Business Continuity

image1

Business Continuity Course

About the BCI

The BCI is the world’s leading professional association responsible for improving organizational resilience through building business continuity capability and professional development of individuals all over the world. 

The BCI’s vision is a world where all organizations, communities and societies become more resilient. 

The BCI is built on the principle of professionalising business continuity practice, and continues to be the authoritative and reliable source of information on all aspects of business continuity theory and practice for professionals, and offersa wealth of online resources. The Good Practice Guidelines have been revised as part of the BCI’s process of continual improvement and ongoing development of our body of knowledge to remain relevant to professionals worldwide. 


What is Business Continuity? 

Business continuity is the key discipline that sits at the heart of building and improving the resilience oforganizations.
It is a tried and tested methodology that an organization should adopt as part of its overall approach to managing risks and threats. Business continuity management identifies an organization’s priorities and prepares solutions to address disruptive threats. An effective business continuity programme supports the strategic objectives of the organization and pro- actively builds the capability to continue business operations in the event of disruption. The programme includes the identification of risks and threats, the creation of response structures and plans to address incidents and crises, and promotes validation and continuous improvement.

Nowadays, regulatory bodies and government emphasize on the operational recovery and resilience for all impacted stakeholders due to unexpected crisis/ incidents, political unrest (e.g. BREIXT) and civil disturbance (e.g. Occupy Central in Hong Kong SAR in 2014, “Yellow Vest” in France in 2018), pandemics, power/ system outages or even terrorist/ cyber-attacks (e.g. DDoS, ransomware), etc. 

Audience

This course is designed for new and experienced BCM practitioners, executives, managers, business continuity planners and business unit staff who are involved in or manage business continuity planning functions, especially from MNCs, government and financial institutions. It is also highly useful for internal and external auditors, security managers, records managers, information technology managers, crisis managers, senior IT staff, administrative heads, and others responsible for the administration of any size of organization. 

Objectives

At the conclusion of this course, participants should: 

  • have a solid understanding of the overall Business Continuity Management lifecycle 
  • have the tools and knowledge required to conduct a Business Impact Analysis and Risk Assessment for their organization 
  • know how to identify and select cost-effective Business Continuity strategies for key business activities and ITDisaster Recovery (DR)
  • know how to identify and select cost-effective strategies for key business activities and IT systems 
  • understand issues surrounding Cyber Security concerns 
  • be able to guide their IT and business unit personnel through the development of practical and effective IT recovery and business recovery plans 
  • be able to implement an effective Incident Management structure within their organization, including Emergency Response and Crisis Management 
  • know how to keep their plans current and viable 
  • have the tools and knowledge required to plan and coordinate effective tests and exercises 

Course Structure

6 modules( or called professional practices-PP) should be covered in the BCI framework:

·  Policy & Programme Management 

·  Embedding Business Continuity 

·  Analysis 

·  Design 

·  Implementation 

·  Validation 

Course Structure

6 modules( or called professional practices-PP) should be covered in the BCI framework:

·  Policy & Programme Management 

·  Embedding Business Continuity 

·  Analysis 

·  Design 

·  Implementation 

·  Validation 


Topics covered include:

1. Business Continuity Lifecycle Management:  Evolution of BC Planning and Standards 

2. Establish business continuity policy, objectives, targets, controls, and procedures 

· Setting corporate policies, objectives and budgets 

· Assigning accountability for the Business Continuity program 

· Establishing the Business Continuity teams 

3.  Crisis Communications 

· Communicating proactively with customers, suppliers, and other stakeholders 

· Addressing the needs and concerns of employees and their families 

· Guidelines for Effective Media Relations—broadcast interviews, print media, news conferences, social media 

4. Awareness and Training 

· Defining your Awareness and Training Requirements 

· Implementing the Program 

· Managing the Ongoing Program 

5. Business Impact Analysis and Risk Assessment - What threatens your organization? 

· Understanding the need for a Business Continuity program 

· Defining your organization's Business Continuity requirements 

· Conducting a Business Impact Analysis

· Conducting a Business Unit Risk Assessment 

6. Identifying and selecting Business Continuity strategies for: 

· Mitigating risk 

· Reducing impact 

· Recovering technologies 

· Resuming business operations 

7. Developing plans for IT Disaster Recovery 

· Primary concerns in Cyber Security Planning 

· Design an effective information technology (IT) Disaster Recovery Plan to recover critical IT systems, applications, and data 

· Determine risks and impacts of disruption to IT infrastructure and Recovery Time Objectives (RTO) and Recovery Point Objectives (RPO) 

8. Developing plans for Business Resiliency 

· Initial response and assessment 

· Interim contingencies 

· Resource provisioning 

· Business recovery 

· Return to normal 

9. Developing a Crisis Management Plan:

· Creating a Crisis Management Team 

· Establishing on-site and off-site Command Centers 

· Escalating emergencies and activating Business Continuity teams and plans 

· Crisis management checklists to help the CMT with ‘crisis project management’ 

10. Key Components in a Crisis Management Plan: 

· Decision-making authority 

· Coordination with public authorities

· Human resources issues 

· Financial control issues 

· Legal, contractual and regulatory issues 

11. Review of Techniques for Training and Exercising Business Continuity Teams: 

· Table Top Exercises 

· Simulation Exercises 

· Drills 

· Operational Exercises 

· Mock Disasters 

12.Setting Test and Exercise Objectives: 

· Planning and Preparation 

· Measuring Success and Performance 

· Critical Success Factors 

13. Review of Techniques for Validating and Maintaining Business Continuity Plans: 

· Desk Checks; Peer Reviews 

· Structured Walkthroughs 

· Standalone Tests; Integrated Tests 

· Operational Tests 

· Call Tree Tests 

14. Plan Maintenance: 

· Establishing a repository for all plan documentation and procedures 

· Implementing a Change Control system

· Administering the maintenance process 

· Developing and ensuring compliance with corporate policies and standards 

15. Plan Evaluation: 

· Identifying significant changes to business units and critical operating processes 

· Reviewing current strategies for reducing risk, reducing impact, recovering computer systems, resuming business operations 

· Reviewing and updating Business Continuity requirements 

· Auditing the Business Continuity program 

16. Plan Administration: 

· Administering the plan maintenance process 

· Centralized versus decentralized administration 

· Managing access and dissemination of plan contents 

· Generally Accepted Business Continuity 'Best Practices'

Course Logistics:

Membership

Generally, there are 6 BCI membership grades depending on the students’ exam result and BCP related working experience. When a student completed the exam with PASS grade (at 70%), he/ she will be CBCI definitely. If he/ she has more than 1 year or 3 years BCP experience, after assessment from BCI with payment around GBP120, he/ she will be Associate Member (AMBCI) or Member (MBCI). Notably, same as other professional, CPD is a MUST to retain his/her status. Members can report their experience in the BCI website after creating a member account in BCI website.

Examination

120 MC questions with 70% correct as Pass, and 85% as Distinction. Candidates must have laptop with webcam for examination. The exam vendor will assess candidates’ laptop for system checking before exam.

 Business Continuity Course - 20190601MC
Date: 21/5, 23/5, 28/5, 30/5
Time: 19:00 - 22:00pm
Course fee: HK$12,000 (including Exam fee) 

Early-bird: 5% (paid on 11 May or before)