IT Examiner School - Oct 2023

Internal Use Only

Vendor Agreements

Review the vendor’s plan to ensure that critical services can be restored within acceptable timeframes

Establish provisions that address the vendor’s responsibility for maintaining and testing plans

Ensure that the institution has identified how to adjust internal procedures if the vendor invokes its plan

15

15

Internal Use Only

Provide Employee Training

Conduct employee training at enterprise ‐ wide level and business unit level

Teach all employees about responsibilities and procedures to follow during and after recovery

Include periodic simulation exercises for key employees

Ensure that training is regularly scheduled & updated to address operational changes

16

16

Made with FlippingBook - professional solution for displaying marketing and sales documents online