CLIENTS
High Tech Manufacturing Firm
Defined BC strategy and implementation plan for $300M maker of robotic devices for consumer and government markets to define. Conducted business impact analysis to identify critical business functions, key applications, impacts of downtime, and recovery requirements. Reviewed technology environment to identify options for recovery architecture. Defined a strategy to provide for recovery of critical functions and applications. Developed an implementation roadmap with major and sub- projects to support deployment of the strategy. Researched technical options and service providers to develop three year implementation and operational budgets. Defined and outlined recovery plans to be developed to support the recovery. Worked with client staff to identify candidate data center colocation providers.
Deliverables
- Business impact analysis detailing business functions, impacts, and impact timeframes
- DR strategy document including recovery scope statement, inventory of primary and backup resources, risk mitigation measures, required recovery plans, implementation steps and timeline, and planning budgets
- Presentations to senior management to review analysis and recommendations
Financial Market Data Provider
Managed construction and implementation of a new data center. $500M provider of exchange and evaluated securities pricing and corporate financial information. Evaluated existing facility, defined requirements for new data center, and presented recommendations to senior management. Managed selection of design/build firm, coordinated construction and commissioning of 15,000 sq ft data center, and managed migration to new site.
Deliverables
- Requirements document with detail on planned usage plus space/power/redundancy requirements
- Request for proposal to candidate vendors for design/build services
- Evaluation of vendor proposals with recommended short list
- Presentations to senior management on recommended vendor, project timeline, and budget
- Project plans for the design, build-out, and migration
- Documented commissioning plans
Hedge Fund
Developed workplace recovery and incident management plans for privately held $600M real estate and fixed asset investment firm. Interviewed each of the firm’s business unit managers to identify critical functions and recovery requirements. Conducted detailed risk analysis of firm’s three locations to identify all events that could impact firm operations or compromise security. Identified tasks or projects to address the risks by either preventing events, mitigating impacts, or recovering from impacts. Worked with client staff to assure successful completion of tasks and projects. Defined workplace recovery plans for each business unit to recover at home and at alternate continuity site. Developed comprehensive incident management and communications plan for senior management to follow in the event of a disaster.
Deliverables
- Risk matrix categorized by site and event type with preventative, mitigation, and response measures
- Workplace recovery plan template and business unit recovery plans, including procedures for building evacuation, recovery site usage, working at home, remote access, and emergency communications
- Incident management plan including procedures for emergency declaration, incident team invocation, standard meeting agenda, internal and external communications, and suggested event responses
On-Line Educational Services Provider
Developed DR plans for leading provider of on-line education applications. Engaged to find recovery solutions for a portfolio of technically disparate courseware platforms from acquired organizations. Defined requirements, engaged application development teams, defined tailored recovery strategies, managed development of recovery plans, and managed testing.
Deliverables
- Strategy and architecture documents
- Recovery plans
- Test plans
University Graduate School
Defined BC plan for large urban university graduate school specializing in public policy and administration. Worked with school departments to document stringent uptime requirements, defined strategy and plans, structured recovery teams, and conducted training. Coordinated with $120M campus construction program.
Deliverables
- Business impact analysis and risk analysis
- BC strategy
- Master BC plan and BC resource plan
- Tabletop sessions with followup reports
Enterprise Blockchain Solution Provider
Defined DR strategy and roadmap for leading provider of blockchain processing services for the financial services industry. Engaged to define an overall BC/DR program to support cloud-based applications and services and satisfy regulatory requirements and client requests. Conducted risk and business impact analysis, defined strategy, and developed implementation roadmap.
Deliverables
- Gap analysis and DR strategy
- Implementation roadmap
- Recovery plan templates
Financial Recovery Service Provider
Developed BC program for $100M provider of securities class action recovery services to banking and brokerage industry. Identified recovery requirements, defined recovery strategies, developed recovery plans, trained recovery teams, and tested plans. Client has stringent security requirements supported by complex authentication infrastructure. Performed business impact and risk analysis, proposed recovery strategies, and refined strategies with client management. Developed recovery plans for facilities and data center recovery (including storage, servers, and network) and executed tests to validate accuracy of plans. Provided training for rank and file employee as well as tabletop sessions with incident management and IT recovery teams. Assisted client GRC staff in preparing client-ready summaries of BC/DR program and responses to certification process. Started working with client in 2013 and continue to develop their capabilities as the business evolves.
Deliverables
- DR requirements and strategy (multiple documents)
- Program implementation roadmap and project plan
- Data center (infrastructure and application) recovery plans
- Test plans with results
- Recovery and test plan summaries for clients
Metropolitan Police Department
Defined DR strategy for large metropolitan police department. Reviewed existing application portfolio and recovery requirements, outlined technical options for recovery, reviewed and discussed options with department IT and administrative management, developed implementation budgets, and presented findings to departmental management.
Deliverables
- Current state assessment
- DR strategy and roadmap
- Management summaries.
Investment Management Firm
Developed and tested DR plans for $110B investment manager / hedge fund. Engaged to refine existing recovery requirements, solidify recovery strategies (within context of larger organization), develop recovery plans, train staff, and test recovery plans. Follow up work included management of migration to new servers and upgrades to existing servers.
Deliverables
- Recovery plans
- Test plans
- Server migration plans
- Staff skill profiles and development plans
International Regulatory Agency
Evaluated the existing IT DR program for large European organization (a division of the United Nations) monitoring peaceful use of atomic energy. Reviewed existing program documentation, including risk analysis, proposed strategies, budgets, and vendor contracts. Compared existing capabilities against ORMS / ISO 22301 requirements, identified gaps, and made recommendations for improvement.
Deliverables
- Report describing existing DR program and agency performance
- Recommendations for program improvements