HostedDB - Dedicated UNIX Servers

-->
IT Baseline Protection Manual S 6.3 Development of an Emergency Procedure Manual

S 6.3 Development of an Emergency Procedure Manual

Initiation responsibility: Head of IT Section, IT Security Management

Implementation responsibility: Head of IT Section; staff responsible for the individual IT applications

A Contingency Manual should contain all measures to be taken after an emergency situation arises and all other relevant information. This Manual must be organised in such a way that an expert third person will be in a position to carry out the respective contingency measures.

By way of example, a comprehensive table of contents of a Contingency Manual is provided in the following for orientation. Which parts of this proposal are taken over depends on the existing system and application documentation and can thus only be decided on an individual basis.

TABLE OF CONTENTS - CONTINGENCY MANUAL

Part A: Immediate Measures

  1. Warning in an Emergency
  1. Instructions on Actions to be taken as regards Special Incidents

Part B: Contigency Provisions

  1. General Regulations for an Actual Emergency
  1. Table of Availability Requirements

Part C: Post-Incident Recovery Plans for Critical Components

  1. Recovery Plans

Part D: Documentation

  1. Description of the IT Systems
  1. Important Information

Date of last change _____________

The Contingency Manual is to be enforced by the agency/company management and must be up-dated when required. Availability of the Emergency Procedure Manual is of critical importance. Therefore, a copy of the most recent edition must be deposited and held externally. A copy must also be submitted to every person and organisational unit mentioned in the Manual.

(The detailed contents of important items can be inferred from the following description of measures.)

Additional controls:


© Copyright by
Bundesamt für Sicherheit in der Informationstechnik
July 1999
home