Cookie Consent by Free Privacy Policy Generator ๐Ÿ“Œ 7 tips for improving IT resilience in the digital era

๐Ÿ  Team IT Security News

TSecurity.de ist eine Online-Plattform, die sich auf die Bereitstellung von Informationen,alle 15 Minuten neuste Nachrichten, Bildungsressourcen und Dienstleistungen rund um das Thema IT-Sicherheit spezialisiert hat.
Ob es sich um aktuelle Nachrichten, Fachartikel, Blogbeitrรคge, Webinare, Tutorials, oder Tipps & Tricks handelt, TSecurity.de bietet seinen Nutzern einen umfassenden รœberblick รผber die wichtigsten Aspekte der IT-Sicherheit in einer sich stรคndig verรคndernden digitalen Welt.

16.12.2023 - TIP: Wer den Cookie Consent Banner akzeptiert, kann z.B. von Englisch nach Deutsch รผbersetzen, erst Englisch auswรคhlen dann wieder Deutsch!

Google Android Playstore Download Button fรผr Team IT Security



๐Ÿ“š 7 tips for improving IT resilience in the digital era


๐Ÿ’ก Newskategorie: IT Security Nachrichten
๐Ÿ”— Quelle: cio.com

For most of its existence, IT resilience has focused on uptime, making sure systems donโ€™t go down, and if they do, bringing them back online as quickly as possible.

But that is only part of the equation in this modern digital era. Today IT resilience means much more.

Consider, for example, Brad Stoneโ€™s take on it. As CIO for Booz Allen Hamilton, Stone says he thinks of resilience in two dimensions: One is about enabling the business without interruption; the second is about having the ability to adjust, deal with change, and handle the unexpected.

Moreover, Stone says, resilience now means doing all that while continually delivering the experience users expect.

โ€œTen years ago, if there was an outage, theyโ€™d get past it. But users and business leaders today expect technology to always work and to be an amazing experience; the expectations are so much higher now because IT is such an enabler, it has taken on more importance,โ€ he says. โ€œUsers might not demand perfection but their standards are really, really high.โ€

That in turn has prompted a more expansive approach to ensuring IT resilience today. Here experts and IT leaders offer seven best practices CIOs should take on to ensure they meet current expectations for resiliency.

1. Align to business needs

Ron Brown, director of business resilience for GuidePoint Security, an advisory and services firm, defines IT resilience as making sure technology is always available โ€” even as he acknowledges that such perfection isnโ€™t likely.

โ€œYou do have to plan for the fact that things will go out at some point,โ€ he says.

CIOs can best prepare for that inevitability by being clear on what systems matter most to the business; that clarity lets IT know what to focus on first during any sort of outage, he says.

โ€œThe first thing you have to do without a doubt is be in alignment with the business, what they need and what they are willing to pay for [to get] what they expect,โ€ Brown says, noting that a business impact analysis can help IT and business get this alignment. โ€œAnd once you have that understanding of what the requirements are for the business, then itโ€™s about how do you map out the services and capabilities you have and which apps are used by which groups so if something goes wrong you know where to put your priorities to get them back up.โ€

2. Break down siloes

Richard Caralli, a former CISO now working as a senior advisor for Axio Global, a cyberrisk management company, says he sees resilience as โ€œan emergent property that extends from managing operational risk.โ€

To do that well, IT operations and cybersecurity should be working with leaders overseeing business continuity/disaster recovery planning. That, however, doesnโ€™t always happen, Caralli says.

โ€œThese activities tend to be siloed such that each discipline operates on different risk assumptions and scenarios, when in fact they must converge and work collaboratively,โ€ he says.

For example, Caralli says an organizationโ€™s cybersecurity team may be focusing on creating a stellar defense-in-depth strategy to best ensure it can prevent intrusions, detect them if they happen, and respond when they do. But the team may not be as strong in planning for getting โ€œback to normal operating conditions as quicky as possible with the least amount of consequencesโ€ if cybersecurity isnโ€™t working closely with risk and IT, Caralli says.

โ€œIf theyโ€™re not all talking together, they might be planning or quantifying for different risks,โ€ he adds. โ€œThey have to plan and run scenarios together. If you look at risk from an impact side and can envision what kind of consequences might occur, you can start to quantify the risk and you can then know where to spend the next dollar, whether to put it on the prevention side or to spend on practices that will reduce the impact.โ€

3. Mature your metrics

As IT resilience has evolved, Jorge Machado, a partner at management consulting firm McKinsey & Co., says CIOs should adjust the metrics they use to measure and manage operations to ensure theyโ€™re meeting the right objectives.

โ€œTraditionally if we go back a decade it would be about uptime, availability of applications, and mean time to restore,โ€ Machado says. โ€œBut nowadays, as apps become more microservices-oriented and we move away from monolith systems, we need to measure in a more nuanced way.โ€

He and colleague, McKinsey associate partner Arun Gundurao, suggest measurements focused on the ability to perform critical transactions such as those measuring failures in customer interactions, application experience from the user perspective, or service level objectives.

โ€œItโ€™s what does the business care about around this application or this customer journey,โ€ Gundurao says. โ€œYou want to measure what the business wants to measure.โ€™

4. Practice

In Stoneโ€™s opinion, resilience means successfully handling unexpected circumstances. And to do that, Stone makes sure his IT department isnโ€™t unprepared. That means training, testing, and practicing with table-top exercises and simulations.

โ€œItโ€™s running exercises, taking down a cluster and not telling [everyone] and seeing how people respond. Itโ€™s almost like a live-fire simulation. You have to do that carefully, at the right time, but it has to be part of your cadence,โ€ he says. โ€œYou have to have those standard operating procedures, go through them and refine those. You have to be willing to make your staff uncomfortable, challenge them. It gives them some camaraderie because they know they can get through things.โ€

Stone says such exercises give CIOs and their managers an opportunity to build confidence in processes that work well and build muscle memory, as well as identify weaknesses โ€” such as a lack of redundancy in workers trained in key technologies or a lack of backup procedures should a particular application fail.

5. Architect resiliency

IT advisors stress that itโ€™s important to build resiliency into the architecture itself by, for example, distributing instances and payloads across geographical locations.

One way to ensure resilient systems is to โ€œsimplify what you do so you can do it really well to meet expectations,โ€ Stone says, noting that such an approach also helps keep teams from getting overextended.

Mixing in automation for incident, problem, and change management also helps build resiliency, he adds.

Gundurao recommends adopting site reliability engineering (SRE), a set of principles and practices for infrastructure and operations aimed at creating scalable, reliable systems. SRE โ€” and those trained in its principles โ€” focuses on building IT not just to work well in blue skies but to work through stormy skies, Machado adds.

Andrew Long, global enterprise architecture lead at Accenture, sees large traditional organizations increasingly adopting the principles, technologies, and methods used by digital-native organizations to architect more resilient IT systems. โ€œThis has enabled the business to improve its resilience to disruptive business events, and therefore become more competitive,โ€ he says.

To do so, IT leaders are emphasizing speed and agility, data centricity, and decentralization, as well as continuous integration and delivery, SRE, and microservices to deliver the business capabilities the future organization requires โ€ฆ in a more modular and composable way,โ€ Long says.

They are also shifting from traditional waterfall-based IT project delivery to โ€œmore product-centric IT delivery and operations, which tends to consider broader more strategic requirements that support IT resilience,โ€ he adds.

โ€œAlmost all organizations have some part of the IT estate in the cloud,โ€ Long says, but the key is โ€œto consider what unique cloud capabilities can be leveraged to increase the organizationโ€™s ability to become more agile and resilient.โ€

6. Stay vigilant

Organizational risks, business needs, and technology will all continue to evolve, so should practices around IT resiliency, experts say.

โ€œEngage with the business to understand where they see the risks of business disruption, the scale of the risk, and crucially, how they quantify this risk and therefore the potential value,โ€ Long says. By having a clear understanding of the current state of your technology landscape, you can better understand how your organization can respond to this disruption, and where the critical risk areas reside.

โ€œConfirm the specific interventions that need to be made to minimize the risk, and develop a roadmap to deliver change,โ€ Long says, adding that the execution of this roadmap is possible only โ€œif everyone is aligned on the business risk.โ€

7. Let business share in the accountability

The business side also has a role to play in IT resiliency, says Machado, so business unit leaders should have some accountability for it as well.

โ€œI do think you have to have an accountability model, and we do think it should be shared with the business,โ€ he explains, โ€œso whoever builds the app should share responsibility for it. It should not just be the role of the CIO.โ€

Machado is not advocating for business units to take over IT operations and day-to-day management of apps and systems; rather, he says they should understand that their requirements and priorities can impact resiliency.

For example, if business unit leaders constantly prioritize time to market and speed to value creation, then they need to be share accountability for whether and by how much that could affect resilience.

IT Strategy, Risk Management
...



๐Ÿ“Œ 7 tips for improving IT resilience in the digital era


๐Ÿ“ˆ 51.69 Punkte

๐Ÿ“Œ Strengthening Financial Services: Embracing the Digital Operational Resilience Act (DORA) for Cybersecurity Resilience


๐Ÿ“ˆ 31.09 Punkte

๐Ÿ“Œ SecurIDโ€™s new capabilities help businesses develop resilience in digital era


๐Ÿ“ˆ 30.61 Punkte

๐Ÿ“Œ Collective Resilience in an Era of Data Traps, Digital Borders, and Techtonic Geopolitical Shifts


๐Ÿ“ˆ 30.61 Punkte

๐Ÿ“Œ 12 tips for achieving IT agility in the digital era


๐Ÿ“ˆ 26.13 Punkte

๐Ÿ“Œ GDPR - Improving Data Privacy and Cyber Resilience?


๐Ÿ“ˆ 25.56 Punkte

๐Ÿ“Œ GDPR - Improving Data Privacy and Cyber Resilience?


๐Ÿ“ˆ 25.56 Punkte

๐Ÿ“Œ Improving Text Classification Resilience and Efficiency with RETVec


๐Ÿ“ˆ 25.56 Punkte

๐Ÿ“Œ HITRUST Common Security Framework - Improving Cyber Resilience?


๐Ÿ“ˆ 25.56 Punkte

๐Ÿ“Œ Definition of Data Resilience and Cyber Resilience and their attainment


๐Ÿ“ˆ 25.33 Punkte

๐Ÿ“Œ Arctic Wolf Cyber Resilience Assessment helps organizations advance business resilience


๐Ÿ“ˆ 25.33 Punkte

๐Ÿ“Œ Neue Sonos-Lautsprecher: Details zu Era 300, Era 100 und Move 2 durchgesickert


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Era 100, Era 300 und Move 2: Neue Sonos-Lautsprecher mit Raumklangtechnik kommen


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Sonos: Neue Lautsprecher Era 100 und Era 300 angeblich mit Raumklang


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Sonos Era 300 und Era 100: Das sind die neuen Sonos-Lautsprecher


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Sonos Era 100 und Era 300: Weitere Bilder der neuen Lautsprecher


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Era 100 und Era 300: Alle Details der neuen Sonos-Lautsprecher enthรผllt


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Sonos Era 100 & Era 300 speakers coming soon


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Sonos Era 100 & Era 300 HomePod competitors coming in March


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Sonos Era 100 und Era 300: Bilder und Details zu neuen Smart-Speakern


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Sonos unveils next generation Era 100 & Era 300 smart home speakers


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Sonos Era 300 und Era 100: Neue Sonos-Lautsprecher offiziell vorgestellt


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Sonos Era 100 und Era 300 im Test: So klingen die neue Smartspeaker


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Sonos Era 300 und Era 100: Was die neuen Lautsprecher kรถnnen โ€“ und wo ihr sie mit Rabatt bekommt


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Sonos Era 300 und Era 100: Was die neuen Lautsprecher kรถnnen โ€“ und wo ihr sie gerade gรผnstiger bekommt


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Beginn einer neuen ร„ra? Sonos prรคsentiert Era 300 und Era 100


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Sonos Era 300 und Era 100 im Test: Das kรถnnen die neuen WLAN-Lautsprecher


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Sonos Era 300 und Era 100 im Test: Das kรถnnen die WLAN-Lautsprecher


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Sonos Era 300 und Era 100 im Test: Das kรถnnen die WLAN-Lautsprecher


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Sonos Era 300 und Era 100 im Test: Das kรถnnen die WLAN-Lautsprecher


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Sonos Era 300 und Era 100 im Test: Das kรถnnen die neuen WLAN-Lautsprecher


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Sonos Era 100 und Era 300: Neue Smart-Speaker schon jetzt bei tink gรผnstiger


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Sonos Era 100 und Era 300: Rabattaktion fรผr Bundles und Stereo-Sets bei tink


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ Selten im Angebot: Die Sonos-Lautsprecher Era 100 und Era 300


๐Ÿ“ˆ 24.37 Punkte

๐Ÿ“Œ The Enterprise Imperative: Five Tips for Improving Incident Response


๐Ÿ“ˆ 21.07 Punkte











matomo