<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Business Continuity Audit &#187; business continuity</title>
	<atom:link href="http://www.blauexchange.org/tag/business-continuity/feed" rel="self" type="application/rss+xml" />
	<link>http://www.blauexchange.org</link>
	<description></description>
	<lastBuildDate>Mon, 19 Dec 2011 14:06:34 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3</generator>
<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
		<item>
		<title>Sme Business Continuity</title>
		<link>http://www.blauexchange.org/sme-business-continuity</link>
		<comments>http://www.blauexchange.org/sme-business-continuity#comments</comments>
		<pubDate>Fri, 27 Nov 2009 03:44:43 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Articles]]></category>
		<category><![CDATA[business continuity]]></category>
		<category><![CDATA[Disaster]]></category>
		<category><![CDATA[disaster recovery]]></category>
		<category><![CDATA[it consultancy]]></category>
		<category><![CDATA[it consultancy london]]></category>
		<category><![CDATA[it support]]></category>
		<category><![CDATA[it support london]]></category>
		<category><![CDATA[Recovery]]></category>

		<guid isPermaLink="false">http://blauexchange.org/sme-business-continuity</guid>
		<description><![CDATA[Small and medium-sized enterprises tend to get ignored when talking about business continuity planning. The planning is more prosaic. The challenges are fewer. And most importantly, their budgets are smaller. But of course, the same principles that apply to large businesses also apply to the small ones. We at Oppello are an IT consultancy that [...]]]></description>
			<content:encoded><![CDATA[<div style="margin:0 auto;float:left;padding-right:5px"></div>
<p> Small and medium-sized enterprises tend to get ignored when talking about business continuity planning. The planning is more prosaic. The challenges are fewer. And most importantly, their budgets are smaller.</p>
<p>But of course, the same principles that apply to large businesses also apply to the small ones. We at Oppello are an IT consultancy that specialises in looking after small to medium sized businesses. And business continuity pl<span id="more-3"></span>anning is a must for companies of all sizes. A small firm that loses all its data will go out of business, just as surely as a larger one.</p>
<p>If anything smaller firms become more vulnerable to crises because larger companies are geographically more diverse &ndash; knocking out your operations in say Edinburgh is not as business critical when your offices in London can take some of the overload.</p>
<p>A few years ago business continuity planning was only regularly undertaken by the larger corporations, nowadays SMEs are more than likely to make some kind of preparation. Part of the problem, however, is that smaller companies are typically less aware of the correct procedures than larger firms where systems have been developed.</p>
<p>Initial IT audit</p>
<p>Frequently we&rsquo;ll find small companies that have thought about continuity issues but not implemented them fully, On our initial audit we&rsquo;ll find, for example, that IT back-ups have indeed been taken. But the tapes are sitting next to the computer and the coffee cups! It&rsquo;s frightening too the number of times you find that checking the tapes has not gone on &ndash; the procedures have never been tested.</p>
<p>Increasing sophistication</p>
<p>But with the growing awareness of the need for business continuity, smaller firms are starting to get more sophisticated and this kind of situation should soon start to become less and less frequent. Also one encouraging trend for smaller firms looking for business continuity support is that there are a greater number of support firms operating in this space and charging a price that is affordable. And size can sometimes be an advantage too. Large companies are often entrenched in old technologies and methodologies. One advantage that smaller companies have over larger companies is that they are able to respond and embrace new technologies more quickly Depending on the size of a business, support for business continuity planning can be brought in-house. Typically, a company with around 30 computers and a couple of servers could keep an IT specialist &ndash; as a full member of staff &ndash; busy for most of a week.</p>
<p>Other potential weaknesses</p>
<p>However, that can cause problems too. IT specialists are valuable commodities and tend to move around considerably. Also there remains the constant questions over how the company ensures that the business runs as normal when the IT expert is on holiday or sick.</p>
<p>The great thing about business continuity is that &ndash; irrespective of the size of your business &ndash; you can go a long way to devising a plan simply by getting your senior staff to think through the issues.
</p>
<p> <!--more--> <H3>Watch the video related to business continuity audit</H3>
<div align="center">
<p><!-- Smart Youtube --><span class="youtube"><object type="application/x-shockwave-flash" width="425" height="355" data="http://www.youtube.com/v/FkwpB-J1_sw&amp;rel=1&amp;color1=0x666666&amp;color2=0xd3d3d3&amp;border=1&amp;fs=0&amp;autoplay=0&amp;loop=0&amp;disablekb=0&amp;egm=0&amp;border=1&amp;showsearch=1&amp;showinfo=1&amp;iv_load_policy=1&amp;cc_load_policy=1&amp;fmt=0"><param name="movie" value="http://www.youtube.com/v/FkwpB-J1_sw&amp;rel=1&amp;color1=0x666666&amp;color2=0xd3d3d3&amp;border=1&amp;fs=0&amp;autoplay=0&amp;loop=0&amp;disablekb=0&amp;egm=0&amp;border=1&amp;showsearch=1&amp;showinfo=1&amp;iv_load_policy=1&amp;cc_load_policy=1&amp;fmt=0"></param><param name="allowFullScreen" value="true"></param><param name="wmode" value="transparent" /></object></span></p>
</div>
<p>Burton Asset Management CEO, Kevin Burton, reviews the BAM BC/DR Methodology, and discusses how the deliverables provided with the Methodology stand up to any audit to which a company might be subject. Mr. Burton has developed this methodology to help inform the thinking of businesses of all sizes that are struggling with Business Continuity / Disaster Recovery preparedness. This event was recorded live, February 29th, 2008, at Mastro&#8217;s Steak House in Costa Mesa, CA. The event was hosted and &#8230;  <H3>Help answer the question about business continuity audit</H3><br /> <H3>About Author</H3>
<p>
Oppello IT Support London &#8211; We Make IT Work</p></p>
]]></content:encoded>
			<wfw:commentRss>http://www.blauexchange.org/sme-business-continuity/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Deltaprima &#8211; Konsultan Manajemen Keamanan Informasi, It Security, Iso 27000 &#8211; Iso 27001 Consultant, Business Continuity, Bcp Drp, Disaster Recovery</title>
		<link>http://www.blauexchange.org/deltaprima-konsultan-manajemen-keamanan-informasi-it-security-iso-27000-iso-27001-consultant-business-continuity-bcp-drp-disaster-recovery</link>
		<comments>http://www.blauexchange.org/deltaprima-konsultan-manajemen-keamanan-informasi-it-security-iso-27000-iso-27001-consultant-business-continuity-bcp-drp-disaster-recovery#comments</comments>
		<pubDate>Sat, 15 Aug 2009 03:44:49 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Articles]]></category>
		<category><![CDATA[Bcp]]></category>
		<category><![CDATA[business continuity]]></category>
		<category><![CDATA[disaster recovery]]></category>
		<category><![CDATA[Drp]]></category>
		<category><![CDATA[ISO 17799]]></category>
		<category><![CDATA[It Security]]></category>
		<category><![CDATA[Quality]]></category>
		<category><![CDATA[Risk]]></category>
		<category><![CDATA[Risk Assessment]]></category>

		<guid isPermaLink="false">http://blauexchange.org/deltaprima-konsultan-manajemen-keamanan-informasi-it-security-iso-27000-iso-27001-consultant-business-continuity-bcp-drp-disaster-recovery</guid>
		<description><![CDATA[ISO IEC 27001 International Standard covers all types of organizations (e.g. commercial enterprises, government agencies, non-profit organizations). This International Standard specifies the requirements for establishing, implementing, operating, monitoring, reviewing, maintaining and improving a documented ISMS within the context of the organization&#8217;s overall business risks. It specifies requirements for the implementation of security controls customized to [...]]]></description>
			<content:encoded><![CDATA[<div style="margin:0 auto;float:left;padding-right:5px"></div>
<p> ISO IEC 27001 International Standard covers all types of organizations (e.g. commercial enterprises, government agencies, non-profit organizations). This International Standard specifies the requirements for establishing, implementing, operating, monitoring, reviewing, maintaining and improving a documented ISMS within the context of the organization&#8217;s overall business risks. It specifies requirements for the implementation of security controls c<span id="more-5"></span>ustomized to the needs of individual organizations or parts thereof. The ISMS is designed to ensure the selection of adequate and proportionate security controls that protect information assets and give confidence to interested parties.</p>
<p>Home</p>
<p>This ISO 27001 International Standard covers all types of organizations (e.g. commercial enterprises, government agencies, non-profit organizations). This International Standard specifies the requirements for establishing, implementing, operating, monitoring, reviewing, maintaining and improving a documented ISMS within the context of the organization&#8217;s overall business risks. It specifies requirements for the implementation of security controls customized to the needs of individual organizations or parts thereof.</p>
<p>The ISMS is designed to ensure the selection of adequate and proportionate security controls that protect information assets and give confidence to interested parties.</p>
<p>NOTE 1: References to &#8216;business&#8217; in this International Standard should be interpreted broadly to mean those activities that are core to the purposes for the organization&#8217;s existence.</p>
<p>NOTE 2: ISO/IEC 17799 provides implementation guidance that can be used when designing controls.</p>
<p>The requirements set out in this International Standard are generic and are intended to be applicable to all organizations, regardless of type, size and nature. Excluding any of the requirements specified in Clauses 4, 5, 6, 7, and 8 is not acceptable when an organization claims conformity to this International Standard.</p>
<p>Any exclusion of controls found to be necessary to satisfy the risk acceptance criteria needs to be justified and evidence needs to be provided that the associated risks have been accepted by accountable persons. Where any controls are excluded, claims of conformity to this International Standard are not acceptable unless such exclusions do not affect the organization&#8217;s ability, and/or responsibility, to provide information security that meets the security requirements determined by risk assessment and applicable legal or regulatory requirements.</p>
<p>NOTE: If an organization already has an operative business process management system &#40;e.g. in relation with ISO 9001 or ISO 14001&#41;, it is preferable in most cases to satisfy the requirements of this International Standard within this existing management system.</p>
<p>Delatprima mempersiapkan bagi Anda segala kebutuhan untuk jasa konsultan iso 27000 27001 27002, iso 27001 consultant, it security management consultant, konsultan isms, isms consultant, information security management consultant, it risk management, konsultan keamanan ti, konsultan manajemen keamanan ti, iso it security consultant, konsultan iso 17799, iso 17799 consultant, training iso 27000 27001, it audit, konsultan it bsc, manajemen risiko ti, tata kelola ti, it governance, it scorecard, iso 27000 27001 certification audit.</p>
<p>Hubungi segera NOVI &#8211; TEL. 021.7511984, 08161346764.</p>
<p> </p>
<p> <!--more--> <H3>Watch the video related to business continuity audit</H3>
<div align="center">
<p><!-- Smart Youtube --><span class="youtube"><object type="application/x-shockwave-flash" width="425" height="355" data="http://www.youtube.com/v/&amp;rel=1&amp;color1=0x666666&amp;color2=0xd3d3d3&amp;border=1&amp;fs=0&amp;autoplay=0&amp;loop=0&amp;disablekb=0&amp;egm=0&amp;border=1&amp;showsearch=1&amp;showinfo=1&amp;iv_load_policy=1&amp;cc_load_policy=1&amp;fmt=0"><param name="movie" value="http://www.youtube.com/v/&amp;rel=1&amp;color1=0x666666&amp;color2=0xd3d3d3&amp;border=1&amp;fs=0&amp;autoplay=0&amp;loop=0&amp;disablekb=0&amp;egm=0&amp;border=1&amp;showsearch=1&amp;showinfo=1&amp;iv_load_policy=1&amp;cc_load_policy=1&amp;fmt=0"></param><param name="allowFullScreen" value="true"></param><param name="wmode" value="transparent" /></object></span></p>
</div>
<p>  <H3>Help answer the question about business continuity audit</H3><br /> <H3>About Author</H3></p>
]]></content:encoded>
			<wfw:commentRss>http://www.blauexchange.org/deltaprima-konsultan-manajemen-keamanan-informasi-it-security-iso-27000-iso-27001-consultant-business-continuity-bcp-drp-disaster-recovery/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Hosted Software as Part of a Business Continuity Contingency</title>
		<link>http://www.blauexchange.org/hosted-software-as-part-of-a-business-continuity-contingency</link>
		<comments>http://www.blauexchange.org/hosted-software-as-part-of-a-business-continuity-contingency#comments</comments>
		<pubDate>Sat, 20 Jun 2009 03:44:46 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Articles]]></category>
		<category><![CDATA[Bcp]]></category>
		<category><![CDATA[business continuity]]></category>
		<category><![CDATA[Document Control]]></category>
		<category><![CDATA[Hosted Software]]></category>
		<category><![CDATA[Quality Management]]></category>
		<category><![CDATA[Saas]]></category>
		<category><![CDATA[Software As A Service]]></category>

		<guid isPermaLink="false">http://blauexchange.org/hosted-software-as-part-of-a-business-continuity-contingency</guid>
		<description><![CDATA[Any business faces minor down times and major unknowns. It is important therefore that contingencies are built into the business processes to ensure that important information is protected in the event of a planned or unplanned closure of the business. It has once been said that any investment into a Business Continuity Program (BCP) is [...]]]></description>
			<content:encoded><![CDATA[<div style="margin:0 auto;float:left;padding-right:5px"></div>
<p> Any business faces minor down times and major unknowns. It is important therefore that contingencies are built into the business processes to ensure that important information is protected in the event of a planned or unplanned closure of the business. It has once been said that any investment into a Business Continuity Program (BCP) is a waste of valuable resources. And it is true that if a strict ROI calculation is attributed to such a program <span id="more-4"></span>it is likely that it would not provide a sufficient justification for such an investment. However, anybody who has experienced a cessation of business activity will know that not having a BCP spells disaster and in fact it is a small cost to bear in relationship to the losses the business incurs during such an event.</p>
<p>Our recent history is filled with events that “were unthinkable” but that actually happened and which are all reminders that a BCP should not be disregarded. It is an accepted fact that following a major fire almost half of businesses fail to reopen and then close to a third of those that do reopen do not survive beyond three years. Those are everyday examples and the list could easily go on and on building up an unassailable argument for a BCP.</p>
<p>There are also smaller scale events where because of the temporary nature of the business interruption there is no life threatening effect on the business but the amount of time spent recovering lost information can be seriously distracting and in many instances where the information is permanently lost it can lead to severe problems for the people or organisations affected by such a loss. All distractions however small create a cost to the business as they take away resources from normal business activities and lead to increased overtime, more defects (which have to be fixed at a cost) or simply greater stress which means lower staff efficiency.</p>
<p>A BCP is ultimately a simple methodology for identifying areas of risk, creating contingencies, assigning responsibilities, communicating its benefits to the organisation and then following up with regular audits and live tests. But as in any aspect of a business’s activities it needs the commitment of senior management and staff for its processes and disciplines to be effectively embedded into the organisation.</p>
<p>While, this article does not go into the subject of how to construct a BCP, it does, as the title suggests, describe how a hosted software product can be used by an organisation as part of its business continuity contingency.</p>
<p>The definition of a hosted arrangement is one that is held as a guest by a third party. This means that the third party not only holds the hardware and software on behalf of the client but also takes care of maintaining both the hardware and software as well. In the specific case of a hosted software the product is owned, hosted and managed by the organisation that developed it and is then rented out from its hosted location for specific periods of time to a number of different companies. The hosting location is always remote from the business locations of the clients and the software product is accessible over an Internet connection. This provides a dual benefit of operating from a remote location that is protected from any event that could happen to a client’s business location while at the same time being able to be accessed from any PC and from any location, whether primary or alternative, with an Internet connection.</p>
<p>An example of a specific instance would be helpful at this stage. Company A operates from a single location with its offices, manufacturing and distribution in the same building. A small fire in the plant sets off the sprinkler system in the entire site and the fire’s spread is restricted and quickly put out. The damage is limited to the factory and it is quickly cleaned and is up and running again within a couple of hours. However, the damage from the sprinklers in the offices is substantial and all electronic equipment is permanently damaged and the storage disks are corrupted and it is not certain that anything can be recovered from them. However, the company used a hosted software to run its <a rel="external nofollow" target="_blank" href="http://www.lennoxhill.co.uk/">quality systems</a> and its customer management with the data being held at the hosting location. So with the help of a new PC, an existing live broadband connection and a new printer, Company A was able to access its account and retrieve its orders, print out its latest production procedures from its quality system and have the factory starting production on outstanding customer orders as soon as it had been cleaned up from the fire. There obviously could have been some mitigating measures that should have been installed prior to the incident such as different sprinkler systems in the offices and the factory and a gas based extinguisher for the electronic equipment but the management was not willing to accept the extra expense at the time.</p>
<p>As an observation Company A was able to reduce its downtime because it had systems and procedures in place to enable it to recover key information far quicker than had it disregarded such contingencies and taken the attitude that “it would never happen to us”. Clearly, the hosted software product at a remote location with its standard back-up models combined with its Internet connectivity had an important role to play in Company A’s business interruption contingencies.</p>
<p>But let us not forget that a hosted application also provides a cost effective alternative to a standard client server application while at the same time having the structure for protecting against the unexpected.</p>
<p> <!--more--> <H3>Watch the video related to business continuity audit</H3>
<div align="center">
<p><!-- Smart Youtube --><span class="youtube"><object type="application/x-shockwave-flash" width="425" height="355" data="http://www.youtube.com/v/&amp;rel=1&amp;color1=0x666666&amp;color2=0xd3d3d3&amp;border=1&amp;fs=0&amp;autoplay=0&amp;loop=0&amp;disablekb=0&amp;egm=0&amp;border=1&amp;showsearch=1&amp;showinfo=1&amp;iv_load_policy=1&amp;cc_load_policy=1&amp;fmt=0"><param name="movie" value="http://www.youtube.com/v/&amp;rel=1&amp;color1=0x666666&amp;color2=0xd3d3d3&amp;border=1&amp;fs=0&amp;autoplay=0&amp;loop=0&amp;disablekb=0&amp;egm=0&amp;border=1&amp;showsearch=1&amp;showinfo=1&amp;iv_load_policy=1&amp;cc_load_policy=1&amp;fmt=0"></param><param name="allowFullScreen" value="true"></param><param name="wmode" value="transparent" /></object></span></p>
</div>
<p>  <H3>Help answer the question about business continuity audit</H3><br /> <H3>About Author</H3>
<p>Written by Christopher Stainow of Lennox Hill Ltd. Lennox Hill <a target="_blank" rel="external nofollow" target="_blank" href="http://www.lennoxhill.co.uk">http://www.lennoxhill.co.uk</a> is a provider of hosted quality management software for effective management of the ISO 9000, ISO 14000 and OHSAS 18001 standards.</p></p>
]]></content:encoded>
			<wfw:commentRss>http://www.blauexchange.org/hosted-software-as-part-of-a-business-continuity-contingency/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

