Welcome to the California Office of Information Security and Privacy Protection

Right Column

Disaster Management

Overview

The following resources provide policy, standards, and guidelines to assist state agencies in the development and maintenance of their Disaster Recovery Plan (DRP), business continuity plan and disaster management programs.

State Administrative Manual (SAM)

The SAM is a central point for statewide policies, procedures, regulations and information developed and issued by authoring agencies such as this Office, the Department of Finance (Finance), Department of General Services (DGS), and Governor's Office. The following SAM policies directly relate to disaster recovery and business continuity.

As announced in Management Memo (MM) 08-02, the policy sections related to information security and privacy have been restructured and renumbered effective February 19, 2008. Note the reference to "*NEW" means language was added to this section to introduce the section or an edit was made to clarify the existing policy as placed within the new structure. No policies were changed through MM 08-02 or this restructure.

Topic New SAM Section Old SAM Section(s)/Comments
Disaster Recovery Management 5355 *New introduction, 4842.2
Disaster Recovery Planning 5355.1 4843
Agency Disaster Recovery Plan 5355.2 4843.1, *New form added
Additional State Data Center Requirements 5355.3 4842.2, 4842.21

 

Statewide Information Management Manual (SIMM)

The following SIMM sections are applicable to Disaster recovery plan requirements.

 

Schedule for Submission of Disaster Recovery Plans

The following schedule identifies annual DRP submission dates.

Topic Section
Schedule for Submission of Disaster Recovery Plans Formerly 05B

 

Disaster Recovery Documentation for Agencies Preparation Instructions

This document identifies ten (10) sections that describe the minimum requirements that an agency must include as components of its Disaster Recovery Plan.

Topic Section
Disaster Recovery Documentation for Agencies Preparation Instructions (.pdf, 71k)
65A

 

Agency Designation Letter

The Letter provides the California Office of Information Security with an contact for the agency's Information Security Officer, Disaster Recovery Coordinator, and Privacy Program Coordinator designees. This letter is due by January 31st of each year and within 10 business days if changes occur.

Topic Section
Agency Designation Letter (.doc, 96k) 70A

 

Disaster Recovery Plan Certification

Agencies may file this Certification every other year, in place of a full DRP, when no significant changes have occurred since the last full DRP submission. (See SAM Section 4843.1)

Topic Section
Disaster Recovery Plan Certification (.doc, 45k)
70B

 

Agency Disaster Recovery Plan Transmittal Letter and Cross Reference Worksheet

Agencies must submit this transmittal letter with their DRP submission. Use of the Cross Reference Worksheet is optional if the DRP submission follows the SIMM 65A format.

Topic Section
Agency Disaster Recovery Plan Transmittal Letter and Cross Reference Worksheet  (.doc, 123k) 70D

 

Business Continuity

The following material provides access to the Governor's Office of Emergency Services Continuity of Operations / Continuity of Government (COOP/COG) program.

Topic Section
Continuity of Operations (COOP) and Continuity of Government (COG) COOP/COG

 

Guidelines

The following material provides guidance and assistance on disaster recovery planning.

Topic Published Date
Disaster Recovery Plan Checklist (.doc, 88k) November 2008
Go RIM  for Policy Section 5355 - Disaster Recovery Management March 2008
Frequently Asked Questions November 2008

 

Other Resources

Topic
DR Coordinator Meeting Materials
Office of Emergency Services (OES) Training Curriculum for Disaster Preparedness
OES Disaster Preparedness Exercise Program
California Volunteers Citizen Corps Program for Community Preparedness
Rebuild Your Life - A great resource for people whose lives are turned upside down by natural disasters.

 

The California Office of Information Security (Office) web site contains links to other sites that are not owned or controlled by us. The information provided at these sites does not reflect the views of this Office or indicate an endorsement of a particular company or product. Please be aware that our Office is not responsible for the security and privacy practices of such other sites.


 
Last Updated: Wednesday, November 12, 2008