This case study is on Sunnylake hospital whose EMR database and network was hacked by some unknown hackers and regarding the Disaster faced by sunnylake hospital.
Paul Layman CEO of the sunnylake hospitals is who introduced the EMRs (electronic medical record) system in the hospital and switched the hospital to EMR system from paper work.
One day Paul got an e-mail from unknown user about the network security of their hospital and the hacker demands the ransom of $100k to give the access back. Paul, however, didn’t inform the IT department about the email received as he took that lightly but after few days when the access got denied by all the servers and system, Paul realized that concentration needed to be given to the hackers warning.
Weakness of the hospital lies in the fact that there was lack of skilled IT employs in an organization that were unable to fix the bug created by the hackers, Moreover; security management was not done properly which gave a chance or rather an opportunity to hackers to hack the system. They have the backup but it took time to restore the system to normal again.
This case study of sunnylake hospital reflects some main objectives as: * Mismanagement between IT department and management level. * Auditing of network security is not done properly. * Testing and patching of software time to time.
Business continuity planning: This is way of planning process to ensure that our products and services are delivered every time even at the time of some critical substation, we stand in market without affecting the future of company.
Some of the points which are required for BCP are: * Analysis: The analysis phase is used in development of BCP. * Solution design: The main goal of solution phase is to identify the cost effective disaster recovery * Implementation: In implement phase the execution of the design element is identified in the solution design phase. * Testing and organization