<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>DRP - STEP Software</title>
	<atom:link href="https://www.stepsoftware.com/tag/drp/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.stepsoftware.com</link>
	<description>Custom Software Development</description>
	<lastBuildDate>Tue, 21 Jul 2026 16:05:56 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.1</generator>

<image>
	<url>https://www.stepsoftware.com/wp-content/uploads/2025/02/FaviconFoxOnDark_512-150x150.png</url>
	<title>DRP - STEP Software</title>
	<link>https://www.stepsoftware.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Canadian Wildfires Are a Wake-Up Call: Why Every IT Leader Should Review Their Disaster Recovery Plan</title>
		<link>https://www.stepsoftware.com/canadian-wildfires-are-a-wake-up-call-why-every-it-leader-should-review-their-disaster-recovery-plan/</link>
		
		<dc:creator><![CDATA[STEP Software]]></dc:creator>
		<pubDate>Fri, 24 Jul 2026 11:00:00 +0000</pubDate>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[budget]]></category>
		<category><![CDATA[disaster recovery plan]]></category>
		<category><![CDATA[DRP]]></category>
		<category><![CDATA[security]]></category>
		<guid isPermaLink="false">https://www.stepsoftware.com/?p=5318</guid>

					<description><![CDATA[<p>Rather than scrambling to locate emergency assistance during a crisis, organizations should establish relationships with experienced technology partners before they need them.</p>
<p>The post <a href="https://www.stepsoftware.com/canadian-wildfires-are-a-wake-up-call-why-every-it-leader-should-review-their-disaster-recovery-plan/">Canadian Wildfires Are a Wake-Up Call: Why Every IT Leader Should Review Their Disaster Recovery Plan</a> first appeared on <a href="https://www.stepsoftware.com">STEP Software</a>.</p>]]></description>
										<content:encoded><![CDATA[<p class="wp-block-paragraph">As wildfires continue to impact communities across Canada, they should serve as a powerful reminder that disasters don&#8217;t always look like cyberattacks or hardware failures. Sometimes they are environmental events that happen with little warning and create widespread disruption for employees, customers, suppliers, and critical infrastructure. According to the <a href="https://ciffc.net/" target="_blank" rel="noopener" title="">Canadian Interagency Forest Fire Centre (CIFFC),</a> recent wildfire seasons have repeatedly stretched emergency response resources across multiple provinces, while <a href="https://natural-resources.canada.ca/forests-forestry/state-canada-forests/state-canada-s-forests-annual-report-2025" target="_blank" rel="noopener" title="">Natural Resources Canada &#8211; Annual Report 2025</a> notes that climate change is contributing to longer and more severe wildfire seasons.</p>



<p class="wp-block-paragraph">For IT leaders, these events highlight an important question:</p>



<p class="wp-block-paragraph"><strong>If your team couldn&#8217;t access the office tomorrow, could your business continue operating?</strong></p>



<p class="wp-block-paragraph">Disaster Recovery Plans (DRPs) and Business Contingency Plans (BCPs) are often written to satisfy compliance requirements or insurance audits. Unfortunately, many organizations don&#8217;t revisit them until an actual emergency exposes the gaps. The reality is today&#8217;s business environment changes far more quickly than annual documentation updates can keep pace with.</p>



<p class="wp-block-paragraph">The widespread Canadian wildfires are a timely reminder that every organization should <strong>review, test, and update its disaster recovery strategy</strong> at least once every year.</p>



<h2 class="wp-block-heading">Disaster Recovery Isn&#8217;t Just About Technology</h2>



<p class="wp-block-paragraph">When many organizations think about disaster recovery, they immediately focus on backups, cloud infrastructure, and server redundancy.</p>



<figure class="wp-block-image size-full"><img fetchpriority="high" decoding="async" width="1024" height="544" src="https://www.stepsoftware.com/wp-content/uploads/2026/07/DIAGRAM_Backup-and-redundancy-plan.png" alt="Backup and Redundancy" class="wp-image-5320" srcset="https://www.stepsoftware.com/wp-content/uploads/2026/07/DIAGRAM_Backup-and-redundancy-plan.png 1024w, https://www.stepsoftware.com/wp-content/uploads/2026/07/DIAGRAM_Backup-and-redundancy-plan-300x159.png 300w, https://www.stepsoftware.com/wp-content/uploads/2026/07/DIAGRAM_Backup-and-redundancy-plan-768x408.png 768w" sizes="(max-width: 1024px) 100vw, 1024px" /></figure>



<p class="wp-block-paragraph">Those are certainly critical components, but they&#8217;re only part of the picture.</p>



<p class="wp-block-paragraph">A comprehensive Disaster Recovery Plan should answer questions such as:</p>



<ul class="wp-block-list">
<li>What happens if your office becomes inaccessible?</li>



<li>Can employees securely work remotely?</li>



<li>What if key members of your IT team are personally affected by the disaster?</li>



<li>Are critical vendors able to continue supporting your systems?</li>



<li>How quickly can business-critical applications, <a href="https://www.stepsoftware.com/when-disaster-strikes-what-to-do-if-your-legacy-system-goes-down/" target="_blank" rel="noopener" title="">including legacy systems,</a> be restored?</li>



<li>Who has decision-making authority if leadership is unavailable?</li>
</ul>



<p class="wp-block-paragraph">Natural disasters rarely affect only one component of an organization. They impact people, communications, transportation, utilities, supply chains, and customer expectations simultaneously.</p>



<p class="wp-block-paragraph">The <a href="https://www.publicsafety.gc.ca/cnt/trnsprnc/brfng-mtrls/prlmntry-bndrs/20200724/024/index-en.aspx" target="_blank" rel="noopener" title="">Government of Canada&#8217;s Public Safety Department</a> recommends that business continuity planning address ‘all hazards,’ including natural disasters, utility outages, pandemics, and cyber incidents because these events can have cascading operational impacts.</p>



<h2 class="wp-block-heading">Annual Reviews Matter More Than Ever</h2>



<p class="wp-block-paragraph">Technology changes rapidly. Your Disaster Recovery Plan should evolve just as quickly.</p>



<p class="wp-block-paragraph">Over the course of a year your organization may have:</p>



<ul class="wp-block-list">
<li>Migrated systems to the cloud</li>



<li>Implemented new SaaS platforms</li>



<li>Changed cybersecurity tools</li>



<li>Replaced networking infrastructure</li>



<li>Overhauled a legacy system</li>



<li><a href="https://www.stepsoftware.com/ai-technical-debt-the-hidden-cost-can-you-feel-it/" target="_blank" rel="noopener" title="">Implemented AI tools</a></li>



<li>Added new remote workers or new technical staff</li>



<li>Lost institutional knowledge through employee turnover</li>
</ul>



<p class="wp-block-paragraph">If your DRP still references retired servers, former employees, or outdated vendor contacts, it can’t be relied on during an emergency.</p>



<figure class="wp-block-image size-full"><img decoding="async" width="1024" height="856" src="https://www.stepsoftware.com/wp-content/uploads/2026/07/DIAGRAM_Infographics.png" alt="" class="wp-image-5328" srcset="https://www.stepsoftware.com/wp-content/uploads/2026/07/DIAGRAM_Infographics.png 1024w, https://www.stepsoftware.com/wp-content/uploads/2026/07/DIAGRAM_Infographics-300x251.png 300w, https://www.stepsoftware.com/wp-content/uploads/2026/07/DIAGRAM_Infographics-768x642.png 768w" sizes="(max-width: 1024px) 100vw, 1024px" /></figure>



<p class="wp-block-paragraph">The <a href="https://www.nist.gov/" target="_blank" rel="noopener" title="">National Institute of Standards and Technology (NIST)</a> recommends organizations maintain, review, and regularly test contingency plans whenever significant technology or organizational changes occur.</p>



<p class="wp-block-paragraph">Similarly, <a href="https://www.iso.org/standard/75106.html" target="_blank" rel="noopener" title="">ISO 22301, the international standard for Business Continuity Management Systems,</a> requires organizations to regularly exercise, evaluate, and continually improve their business continuity plans to ensure they remain effective as business conditions evolve.</p>



<p class="wp-block-paragraph"><strong>A plan that has never been tested is just a theory.</strong></p>



<h2 class="wp-block-heading">The Human Side of Disaster Recovery</h2>



<p class="wp-block-paragraph">Natural disasters, like wildfires should remind us that <a href="https://www.stepsoftware.com/humans-in-an-ai-time-why-people-are-becoming-the-most-important-investment-in-technology/" target="_blank" rel="noopener" title="">technology doesn&#8217;t work without people.</a></p>



<p class="wp-block-paragraph">The impact is real:</p>



<ul class="wp-block-list">
<li>Employees may be displaced from their homes.</li>



<li>Internet connectivity may become unreliable.</li>



<li>Schools may close unexpectedly.</li>



<li>Staff may need time away to care for family members or evacuate affected areas.</li>
</ul>



<p class="wp-block-paragraph">Building resilience means recognizing that your people are your most valuable resource.</p>



<p class="wp-block-paragraph">Research from <a href="https://www.deloitte.com/us/en/insights/topics/leadership/building-organizational-resilience.html" target="_blank" rel="noopener" title="">Deloitte&#8217;s Global Resilience Report</a> consistently shows that organizations with mature resilience programs place equal emphasis on people, operational processes, technology, and external partnerships when preparing for disruptions.</p>



<p class="wp-block-paragraph">Cross-training staff, documenting critical systems, and ensuring multiple people understand key applications reduces reliance on individual employees during emergencies.</p>



<p class="wp-block-paragraph"><a href="https://www.stepsoftware.com/document-like-your-code-depends-on-it/" target="_blank" rel="noopener" title="">Good documentation</a> becomes invaluable when your subject matter expert is displaced or simply isn&#8217;t available.</p>



<h2 class="wp-block-heading">Third-Party Partners Should Be Part of Every DRP</h2>



<p class="wp-block-paragraph">One area that organizations frequently overlook is the role of trusted external partners.</p>



<p class="wp-block-paragraph">Even the best internal IT teams have limits.</p>



<p class="wp-block-paragraph">If multiple team members are unavailable during an emergency, projects don&#8217;t stop, production systems still require support, and customers continue expecting service.</p>



<p class="wp-block-paragraph">This is where strategic third-party partners become an essential part of business continuity.</p>



<p class="wp-block-paragraph">According to <a href="https://www.gartner.com/en/newsroom/press-releases/2024-02-22-gartner-identifies-top-cybersecurity-trends-for-2024" target="_blank" rel="noopener" title="">Gartner</a>, organizations are increasingly adopting ecosystem resilience strategies that include trusted technology partners to improve operational continuity and reduce recovery times during business disruptions.</p>



<p class="wp-block-paragraph">Rather than scrambling to locate emergency assistance during a crisis, organizations should establish relationships with experienced technology partners before they need them.</p>



<p class="wp-block-paragraph">Trusted third-party vendors can provide:</p>



<ul class="wp-block-list">
<li>Emergency application support.</li>



<li>Additional development resources.</li>



<li><a href="https://www.stepsoftware.com/legacy-software-division/" target="_blank" rel="noopener" title="">Legacy system expertise</a>.</li>



<li>Infrastructure troubleshooting.</li>



<li>Production monitoring.</li>



<li>Software maintenance.</li>



<li>Documentation assistance.</li>



<li><a href="https://www.stepsoftware.com/qa-the-cornerstone-of-great-software/" target="_blank" rel="noopener" title="">Quality assurance and testing</a>.</li>



<li>Knowledge transfer for critical systems.</li>
</ul>



<p class="wp-block-paragraph">Having these relationships already in place can dramatically reduce recovery time while easing pressure on internal teams. Think of your external technology partner as an extension of your own IT department; not just a vendor you call when things go wrong.</p>



<h2 class="wp-block-heading">Where STEP Software Fits into Your Recovery Strategy</h2>



<p class="wp-block-paragraph">Business continuity isn&#8217;t only about recovering servers; it&#8217;s about ensuring your business can continue delivering value to customers.</p>



<p class="wp-block-paragraph"><a href="https://www.stepsoftware.com/21-years-of-step-software-celebrating-change/" target="_blank" rel="noopener" title="">Here at STEP, we&#8217;ve spent more than 20 years helping organizations</a> support, maintain, modernize, and extend business-critical applications.</p>



<p class="wp-block-paragraph">Whether your environment includes modern cloud platforms, aging legacy systems, custom business applications, or a combination of technologies, having experienced specialists available can significantly reduce operational risk during unexpected disruptions.</p>



<p class="wp-block-paragraph"><a href="https://www.stepsoftware.com/capabilities-deck/" target="_blank" rel="noopener" title="">Our team can assist</a> organizations by providing:</p>



<ul class="wp-block-list">
<li>Third-party application support.</li>



<li>Legacy software expertise.</li>



<li>Software maintenance.</li>



<li>On-demand development resources.</li>



<li>Knowledge transfer and technical documentation.</li>



<li>Quality assurance services.</li>



<li>Custom software enhancements.</li>



<li>Long-term modernization planning.</li>
</ul>



<p class="wp-block-paragraph">We routinely work alongside internal IT departments, <a href="https://www.stepsoftware.com/staff-augmentation/" target="_blank" rel="noopener" title="">meaning we can integrate into existing teams quickly when additional capacity is needed</a>. This flexibility becomes especially valuable during periods of unexpected disruption.</p>



<h2 class="wp-block-heading">Don&#8217;t Wait for the Next Emergency</h2>



<p class="wp-block-paragraph">The best DRPs are written during calm periods, not during emergencies.</p>



<p class="wp-block-paragraph">The Canadian wildfires remind us that organizations cannot predict when the next disruption will occur, only that another disruption is inevitable.</p>



<p class="wp-block-paragraph">Whether the challenge is a natural disaster, cyberattack, prolonged power outage, infrastructure failure, or critical staffing shortage, resilient organizations prepare before they need to respond.</p>



<p class="wp-block-paragraph">Take the opportunity to review your DRP this year with a special focus on:</p>



<ul class="wp-block-list">
<li>Verifying your contact lists.</li>



<li>Reviewing vendor agreements.</li>



<li>Testing your backup and recovery procedures.</li>



<li>Validating remote work capabilities.</li>



<li>Updating documentation.</li>



<li>Identify single points of failure.</li>
</ul>



<p class="wp-block-paragraph">Finally, ask one question:</p>



<p class="wp-block-paragraph"><strong>If something happened tomorrow, would your organization have the people, processes, technology, and trusted partners needed to continue serving your customers?</strong></p>



<p class="wp-block-paragraph">If the answer isn&#8217;t a confident ‘yes,’ now is the time to strengthen your plan.</p>



<p class="fancybox"><a href="#ConsultationModal" data-fancybox-inline>Drop us a line</a> if you need help fortifying your DRP.</p><p>The post <a href="https://www.stepsoftware.com/canadian-wildfires-are-a-wake-up-call-why-every-it-leader-should-review-their-disaster-recovery-plan/">Canadian Wildfires Are a Wake-Up Call: Why Every IT Leader Should Review Their Disaster Recovery Plan</a> first appeared on <a href="https://www.stepsoftware.com">STEP Software</a>.</p>]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Maui wildfire alert system failure highlights critical gaps in disaster planning</title>
		<link>https://www.stepsoftware.com/maui-wildfire-alert-system-failure-highlights-critical-gaps-in-disaster-planning/</link>
					<comments>https://www.stepsoftware.com/maui-wildfire-alert-system-failure-highlights-critical-gaps-in-disaster-planning/#respond</comments>
		
		<dc:creator><![CDATA[Carmi Levy]]></dc:creator>
		<pubDate>Fri, 18 Aug 2023 20:03:00 +0000</pubDate>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[StringN]]></category>
		<category><![CDATA[bcp]]></category>
		<category><![CDATA[business continuity]]></category>
		<category><![CDATA[disaster recovery plan]]></category>
		<category><![CDATA[DRP]]></category>
		<category><![CDATA[hawaii]]></category>
		<category><![CDATA[lahaina]]></category>
		<category><![CDATA[maui]]></category>
		<category><![CDATA[wildfires]]></category>
		<guid isPermaLink="false">https://stringn.com/ssweb/?p=1518</guid>

					<description><![CDATA[<p>As the death toll from the wildfires that destroyed most of the resort town of Lahaina on Maui, Hawaii continues to rise, questions are increasingly being asked about why the state’s emergency alert system – considered one of the most comprehensive in the world – failed to fully activate.</p>
<p>While answers remain few as investigators sift through the rubble, the deadliest wildfire in the U.S. in over a century is serving notice to technology professionals everywhere. It’s time to assess if their disaster recovery plans (DRPs) are woefully inadequate in light of expanding risks associated with climate change.</p>
<p>The post <a href="https://www.stepsoftware.com/maui-wildfire-alert-system-failure-highlights-critical-gaps-in-disaster-planning/">Maui wildfire alert system failure highlights critical gaps in disaster planning</a> first appeared on <a href="https://www.stepsoftware.com">STEP Software</a>.</p>]]></description>
										<content:encoded><![CDATA[<h3 class="wp-block-heading">COMPREHENSIVE WARNINGS, ALL SILENCED</h3>



<p class="wp-block-paragraph">The State of Hawaii calls its&nbsp;<a href="https://dod.hawaii.gov/hiema/all-hazard-statewide-outdoor-warning-siren-system/" target="_blank" rel="noreferrer noopener">All-hazard Statewide Outdoor Warning Siren System</a>&nbsp;the “largest single integrated public safety outdoor siren warning system in the world.” It has over 400 solar-powered sirens – 80 of them on the Maui archipelago – capable of alerting residents to a wide range of natural and human-caused events, such as hurricanes, tsunamis, volcanic eruptions, floods, terrorist threats, and wildfires.</p>



<p class="wp-block-paragraph">The sirens are a critical part of the more broadly scaled Statewide Alert and Warning System (SAWS), which uses the Federal Emergency Management Agency’s (FEMA) Integrated Public Alert and Warning System (IPAWS), the Emergency Alert System (EAS), and Wireless Emergency Alerts (WEA). The integrated system warns the public of threats over a range of platforms, including cell phone networks and media, and is tested on the first day of each month by emergency management and civil defense agencies, as well as local radio and TV broadcasters.</p>



<p class="wp-block-paragraph">Reports from wildfire victims, however, confirm that the&nbsp;<a href="https://www.cbsnews.com/philadelphia/news/hawaii-emergency-siren-warning-system-maui-wildfires/" target="_blank" rel="noreferrer noopener">sirens were not activated</a>, and cell phone alerts went out late, if at all, and rather than ordering an evacuation, they simply warned of the risks of strong winds and possible fires. Amber alert-like messages – with loud alarms on recipients’ devices – were not sent.</p>



<p class="wp-block-paragraph">The silence was almost by design, with Maui Emergency Management Agency Administrator Herman Andaya&nbsp;<a href="https://www.staradvertiser.com/2023/08/15/breaking-news/hawaii-governor-maui-mayor-to-discuss-disaster-response/" target="_blank" rel="noreferrer noopener">defending the decision to not activate the sirens</a>. In an interview with Honolulu Star-Advertiser, he said the system is largely used for tsunamis – not wildfires – with residents trained to move to higher ground when they hear the sirens.</p>



<p class="wp-block-paragraph">“Had we sounded the siren that night, we were afraid that people would have gone mauka (toward the mountain),” he said, echoing concerns that panicked residents might have instead headed straight into the flames. The siren network also included no equipment on the side of the mountain, and Andaya said residents likely wouldn’t have heard them anyway because they were inside their air-conditioned homes, surrounded by high winds that would have drowned out the sound.</p>



<h3 class="wp-block-heading">A FAILURE OF TECHNOLOGY AND PROCESS</h3>



<p class="wp-block-paragraph">Following widespread criticism of his decision to not activate the system, Andaya&nbsp;<a href="https://www.npr.org/2023/08/17/1194539946/lahaina-maui-wildfires-hawaii-ema-herman-andaya-resigns" target="_blank" rel="noreferrer noopener">resigned from his post</a>. Hawaii’s Attorney General, Anne Lopez, has announced a&nbsp;<a href="https://ag.hawaii.gov/wp-content/uploads/2023/08/News-Release-2023-36.pdf" target="_blank" rel="noreferrer noopener">comprehensive investigation</a>&nbsp;into the lead-up to the fires, and the decision-making among government and emergency response resources as the situation worsened.</p>



<p class="wp-block-paragraph">But the ripples from this tragedy are already racing far beyond the island state’s borders.</p>



<p class="wp-block-paragraph">This isn’t a failure so much of a particular technology as it is a realization that for all the state’s advance planning, it simply wasn’t enough. The processes that led to officials on the ground deciding not to activate a critical piece of warning infrastructure were based on planning that failed to anticipate the scope of a rapidly changing environment – one permanently altered by climate change.</p>



<p class="wp-block-paragraph">The system also relied heavily on components, such as cell phone networks, that lacked sufficient redundancy in the event of wildfires. For example, wireless and 911 services were compromised as the fires burned through ground equipment, forcing officials to rely on broadcast media and word of mouth.</p>



<p class="wp-block-paragraph">Maui County Police Chief John Pelletier told CNN, “Nobody saw this coming. Period.”</p>



<h3 class="wp-block-heading">WHERE WE GO FROM HERE</h3>



<p class="wp-block-paragraph">While it may be true that nobody saw this coming, it’s equally true that disaster planners in all organizations are responsible for understanding where tomorrow’s threats will come from – and planning risk mitigation around them. It’s their job to see these things coming.</p>



<p class="wp-block-paragraph">This extends beyond one state, one town, and one event. Organizations everywhere would do well to learn the lessons of this event – and must crack open their DRPs to assess where they fall short.</p>



<p class="wp-block-paragraph">The Maui wildfires, in particular, highlight shortcomings in a number of areas, including communication protocols, resource allocation, risk assessment, training, stakeholder integration, data backup, testing and validation. Especially worrisome is the failure to recognize the lack of redundancies in advance, and the limited scope of recurring training that potentially lulled residents, government officials, and emergency responders alike into a false sense of security.</p>



<p class="wp-block-paragraph">But this also opens up opportunities for technology leaders to lead the conversation within their own organizations about the scope of disaster recovery and business continuity efforts – and what must be done to keep them relevant and robust amid a fast-evolving natural and business landscape.</p>



<p class="wp-block-paragraph">In that regard, this traumatic event could lead to better future preparedness across a much broader swath of society – including the organizations where we work. But only if we allow it to, and only if we prioritize it.</p>



<h3 class="wp-block-heading">THE BOTTOM LINE</h3>



<p class="wp-block-paragraph">There is no doubt that this is a national tragedy that will have serious implications for emergency response teams and protocols, as it should. Opportunistic technology leaders are – or should be – already asking the hard questions about their own disaster preparedness, particularly around whether the scope of their original effort is enough to accommodate current and future realities.</p>



<p class="wp-block-paragraph">As robust as we think our own DRPs may be, rest assured they, like the well-intentioned plans in Maui, have their own unseen gaps. And it’s those gaps that mean the difference between a plan’s success or failure. <a href="/contact-us" title="">Give us a call anytime</a> if you’d like to brainstorm ways to mitigate your own risk and ensure your DRP is ready for whatever comes next.</p><p>The post <a href="https://www.stepsoftware.com/maui-wildfire-alert-system-failure-highlights-critical-gaps-in-disaster-planning/">Maui wildfire alert system failure highlights critical gaps in disaster planning</a> first appeared on <a href="https://www.stepsoftware.com">STEP Software</a>.</p>]]></content:encoded>
					
					<wfw:commentRss>https://www.stepsoftware.com/maui-wildfire-alert-system-failure-highlights-critical-gaps-in-disaster-planning/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>FAA NOTAM outage should scare all of us into (finally) testing our DRPs</title>
		<link>https://www.stepsoftware.com/faa-notam-outage-should-scare-all-of-us-into-finally-testing-our-drps/</link>
					<comments>https://www.stepsoftware.com/faa-notam-outage-should-scare-all-of-us-into-finally-testing-our-drps/#respond</comments>
		
		<dc:creator><![CDATA[STEP Software]]></dc:creator>
		<pubDate>Wed, 18 Jan 2023 15:35:00 +0000</pubDate>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[aviation]]></category>
		<category><![CDATA[disaster recovery plan]]></category>
		<category><![CDATA[DRP]]></category>
		<category><![CDATA[FAA]]></category>
		<category><![CDATA[outage]]></category>
		<guid isPermaLink="false">https://stringn.com/ssweb/?p=1666</guid>

					<description><![CDATA[<p>The U.S. air travel system experienced its worst meltdown in years last week after a database in the Notice to Air Missions (NOTAM) service – a system designed to advise pilots of conditions at their destination airports before they are allowed to depart – failed.</p>
<p> While initial fears that this was a cyberattack were soon quashed, the actual root cause could prove to be just as disturbing – because it suggests structural weaknesses in how the information technology needs of the world’s busiest airspace are being met.</p>
<p>The post <a href="https://www.stepsoftware.com/faa-notam-outage-should-scare-all-of-us-into-finally-testing-our-drps/">FAA NOTAM outage should scare all of us into (finally) testing our DRPs</a> first appeared on <a href="https://www.stepsoftware.com">STEP Software</a>.</p>]]></description>
										<content:encoded><![CDATA[<h3 class="wp-block-heading">ONE BAD FILE</h3>



<p class="wp-block-paragraph">The Federal Aviation Administration has confirmed the event was triggered by an employee error that caused a&nbsp;<a href="https://www.cnn.com/travel/article/faa-ground-stop-causes/index.html">corrupt file in the NOTAM system’s database</a>. Worse, the backup system that would have been used to restore the database also contained the same corrupt file.</p>



<p class="wp-block-paragraph">This should make IT practitioners cringe – I know I sure did. That’s because the presence of a corrupt backup strongly suggests the FAA’s disaster recovery plan (DRP) had likely not been tested in the leadup to this failure. Because the only way IT leaders would have known they had a problematic backup would have been if they had walked through a test-recovery scenario.</p>



<p class="wp-block-paragraph">In this case, the undiscovered corrupt backup guaranteed a much longer recovery in the event of an outage &#8211; which is precisely what played out.</p>



<p class="wp-block-paragraph">In the weeks and months ahead, FAA officials will undoubtably be held accountable as the U.S. Department of Transportation moves ahead with its investigation. And rightly so, as this colossal debacle sidelined thousands of flights in the U.S. and slowed service from dozens of countries worldwide.</p>



<p class="wp-block-paragraph">But we don’t have to be working in the aviation industry to appreciate why understanding this event is so critical to any organization that uses technology.</p>



<h3 class="wp-block-heading">THE UNIVERSAL TRUTH</h3>



<p class="wp-block-paragraph">We all (should) have DRPs &#8211; or business continuity plans (BCPs) – in one form or another. In a&nbsp;<a href="https://iland.com/wp-content/uploads/2021/10/Whitepaper-iLand-Zerto-vs3.pdf">report from iLand and Zerto</a>, only 54% of survey respondents said they had a full, company-wide DRP in place.</p>



<p class="wp-block-paragraph">That’s a frightening figure. And in 2023, we’re long past the point where technology is a luxury. It is a critical pillar of every organization’s ability to deliver, compete, and survive. And organizations that choose to fly without a DRP are quite literally playing with fire.</p>



<p class="wp-block-paragraph">With this in mind, it’s safe to say we can all be doing more to incorporate the potential for failure into our technology and business planning processes, and ensuring the DRP is a core piece of our IT strategy and culture.</p>



<p class="wp-block-paragraph">A well-formed DRP understands what can fail, how it can fail, and in what context. But simply documenting what can go wrong isn’t enough. While documenting failure modes is crucial, the actual document can’t simply be something that gets tossed onto a shelf and dusted off every once in a while, if at all.</p>



<p class="wp-block-paragraph">Any reasonable DRP must incorporate recovery, as well – steps the organization must take to ensure continuity in the event of a natural, accidental, or human-caused disaster. The recovery component should identify specific accountabilities, communication flows, and checkpoints. Ideally, it will include a detailed schedule for real-world recovery testing, with recommended intervals to ensure key leaders, staff, contractors and other stakeholders are conditioned to execute the plan if and when an actual disaster occurs.</p>



<p class="wp-block-paragraph">The FAA learned the hard way that recovery testing, like a good insurance policy, can save heartache later on. Any organization runs an elevated risk of losing revenue, alienating customers, and damaging the brand if it fails to have the appropriate disaster response resources and capabilities in place.&nbsp;</p>



<h3 class="wp-block-heading">THE BEST ADVICE I EVER RECEIVED</h3>



<p class="wp-block-paragraph">Earlier in my career, I was an IT project manager and application development support lead. My mentor at the time said we had two choices when considering how we wanted to support the business areas that relied on us: We could either plan to fail, or we could fail to plan.</p>



<p class="wp-block-paragraph">The FAA now finds itself on the wrong side of my mentor’s guidance. It needs a better plan, and it needs to test that plan to ensure it’s ready for the inevitable. That means looking at the 30-year-old system at the center of this debacle and fast-tracking plans to update it to current-century standards – and doing so not six years from now, as currently planned, but now.</p>



<p class="wp-block-paragraph">It also has implications for the rest of us, in any organization and in any industry. Because we need to plan our own plans, too. Because eventually, we’ll all find ourselves needing to recover from an outage or an attack, and no one ever wants to find out the hard way that their backups can’t be restored.</p>



<p class="wp-block-paragraph">If you’re not sure where your own DRP stands, <a href="/contact-us" title="">we’re always here to help you get started</a>.</p><p>The post <a href="https://www.stepsoftware.com/faa-notam-outage-should-scare-all-of-us-into-finally-testing-our-drps/">FAA NOTAM outage should scare all of us into (finally) testing our DRPs</a> first appeared on <a href="https://www.stepsoftware.com">STEP Software</a>.</p>]]></content:encoded>
					
					<wfw:commentRss>https://www.stepsoftware.com/faa-notam-outage-should-scare-all-of-us-into-finally-testing-our-drps/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>10 Tips for Developing a Disaster Recovery Plan (DRP)</title>
		<link>https://www.stepsoftware.com/10-tips-for-developing-a-disaster-recovery-plan-drp/</link>
					<comments>https://www.stepsoftware.com/10-tips-for-developing-a-disaster-recovery-plan-drp/#respond</comments>
		
		<dc:creator><![CDATA[STEP Software]]></dc:creator>
		<pubDate>Wed, 14 Oct 2020 19:43:00 +0000</pubDate>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[disaster recovery]]></category>
		<category><![CDATA[disaster strategy]]></category>
		<category><![CDATA[DRP]]></category>
		<category><![CDATA[IT recovery]]></category>
		<category><![CDATA[planning]]></category>
		<guid isPermaLink="false">https://stringn.com/ssweb/?p=1771</guid>

					<description><![CDATA[<p>Most businesses rely on information technology (IT) systems. Even a small business may have critical data and applications without which it could not operate. Computers have become more reliable, and many business systems are now cloud-based. Even so, if the hardware is stolen or destroyed in a natural disaster, the downtime that it would cause could have a significant impact on any business.</p>
<p>So, a company should have a plan to get systems online again ASAP following an IT disaster. But, if you have never prepared a disaster recovery plan (DRP) before, where do you start? Here is a ten-step guide to help you develop a disaster recovery plan for your business.</p>
<p>The post <a href="https://www.stepsoftware.com/10-tips-for-developing-a-disaster-recovery-plan-drp/">10 Tips for Developing a Disaster Recovery Plan (DRP)</a> first appeared on <a href="https://www.stepsoftware.com">STEP Software</a>.</p>]]></description>
										<content:encoded><![CDATA[<h3 class="wp-block-heading">1. IDENTIFY THE RISKS</h3>



<p class="wp-block-paragraph">Begin developing your disaster recovery plan by identifying the potential risks to your IT infrastructure. Possible dangers may include events like hardware failure, power loss, cybercrime, fire, or flood. In some cases, the type of risk will dictate the appropriate DRP action. If you identify hurricanes as a risk, for example, your DRP would need to include a provision for moving your operation to an alternative, unaffected site.</p>



<h3 class="wp-block-heading">2. DOCUMENT ALL YOUR IT RESOURCES</h3>



<p class="wp-block-paragraph">You will need to make a full inventory of all your IT resources. This inventory should include all your hardware, data, and applications. You will also need to know which skills will be required to recover each of these resources should they be lost. When you are preparing your inventory of resources, it is imperative to be thorough. Even a small application or data file could be a critical element of your overall IT system.</p>



<h3 class="wp-block-heading">3. PRIORITIZE THE RECOVERY</h3>



<p class="wp-block-paragraph">The next step in your disaster recovery planning should be to prioritize the order in which you will need to bring your computer systems back online. This prioritization will be based on how critical each application is to your business. You will need to consider any interdependencies between your various applications. It&#8217;s helpful to create a timeline for getting each system operational again.</p>



<h3 class="wp-block-heading">4. ASSIGN A DISASTER RECOVERY LOCATION</h3>



<p class="wp-block-paragraph">Should your business premises become unusable, you will need to procure an alternative location. It would be best to identify a suitable place to run your business from, before you need it, as a part of your DRP. If you already operate your business from multiple locations, you could consider designated space in your existing premises as a disaster recovery location. Or, if you work from a single site, you could investigate the option of taking up a short-term lease in a local serviced office facility.</p>



<h3 class="wp-block-heading">5. PLAN THE ACQUISITION OF REPLACEMENT HARDWARE</h3>



<p class="wp-block-paragraph">A large company may maintain a full suite of hardware off-site as a part of its DRP strategy. However, a smaller enterprise will probably need to acquire new hardware in the event of a disaster. Speed will be of the essence when you are recovering from an IT disaster. So, include in your DRP several reliable sources of replacement hardware.</p>



<h3 class="wp-block-heading">6. CREATE A DATA AND APPLICATION BACKUP PLAN</h3>



<p class="wp-block-paragraph">A crucial part of any disaster recovery plan is the backing up of data and applications, and, of course, ensuring that backups are held off-site. Your inventory of IT systems will have identified all the critical data that needs backing up. Your DRP will need to document the order in which systems and data will need to be restored. Backups of essential data should be taken on a grandfather-father-son basis, a backup rotation system that uses different media for each backup to guard against data corruption.</p>



<h3 class="wp-block-heading">7. APPOINT A DISASTER RECOVERY TEAM</h3>



<p class="wp-block-paragraph">To ensure a smooth recovery from a disaster, you will need to appoint personnel to a disaster recovery team. Each team member should know their role and be fully versed in the recovery plan. If you can, it would be best to designate backup members for each of the team&#8217;s functions to cover for employee absences. You will also need to document the lines of authority and communication in your DRP.</p>



<h3 class="wp-block-heading">8. WRITE A DETAILED DISASTER RECOVERY PROCEDURE</h3>



<p class="wp-block-paragraph">Your disaster recovery plan should include detailed procedures for the restoration of your IT systems. It is not sufficient to have an action point of &#8220;Restore Finance System,&#8221; for example. A DRP needs to include instructions on how the system is to be restored. Documenting procedures in detail will ensure that critical systems can be brought back online, even if key employees are absent from work.</p>



<h3 class="wp-block-heading">9. TEST YOUR DRP</h3>



<p class="wp-block-paragraph">What looks good in theory may not work in practice. So, you need to test your DRP regularly. Carrying out frequent tests of your disaster recovery plan will help ensure that systems will be fully restored within the targeted timeframe. Testing will also provide employees with the opportunity to practice their disaster recovery roles.</p>



<h3 class="wp-block-heading">10. KEEP YOUR DRP CURRENT</h3>



<p class="wp-block-paragraph">Finally, last year&#8217;s disaster recovery plan is unlikely to meet your needs in the coming years. So, someone will need to be appointed to keep your DRP up to date. The DR manager will need to be notified of all new hardware and software added to your IT resources and of any changes to the location and setup of systems. Risks to your IT infrastructure will need to be regularly reviewed and documented as well.</p>



<h3 class="wp-block-heading">CONCLUSION</h3>



<p class="wp-block-paragraph">Some of the above steps may be overkill for a small business. However, the principles contained in each point can be scaled to fit smaller organizations. The crucial point is that, regardless of business size, having an up-to-date disaster recovery plan will help minimize the disruption to business that an IT disaster can cause.</p>



<p class="wp-block-paragraph">If you looking for the Best&nbsp;<a href="https://www.stepsoftware.com/">Custom Software development</a>&nbsp;for any complex problem in your technology. Please mail to&nbsp;<a href="mailto:support@stepsoftware.com">support@stepsoftware.com</a></p><p>The post <a href="https://www.stepsoftware.com/10-tips-for-developing-a-disaster-recovery-plan-drp/">10 Tips for Developing a Disaster Recovery Plan (DRP)</a> first appeared on <a href="https://www.stepsoftware.com">STEP Software</a>.</p>]]></content:encoded>
					
					<wfw:commentRss>https://www.stepsoftware.com/10-tips-for-developing-a-disaster-recovery-plan-drp/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
	</channel>
</rss>
