From Y2K to CrowdStrike: Why Business Continuity Planning is Your Secret Weapon.

I began my career in emergency management in 1999. Back then, a primary concern was the potential world-ending collapse of systems due to Y2K and computers not recognizing the year 2000. At the time, I felt all the fuss was rather silly, especially since no world-ending incidents occurred. However, the focus on our reliance on technology was not misplaced.

Now, 25 years later, we are significantly more dependent on technology, making any potential outage a catastrophic event. The recent CrowdStrike incident and the subsequent global system failures serve as a stark reminder of this vulnerability.

Planning to mitigate these vulnerabilities is absolutely essential. For my first job in EM, I worked with small businesses and non-profits helping them think through their continuity of operations, define their critical business functions and systems, understand the capabilities of their third-party vendors and create system redundancies. This simple planning process was not rocket science by any means, but it proved invaluable when disruptions inevitably occurred.

Unfortunately, business continuity or disaster recovery planning is often an afterthought. If you are one of those organizations still struggling to recover from the CrowdStrike incident, you are now intimately familiar with the organization’s critical functions and systems and the LACK of redundancies. You are truly feeling the pain in real-time.

To make matters worse, operation disruptions and immediate revenue loss are not the only risks you need to consider. Think about the impact on your organization's brand if you do not have plans in place to respond quickly. Customers affected by a protracted business interruption are likely lost forever.

What should you do?

CrowdStrike is the most recent example of a threat to your organization. Whether you were impacted or not, take this opportunity to dust off your plans or begin the planning process. Start by taking a look at the organizations that quickly recovered from the CrowdStrike incident; they likely had business continuity and disaster recovery plans in place, backup vendors on speed dial, and redundant systems to support their critical functions. 

For your planning, focus on the following:  

  • Determine what your critical systems are and what would cause a significant disruption to your business operations

  • Conduct a vulnerability assessment of each critical system

  • Work with each critical system vendor to ascertain their level of recovery and redundancy planning

  • Consider redundant services 

  • Train employees on smart cyber security practices  

To accelerate your planning, TRI is offering our Disaster Recovery Plan Template for 50% off for a limited time.

Lastly, TRI is always here to provide our expert guidance. Request a free consultation today.

Andrea E. Davis

As the Founder, President and CEO of The Resiliency Initiative, a certified Woman-Owned Small Business (WOSB), I empower small businesses and communities to become self-reliant through crisis and risk mitigation planning. I have over 20 years of experience in emergency management, business continuity, and public health, working for public, private, and non-profit sectors across various industries and geographies.

My core competencies include strategic policy development, program management, stakeholder engagement, and media relations. I have led global, enterprise-wide crisis management departments for multi-national, Fortune 500 companies, such as The Walt Disney Company and Walmart, overseeing large-scale responses to natural disasters, pandemics, cyberattacks, and social unrest. I have also served as the External Affairs Director for the Federal Emergency Management Agency's Louisiana Recovery Office for Hurricane Katrina, managing a recovery portfolio of over $25 billion.

My passion is volunteer service, which led to my selection as the Inaugural Emergency Manager of the Year in 2018 by the International Association of Emergency Managers and my induction into the Women’s Emergency Management Hall of Fame in 2013. Currently, I am Board Chair for the California Resiliency Alliance and the Northwest Arkansas American Red Cross. Additionally, I am an advisory board member for the Institute for Diversity and Inclusion in Emergency Management (I-DIEM) and the Dr. Lucy Jones Foundation.

Previous
Previous

Critical Training for Active Assailant Response: A Personal Account and The Resiliency Initiative’s Mission

Next
Next

Quarterly Resiliency Forecast-Summer 2024