Business Resilience Council
A Member-Driven, Analyst-Supported, Multi-Sector Community
The Business Resilience Council (BRC) is a nonprofit, member driven, analyst-supported, multi-sector community that welcomes organizations to share information and collaborate on significant threats and incidents that impact business operations. The BRC provides businesses with all-source information sharing, an award-winning framework for operational resilience, a connection program for third-party security, and an exercise program for testing and guidance of recovery plans.
The BRC is designed for cross-sector collaboration among professionals in cyber and physical security, geopolitical risk, business continuity and disaster recovery, and third-party risk. It supports organizations with regional, national and international footprints that must maintain vigilance, manage significant crises, and navigate response scenarios in order to maintain operations. The BRC fosters a broad, holistic community.
Multi-sector sharing of all-hazard threats, incidents, vulnerabilities and best practices
Framework for operational resilience in response to disruptive and destructive events
Collective defense and engagement with vendors and suppliers before, during, and after incidents
Testing and guidance for business continuity, disaster response and recovery plans
Information Sharing
Operational Resilience
Third-Party Security Connection Program
Exercise Program
Information Sharing Products and Services
All source and sector specific threat reports
Multi-sector Situational Awareness Reports
Threat and resilience analyst discussion calls
Emergency Operations Situational Awareness Dashboards
Emergency member meetings
Peer-to-peer collaboration and information exchange across the GRF network Participation in exercises and development of an Operational Resilience Framework, security standards, and playbooks
Participation in subject and region based working groups
Operational Resilience Framework
Vision:
To reduce operational risk, minimize service disruptions and limit systemic impacts from destructive attacks and adverse events.
Mission:
Traditional disaster recovery and business continuity efforts have focused on data recovery with little regard for providing services in an impaired state. In 2021, the BRC launched a multi-sector working group to develop the Operational Resilience Framework to help solve that challenge. The framework provides rules and implementation aids that support a company’s recovery of immutable data, while also– and uniquely– allowing it to minimize service disruptions in the face of destructive attacks and events.
Learn more at https://www.grf.org/orf
In the BRC’s Third Party Security Connection (TPSC) program, vendors and suppliers engage with BRC analysts and members to help provide collective defense and resilience to their customers. When a threat is imminent, or an incident occurs, these connections become vital to cybersecurity and continuity teams for situational awareness and rapid response. The BRC builds relationships between these parties and shares common practices for assessments and response, to help facilitate information sharing during incidents when time is of the essence.
TPSC program provides businesses and their vendors:
Two-way engagement
Collaborative platform
Secure communications
Actionable intelligence
Resilience best practices
Emergency communications
BRC members contribute:
Information on threats, incidents and security best practices
Encouragement and incentives to vendors and suppliers to join BRC to enhance communication and ultimately, resilience
Third-Party Security Connection
BRC Benefits
The BRC Team Provides Warning and Guidance
The BRC team and leadership are closely familiar with disaster response and business continuity planning, with decades of collective experience and training from working in critical infrastructure and in government. The team is made of resilience specialists, cyber, physical and geopolitical analysts.
Access
Access support from resilience specialists and physical, geopolitical and cybersecurity analysts with decades of collective business continuity experience.
Leverage
Leverage crowd-sourced expertise of fellow members and community partners
Develop
Develop and mature continuity plans with BRC guidance and the latest intelligence
Track
Track significant geopolitical tensions or threat actor TTPs to prepare the business for future opportunities and protect current assets
Trigger
Trigger response efforts due to impending threats to business operations
Strengthen
Strengthen relationships with peers and government partner for increased support and knowledge
Return on Investment
Dedicated support staff and subject matter experts in security and resilience ($300K value)
BRC enriched intelligence and resilience products ($200k value)
Commercial geopolitical, physical, and cybersecurity intelligence feeds ($75K value)
Collaborative information sharing portal, secure chat, and knowledge library ($10K value)
Emergency Operations Situational Awareness Dashboard ($10K value)
Opportunities to enhance the resilience of supply chains and third parties