Home / Current Issue / Paper 1707048
Best Practices for IT Disaster Recovery Planning in Multi-Cloud Environments
Subject area: Science,Engineering and Technology · Area of research: Environment
Abstract
With today's dynamic business landscape, Multi-Cloud environments have grown in popularity as companies are moving to harvest the benefits of flexibility, scalability, and cost-effectiveness. However, with the increased complexity in the IT infrastructure, effective disaster recovery planning for business continuity becomes even more difficult. Hence, this paper focuses on good practices for IT disaster recovery planning in Multi-Cloud environments, elaborating on comprehensive strategies in line with the risk management framework of an organization. Some of these key practices involve multiple-tiered backup strategies, redundancy across multiple cloud providers, and automation in recovery processes for a reduction in downtime. It flags that one must also understand the different responsibility models of cloud platforms to identify where vulnerabilities could arise. Also, the importance of testing and validation of the disaster recovery plan is discussed so that the systems can be brought up quickly when a disaster strikes. Through tools and technologies like IaC and CI/CD pipelines, organizations can automate their DR processes and make their Multi-Cloud architecture resilient. The paper further concludes by noting the need to train IT staff on managing these complex environments to stay ahead of emerging threats. Such best practices followed would help the businesses improve the reliability and availability of their core systems while lessening the risks around IT disruptions in Multi-Cloud environments.
Keywords
Multi-Cloud environments, IT disaster recovery, business continuity, backup strategy, redundancy, cloud providers, shared responsibility model, automated recovery, infrastructure-as-code, testing and validation, CI/CD pipelines, system resilience, disaster recovery planning, cloud security, IT staff training.
References
[1] Wallace, M., & Webber, L. (2017). The Disaster Recovery Handbook: A Step-by-Step Plan to Ensure Business Continuity and Protect Vital Operations, Facilities, and Assets.
[2] Phillips, B. (2016). IT Disaster Recovery Planning For Dummies.
[3] Toigo, J. W. (2012). Disaster Recovery Planning: Preparing for the Unthinkable (3rd Edition).
[4] Gregory, P. (2017). IT Disaster Recovery Planning for Dummies.
[5] Rittinghouse, J. W., & Ransome, J. F. (2016). Cloud Computing: Implementation, Management, and Security.
[6] Tulloch, M., & Northrup, T. (2014). Microsoft System Center: Building a Virtualized Network Solution.
[7] Bahan, C. (2018). Essential Disaster Recovery and Continuity Planning for Cloud Computing.
[8] Harwood, M. (2013). Disaster Recovery for Archives, Libraries and Records Management Systems in Australia and New Zealand.
[9] Snedaker, S. (2013). Business Continuity and Disaster Recovery Planning for IT Professionals (2nd Edition).
[10] Menken, I. (2015). IT Service Management Best Practices for Successful IT Disaster Recovery.
[11] Gilliam, J. P. (2014). Disaster Recovery Testing: Exercising Your Contingency Plan.
[12] Oltsik, J. A. (2017). Multicloud Strategies Drive Mission-Critical Benefits. Enterprise Strategy Group.
[13] Young, A., & Tipton, H. F. (2015). Information Security Management Handbook.
[14] Gibson, D. (2015). Managing Risk in Information Systems.
[15] Adams, R., & Makramalla, M. (2015). Cloud Computing Security Foundations and Challenges.
[16] High, R., & Chaffin, M. (2014). IBM Business Continuity and Resiliency Services: Resilience in the Multi-Cloud Era.
[17] NIST (2018). Guidelines for the Selection, Configuration, and Use of Transport Layer Security (TLS) Implementations.
[18] Mell, P., & Grance, T. (2011). The NIST Definition of Cloud Computing.
[19] Tipton, H. F., & Nozaki, M. K. (2014). Official (ISC)² Guide to the CISSP CBK.
[20] Mather, T., Kumaraswamy, S., & Latif, S. (2009). Cloud Security and Privacy: An Enterprise Perspective on Risks and Compliance.
[21] Wood, C. C. (2013). Compliance in the Cloud: Security Frameworks and Measures.
[22] Jamsa, K. (2013). Cloud Computing: SaaS, PaaS, IaaS, Virtualization, Business Models, Mobile, Security and More.
[23] Poulin, M. (2012). The Economics of Cloud Computing: An Overview For Decision Makers.
[24] Brodkin, J. (2018). Gartner’s Top 10 Cloud Myths.
[25] ISACA (2019). COBIT 2019 Framework for Governance and Management of Enterprise IT.
[26] PCI Security Standards Council (2018). PCI DSS Cloud Computing Guidelines.
[27] ISO/IEC (2019). Information technology - Security techniques - Information security management systems - Requirements (ISO/IEC 27001:2013).
[28] AWS (2018). AWS Well-Architected Framework.
[29] Microsoft (2019). Azure Security and Compliance Blueprint: IT Disaster Recovery.
[30] Google Cloud (2019). Google Cloud Architecture Framework.
[31] VMware (2018). VMware vCloud Architecture Toolkit (vCAT): IT Disaster Recovery.
[32] Cisco (2019). Cisco Cloud Security White Paper.
[33] Oracle (2018). Oracle Cloud Infrastructure Disaster Recovery.
[34] IBM (2019). IBM Disaster Recovery as a Service (DRaaS) Solutions.
[35] Symantec (2017). Symantec Cloud Security Essentials.
[36] Salesforce (2018). Salesforce Disaster Recovery Features and Best Practices.
[37] Kundra, V. (2011). Federal Cloud Computing Strategy.
[38] U.S. Department of Homeland Security (2018). Cybersecurity Framework.
[39] U.S. Government Accountability Office (2019). Information Security: Agencies Need to Improve Cyber Incident Response Practices.
[40] Red Hat (2018). Red Hat CloudForms: Manage Your IT and Cloud Resources.
[41] Gartner (2019). Magic Quadrant for Enterprise Integration Platform as a Service.
[42] Foster, I., Zhao, Y., Raicu, I., & Lu, S. (2008). Cloud Computing and Grid Computing 360-Degree Compared.
[43] Zhang, Q., Cheng, L., & Boutaba, R. (2010). Cloud Computing: State-of-the-art and Research Challenges.
[44] Marinescu, D. C. (2013). Cloud Computing: Theory and Practice.
[45] Sosinsky, B. (2011). Cloud Computing Bible.
[46] Rhoton, J. (2010). Cloud Computing Explained: Implementation Handbook for Enterprises.
[47] Buyya, R., Broberg, J., & Goscinski, A. (2011). Cloud Computing: Principles and Paradigms.
[48] Velte, T., Velte, A., & Elsenpeter, R. (2009). Cloud Computing, A Practical Approach.
[49] Katz, R. N. (2010). The Tower and the Cloud: Higher Education in the Age of Cloud Computing.
[50] Chou, T. (2013). Seven Steps to Success for Cloud Computing.
[51] Easttom, W. (2019). Computer Security Fundamentals (3rd Edition).
[52] Linthicum, D. S. (2018). Cloud Computing and SOA Convergence in Your Enterprise: A Step-by-Step Guide.
[53] Morabito, V. (2017). Big Data and Analytics: Strategic and Organizational Impacts.
[54] Marks, E. A., & Lozano, B. (2010). Executive's Guide to Cloud Computing.
[55] Halpert, B. (2011). Auditing Cloud Computing: A Security and Privacy Guide.
[56] Krutz, R. L., & Vines, R. D. (2010). Cloud Security: A Comprehensive Guide to Secure Cloud Computing.
[57] Subashini, S., & Kavitha, V. (2011). A Survey on Security Issues in Service Delivery Models of Cloud Computing.
[58] Hassan, Q. (2018). Internet of Things A to Z: Technologies and Applications.
[59] Cloud Security Alliance (2019). Security Guidance for Critical Areas of Focus in Cloud Computing.
[60] Miller, M. (2018). Cloud Computing: Web-Based Applications That Change the Way You Work and Collaborate Online.
[61] Baun, C., Kunze, M., Nimis, J., & Tai, S. (2011). Cloud Computing: Web-Based Dynamic IT Services.
[62] Antonopoulos, N., & Gillam, L. (2010). Cloud Computing: Principles, Systems and Applications.
[63] Bhardwaj, S., Jain, L., & Jain, S. (2010). Cloud Computing: A Study of Infrastructure as a Service (IaaS).
[64] Kavis, M. J. (2014). Architecting the Cloud: Design Decisions for Cloud Computing Service Models (SaaS, PaaS, and IaaS).
[65] Furht, B., & Escalante, A. (2010). Handbook of Cloud Computing.
[66] Clark, T. (2012). Designing Storage for Exchange 2010 SP1: A Microsoft Technologies Guide.
[67] Fink, D. (2013). Disaster Recovery, Crisis Response, and Business Continuity: A Management Desk Reference.
[68] Winkler, V. (2011). Securing the Cloud: Cloud Computer Security Techniques and Tactics.
[69] Minoli, D. (2011). A Networking Approach to Grid Computing.
[70] Watters, P. A., Hashmi, M., & O’Connor, R. F. (2017). Managing Risk and Information Security: Protect to Enable.
[71] Bernstein, D., Ludvigson, E., Sankar, K., Diamond, S., & Morrow, M. (2009). Blueprint for the Intercloud - Protocols and Formats for Cloud Computing Interoperability.
[72] Sultan, N. (2014). Making Use of Cloud Computing for Healthcare Provision: Opportunities and Challenges.
[73] Takabi, H., Joshi, J. B., & Ahn, G. J. (2010). Security and Privacy Challenges in Cloud Computing Environments.
[74] Mitchell, S. (2016). The Executive's Guide to Enterprise Social Media Strategy: How Social Networks Are Radically Transforming Your Business.
[75] Doherty, N. F., Anastasakis, L., & Fulford, H. (2011). Reinforcing the Security of Corporate Information Resources: A Critical Review of the Role of the Acceptable Use Policy.
[76] Lohr, H. (2012). The Cloud at Your Service: The When, How, and Why of Enterprise Cloud Computing.
[77] Reavis, J., & Hinkley, M. (2012). Cloud Security: A Comprehensive Guide to Secure Cloud Computing.
How to cite this paper
@article{1707048,
author = {Biswanath Saha, Prof.(Dr.) Avneesh Kumar},
title = {Best Practices for IT Disaster Recovery Planning in Multi-Cloud Environments},
journal = {Iconic Research And Engineering Journals},
year = {2019},
volume = {2},
number = {10},
pages = {390-409},
issn = {2456-8880},
url = {https://www.irejournals.com/formatedpaper/1707048.pdf},
abstract = {With today's dynamic business landscape, Multi-Cloud environments have grown in popularity as companies are moving to harvest the benefits of flexibility, scalability, and cost-effectiveness. However, with the increased complexity in the IT infrastructure, effective disaster recovery planning for business continuity becomes even more difficult. Hence, this paper focuses on good practices for IT disaster recovery planning in Multi-Cloud environments, elaborating on comprehensive strategies in line with the risk management framework of an organization. Some of these key practices involve multiple-tiered backup strategies, redundancy across multiple cloud providers, and automation in recovery processes for a reduction in downtime. It flags that one must also understand the different responsibility models of cloud platforms to identify where vulnerabilities could arise. Also, the importance of testing and validation of the disaster recovery plan is discussed so that the systems can be brought up quickly when a disaster strikes. Through tools and technologies like IaC and CI/CD pipelines, organizations can automate their DR processes and make their Multi-Cloud architecture resilient. The paper further concludes by noting the need to train IT staff on managing these complex environments to stay ahead of emerging threats. Such best practices followed would help the businesses improve the reliability and availability of their core systems while lessening the risks around IT disruptions in Multi-Cloud environments.},
keywords = {Multi-Cloud environments, IT disaster recovery, business continuity, backup strategy, redundancy, cloud providers, shared responsibility model, automated recovery, infrastructure-as-code, testing and validation, CI/CD pipelines, system resilience, disaster recovery planning, cloud security, IT staff training.},
month = {April},
}