- Recovery Time Objective (RTO)
- The maximum acceptable duration of downtime for a specific function β the deadline by which it must be restored after a disruption.
- Recovery Point Objective (RPO)
- The maximum acceptable amount of data loss measured in time β how far back in time a system can be restored from backup before the loss becomes unacceptable.
- Business Impact Analysis (BIA)
- A systematic assessment of how a disruption to each business function would affect revenue, operations, customers, and compliance obligations.
- Critical Function
- A process, system, or service whose failure would cause unacceptable operational, financial, or reputational harm within the defined RTO window.
- Maximum Tolerable Downtime (MTD)
- The longest period an organization can survive without a specific function before the consequences become irreversible.
- Incident Response Team (IRT)
- The designated group of individuals responsible for activating the BCP, coordinating recovery efforts, and communicating with stakeholders during a disruption.
- Alternate Work Site
- A pre-arranged secondary location β a hot site, warm site, or cloud-hosted environment β where operations can continue when the primary site is unavailable.
- Tabletop Exercise
- A facilitated discussion-based rehearsal in which team members walk through their BCP responses to a hypothetical scenario without activating actual systems.
- Single Point of Failure (SPOF)
- Any component, person, system, or supplier whose loss alone would halt a critical function β a primary target for redundancy planning.
- ISO 22301
- The international standard for Business Continuity Management Systems, specifying requirements for planning, implementing, monitoring, and improving an organization's continuity program.