Information Security and Computer Fraud
ISSN (Print): 2376-9602 ISSN (Online): 2376-9629 Website: https://www.sciepub.com/journal/iscf Editor-in-chief: Sergii Kavun
Open Access
Journal Browser
Go
Information Security and Computer Fraud. 2024, 8(1), 1-6
DOI: 10.12691/iscf-8-1-1
Open AccessArticle

Recommending Solutions for Contingencies Including Business Impact Analysis, Continuity, and Disaster Recovery

Cheryl Ann Alexander1, and Lidong Wang2

1Institute for IT Innovation and Smart Health, Mississippi, USA

2Institute for Systems Engineering Research, Mississippi State University, Mississippi, USA

Pub. Date: June 20, 2024

Cite this paper:
Cheryl Ann Alexander and Lidong Wang. Recommending Solutions for Contingencies Including Business Impact Analysis, Continuity, and Disaster Recovery. Information Security and Computer Fraud. 2024; 8(1):1-6. doi: 10.12691/iscf-8-1-1

Abstract

A business continuity plan (BCP) helps an organization mitigate cyberattacks, build resilience, and survive disasters. Unfortunately, many organizations' BCPs are too general and static (without enough consideration for condition changes) and do not work well when a disaster occurs, resulting in a loss of resources. It is necessary to enhance the adaptability and flexibility of a BCP so that the BCP is vigorous and adapts to changing conditions rapidly and easily. Business impact analysis (BIA) is a core component of a BCP. It is an effective approach to evaluating the potential effects of disturbances on critical business goals and procedures. BIA must consider any potential for change. An organization must also adapt or advance its BIA to guard against further cyber-attacks. This paper introduces BCP and BIA; deals with the BIA, continuity, and disaster recovery in healthcare systems; and presents a BIA case study of a medical center.

Keywords:
cybersecurity business continuity plan business impact analysis disaster recovery healthcare

Creative CommonsThis work is licensed under a Creative Commons Attribution 4.0 International License. To view a copy of this license, visit http://creativecommons.org/licenses/by/4.0/

References:

[1]  Swanson, M. M., Bowen, P., Phillips, A. W., Gallup, D., & Lynes, D. (2010). Contingency Planning Guide for Federal Information Systems [including updates through 11/11/2010].
 
[2]  Hatton, T., & Brown, C. (2021). Building adaptive business continuity plans: Practical tips on how to inject adaptiveness into continuity planning processes. Journal of Business Continuity & Emergency Planning, 15(1), 44–52.
 
[3]  Blass, G. (2021). Mitigate risk while preparing for the future: Why you need a DRBC Plan. Journal of Health Care Compliance, September–October.
 
[4]  Yi, B., Sawant, A., Chen, S., Lee, S. W., & Zhang, B. (2022). Readiness for radiation treatment continuity: Survey on contingency plans against cyberattacks. Advances in radiation oncology, 7(5), 100990.
 
[5]  Burroughs, A. (2021). Keeping it together: Why tested business continuity plans are important in a crisis. Smart Business Cleveland, 32(7), 30.
 
[6]  Debra Cascardo, M. A. (2020). Learning to live with volatility: preparing for business continuity and recovery following a disaster. Physician Leadership Journal, 7(4), 69-72.
 
[7]  Lee, A., Vargo, J. and Seville, E. (2013). Developing a tool to measure and compare organizations’ resilience. Natural Hazards Review, 14(1), 29–41.
 
[8]  Whitman, Z., Kachali, H., Roger, D., Vargo, J. and Seville, E. (2013). Short-form version of the Benchmark Resilience Tool (BRT-53). Measuring Business Excellence, 17(3), 3–14.
 
[9]  Tistiyani, S., Briliyant, O., & Trianto, N. (2023, August). Tailoring e-Government’s ICT Readiness for Business Continuity based on Cyber-Risk Approach. In 2023 IEEE International Conference on Cryptography, Informatics, and Cybersecurity (ICoCICs) (pp. 1-8). IEEE.
 
[10]  Williams, T., & Resto-Leon, M. (2023). Cracking the code: The keys to a successful business impact analysis. Journal of Business Continuity & Emergency Planning, 16(4), 313-319.
 
[11]  Horalek, J. (2023). Business Impact Analysis of AMM Data: A case study. Applied System Innovation, 6(5), 82.
 
[12]  Aghabegloo, M., Rezaie, K., Torabi, S. A., & Yazdani, M. (2024). Integrating business impact analysis and risk assessment for physical asset criticality analysis: a framework for sustainable operations in process industries. Expert Systems with Applications, 241, 122737.
 
[13]  Motevali Haghighi, S., & Torabi, S. A. (2020). Business continuity-inspired fuzzy risk assessment framework for hospital information systems. Enterprise Information Systems, 14(7), 1027-1060.
 
[14]  Sasaki, H., Maruya, H., Abe, Y., Fujita, M., Furukawa, H., Fuda, M., ... & Egawa, S. (2020). Scoping review of hospital business continuity plans to validate the improvement after the 2011 Great East Japan Earthquake and Tsunami. The Tohoku Journal of Experimental Medicine, 251(3), 147-159.
 
[15]  Ito, H., & Aruga, T. (2022). A conceptual framework to assess hospitals for disaster risk reduction in the community. International Journal of Disaster Risk Reduction, 77, 103032.
 
[16]  Goniewicz, M., Khorram-Manesh, A., Timler, D., Al-Wathinani, A. M., & Goniewicz, K. (2023). Hospital disaster preparedness: A comprehensive evaluation using the Hospital Safety Index. Sustainability, 15(17), 13197.
 
[17]  Aminizadeh, M., Farrokhi, M., Ebadi, A., Masoumi, G., Kolivand, P., & Khankeh, H. (2022). Hospital preparedness challenges in biological disasters: A qualitative study. Disaster Medicine and Public Health Preparedness, 16(3), 956-960.