This chapter introduces the three-phase Operational Resilience Planning Methodology adopted by Security Bank Corporation to strengthen its ability to anticipate, withstand, respond to, and recover from disruptive events.
As a leading financial institution operating in an increasingly complex regulatory and risk landscape, Security Bank must ensure that its critical business services remain resilient under a wide range of operational stresses, including cyber threats, technology failures, third-party disruptions, and external crises.
The methodology presented in this chapter provides a structured, practical approach to embedding resilience into the bank’s operations, aligned with regulatory expectations, including the Bangko Sentral ng Pilipinas (BSP) guidelines on operational resilience.
The methodology is organised into three interrelated phases—Plan, Implement, and Sustain—each consisting of five structured stages.
The Implement phase translates strategy into actionable outcomes by identifying critical business services, mapping dependencies, setting impact tolerances, conducting scenario testing, and incorporating lessons learned.
Finally, the Sustain phase ensures that operational resilience becomes an integral and enduring capability through cultural transformation, communication, continuous training, self-assessment, and independent review.
Together, these phases form a continuous lifecycle that enables Security Bank to maintain resilience in a dynamic operating environment.
The purpose of this chapter is to provide readers with a clear and structured overview of Security Bank’s Operational Resilience Planning Methodology, enabling them to understand how resilience can be systematically designed, implemented, and sustained within a financial institution.
It sets the foundation for subsequent chapters by presenting a cohesive framework that integrates governance, risk management, business continuity, and operational resilience into a unified approach.
By the end of this chapter, readers are expected to gain a comprehensive understanding of the three-phase methodology and its fifteen stages, and how each stage contributes to building a resilient organisation.
This includes recognising the importance of aligning resilience initiatives with regulatory expectations, identifying critical services and their dependencies, establishing measurable impact tolerances, and embedding resilience into organisational culture and continuous improvement practices.
Ultimately, the chapter prepares readers to apply this methodology at Security Bank or similar institutions to achieve robust, sustainable operational resilience.
The Plan phase establishes the strategic and governance foundation required to build operational resilience.
It ensures that Security Bank clearly understands its current maturity, identifies areas for improvement, and aligns its resilience objectives with its overall business strategy and risk appetite.
The five stages are:
The Implement phase operationalises the strategy by focusing on identifying, analysing, and testing critical business services. It ensures that Security Bank can maintain service continuity within defined impact tolerances during disruptions.
The five stages are:
The Sustain phase ensures that operational resilience is continuously maintained, enhanced, and embedded into the organisational culture of Security Bank.
It transforms resilience from a one-time initiative into an ongoing discipline.
The five stages are:
The three-phase Operational Resilience Planning Methodology provides Security Bank with a comprehensive and structured approach to building, implementing, and sustaining resilience across its operations.
By integrating strategic planning, operational execution, and continuous improvement, the bank is better positioned to safeguard its critical business services against disruption while meeting regulatory expectations and maintaining customer trust.
This methodology is not a linear process but a continuous cycle of enhancement, where insights from implementation and sustainment feed back into planning.
As such, it equips Security Bank with the agility and discipline required to navigate an evolving risk landscape and ensures that operational resilience remains a core organisational capability rather than a standalone initiative.
Blogs marked [x] are under construction
| ebook 2: Implementing Operational Resilience for Security Bank Corporation |
||||||
| C1 | C2 [x] | C8 [x] | C14 [x] | |||
| |
||||||
| ebook 2: Implementing Operational Resilience for Security Bank Corporation | ||||||
| BSP OR Policy | eBook 1 | eBook 2 | eBook 3 | C20 [x] | C21 [x] | |
| |
||||||
| "Plan" Phase of the Operational Resilience Planning Methodology |
||||||
| C2 [x] | C3 [x] | C4 [x] | C5 [x] | C6 [x] | C7 [x] | |
| "Implement" Phase of the Operational Resilience Planning Methodology | ||||||
| C8 [x] | C9 [x] | C10 [x] | C11 [x] | C12 [x] | C13 [x] | |
| "Sustain" Phase of the Operational Resilience Planning Methodology | ||||||
| C14 [x] | C15 [x] | C16 [x] | C17 [x] | C18 [x] | C19 [x] | |
For organisations looking to accelerate their journey, BCM Institute’s training and certification programs, including the OR-5000 Operational Resilience Expert Implementer course, provide in-depth insights and practical toolkits for effectively embedding this model.
Gain Competency: For organisations looking to accelerate their journey, BCM Institute’s training and certification programs, including the OR-5000 Operational Resilience Expert Implementer course, provide in-depth insights and practical toolkits for effectively embedding this model.
To learn more about the course and schedule, click the buttons below for the OR-300 Operational Resilience Implementer course and the OR-5000 Operational Resilience Expert Implementer course.
|
If you have any questions, click to contact us. |
||
|
|