Assess impact categories and dependencies
Assess the impact categories and dependencies in BCM UIB Workspace to get the necessary information for a plan. Use the business impact analysis to identify the recovery time objective for an item and prioritize the assets that have the least and most critical dependencies. Use the information to establish their recovery strategies during the planning phase.
Before you begin
Role required: sn_bia.bia_admin, sn_bcm.program_manager, sn_bcm.planner, sn_bcm.contributor or sn_bia.bia_contributor (can respond to BIAs in which they are tagged as a contributor)
About this task
Beginning with the Xanadu release, these new columns are added to the BIA dependency tables. The values of these columns can be refreshed by selecting the Update dependencies button in the Dependency assessment.
- Related item BIA - The latest unarchived impact analysis done on the dependency item
- Related item RTO - The Recovery time objective of the above impact analysis. It will take the value of adjusted RTO instead of RTO if there is any.
- Related item RPO - The Recovery point objective of the above impact analysis. It will take the value of adjusted RPO instead of RPO if there is any.
- Related item recovery tier - The recovery tier of the above impact analysis.
Procedure
Navigate to Workspaces > Business Continuity Workspace.
To update an existing business impact analysis, select the link to the business impact analysis record in the Name column and navigate to the Assessments tab.
To assess different types of business impact categories on the business process, select the Recovery time objective assessment tab.
A sample questionnaire for the Recovery time objective assessment (RTO assessment) is shown in the example.
RTO assessment questionnaire.You must configure all impact categories in the Recovery time objective assessment. A business process draws a set of impact categories, by default, from the template that you have used for the business impact analysis. For more information, see: [Review an impact category and assess its downtime](review-impact-category-bia.md).
Respond to the questions in the Recovery time objective assessment questionnaire and select Next.
For information on recovery time objective and calculation of recovery time objective, see RTO, RPO, and recovery tiers and Calculating RTO and RPO.
To answer questions related to the data component of the asset, select the Recovery point objective assessment tab.
A sample assessment questionnaire for the Recovery point objective assessment (RPO assessment) is shown in the example.
RPO assessment questionnaire.You must configure all impact categories in the Recovery point objective assessment. For more information, see [Assess RPO impact of technology assets on the business](RPO-asset-impact-assessment.md). For information on recovery point objective and calculation of recovery point objective, see [RTO, RPO, and recovery tiers](rto-rpo-recovery-tiers.md) and [Calculating RTO and RPO](rto-rpo-calculation.md).
Respond to the questions in the Recovery point objective assessment and select Next.
You can respond to the questions and complete the Recovery point objective assessment.
To assess the dependencies and identify the items within each dependency that your business process depends on, select the Dependency Assessment tab.
You can select the dependency in the Dependency panel to view the group and items that belong to that group. For example, if the group is Locations, you can select one or more locations and assess the dependencies associated with them. A sample Dependency assessment is shown in the example.
Dependency assessment.
- To add an item to a dependency group, select one of the options.
| Step | Description |
|---|---|
| Add | Add an item from all the records. The relationship source is BCM. All items from the respective table, irrespective of its relationship in the CMDB are displayed. When you select Add, the filter for selecting the dependencies is displayed as shown in the example: Image omitted: add-dependencies-filter-assessment.png Dependencies selection.</p> To update the selected dependency item, you can add details and select Update.
Note: The Add and Add first level CMDB dependencies actions are available only while the business impact analysis is in an editable state, such as Draft or Returned. After the business impact analysis is submitted and moves to the Pending approval state, these actions are no longer available, so you cannot add dependency items to the assessment in that state. |
| Add first level CMDB dependencies | Add dependencies for which the relationships are identified in CMDB. Note: Both the Add and Add first level CMDB dependencies UI actions mark the dependency source as Manual because inserting the dependency is a manual action. The CMDB source is used only when dependencies are automatically inserted by the application through the Update dependencies action. The Add first level CMDB dependencies UI action streamlines the manual addition of dependencies by pre-filtering the list to show only CMDB relationships, rather than displaying all CI items within an element definition. A sample assessment is shown in the example. Image omitted: first-level-of-dependencies.png Import all CMDB relationships manually in the respective categories that are defined in the instance.Add first level CMDB dependencies.</p></td></tr><tr><td id="d59934e394"><strong><strong>Update dependencies</strong></strong></td><td> |
| Edit Required Recovery Timeframe (RTO) for one dependency | If you have one dependency in the Pending state, you can update its RTO by updating the inline value in the Required Recovery Timeframe field as shown in the example. Image omitted: req-recovery-timeframe-inline.png Updating RTO for one dependency at a time.</td></tr><tr><td id="d59934e434"><strong>Edit <strong>Required Recovery Timeframe</strong> for multiple dependencies</strong></td><td><p>Similarly, you can update the RTO for multiple dependencies as shown in the step-by-step examples:</p>
RTO is updated for multiple dependencies and the dependency assessment is marked as Complete. Image omitted: deleting-one-rto-value.png RTO is updated for multiple dependencies.</p> If you edit the RTO for one dependency, the dependency assessment moves to the Pending state. Image omitted: deleting-one-rto-value.png Delete one RTO.[Omitted image "one-rto-empty-dep-assessment-pending.png"] Alt text: Dependency-assessment-in-pending-state.</p> When you have updated the RTO value for all entries in the Required Recovery Timeframe field, then that particular category of dependency is marked as Complete by the application. Note: If the administrator has set the Required Recovery Timeframe field in the dependency assessment as mandatory, the BIA user can update the required recovery timeframe for the dependency assessment. If the administrator has set the Required Recovery Timeframe field in the dependency assessment as optional, the BIA user can complete the dependency assessment without updating the Required Recovery Timeframe field. Data from the Required Recovery Timeframe and Required Data Backup columns is now pulled into the BCP record. |
| Select Complete | This is the final step. You must complete all the pending assessments before selecting Complete. Selecting Complete marks all the assessments in the business impact analysis as Complete. Note: After selecting Complete, if you see the message that the dependency groups are in the Not started state, you must complete the procedures explained in this table for single and multiple dependencies. Selecting Confirm in the message window marks all dependency groups as Complete without actually completing them. Image omitted: dependencies-selection-confirmation.png Confirmation of dependencies.</p></td></tr></tbody> Image omitted: rto-assessment-completed.png Completed assessment.
Image omitted: bia-pdf-generate-pdf.png Generate the BIA PDF.
Image omitted: PDFDownload.png Information message that includes a link to download a PDF
Parent Topic:Structured workflows for BIAs |