Are there any specific aspects of your Business Continuity Plan (BCP) that you believe need updating following the CrowdStrike Windows outage?

1.6k viewscircle icon1 Upvotecircle icon3 Comments
Sort by:
Chief Information Technology Officer in IT Servicesa year ago

Update communication protocols to include alternative channels for notifying employees and stakeholders during an outage.

Lightbulb on2
Director of IT in Transportationa year ago

Yes, a couple of things...

1) Develop experience in your teams with the FEMA Incident Command System (ICS).  There is free online training for it.  Very useful framework for managing incidents including information systems ones.  When an event happens, senior management appoints an incident commander who is familiar with using that system, and it expedites getting the right things done and communicated well.

2) With all of your vendors who bring in change to your organization (most do), try to have a way of vetting it with a small subset, or delaying its adoption until more of the world has tried it, if you can.   Vendors who automatically push changes to all your devices (especially if they have weaker QA or process control) should be required to provide you ways of testing before you accept..

VP of IT in Manufacturinga year ago

If possible, go back to staggered updates (for endpoint protection, but also Windows Updates etc.)
This of course introduces new risks (some assets carry vulnerabilities longer) so this is best achieved with a segmented network - the mission-critical assets get updated later but are behind another firewall to protect them.

Content you might like

Zpaier14%

Make (Formerly Integeromat)31%

IFTTT17%

Other tool19%

I like to learn task automation14%

No task automation3%

View Results