Five Keys to an Effective Disaster Recovery Plan
In an age where cyber-attacks are making headlines with alarming regularity, an actionable disaster recovery strategy has become essential. There is an urgent need to ensure protection against the worst consequences of critical disaster scenarios; from the most effective backup strategies to staff training requirements, we have brought the five most important considerations to light to ensure creative agencies and design studios can continue to operate under the most extreme circumstances.
What is a DRP?
A disaster recovery plan (DRP for short) provides a template that can provide a pathway for response and from any type of disaster. A good DRP takes into account all possible service-disrupting events, both technological and practical, and can include:
- System loss due to cyber-attacks, file corruption or deletion, hardware failure
- Network failure resulting from a power outage
- Loss of physical site due to natural disaster or other catastrophic event
- Loss of key personnel
All of these potentialities create a predictable set of conditions upon which to act, though the recovery options will vary greatly from company to company and situation to situation. While the details can be very individual, some generalities can be made to provide a basis for the DRP.
Let’s look at the broad points:
1. Determine your backup plan
Your DRP should first consider what would be required to get your company back on line with a minimum amount of downtime. A good back up plan is essential regardless of your network configuration.
Follow the 3-2-1 rule: Have 3 copies of your data, with copies stored on 2 different types of media, and keep 1 of these copies offsite.
Of course, we’re simply assuming you make regular backups of your systems, apps and all related data. While a vast majority companies are still using on-site system backups, forward-thinking organizations are taking advantage of both cloud-based computing and backups. This allows for web applications to run independently of a physical server and for backups to be scheduled automatically, ensuring access to your data in case of any type of disaster. Even if you lose your entire office and all the equipment in it, your systems will stay online and data will still be intact and ready to deploy as soon as you have your physical site back up and running.
2. Map Out Your DRP
Generally speaking, there are two distinct and separate phases of a DRP:
- Replace: First determine what type of a loss you are facing. Establish what hardware or personnel, if any, might be needed for business continuity. If hardware needs to be replaced or repaired, suppliers will need to be contacted and new equipment put into place.
- Recover: The recovery phase involves getting all the necessary equipment back online and up to speed. This phase might also include data recovery, locating new or additional staff or perhaps finding a new location to house the business.
A good DRP will provide a clear and detailed roadmap that can be followed in any type of event. We recommend addressing the following issues in advance:
- Backup facilities: Are they ready and accessible or are they administrated by a third party?
- Physical office space: Do you have access to other facilities or can your team work from home?
- Personnel: Do you require additional staff? Are there temp or part-time workers you can call in?
- Safety: What must be done to ensure the safety of your workforce?
- IT continuity: Is there a need to replace hardware? Do you have a list of suppliers to call?
- Telecom continuity: Can phone calls, email and other communications be rerouted to continue normal delivery?
The answers to the questions above should be documented and distributed to key personnel with the intention of being put into action in the event of a disaster. With the answers in hand, you will be ready to devise an easy path.
3. Determine how long it is going to take
Each individual step in your plan should be attached to a timeline. In a world where every minute of downtime could cost you a potential customer, it is to your advantage to know approximately how long it’s going to take to get up and running again.
For instance, in the case of a cyber-attack, you may initiate the action to restore your systems to a backup right away, but the time to bring all your systems being back online again may be several hours. Speak to your hosting team to determine what it will take to prepare your systems for restoration and then to restore from the last uncorrupted backup.
By assigning a timeframe to any and all possible occurrences, you’ll be better prepared for even the even the most unexpected of events.
4. Work Together as a Team
The best chance for success with any system or sequence of events is to plan meticulously for it. Staff members must work together to ensure a smooth process. Proper delegation is essential. For example, one team member should be tasked with determining the type of disaster at hand, and with contacting the appropriate individuals with information they will need for next steps. The second team member may deal specifically with site-related issues such as office space and insurance coverage for damages. A third team member puts a damage control process into motion, contacting clients who may have deadlines that will be affected by your disaster and a fourth team member could take care of deferring any financial issues, such as delaying accounts payable or payroll until systems are restored. Your DRP should outline key duties in detail and assign them to specific people so that not a moment is wasted in the process. Each team member should also be aware of who is responsible for other key duties, in case they have to be re-delegated.
5. Be prepared!
Most of us don’t spend a lot of time thinking about the worst-case scenario. Why focus on that (or hire a full IT department) when you have a business to run? If this sounds suspiciously like you, doing business in the cloud should be a consideration, if you’re not already there. Find a scalable plan that can handle your projected growth, and if needed, opting for managed security or server monitoring to see if it’s right for you.
Your early actions can make a big difference as to any online disaster. But remember, your hosting service should be dedicated to your business success, so rely on them first. Download and implement a disaster recovery plan template that will help you to flesh out your company’s recovery strategy. And if you have been considering a migration to the cloud, the time couldn’t be better. Protecting your vital data and keeping your systems up and running with minimum downtime is what we do best, so call today and discover how easy it is to get started.