




Most businesses don't know. The average UK ransomware recovery time is 21 days. Our clients recover in hours, not weeks – because we've planned for it, built the recovery infrastructure, and tested it.

Having a backup is not the same as having a working recovery. If you've never restored from backup, you don't know if it works. We test recovery procedures regularly and document the results.

Call the IT guy" is not a plan. A disaster recovery plan documents exactly what happens: who does what, in what order, with what resources, and how long it takes.

Business continuity is broader than just IT. It covers communication plans, alternative working arrangements, key contact lists, supplier dependencies, and the steps to keep your business running during a disruption.
Which systems must be recovered first?
What's the maximum acceptable downtime for each system?
What's the maximum acceptable data loss (RPO)?
What are the dependencies between systems?
What are the commercial and regulatory consequences of extended downtime?
Microsoft 365 Backup email, SharePoint, OneDrive, Teams (Microsoft doesn't back up your data – we do)
Server Backup on-premise server backup with offsite replication
Cloud Backup Azure and cloud workload protection
Offsite Replication your data is replicated to a secure offsite location
Backup Monitoring 24/7 monitoring with alerting on failed or incomplete backups
Recovery procedures for every critical system
Recovery time objectives (RTO) and recovery point objectives (RPO)
Roles and responsibilities during a disaster
Communication plan – who is contacted, in what order
Escalation procedures
Vendor and supplier contact details
Step-by-step recovery runbooks
Tabletop exercises walk through the plan with your team
Partial recovery tests restore individual systems to verify backup integrity
Full recovery tests simulate a complete disaster and execute the recovery plan
Test results documented with findings and improvements
Annual testing as a minimum, quarterly for regulated businesses
Remote working capability assessment
Alternative communication methods
Key person and supplier dependency mapping
Incident response procedures
Insurance and regulatory notification requirements
Regular plan reviews and updates
A document you can take to any IT provider. Even if you don’t choose us, you’ll know exactly what your environment needs.
| Scenario | Without a DR Plan | With a Cyber Kaizen DR Plan |
|---|---|---|
| Ransomware attack | 21 days average recovery. Possible data loss. Ransom demand. | Hours. Restore from immutable backup. No ransom paid. |
| Server hardware failure | Days to source, rebuild, restore. | Hours. Restore to replacement hardware or cloud. |
| Accidental data deletion | Depends if it's in the recycle bin. Often unrecoverable. | Minutes. Restore from backup to the exact point before deletion. |
| Office fire or flood | Weeks. Hardware destroyed. Data potentially lost. | Hours to days. Offsite backups. Remote working capability. |
| Microsoft 365 data loss | Microsoft retains data for 30–93 days, then it's gone permanently. | Full M365 backup with extended retention. Restore any time. |
Book a consultation to assess your current backup and recovery capability. We’ll identify the gaps and show you what a proper disaster recovery plan looks like for your business.
Call us: 0800 208 8456 | Email: hello@cyberkaizen.co.uk
✓ Documented plans · ✓ Tested recovery · ✓ Immutable backups · ✓ CISSP certified