Need help with your Discussion

Get a timely done, PLAGIARISM-FREE paper
from our highly-qualified writers!

glass
pen
clip
papers
heaphones

University of Wisconsin – Green Bay Risk Mitigation Paper

University of Wisconsin – Green Bay Risk Mitigation Paper

University of Wisconsin – Green Bay Risk Mitigation Paper

Description

Purpose

Bad things happen, such as natural disasters, pandemics, server downtime, and power outages. These events can impact organizations in different ways. A power outage at an office building can be a minor inconvenience, but a power outage at a hospital or long-term care facility can literally be a matter of life and death. That’s is why it is essential that entities:

Conduct an in-depth business impact analysis (BIA). (i.e., How would our business be impacted if/when certain events occur?)

Develop a business continuity plan (BCP). (i.e., How can we ensure that our business and those we serve are protected if/when such events occur?)

  1. In this assignment, you will conduct a BIA and BCP for a given scenario.

Unformatted Attachment Preview

CYB 715 Module 8 Assignment: RIsk Mitigation with Business Impact Analysis (BIA) and Business
Continuity Plan (BCP)
INSTRUCTIONS
SCENARIO
You are an IT security intern working for Health Network, Inc. (Health Network), a fictitious health
services organization headquartered in Minneapolis, Minnesota. Health Network has over 600
employees throughout the organization and generates $500 million USD in annual revenue. The
company has two additional locations in Portland, Oregon and Arlington, Virginia, which support a mix
of corporate operations. Each corporate facility is located near a co-location data center, where
production systems are located and managed by third-party data center hosting vendors.
COMPANY PRODUCTS AND ITS INFRASTRUCTURE OVERVIEW
Health Network has three main products: HNetExchange, HNetPay, and HNetConnect.
HNetExchange is the primary source of revenue for the company. This service handles secure
electronic medical messages that originate from its customers, such as large hospitals, which are
then routed to receiving customers such as clinics.
HNetPay is a web portal used by many of the companyàHNetExchange customers to support
the management of secure payments and billing. The HNetPay web portal, hosted at Health
Network production sites, accepts various forms of payments and interacts with credit-card
processing organizations.
HNetConnect is an online directory that lists doctors, clinics, and other medical facilities to allow
Health Network customers to find the right type of care at the right locations. It contains
doctors0ersonal information, work addresses, medical certifications, and types of services that
the doctors and clinics offer. Doctors are given credentials and can update the information in
their profile
Health Network customers, which are the hospitals and clinics, connect to all three of the companyÊproducts using HTTPS connections. Doctors and potential patients can make payments and update their
profiles using Internet-accessible HTTPS websites.
Health Network operates in three production data centers that provide high availability across the
companyàproducts. The data centers host about 1,000 production servers, and Health Network
maintains 650 corporate laptops and company-issued mobile devices for its employees.
MAIN TASKS OF THE ASSIGNMENT
Senior management at Health Network has decided they want a business impact analysis (BIA) that
examines the companyàdata center and a business continuity plan (BCP). Because of the importance of
risk management to the organization, management has allocated all funds for both efforts. Your team
has their full support, as well as permission to contact any of them directly for participation or inclusion
in the BIA or BCP.
Winter storms on the East Coast have affected the ability of Health Network employees to reach the
Arlington offices in a safe and timely manner. However, no BCP plan currently exists to address
corporate operations. The Arlington office is the primary location for business units, such as Finance,
Legal, and Customer Support. Some of the corporate systems, such as the payroll and accounting
applications, are located only in the corporate offices. Each corporate location is able to access the other
two, and remote virtual private network (VPN) exist between each production data center and the
corporate locations.
The corporate systems are not currently being backed up and should be addressed in the new plan. The
BCP should also include some details regarding how the BCP will be tested.
DETAILS
1. Research BIAs and BCPs.
2. Develop a draft BIA plan for the Health Network that focuses on the data centers. The BIA
should identify:
a. Critical business functions
b. Critical resources
c. Maximum acceptable outage (MAO) and impact
d. Recovery point objective (RPO) and recovery time objective (RTO)
3. Develop a draft BCP that could recover business operations while efforts are ongoing to restart
previous operations. You may use or repurpose the BCP template at
https://csrc.nist.gov/CSRC/media/Publications/sp/800-34/rev-1/final/documents/sp800-34rev1_bia_template.docx.
4. Provide a description of how you would test the plan.
SELF-ASSESSMENT CHECKLIST
Use the following checklist to determine if you¥ completed the essential elements of this assignment:
created a basic BIA that focuses on the data center.
identified critical business functions, critical resources, and the MAO, RPO, and RTO for the BIA.
created a basic BCP for the given scenario that includes a description of how to test the plan.
created a professional, well-developed draft report with proper documentation, grammar,
spelling, and punctuation.
included APA citations for all sources used in the report.
followed the submission guidelines in Canvas.

Purchase answer to see full
attachment
Explanation & Answer:

2 pages

User generated content is uploaded by users for the purposes of learning and should be used following Studypool’s honor code & terms of service.

Have a similar assignment? "Place an order for your assignment and have exceptional work written by our team of experts, guaranteeing you A results."

Order Solution Now

Our Service Charter


1. Professional & Expert Writers: Eminence Papers only hires the best. Our writers are specially selected and recruited, after which they undergo further training to perfect their skills for specialization purposes. Moreover, our writers are holders of masters and Ph.D. degrees. They have impressive academic records, besides being native English speakers.

2. Top Quality Papers: Our customers are always guaranteed of papers that exceed their expectations. All our writers have +5 years of experience. This implies that all papers are written by individuals who are experts in their fields. In addition, the quality team reviews all the papers before sending them to the customers.

3. Plagiarism-Free Papers: All papers provided by Eminence Papers are written from scratch. Appropriate referencing and citation of key information are followed. Plagiarism checkers are used by the Quality assurance team and our editors just to double-check that there are no instances of plagiarism.

4. Timely Delivery: Time wasted is equivalent to a failed dedication and commitment. Eminence Papers are known for the timely delivery of any pending customer orders. Customers are well informed of the progress of their papers to ensure they keep track of what the writer is providing before the final draft is sent for grading.

5. Affordable Prices: Our prices are fairly structured to fit in all groups. Any customer willing to place their assignments with us can do so at very affordable prices. In addition, our customers enjoy regular discounts and bonuses.

6. 24/7 Customer Support: At Eminence Papers, we have put in place a team of experts who answer all customer inquiries promptly. The best part is the ever-availability of the team. Customers can make inquiries anytime.

We Can Write It for You! Enjoy 20% OFF on This Order. Use Code SAVE20

Stuck with your Assignment?

Enjoy 20% OFF Today
Use code SAVE20