BS 7799/ISO 17799
Redundancy - Is it mandatory ? Dec 20 2007 07:17AM
iso 27000 (is27001 gmail com) (3 replies)
RE: Redundancy - Is it mandatory ? Dec 20 2007 09:18AM
Andreas Rauer (Andreas Rauer helpag de) (1 replies)
RES: Redundancy - Is it mandatory ? Dec 20 2007 03:23PM
Leandro Takegami (ltakegami msccruzeiros com br)
Re: Redundancy - Is it mandatory ? Dec 20 2007 07:34AM
Kosala Atapattu (kosala atapattu gmail com)
On Dec 20, 2007 10:17 AM, iso 27000 <is27001 (at) gmail (dot) com [email concealed]> wrote:
> Hi,
>
> We are in the process of getting ready for ISO 27001.
>
> We have an Internet link . Lot of our business has dependency on
> Internet link being up.
>
> The ISO consultant helping us has been insisting that I buy a spare
> router and get a backup Internet link. That obviously means I need to
> put some money.
>
> I am not convinced about this need because
>
> - Last 4 years the router has not failed. I am convinced about its resilience

Beside the point that whether this is compliant with the iso27001, you
can look at it from another perspective.

As you said since lot of your businesses depending on this link, what
would be the loss, if this link is unavailable, to the business. If
the loss is higher than the cost of the router it makes sense to keep
a redundant unit.

For example if this router failed, 10 people of your organization
unable to perform their duties, and if it takes two days to replace
the router, then roughly we can consider the loss to be 20 man days,
irrespective of the lost opportunities to the business. Actually this
is a concept we practiced for LAN switches, since the downtime cost
will be very high.

The router was running for four years without any issue does not mean
that it'll continue to do so for another 4 years!!!

I hope you get my point. I see this more as a bussiness decision you
have to make.

Cheers,
--
Kosala
--------------------------------------------
Disclaimer: Views expressed in this mail are my personal views and
they would not reflect views of the employer.
--------------------------------------------
blog.kosala.net
www.linux.lk/~kosala/
www.kosala.net

[ reply ]
Re: Redundancy - Is it mandatory ? Dec 20 2007 07:29AM
K K Mookhey (kkmookhey gmail com) (1 replies)
RE: Redundancy - Is it mandatory ? Dec 20 2007 08:59AM
Craig Wright (Craig Wright bdo com au)


 

Privacy Statement
Copyright 2010, SecurityFocus