What is involved in Business Continuity Management
Find out what the related areas are that Business Continuity Management connects with, associates with, correlates with or affects, and which require thought, deliberation, analysis, review and discussion. This unique checklist stands out in a sense that it is not per-se designed to give answers, but to engage the reader and lay out a Business Continuity Management thinking-frame.
How far is your company on its Business Continuity Management Team journey?
Take this short survey to gauge your organization’s progress toward Business Continuity Management Team leadership. Learn your strongest and weakest areas, and what you can do now to create a strategy that delivers results.
To address the criteria in this checklist for your organization, extensive selected resources are provided for sources of further research and information.
Start the Checklist
Below you will find a quick checklist designed to help you think about which Business Continuity Management related domains to cover and 186 essential critical questions to check off in that domain.
The following domains are covered:
Business Continuity Management, Business continuity planning, BSI Group, BS 25999, BS 7799, Backup site, British Standards Institution, Call tree, Catastrophe modeling, Computer virus, Crisis management, Data replication, Disaster recovery, Disaster recovery and business continuity auditing, Emergency management, Federal Emergency Management Agency, Government Accountability Office, Incubation period, Maximum Tolerable Period of Disruption, National Fire Protection Association, Natural disasters, Power outage, Recovery Point Objective, Recovery Time Objective, Risk management, Seven tiers of disaster recovery, Supply chain, System lifecycle, Systems engineering, Systems thinking, U.S. Department of Homeland Security:
Business Continuity Management Critical Criteria:
Explore Business Continuity Management management and improve Business Continuity Management service perception.
– In what ways are Business Continuity Management vendors and us interacting to ensure safe and effective use?
– Have you identified your Business Continuity Management key performance indicators?
– How do we Identify specific Business Continuity Management investment and emerging trends?
Business continuity planning Critical Criteria:
Apply Business continuity planning management and transcribe Business continuity planning as tomorrows backbone for success.
– what is the best design framework for Business Continuity Management organization now that, in a post industrial-age if the top-down, command and control model is no longer relevant?
– How do senior leaders actions reflect a commitment to the organizations Business Continuity Management values?
– What is the role of digital document management in business continuity planning management?
– What are the short and long-term Business Continuity Management goals?
– What is business continuity planning and why is it important?
BSI Group Critical Criteria:
Survey BSI Group engagements and get out your magnifying glass.
– In the case of a Business Continuity Management project, the criteria for the audit derive from implementation objectives. an audit of a Business Continuity Management project involves assessing whether the recommendations outlined for implementation have been met. in other words, can we track that any Business Continuity Management project is implemented as planned, and is it working?
– Among the Business Continuity Management product and service cost to be estimated, which is considered hardest to estimate?
BS 25999 Critical Criteria:
Reconstruct BS 25999 tasks and interpret which customers can’t participate in BS 25999 because they lack skills.
– What are the key elements of your Business Continuity Management performance improvement system, including your evaluation, organizational learning, and innovation processes?
– At what point will vulnerability assessments be performed once Business Continuity Management is put into production (e.g., ongoing Risk Management after implementation)?
– What threat is Business Continuity Management addressing?
BS 7799 Critical Criteria:
See the value of BS 7799 results and reduce BS 7799 costs.
– Marketing budgets are tighter, consumers are more skeptical, and social media has changed forever the way we talk about Business Continuity Management. How do we gain traction?
Backup site Critical Criteria:
Substantiate Backup site adoptions and point out improvements in Backup site.
– What will be the consequences to the business (financial, reputation etc) if Business Continuity Management does not go ahead or fails to deliver the objectives?
– Will Business Continuity Management have an impact on current business continuity, disaster recovery processes and/or infrastructure?
– To what extent does management recognize Business Continuity Management as a tool to increase the results?
British Standards Institution Critical Criteria:
Weigh in on British Standards Institution outcomes and triple focus on important concepts of British Standards Institution relationship management.
– Do the Business Continuity Management decisions we make today help people and the planet tomorrow?
– Do Business Continuity Management rules make a reasonable demand on a users capabilities?
– How to Secure Business Continuity Management?
Call tree Critical Criteria:
Focus on Call tree visions and look for lots of ideas.
– Are we making progress? and are we making progress as Business Continuity Management leaders?
– What vendors make products that address the Business Continuity Management needs?
Catastrophe modeling Critical Criteria:
Pilot Catastrophe modeling engagements and raise human resource and employment practices for Catastrophe modeling.
– What management system can we use to leverage the Business Continuity Management experience, ideas, and concerns of the people closest to the work to be done?
– What are the disruptive Business Continuity Management technologies that enable our organization to radically change our business processes?
– How would one define Business Continuity Management leadership?
Computer virus Critical Criteria:
Interpolate Computer virus management and customize techniques for implementing Computer virus controls.
– Record-keeping requirements flow from the records needed as inputs, outputs, controls and for transformation of a Business Continuity Management process. ask yourself: are the records needed as inputs to the Business Continuity Management process available?
– Is Business Continuity Management Realistic, or are you setting yourself up for failure?
Crisis management Critical Criteria:
Check Crisis management results and drive action.
– What tools do you use once you have decided on a Business Continuity Management strategy and more importantly how do you choose?
– How important is Business Continuity Management to the user organizations mission?
– Is the crisis management team comprised of members from Human Resources?
Data replication Critical Criteria:
Frame Data replication visions and budget the knowledge transfer for any interested in Data replication.
– How do we ensure that implementations of Business Continuity Management products are done in a way that ensures safety?
– Do you monitor the effectiveness of your Business Continuity Management activities?
– Who needs to know about Business Continuity Management ?
Disaster recovery Critical Criteria:
Consider Disaster recovery strategies and mentor Disaster recovery customer orientation.
– Has Management reviewed the adequacy of recovery team coverage for the Disaster Recovery and Business Continuation plan and the frequency of such reviews?
– There are many steps to disaster recovery, and it is important to determine if you can take these steps alone. So who needs to help you?
– Are there any promotions being done in your local area by government or others that you can take advantage of?
– What is your insurance agent telling you about your policy and what will be covered and what wont be covered?
– Will we rebuild to how things were before the disaster, or do we reset and do some things differently?
– How will businesses be impacted by a disaster (e.g., earthquake, tsunami, flood)?
– Is the priority of system restores documented in the disaster recovery plan?
– How many times have we invoked our bc plans in the past five years?
– How often do you fully test your disaster recovery capabilities?
– What are the advantages of cloud hosting over managed hosting?
– Are your needs being met by the current location?
– Is cross cloud deployment really necessary?
– If I didnt reopen, what would I do?
– Should you reopen your business?
– Can team members work off site?
– Are you backing up off site?
– What support is available?
– What actions stop the drp?
Disaster recovery and business continuity auditing Critical Criteria:
Understand Disaster recovery and business continuity auditing projects and visualize why should people listen to you regarding Disaster recovery and business continuity auditing.
– Who will be responsible for making the decisions to include or exclude requested changes once Business Continuity Management is underway?
– What knowledge, skills and characteristics mark a good Business Continuity Management project manager?
– How likely is the current Business Continuity Management plan to come in on schedule or on budget?
Emergency management Critical Criteria:
Rank Emergency management management and maintain Emergency management for success.
– Is Business Continuity Management dependent on the successful delivery of a current project?
– How do we Improve Business Continuity Management service perception, and satisfaction?
– Where does recovery fit within the other phases of emergency management?
– What are the usability implications of Business Continuity Management actions?
Federal Emergency Management Agency Critical Criteria:
Disseminate Federal Emergency Management Agency outcomes and report on developing an effective Federal Emergency Management Agency strategy.
– What are your current levels and trends in key measures or indicators of Business Continuity Management product and process performance that are important to and directly serve your customers? how do these results compare with the performance of your competitors and other organizations with similar offerings?
– Does Business Continuity Management systematically track and analyze outcomes for accountability and quality improvement?
– Are there any disadvantages to implementing Business Continuity Management? There might be some that are less obvious?
Government Accountability Office Critical Criteria:
Analyze Government Accountability Office leadership and use obstacles to break out of ruts.
– Think of your Business Continuity Management project. what are the main functions?
Incubation period Critical Criteria:
Mix Incubation period outcomes and prioritize challenges of Incubation period.
– What tools and technologies are needed for a custom Business Continuity Management project?
Maximum Tolerable Period of Disruption Critical Criteria:
Prioritize Maximum Tolerable Period of Disruption decisions and document what potential Maximum Tolerable Period of Disruption megatrends could make our business model obsolete.
– How is the value delivered by Business Continuity Management being measured?
– Why should we adopt a Business Continuity Management framework?
– What are current Business Continuity Management Paradigms?
National Fire Protection Association Critical Criteria:
Adapt National Fire Protection Association management and sort National Fire Protection Association activities.
– Consider your own Business Continuity Management project. what types of organizational problems do you think might be causing or affecting your problem, based on the work done so far?
– Does Business Continuity Management analysis isolate the fundamental causes of problems?
Natural disasters Critical Criteria:
Investigate Natural disasters projects and work towards be a leading Natural disasters expert.
– When a Business Continuity Management manager recognizes a problem, what options are available?
– How can the value of Business Continuity Management be defined?
– What about Business Continuity Management Analysis of results?
Power outage Critical Criteria:
Incorporate Power outage issues and question.
– Is maximizing Business Continuity Management protection the same as minimizing Business Continuity Management loss?
Recovery Point Objective Critical Criteria:
Gauge Recovery Point Objective projects and test out new things.
– Which remote replication mode provides a near-zero recovery point objective (rpo)?
– What is our System Recovery Point Objective RPO (how current should the data be)?
– How is the term recovery point objective (rpo) defined?
– What are specific Business Continuity Management Rules to follow?
– What is our definition of recovery point objective?
– What is the recovery point objective?
Recovery Time Objective Critical Criteria:
Drive Recovery Time Objective governance and stake your claim.
– Has your organization ever had to invoke its disaster recovery plan which included the CRM solution and if so was the recovery time objective met and how long did it take to return to your primary solution?
– A compounding model resolution with available relevant data can often provide insight towards a solution methodology; which Business Continuity Management models, tools and techniques are necessary?
– In the event of a physical or logical disaster, what are the Recovery Point and Recovery Time Objectives (RPO/RTO) that you will need and they will provide?
– Which individuals, teams or departments will be involved in Business Continuity Management?
– What is your organizations history of meeting recovery time objectives?
– What is the recovery time objective for the application?
– Are there recognized Business Continuity Management problems?
Risk management Critical Criteria:
Accommodate Risk management decisions and assess and formulate effective operational and Risk management strategies.
– What domains of knowledge and types of Cybersecurity-associated skills and abilities are necessary for engineers involved in operating industrial processes to achieve safe and reliable operating goals?
– Do we maintain our own threat catalogue on the corporate intranet to remind employees of the wide range of issues of concern to Information Security and the business?
– Is it understood throughout the organization that negative behavior is penalized and positive behavior rewarded despite earnings and performance?
– Do you participate in sharing communication, analysis, and mitigation measures with other companies as part of a mutual network of defense?
– Is maintenance and repair of organizational assets performed and logged in a timely manner, with approved and controlled tools?
– Is there a repeatable reporting process in place across the entities, so results are centrally coordinated, organized, and managed?
– Is your organization doing any form of outreach or education on Cybersecurity Risk Management (including the framework)?
– Have you broken down your risks into the COSO ERM categories: Strategic, Financial Reporting, Operating and Regulatory?
– Are the risk register and Risk Management processes actually effective in managing project risk?
– Is our organization doing any form of outreach or education on Cybersecurity Risk Management?
– Whos in charge of inactivating user names and passwords as personnel changes occur?
– How is the enterprise Risk Management model used to assess and respond to risk?
– Are new risks introduced as a result of the identified risks being controlled?
– What high-level systems methods do we use in risk management?
– Do our people embrace and/or comply with Risk policies?
– What do our summary risk reports look like?
– What is risk management?
Seven tiers of disaster recovery Critical Criteria:
Air ideas re Seven tiers of disaster recovery strategies and assess and formulate effective operational and Seven tiers of disaster recovery strategies.
– Are there Business Continuity Management problems defined?
Supply chain Critical Criteria:
Unify Supply chain risks and oversee Supply chain management by competencies.
– The pharmaceutical industry is also taking advantage of digital progress. It is using IoT for supply chain security in packaging and tracking of drugs. There are new companies using computer chips in pills for tracking adherence to drug regimens and associated biometrics. Using this as an example, how will we use and protect this sensitive data?
– How is the complex digital supply chain -where multiple downstream providers provide services for each other and data residence and transmission points are increasingly obscure -being dealt with from an audit perspective?
– Now that organizations have fine-tuned human performance, supply chain, operations, processes, cycle time, and other targeted areas, how can they continue to improve performance?
– There is a need to determine where value is added in the supply chain what are the expectations of each stakeholder in the supply chain?
– Does Supply Chain Integration Mediate the Relationships between Product/Process Strategy and Service Performance?
– How do supply chain management systems coordinate planning, production, and logistics with suppliers?
– How can sluggish supply chains be empowered by IoT to make them more transparent and responsive?
– What are the roles of suppliers and supply chain partners in CRM?
– Do any suppliers in the supply chain have a dominating position?
– Do your supply chain relationships tend to be longeror shorter-term?
– What is our current position within our supply chain?
– What is TESCM tax efficient supply chain management?
– What does the supply chain do with product data?
– In HW, SW & Services we source from a global supply chain?
System lifecycle Critical Criteria:
Consolidate System lifecycle leadership and visualize why should people listen to you regarding System lifecycle.
– What is the source of the strategies for Business Continuity Management strengthening and reform?
– Who will be responsible for documenting the Business Continuity Management requirements in detail?
– How to deal with Business Continuity Management Changes?
Systems engineering Critical Criteria:
Generalize Systems engineering results and modify and define the unique characteristics of interactive Systems engineering projects.
– When observing natural systems, complexity theorists can identify, to some degree, which systems have these features. to apply complexity theory to engineered systems that we have not yet designed, can we predict these features within acceptable accuracy ranges?
– When we try to quantify Systems Engineering in terms of capturing productivity (i.e., size/effort) data to incorporate into a parametric model, what size measure captures the amount of intellectual work performed by the systems engineer?
– The pp and the semp define the tasks and schedule for the project and the processes that will be followed to produce the deliverables. once the project is underway, how can you track progress against the plan?
– What is the plan to align prime contractors systems engineering management plan (semp) with the Program Management office (pmo) sep?
– How will we know when our design effort has produced a solution which will satisfy the objectives within the constraints?
– Does the project require agreements related to organizational data sharing that havent yet been created?
– How does the organization define, manage, and improve its Business Continuity Management processes?
– Does the deployment schedule call for installations at a typically rainy time of year?
– What is the detailed set of functions and properties of a given interface?
– Once the project is underway, how can you track progress against the plan?
– What will happen if there is a loss of key staff or contractor personnel?
– What are the expectations and limits of the given integration?
– Why has systems engineering emerged as a distinct discipline?
– What is the problem or opportunity addressed by the system?
– What is the geographic and physical extent of the system?
– How will functionality be verified and validated?
– How well should the system perform?
– Right requirements?
– Where are we today?
Systems thinking Critical Criteria:
Accumulate Systems thinking outcomes and get answers.
– Do we aggressively reward and promote the people who have the biggest impact on creating excellent Business Continuity Management services/products?
– Are the traditions of systems thinking a foundation on which new knowledge is to be developed, or an anchor where prior research becomes fundamentalist dogma?
– Why are the natures or behaviours of systems similar or dissimilar?
– How is a systems analysis different than other scientific analyses?
– How Can Business Engage The Education Pipeline More Effectively?
– What self development activities are you currently engaged in?
– How do you know that your coworkers hold the same perspective?
– So what is the way forward in mainstreaming the systems perspective?
– Who are the internal/external stakeholders involved?
– What are the relationships among system components?
– What does a behavior over time graph look like now?
– How can we improve the performance of this system?
– What kind of thought process did you go through?
– What are the INPUTS going into the system?
– What Are The Attributes Of Each Solution?
– What is Collaborative Systems Thinking?
– Who are the SUPPLIERS in the system?
– Why Do Transformation Efforts Fail?
– What can a complexity lens add?
– Archetypes: Why Bother?
U.S. Department of Homeland Security Critical Criteria:
Guide U.S. Department of Homeland Security tactics and acquire concise U.S. Department of Homeland Security education.
– How do you determine the key elements that affect Business Continuity Management workforce satisfaction? how are these elements determined for different workforce groups and segments?
– Has your company conducted a Cybersecurity evaluation of key assets in concert with the National Cyber Security Division of the U.S. Department of Homeland Security (DHS)?
– What are your most important goals for the strategic Business Continuity Management objectives?
– Is a Business Continuity Management Team Work effort in place?
This quick readiness checklist is a selected resource to help you move forward. Learn more about how to achieve comprehensive insights with the Business Continuity Management Team Self Assessment:
Author: Gerard Blokdijk
CEO at The Art of Service | theartofservice.com
Gerard is the CEO at The Art of Service. He has been providing information technology insights, talks, tools and products to organizations in a wide range of industries for over 25 years. Gerard is a widely recognized and respected information expert. Gerard founded The Art of Service consulting business in 2000. Gerard has authored numerous published books to date.
To address the criteria in this checklist, these selected resources are provided for sources of further research and information:
Business Continuity Management External links:
12-2 Business Continuity Management Program – USPS
BCM London. Business Continuity Management
BCMfort | BUSINESS CONTINUITY MANAGEMENT
Business continuity planning External links:
BSI Group External links:
BSI Group America Perks
Work at BSI Group | CareerBuilder
BSI Group – Official Site
BS 25999 External links:
ISO 22301 v BS 25999: what’s the difference? – KRYPSYS
Backup site External links:
British Standards Institution External links:
K7766 – BRITISH STANDARDS INSTITUTION – Page 1
British Standards Institution (BSI) Standards | IHS Markit
British Standards Institution Eurocodes – Techstreet
Call tree External links:
[PDF]New UCCX ACD Call Tree(2) – United States Army
www.korea.amedd.army.mil/Resources/UCCX ACD Call Tree.pdf
What is call tree? – Definition from WhatIs.com
[PDF]HR WELLS call tree 1-877-HRWELLS (1-877-479-3557)
Catastrophe modeling External links:
Natural Hazard Reports and Catastrophe Modeling
Catastrophe Modeling: Why All the Fuss? – Marsh
About Catastrophe Modeling – AIR Worldwide
Computer virus External links:
Computer Viruses – AbeBooks
Free computer viruses Essays and Papers – 123HelpMe
What is a Computer Virus? Webopedia Definition
Crisis management External links:
AlertSense – Crisis Management and Collaboration Platform
Crisis Management Company | Strategy, Planning, …
Crisis Management Planning | Paradigm Solutions …
Data replication External links:
Data Replication for Disaster-resilient Information Platforms
PPT OF DATA REPLICATION – scribd.com
Disaster recovery External links:
Cloud Migration and Disaster Recovery
Palm Beach County Cares – Disaster Recovery, Palm …
Recovers – Community-Powered Disaster Recovery
Disaster recovery and business continuity auditing External links:
Disaster recovery and business continuity auditing
Disaster recovery (DR) and business continuity refers to an organization’s ability to recover from a disaster and/or unexpected event and resume operations. Organizations often have a plan in place (usually referred to as a “Disaster Recovery Plan”, or “Business Continuity Plan”) that outlines how a recovery will be accomplished.
Disaster recovery and business continuity auditing – …
Emergency management External links:
Medina County Office of Emergency Management and …
Gallatin County Emergency Management
Home | Morris County Office of Emergency Management
Federal Emergency Management Agency External links:
FEMA Federal Emergency Management Agency – Home | Facebook
Government Accountability Office External links:
[PDF]U.S. Government Accountability Office
The Fed – U.S. Government Accountability Office (GAO)
31 U.S. Code § 702 – Government Accountability Office | …
Incubation period External links:
Coxsackievirus Incubation Period, Symptoms & Treatment
[PDF]Incubation Period and Duration of Disease Clinical …
Incubation Period – Merriam-Webster
Maximum Tolerable Period of Disruption External links:
Defining Maximum Tolerable Period of Disruption – e, Janco
Maximum tolerable period of disruption (MTPD) – …
National Fire Protection Association External links:
National Fire Protection Association Password …
National Fire Protection Association – YouTube
National Fire Protection Association (NFPA) – Home | Facebook
Natural disasters External links:
Natural disasters and extreme weather | World | The Guardian
Declared Natural Disasters and Emergencies Tax Help
Natural Disasters and Severe Weather|CDC
Power outage External links:
Residental Power Outage Alerts – Duke Energy
Report a Power Outage | TXU Energy
Entergy | Power Outage Map
Recovery Point Objective External links:
Recovery Point Objective (RPO) – BCMpedia
RECOVERY POINT OBJECTIVE ENFORCEMENT – …
Recovery Time Objective External links:
What is Recovery Time Objective? Webopedia Definition
Risk management External links:
20 Best Title:(risk Management Manager) jobs (Hiring …
Driver Risk Management Solutions | AlertDriving
Seven tiers of disaster recovery External links:
Seven tiers of disaster recovery – YouTube
Supply chain External links:
Supply Chain Advantage
System lifecycle External links:
The system lifecycle in systems engineering is a view of a system or proposed system that addresses all phases of its existence to include system conception, design and development, production and/or construction, distribution, operation, maintenance and support, retirement, phase-out and disposal.
[PDF]Computer System Lifecycle – George Mason University
Systems engineering External links:
Advanced Systems Engineering Corporation | ASEC …
Innoslate | PLM and Systems Engineering Tools
Industrial & Systems Engineering | College of Engineering
Systems thinking External links:
Introduction to Systems Thinking – The Systems Thinker
Dr. Russell Ackoff on Systems Thinking – Pt 1 – YouTube
Welcome to Systems Thinking Press