Your Business Continuity Plan. ds-inc.com (609)

Formulating Your Business Continuity Plan. ds-inc.com (609) Formulating Your Business Continuity Plan (609) 655 1707 Formulating Your Business Continuity Plan The first step to protecting your business from any negative setbacks is creating a systematic process

More information

SECURITY MANAGEMENT Manage critical incidents as a security practitioner

SECURITY MANAGEMENT Manage critical incidents as a security practitioner 1 of 6 level: 6 credit: 20 planned review date: March 2007 sub-field: purpose: Security This unit standard is for people who work, or intend to work, as security managers or security consultants and who

More information

AAS BTA Baltic Insurance Company Risks and Risk Management

AAS BTA Baltic Insurance Company Risks and Risk Management AAS BTA Baltic Insurance Company Risks and Risk Management December 2017 1 RISK MANAGEMENT SYSTEM The business of insurance represents the transfer of risk from the insurance policy holder to the insurer

More information

BY Sri D. K. Goswami OIL INDIA LIMITED

BY Sri D. K. Goswami OIL INDIA LIMITED BY Sri D. K. Goswami OIL INDIA LIMITED Safety comes in CANS, I can, You can, We can EMERGENCY PREPARDNESS An Overview EMERGENCY Emergency means a situation or scenario which has the potential to cause

More information

RISK ASSESSMENT METHODOLOGIES AND APPLICATIONS

RISK ASSESSMENT METHODOLOGIES AND APPLICATIONS 5 RISK ASSESSMENT METHODOLOGIES AND APPLICATIONS LEARNING OBJECTIVES : To perform risk assessment and develop counter measures. To prepare action plan for risk mitigation. 5.1 INTRODUCTION assessment seeks

More information

ROI Considerations For BCP May 10, By Monica Goldstein. The Business Continuity Platform Company

ROI Considerations For BCP May 10, By Monica Goldstein. The Business Continuity Platform Company ROI Considerations For BCP May 10, 2006 By Monica Goldstein The Business Continuity Platform Company What is ROI? For a given use of money in an enterprise, the ROI (return on investment) is how much profit

More information

CMI MANAGEMENT QUALIFICATIONS

CMI MANAGEMENT QUALIFICATIONS CMI MANAGEMENT QUALIFICATIONS Getting the right leadership and management qualification increases performance, enhances organisational reputation and boosts motivation. Yet research shows that just 1 in

More information

Goodman Group. Risk Management Policy. Risk Management Policy

Goodman Group. Risk Management Policy. Risk Management Policy Goodman Group Contents 1. Overview... 3 1.1 Introduction... 3 1.2 Objectives of the... 3 1.3 Application... 3 1.4 Operative Provisions... 4 2. Risk Management... 5 2.1 Overview of Risk Management... 5

More information

A Practical Framework for Assessing Emerging Risks

A Practical Framework for Assessing Emerging Risks A Practical Framework for Assessing Emerging Risks John Bowman, MBCI Enterprise Business Continuity Management Share one approach to assess the current level of business continuity risk in your organization.

More information

There are many definitions of risk and risk management.

There are many definitions of risk and risk management. Definition of risk There are many definitions of risk and risk management. The definition set out in ISO Guide 73 is that risk is the effect of uncertainty on objectives. In order to assist with the application

More information

Taiwan Clearing House. Principles for Financial Market Infrastructures. Disclosure Report

Taiwan Clearing House. Principles for Financial Market Infrastructures. Disclosure Report Taiwan Clearing House Principles for Financial Market Infrastructures Disclosure Report Taiwan Clearing House June 30, 2016 Contents I. Executive Summary... 2 II. Summary of Major Changes Since Last Update...

More information

PST Board Assurance Framework

PST Board Assurance Framework PST Board Assurance Framework 14 th January 2016 PST Board Assurance Framework Registered Address (No: IP030872) Fratton Park Frogmore Road Portsmouth PO4 8RA Prepared by Dr Mark Farwell PST Secretary

More information

Risk Management Plan PURPOSE: SCOPE:

Risk Management Plan PURPOSE: SCOPE: Management Plan Authority Source: Vice-Chancellor Approval Date: 16/05/2018 Publication Date: 17/05/2018 Review Date: 17/05/2021 Effective Date: 16/05/2018 Custodian: General Counsel and University Secretary

More information

BUSINESS CONTINUITY PLANNING AND DISASTER RECOVERY PLANNING

BUSINESS CONTINUITY PLANNING AND DISASTER RECOVERY PLANNING 6 BUSINESS CONTINUITY PLANNING AND DISASTER RECOVERY PLANNING LEARNING OBJECTIVES : To develop business continuity plan 6.0 INTRODUCTION Business continuity focuses on maintaining the operations of an

More information

Pension Scheme Cyber Resilence Workshop

Pension Scheme Cyber Resilence Workshop Pension Scheme Cyber Resilence Workshop Cyber Resilience Workshop Pension schemes hold substantial amounts of personal data, have regular financial transactions, and are managed by trustees who often

More information

BUSINESS CONTINUITY PLANNING. Alberta Public Housing Administrators Association Conference October 2017

BUSINESS CONTINUITY PLANNING. Alberta Public Housing Administrators Association Conference October 2017 BUSINESS CONTINUITY PLANNING Alberta Public Housing Administrators Association Conference October 2017 Recent Major Disasters Horse River wildfires Southern Alberta floods Gainford CN Derailment Slave

More information

PCC Business continuity plan

PCC Business continuity plan PCC Business continuity plan Last reviewed September 2014 Background The business continuity policy was ratified in January 2013. As part of this policy, PCC is committed to producing for each work area

More information

Risk Management Policy & Procedures. Premier Ltd.

Risk Management Policy & Procedures. Premier Ltd. Risk Management Policy & Procedures Premier Ltd. [1] Risk management is attempting to identify and then manage threats that could severely impact the organization. Generally, this involves reviewing operations

More information

WHAT TO PLAN FOR AND HOW TO PREPARE FOR DISASTERS

WHAT TO PLAN FOR AND HOW TO PREPARE FOR DISASTERS WHAT TO PLAN FOR AND HOW TO PREPARE FOR DISASTERS Presented by Rob Robbins BELFOR USA PLANNING Business Continuity Planning Disaster Recovery Planning Contingency Planning Recovery Planning WHAT IS A DISASTER?

More information

Risk Management Policy and Strategy

Risk Management Policy and Strategy Risk Management Policy and Strategy Version: 2.1 Bodies consulted: Approved by: Directors and Managers responsible for risk Board of Directors Date Approved: 28 March 2017 Lead Manager: Lead Director:

More information

Auckland Transport HS03-01 Risk and Hazard Management

Auckland Transport HS03-01 Risk and Hazard Management Auckland Transport HS03-01 Risk and Hazard Management (Procedure uncontrolled when printing) Relating to Standard: HS03 Risk and Hazard Management Standard December 2016 Health and Safety-Procedure-HS03-01

More information

Contingency Plan and Continuity of Business for Regional and Global Companies

Contingency Plan and Continuity of Business for Regional and Global Companies Contingency Plan and Continuity of Business for Regional and Global Companies Ramiro Antezana, Latam and Mexico TTS Operations Head & Customer Experience, Citi Evolution of Business Continuity shaped by

More information

RISK MANAGEMENT FRAMEWORK

RISK MANAGEMENT FRAMEWORK Risk Management Framework RISK MANAGEMENT FRAMEWORK Purpose This Risk Management Framework introduces St. Michael s College s approach to risk management. It includes a definition of risk, a summary of

More information

Risk Management Strategy January NHS Education for Scotland RISK MANAGEMENT STRATEGY

Risk Management Strategy January NHS Education for Scotland RISK MANAGEMENT STRATEGY NHS Education for Scotland RISK MANAGEMENT STRATEGY January 2016 1 Contents 1. NES STATEMENT ON RISK MANAGEMENT 2 RISK MANAGEMENT STRATEGY 3 RISK MANAGEMENT STRUCTURES 4 RISK MANAGEMENT PROCESSES 5 RISK

More information

PILLAR 3 DISCLOSURES MERCER UK AUGUST 2016

PILLAR 3 DISCLOSURES MERCER UK AUGUST 2016 PILLAR 3 DISCLOSURES MERCER UK AUGUST 2016 CONTENTS 1. Background... 1 1.1 Basis of Disclosures... 2 1.2 Frequency of Publication... 2 1.3 Verification... 2 1.4 Media & Location of Publication... 2 2.

More information

Preliminary Results from the Organisational Resilience & Recovery Study December 2010

Preliminary Results from the Organisational Resilience & Recovery Study December 2010 Preliminary Results from the Organisational Resilience & Recovery Study December 2010 Hlekiwe Kachali Joanne R. Stevenson Zach Whitman Dr. Erica Seville Dr. John Vargo Dr. Thomas Wilson Introduction The

More information

Second Informal Consultation on ERM Policy. Executive Board - 7 September 2018

Second Informal Consultation on ERM Policy. Executive Board - 7 September 2018 Second Informal Consultation on ERM Policy Executive Board - 7 September 2018 Agenda 01 Main changes to ERM Policy since IC of 24 July Update to Risk Categorization 02 Example: Fiduciary Risk / Duty of

More information

Risk Management Policy and Framework

Risk Management Policy and Framework Risk Management Policy and Framework Risk Management Policy Statement ALS recognises that the effective management of risks is a fundamental component of good corporate governance and is vital for the

More information

The DCA Certification Scheme: Guidelines for DATA CENTRES

The DCA Certification Scheme: Guidelines for DATA CENTRES The DCA Certification Scheme: Guidelines for DATA CENTRES 2015, Data Centre Alliance Limited (www.datacentrealliance.org). All rights reserved. This publication may not be reproduced in Whole or in part;

More information

Inperio Limited, 150 Minories, London, EC3N 1LS, United Kingdom Tel +44 (0)

Inperio Limited, 150 Minories, London, EC3N 1LS, United Kingdom Tel +44 (0) UK Terrorism Insurance Brochure Prepared August 2016 Inperio Limited, 150 Minories, London, EC3N 1LS, United Kingdom Tel +44 (0)203 176 5640 www.inperio.co.uk Company Registration number 09052181An Appointed

More information

Appendix A: Building our nation s resilience to natural disasters

Appendix A: Building our nation s resilience to natural disasters Appendix A: Building our nation s resilience to natural disasters In June 213, the paper, Building our Nation s Resilience to Natural Disasters, was released by Deloitte Access Economics in conjunction

More information

Risks and uncertainties facing the business

Risks and uncertainties facing the business Identifying and managing our risks The Board is responsible for the Group s system of risk management and internal control. Risk management is recognised as an integral part of the Group s activities.

More information

Add our expertise to yours Protection from the consequences of cyber risks

Add our expertise to yours Protection from the consequences of cyber risks CyberEdge THIS INFORMATION IS INTENDED FOR INSURANCE BROKERS AND OTHER INSURANCE PROFESSIONALS ONLY Add our expertise to yours Protection from the consequences of cyber risks What is CyberEdge? 2 CyberEdge

More information

Breaking down OpRisk Value-at-Risk for management purposes

Breaking down OpRisk Value-at-Risk for management purposes for management purposes Stefan Look, Deutsche Börse 1 OpRisk Value-at-Risk at Deutsche Börse Group Breaking down OpRisk Value-at-Risk Deutsche Börse Group 2 Operational Risk Analysis Operational Risk at

More information

Risk Management: Process and Culture in ESB

Risk Management: Process and Culture in ESB Risk Management: Process and Culture in ESB Marie Sinnott Group Compliance, Risk and Environment Manager esb.ie ESB s Risk Profile esb.ie ESB Overview: Vertically Integrated Utility Networks Generation

More information

SCOTTISH JUNIOR FOOTBALL ASSOCIATION DISASTER RECOVERY PLAN (DRP) & BUSINESS CONTINUITY PLAN

SCOTTISH JUNIOR FOOTBALL ASSOCIATION DISASTER RECOVERY PLAN (DRP) & BUSINESS CONTINUITY PLAN SCOTTISH JUNIOR FOOTBALL ASSOCIATION DISASTER RECOVERY PLAN (DRP) & BUSINESS CONTINUITY PLAN CONTENTS Section1: Section 2: Section 3: Section 4: Section 5: Section 6: Statement of Intent Policy Statement

More information

FAIS Risk Management Plan

FAIS Risk Management Plan FAIS Risk Management Plan June 2013 Page 2 of 7 FAIS Risk Management Plan Table of Contents Introduction... 3 Code Definitions... 3 Types of risks... 4 Identification of risks specific to Solutions 2 Wealth...

More information

UNIVERSITY OF ABERDEEN RISK MANAGEMENT FRAMEWORK

UNIVERSITY OF ABERDEEN RISK MANAGEMENT FRAMEWORK UNIVERSITY OF ABERDEEN RISK MANAGEMENT FRAMEWORK 1 TABLE OF CONTENTS FIGURES AND TABLES... 3 1. INTRODUCTION... 4 2. KEY TERMS AND DEFINITIONS... 5 2.1 Risk... 5 2.2 Risk Management... 5 2.3 Risk Management

More information

Risk Management. Some possible risks to consider in a wholefood grocery co-operative:

Risk Management. Some possible risks to consider in a wholefood grocery co-operative: Risk Management Some possible risks to consider in a wholefood grocery co-operative: Banking /card collapse Cashflow issues Change in government policy, e.g. increase in Corporation Tax Competition (existing/increasing)

More information

Climate risk management plan. Towards a resilient business

Climate risk management plan. Towards a resilient business Type your organisation name here Climate risk management plan Towards a resilient business 1 2 3 4 5 1 2 3 4 5 1 2 3 4 5 Click the numbers to select your cover images 1 2 3 4 5 Document control sheet Document

More information

1. Define risk. Which are the various types of risk?

1. Define risk. Which are the various types of risk? 1. Define risk. Which are the various types of risk? Risk, is an integral part of the economic scenario, and can be termed as a potential event that can have opportunities that benefit or a hazard to an

More information

White Paper: Incident Management. By Michael Miora, CISSP President & CEO ContingenZ Corporation

White Paper: Incident Management. By Michael Miora, CISSP President & CEO ContingenZ Corporation White Paper: Incident Management By Michael Miora, CISSP President & CEO ContingenZ Corporation mmiora@contingenz.com April 20, 2002 Table of Contents Introduction to Incident Management... 2 Incident

More information

Accounting for the effects of natural disasters under IFRS Japan

Accounting for the effects of natural disasters under IFRS Japan Special Edition / April 2016 IFRS Developments Accounting for the effects of natural disasters under IFRS Japan (Update of the Edition issued in May 2011) What you need to know While the tragedy in Japan

More information

(b) Event means the SAS FORUM UK 2018 held by SAS at the Vox Conference Centre, Resorts World, Birmingham B40 1PU, UK.

(b) Event means the SAS FORUM UK 2018 held by SAS at the Vox Conference Centre, Resorts World, Birmingham B40 1PU, UK. Conditions of Booking - SAS FORUM UK 2018 IMPORTANT: THE ORDER AND THIS LEGAL AGREEMENT SET OUT BELOW GOVERN THE PROVISION OF THE EVENT (AS DEFINED BELOW IN SECTION 1) AND ANY RELATED GOODS AND SERVICES

More information

Aldermore Bank Plc. Pillar 3 Disclosures

Aldermore Bank Plc. Pillar 3 Disclosures Aldermore Bank Plc Pillar 3 Disclosures December 31 2010 Contents 1. Introduction... 2 2. Scope... 2 3. Risk Management... 3 3.1 Risk Management Objectives... 3 3.2 Principal Risks... 3 3.3 Risk Appetite...

More information

Perpetual s Risk Management Framework

Perpetual s Risk Management Framework Perpetual s Risk Management Framework Perpetual s Risk Management Framework Context Perpetual Limited (Perpetual) is a diversified financial services firm, listed on the Australian Securities Exchange.

More information

React fast to mitigate impact on your finances and reputation

React fast to mitigate impact on your finances and reputation React fast to mitigate impact on your finances and reputation 90% of large organisations suffered a form of security breach in 2015 1, with malicious attacks accounting for a third of data breaches 2.

More information

School District Mitigation Planning 101 April 28 th 30 th 2014

School District Mitigation Planning 101 April 28 th 30 th 2014 School District Mitigation Planning 101 April 28 th 30 th 2014 Kenneth A. Goettel Goettel & Associates Inc. 1732 Arena Drive Davis, CA 95618 (530) 750-0440 KenGoettel@aol.com What is Hazard Mitigation?

More information

BCP (Business Continuity Plan) of Japan Exchange Group

BCP (Business Continuity Plan) of Japan Exchange Group (Reference Translation) BCP (Business Continuity Plan) of Japan Exchange Group Revised on April 1, 2014 Japan Exchange Group In order to fulfill our responsibility as part of the social infrastructure,

More information

Lloyd s City Risk Index

Lloyd s City Risk Index Lloyd s City Risk Index 2015-2025 lloyds.com/cityriskindex Executive Summary About Lloyd s Lloyd s is the world s only specialist insurance and reinsurance market that offers a unique concentration of

More information

Occupational Health and Safety (OHS) Incident Management: The Role of Business Continuity

Occupational Health and Safety (OHS) Incident Management: The Role of Business Continuity Occupational Health and Safety (OHS) Incident Management: The Role of Business Continuity Michael Torrance, Senior Associate, Occupational Health, Safety and Security 21 March 2013 Introduction Topics

More information

Risk Assessment Process. Information Security

Risk Assessment Process. Information Security Risk Assessment Process Information Security February 2014 Crown copyright. This copyright work is licensed under the Creative Commons Attribution 3.0 New Zealand licence. In essence, you are free to copy,

More information