article thumbnail

The Ultimate Guide to Residual Risk  

MHA Consulting

Inherent risk is the danger intrinsic to any business activity or operation. Residual risk is the amount of risk that remains in an activity after mitigation controls are applied. Putting it in mathematical terms: (Inherent risk) – (the risk eliminated by your mitigation controls) = residual risk.

article thumbnail

Get Cyber Smart: How to Make Sure Recovery Plans Align with Information Security Needs  

MHA Consulting

Ideally, this group will be aware of the need to integrate cyber security and business recovery. From the BC point of view, recovery plans and actions that envision turning to such services need to be consistent with security requirements. Cyber steering committee. Third-party controls and assessment.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

The 7 critical elements of a business continuity plan

Online Computers

A BCP is a comprehensive document that outlines the strategies and procedures a business must follow to keep its critical functions operational during and after a disruptive event. Its primary objectives are to minimize downtime, maintain business functions, and mitigate potential financial and reputational losses.

article thumbnail

BCM Basics: the Difference Between Business Continuity and Disaster Recovery

MHA Consulting

They soon find the field contains an abundance of specialist terms such as inherent risk , mitigation controls , and recovery time objective. However the most important terms to learn at the outset are surely business continuity and IT disaster recovery since they speak to the principal division of the entire field.

article thumbnail

The Human Factor: BCM Team Roles and Skill Requirements 

MHA Consulting

As the program matures, various other roles will be needed, possibly including the following: Building Maintenance or Facilities Manager: This individual can provide information on what mitigation steps are already in place for the facility, such as fire suppression and electrical service. Business and Disaster Recovery.

BCM 91
article thumbnail

BCM Basics: The Strategic Side of Crisis Management  

MHA Consulting

Related on MHA Consulting: Critical Assistance: How a Consultant Can Strengthen Your Crisis Management Program According to Strong Language: The MHA Glossary of Essential Business Continuity Terminology , crisis management is “the process of trying to resolve a serious adverse event with minimal impact on an organization and its stakeholders.”

article thumbnail

Cyber Incident Management – Looking Through the Wrong End of the Telescope

Plan B Consulting

Business recovery and continuity of operations If we carry out reputation and stakeholder management, we can limit the impact of the cyber incident. Lastly, existing business recovery and continuity of operation plans should also be used during a cyber breach. Reputation and stakeholder management 2.