Here is the list, starting with the most read article:
#1 Managing scenario testing for operational resilience
Identifying impact tolerances for important business services is a vital aspect of operational resilience: but, once these are established, they need to be assessed and confirmed through the use of scenario testing. In this article Alberto G. Alexander presents a scenario testing methodology and describes some best practices for managing scenario testing.
#2 OSFI publishes updated Guideline E-21 for financial institution risk and resilience regulation
Canada’s Office of the Superintendent of Financial Institutions (OSFI) has released a new version of Guideline E-21, Operational Risk Management and Resilience, which sets out OSFI’s expectations for financial institutions to prepare for and recover from severe disruptive events.
#3 The future of backups: from business continuity fundamental to top attack target
Backups have been a somewhat boring but vital aspect of business continuity and disaster recovery for decades but recent targeting by cybercriminals to enhance the impacts of ransomware attacks has placed backups in the spotlight – and has highlighted some common problems.
#4 Developing and managing impact tolerances
Identifying impact tolerances for important business services is one of the main ingredients for developing an operational resilience management system in any type of organization. In this article by Dr. Alberto G. Alexander, the process of identifying impact tolerances is presented and some guidelines for managing the impact tolerances in an organization are described.
#5 ISO releases new guidelines standard on developing organizational resilience policies and strategies
ISO has published ISO 22336:2024, ‘Security and resilience — Organizational resilience — Guidelines for resilience policy and strategy’.
#6 Microsoft highlights how it is helping customers to comply with DORA
Microsoft recently published an article setting out three specific ways that it is helping its customers to comply with the requirements of DORA.
#7 Crowdstrike and Microsoft issues cause business continuity problems around the world
A ‘content deployment’ issue linked to the Crowdstrike Falcon cyber security solution resulted in Microsoft outages around the world, with subsequent huge business continuity issues for many organizations.
#8 Building a unified compliance strategy for NIS2 and DORA
Many organizations are currently faced with two large compliance challenges: the EU’s NIS2 and DORA regulations. The most effective way to deal with these is via a unified compliance strategy says Simon Fisher.
#9 Improving organizational resilience by a focus on personal and emotional resilience
As organizational resilience is fundamentally about people, the personal and emotional side of the concept of resilience is at the heart of any approach. By Robert Hall.
#10 Dealing with the challenge of breaking down risk discipline silos
One key aspect of organizational resilience is developing a holistic management approach, ensuring that various key disciplines work together. Steve Richardson provides some tips on how to address road-blocks in this area.
A big thank you to everyone who contributed to Resilience Forward in 2024!
We are always looking for thought leadership and technical articles that take the resilience profession forward, so if you have any ideas for new content please contact david.honour@resilienceforward.com






