Expert Advice Community

Guest

BCP and DR

  Quote
Guest
Guest post Created:   Jan 12, 2016 Last commented:   Jan 12, 2016

BCP and DR

This question is related to BCP and DR We have place to take the backup and store it in a external area ( working area). The backup will be done by a third party. Can we consider this as Disaster Recovery Site? IS it compulsary to have a disaster recovery site (Hot site, Warm Site & Cold Site)   Thanks, Vijay
0 0

Assign topic to the user

ISO 27001/ISO 22301 BUSINESS CONTINUITY PLAN

Define the steps for recovering your business from disruption.

ISO 27001/ISO 22301 BUSINESS CONTINUITY PLAN

Define the steps for recovering your business from disruption.

Guest
Guest post Jan 12, 2016

Just a correction to the previous question,  The backup will be done a third party and they store in their location. Backup site is different and working site is different.

Quote
0 0
Guest
DejanK Jan 12, 2016

Neither ISO 27001 nor ISO 22301 require you to have a disaster recovery site. However, what both of these standards require you is to define how you will be able to recover your activities if your primary location is not available any more.

Therefore, if your arrangement with a backup stored at a third party enables you to recover within the Recovery Time Objective (RTO), than this is fine. Of course, your agreement with this third party must reflect all the security risks - see this article: 6-step process for handling supplier security according to ISO 27001 https://advisera.com/27001academy/blog/2014/06/30/6-step-process-for-handling-supplier-security-according-to-iso-27001/

See also these articles:

Disaster recovery vs business continuity https://advisera.com/27001academy/blog/2010/11/04/disaster-recovery-vs-business-continuity/
Can business continuity strategy save your money? https://advisera.com/27001academy/blog/2010/03/15/can-business-continuity-strategy-save-your-money/
Backup policy – How to determine backup frequency https://advisera.com/27001academy/blog/2013/05/07/backup-policy-how-to-determine-backup-frequency/

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Jan 12, 2016

Jan 12, 2016

Suggested Topics

Guest user Created:   Apr 22, 2020 ISO 27001 & 22301
Replies: 1
0 0

BCP and DR

Guest user Created:   Mar 17, 2020 ISO 27001 & 22301
Replies: 1
0 0

BCP and DR: ISO 22301

Guest user Created:   Jun 03, 2019 ISO 27001 & 22301
Replies: 1
0 0

Auditing BCP and DRP