본문 바로가기
Security & IT terms

[Day 2] Business Contingency Plan(BCP)

by minimalist_2022 2020. 8. 14.

Business Contingency Plan?

  • 각종 재해 및 재난, 장애 발생시 사업의 연속성 유지를 위한 계획과 절차
    • 침해사고, 홍수, 지진 등
    • BCP는 서비스 중단 시간을 최소화하여 빠르게 서비스가 재개될 수 있도록 하는 것이 목적

BCP 단계

1. Risk Assessment

  • Evaluation of the company’s risks and exposures
  • Assessment of the potential impact of various business disruption scenarios

2. Business Impact Accessment

  • Recovery assumptions, including Recovery Point Objectives (RPO) and Recovery Time Objectives (RTO)
  • Critical business processes and workflows as well as the supporting production applications

 

3. Business Contingency Plan Development

  • Obtaining executive sign-off of Business Impact Analysis. 
  • Synthesizing the Risk Assessment and BIA findings to create an actionable and thorough plan.
  • Developing department, division and site level plans 
  • Reviewing plan with key stakeholders to finalize and distribute

4. Plan Testing & Maintenance

  • The final critical element of a business continuity plan is to ensure that it is tested and maintained on a regular basis

 

출처 : https://www.eci.com/blog/135-five-steps-of-business-continuity-planning-for-investment-firms.html