In veel organisaties is business continuity belegd bij IT. Begrijpelijk, want de systemen staan daar. Maar het leidt tot plannen die precies verkeerd om zijn opgebouwd: vanuit de techniek in plaats van vanuit het werk dat door moet gaan.
In many organisations, business continuity sits with IT. Understandable, since that is where the systems are. But it produces plans built exactly the wrong way round: from the technology instead of from the work that must go on.
Een voorbeeld uit de praktijk. Bij een business impact analyse vroegen we een IT-manager hoe lang de organisatie zonder het ordersysteem kon. Zijn antwoord: vier uur, want dat stond zo in het contract met de leverancier. Toen we dezelfde vraag aan de operationeel directeur stelden, was het antwoord: drie dagen, want er ligt voorraad en bestellingen kunnen een dag op papier. Hetzelfde systeem, twee werkelijkheden. Alleen de tweede is de echte.
An example from practice. During a business impact analysis we asked an IT manager how long the organisation could run without the order system. His answer: four hours, because that is what the supplier contract said. When we asked the operations director the same question, the answer was: three days, because there is stock and orders can go on paper for a day. Same system, two realities. Only the second one is real.
Dit is geen verwijt aan IT. Het is een rolverdelingsprobleem: IT kan vertellen hoe snel een systeem hersteld kan worden, maar niet hoe lang de organisatie zonder kan. Die tweede vraag, de enige die telt, kan alleen de business beantwoorden. Zolang continuïteit een IT-feestje is, worden hersteltijden geraden in plaats van gekozen, en betaal je voor de verkeerde zekerheden.
This is not a reproach to IT. It is a role problem: IT can tell you how quickly a system can be restored, but not how long the organisation can do without it. That second question, the only one that counts, can only be answered by the business. As long as continuity is an IT party, recovery times are guessed instead of chosen, and you pay for the wrong certainties.
Begin niet bij systemen maar bij processen: wat moet er door, hoe lang kan het stil liggen, wat is er minimaal nodig? Pas daarna komt de vraag welke systemen daarbij horen. En dan blijkt vaak dat de duurste hersteloplossing niet bij het belangrijkste proces hoort. Dat gesprek van één dagdeel levert meestal meer op dan een jaar aan technische herstelmaatregelen: het maakt continuïteit een gedeelde verantwoordelijkheid met een eigenaar in de boardroom.
Start not with systems but with processes: what must continue, how long can it stand still, what is minimally needed? Only then ask which systems belong to it. And it often turns out the most expensive recovery solution does not belong to the most important process. That half-day conversation usually delivers more than a year of technical recovery measures: it makes continuity a shared responsibility with an owner in the boardroom.
Plan een vrijblijvende kennismaking van 30 minuten. Je krijgt geen verkooppraatje, wel drie concrete observaties over je huidige weerbaarheid.
Book a free 30-minute introduction. No sales pitch: you will leave with three concrete observations about your current resilience.