Disaster Management
Overview
The following resources provide policy, standards, and guidelines to assist state agencies in the development and maintenance of their Disaster Recovery Plan (DRP), business continuity plan and disaster management programs.
- State Administrative Manual (SAM)
- Statewide Information Management Manual (SIMM)
- Schedule for Submission of Disaster Recovery Plans
- Continuity Planning
- Guidelines
- Other Resources
State Administrative Manual (SAM)
The SAM is a central point for statewide policies, procedures, regulations and information developed and issued by authoring agencies such as this Office, the Department of Finance (Finance), Department of General Services (DGS), and Governor's Office. The following SAM policies directly relate to disaster recovery and business continuity.
As announced in Management Memo (MM) 08-02, the policy sections related to information security and privacy have been restructured and renumbered effective February 19, 2008. Note the reference to "*NEW" means language was added to this section to introduce the section or an edit was made to clarify the existing policy as placed within the new structure. No policies were changed through MM 08-02 or this restructure.
| Topic | New SAM Section | Old SAM Section(s)/Comments |
|---|---|---|
| Disaster Recovery Management | 5355 | *New introduction, 4842.2 |
| Disaster Recovery Planning | 5355.1 | 4843 |
| Agency Disaster Recovery Plan | 5355.2 | 4843.1, *New form added |
| Additional State Data Center Requirements | 5355.3 | 4842.2, 4842.21 |
Statewide Information Management Manual (SIMM)
The following SIMM sections are applicable to Disaster Recovery Plan requirements.
Disaster Recovery Documentation for Agencies Preparation Instructions
This document identifies ten (10) sections that describe the minimum requirements that an agency must include as components of its Disaster Recovery Plan.
| Topic | Section |
|---|---|
| Disaster Recovery Documentation for Agencies Preparation
Instructions (.pdf, 71k) |
65A |
Agency Designation Letter
The Letter provides the California Office of Information Security with an contact for the agency's Information Security Officer, Disaster Recovery Coordinator, and Privacy Program Coordinator designees. This letter is due by January 31st of each year and within 10 business days if changes occur.
| Topic | Section |
|---|---|
| Agency Designation Letter (.doc) | 70A |
Agency Disaster Recovery Program Certification and Schedule for Submission of Disaster Recovery Plans
Agencies must file this Certification every year. Use of the Cross Reference Worksheet is optional if the DRP submission follows the SIMM 65A format. (See SAM Section 5355.2)
| Topic | Section |
|---|---|
| Agency Disaster Recovery Program Certification (.doc) |
70B |
| Schedule for Submission of Disaster Recovery Plans | NA |
Continuity Planning
The following material provides access to the California Emergency Management Agency's Continuity Planning program.
| Topic | Section |
|---|---|
| Cal EMA Continuity Planning | Continuity Planning |
Guidelines
The following material provides guidance and assistance on disaster recovery planning.
| Topic | Published Date |
|---|---|
| Disaster Recovery Plan Checklist (.pdf, 74k) | November 2009 |
| Go RIM for Policy Section 5355 - Disaster Recovery Management | March 2008 |
| Frequently Asked Questions | November 2008 |
Other Resources
| Topic |
|---|
| DR Coordinator Meeting Materials |
| Cal EMA Planning and Preparedness Division |
| Cal EMA Plans and Publications |
| Cal EMA Training and Exercise |
| EMA CSTI |
| Cal EMA Exercise Division |
| California Volunteers Citizen Corps Program for Community Preparedness |
| Rebuild Your Life - A great resource for people whose lives are turned upside down by natural disasters. |
The California Office of Information Security (Office) web site contains links to other sites that are not owned or controlled by us. The information provided at these sites does not reflect the views of this Office or indicate an endorsement of a particular company or product. Please be aware that our Office is not responsible for the security and privacy practices of such other sites.





Cyber Threat Level

