Cyber-Sierra Workshop 2002: Security Issues

     

Web Site Recovery Planning

Index |  Back Up Basics |  Site Security |  Safe Surfing | 

 

Today Your Web Site Disappeared

What do you do when your site disappears?

Maybe your server quick working.

Maybe you were hit with a denial of service attack.

Maybe your hosting service went out of business.

Maybe your entire agency got a court order to disconnect from the web.

Maybe there was a flood, fire, earthquake or lightning storm that fried your whole system.

Maybe you forgot to renew your domain name and now you've lost it.

But your web site is G.O.N.E. Your virtual office went from 24/7 to 0/7/ and nobody can reach you by e-mail, fax or phone. So what do you do now?

Whether you are a one person business, a three person office or a whole agency you need to do disaster planning BEFORE something happens. Just like any other aspect of your organizational operation, you need an emergency plan for your web site and Internet communications. Every day we become rely more on the web and Internet communications systems.

Many offices and organizations already developed disaster recovery plans as a part of Y2K preparations. Then after the attack on America September 11, 2001, disaster planning proved it's worth. Companies like Deutsche Bank and Blue Cross/Blue Shield had redundancy plans in place were up and running again within hours to a few days. Companies that had no plan, closed.

Basics of Planning for Emergencies

Planning for emergencies is vital.
RISK ASSESSMENT
Determining vulnerabilities and prioritizing them
 
PREVENTION
Prevention includes activities that will lessen the possibility or the impact of an emergency occurring in your organization. The primary goals and objectives of the Prevention are to protect the organization's assets and to manage risk.
 
RESPONSE
In addition to addressing matters of life safety, Response also addresses the policies, procedures and actions to be followed in the event of an emergency.
 
RESUMPTION
Resumption refers to the process of planning and implementing the most time-sensitive business operations immediately following a disaster.
 
RECOVERY
Recovery is the timeline of expanded operations after a disaster to address less time-sensitive business operations immediately following an interruption or disaster.
 
RESTORATION
Restoration is pre-planning the repair or relocation of the primary site and its contents, and for the restoration of normal business operations.
 

The primary objective of a Business Resumption Plan is to enable an organization to survive a disaster and to reestablish normal business operations. In order to survive, the organization must assure that critical operations can resume normal processing within a reasonable time frame.

Special Risks to Webs

In the case of a web site, you have to analyze not only the risks at your own physical location but those at your server location. Part of your Risk Assessment and Prevention planning should be an assessment of the vulnerabilities of your offsite data. You'll need to develop offline fixes for on-line problems.

Examples of server consideration:

  • Does your Server have redundancy backups?
  • Can you handle Denial of Service Attacks?
  • Are you running server firewalls?

Examples of hosting service consideration:

  • Does your host server have redundancy backups?
  • Ho often do they perform backups?
  • Can they handle Denial of Service Attacks?
  • Are they running server firewalls?

Even though you are not an IT person, if you are the web person there are things you can do in the way of a personal Emergency Recovery Plan that will make life a lot easier for you. Starting with computer maintenance and Backups.


 

More Information:

Be Prepared
Every business and organization needs a disaster plan.
 
Business Resumption Plan
An outline of a basic disaster plan which can help you get started.
 
Business Continuity Planning
Multiple links to a variety of disaster planning topics.
 
Business Continuity Planning
Online course of the planning process.
 
Continuity of Operations Planning
How quickly your company can get back to business after a tornado, fire or flood often depends on emergency planning done today.
 
Disaster Recovery Guide
Multiple articles on a variety of disaster planning topics.
 
Index |  Back Up Basics |  Site Security |  Safe Surfing | 

 

 

WORKSHOPS: E-Mail and Outreach |  Web 101 |  Building Accessible Webs |  Web Security | 

Workshops Location: http://www.cyber-sierra.com/workshops/
2002 copyright © Cyber-Sierra.Com, on-line since 1997