Disaster Recovery & Business Continuity
Disaster recovery and business continuity planning for European firms: RTO/RPO targets, ransomware-resilient backups, tested failover. From €1,200.
Strong disaster recovery business continuity planning decides whether a ransomware attack or a datacentre outage costs you an afternoon or your business. The time to build it is before the systems go dark, and if you are reading this in the middle of an outage, we can still help you stand services back up on a known-clean footing.
Most organisations discover the state of their recovery plan at the worst possible moment. The backup that was never restore-tested turns out to be corrupt. The runbook lives in a document on the file server that just got encrypted. Continuity is not a product you buy once, it is a capability you build and rehearse, and it is worth far more than it costs the day you actually need it.
What disaster recovery and business continuity really mean
The two terms get used interchangeably, but they answer different questions. Disaster recovery is about your systems: how you bring servers, data and services back after they fail. Business continuity is broader: how the business keeps operating, or degrades gracefully, while recovery is under way. A plan that restores a database but leaves your staff with no way to take orders has solved half the problem.
The concepts your plan is built on
Good recovery decisions rest on a few precise ideas. Get these right and the rest of the plan follows; get them vague and you will argue about priorities during the outage itself.
Business impact analysis
A business impact analysis works out what each system is actually worth to you when it is down, measured in lost revenue, stalled operations, regulatory exposure and reputational harm. It is the analysis that tells you which systems justify expensive fast recovery and which can wait. Without it, every system looks equally critical, which means none of them get the right level of protection.
Recovery time objective (RTO)
Your RTO is how long a system can be down before the impact becomes unacceptable. A payment platform might have an RTO of minutes; an internal reporting tool might tolerate a day. The RTO drives the architecture: hitting a fifteen-minute target needs warm failover, while a next-day target can rely on restoring from backup.
Recovery point objective (RPO)
Your RPO is how much data you can afford to lose, measured in time. An RPO of one hour means your backups and replication must be no more than an hour behind, or you accept losing up to an hour of work. RTO and RPO together set the cost of your recovery, because tighter targets always mean more infrastructure.
Setting targets the business will accept
We set these numbers with your leadership, not in a vacuum, because they are business decisions dressed as technical ones. A one-minute RTO sounds appealing until you see the bill for it. The right target is the honest balance between what downtime costs and what protection costs.
Backups that actually survive an attack
A backup is only real once you have restored from it. In the ransomware cases we clean up, the pattern is depressingly common: backups existed, but they were online and writable, so the attacker encrypted or deleted them along with everything else. Recovery then means paying or starting over.
The 3-2-1 rule, and beyond
The baseline is 3-2-1: three copies of your data, on two different media, with one kept off-site. Against modern ransomware we push further, to copies that are offline or immutable, so that even an attacker with domain administrator rights cannot alter them. An air-gapped or write-once copy is what stands between you and a total loss.
Tested restores
An untested backup is a guess. We restore from your backups on a schedule and time how long it takes, so your RTO is a measured number rather than an assumption. This is also where you find out that a backup silently stopped working three months ago, while there is still time to fix it.
Recovering to a known-clean state
After a cyber attack, restoring blindly can reinfect you from a backup that already contained the attacker’s foothold. We help you identify a recovery point from before the compromise and rebuild to a state you can trust, so you are not encrypting your systems a second time a week later.
Building the plan, phase by phase
We build continuity capability in a repeatable sequence, and the last phase loops back to the first, because a plan that is never revisited rots as your systems change.
Assess
We run the business impact analysis, map dependencies between systems, and identify the scenarios most likely to hurt you, from ransomware to hardware failure to a cloud region going dark. This is the evidence the whole plan is built on.
Design
We set RTO and RPO per system and design the backup, replication and failover to meet them. Where a target is expensive, we show you the trade-off so the business can decide with open eyes.
Implement
We put the backup strategy, failover arrangements and monitoring in place, and write the runbooks that turn the design into steps a stressed engineer can follow at 4am without improvising.
Test
We prove it works with tabletop exercises and, where it matters, live failover tests. A plan that has never been rehearsed is a document, not a capability.
Maintain
We keep the plan aligned with your changing estate and re-test on a cadence. New systems, new dependencies and staff turnover all erode a plan that is left alone, so maintenance is where continuity stays real.
Want this tested on your own systems?
Free 20-minute scoping call, a fixed price with no hourly surprises, and a free retest once you fix what we find.
Continuity for cyber attacks, not just fires
Traditional disaster recovery was written for floods and failed hardware. The disaster most European organisations now face is a destructive cyber attack, and it behaves differently. It targets your backups on purpose, it hides before it strikes, and it can hit every site at once through your own network.
Ransomware changes the recovery maths
Because ransomware seeks out and destroys online backups, a continuity plan that assumes clean, available backups can fail exactly when invoked. Designing for a cyber disaster means offline copies, tested clean-state recovery and a rebuild path for your identity systems, not just spare disk in another building.
Recovering the whole environment
A serious intrusion can compromise your directory services, which are the keys to everything else. Real continuity planning includes how you rebuild trusted identity and access, because restoring the file server is meaningless if the attacker still controls the accounts that reach it.
Invoking the plan when disaster strikes
A tested plan only earns its keep in the hour it is used. When an outage or an attack takes systems down, we run the recovery as a controlled incident rather than a scramble, and the same phases apply whether the cause is ransomware or a failed data centre.
Triage
We establish what is actually down, what is at risk, and which business processes are affected, then match that to the recovery priorities set in your business impact analysis. Guessing at scope wastes the very hours your RTO is measured in.
Contain
Before restoring anything, we stop the damage from spreading. For a destructive attack that means isolating affected segments and protecting the backups the attacker has not reached yet, so recovery does not simply re-infect a clean environment.
Eradicate
Where the disaster is an intrusion, we remove the attacker’s foothold and any persistence before failover. Restoring onto a compromised platform hands the environment straight back, which is how organisations end up recovering twice.
Recover
We bring systems back in the order your business impact analysis dictates, from validated clean restore points or a failover site, and verify each service works before the next one depends on it. This is where tested restores and a written runbook turn a long outage into a short one.
Harden
Once you are trading again, we close the gap that caused the disruption and feed the lessons back into the plan. A recovery that changes nothing invites the same failure, so this phase updates runbooks, backup design and monitoring.
Regulation and operational resilience
For many European organisations, continuity is no longer optional. Availability is a security property in its own right, and several frameworks now expect you to plan and prove it.
GDPR Article 32
Article 32 of the GDPR requires the ability to restore the availability and access to personal data in a timely manner after an incident, and to regularly test that ability. A tested recovery plan is part of meeting that obligation, not a nice-to-have.
DORA and NIS2
For financial entities under DORA, and for the wider set of essential and important entities under NIS2, operational resilience and continuity are explicit expectations, with testing and documentation to match. We build and evidence plans that speak to those requirements so your continuity work supports your compliance rather than duplicating it.
The 72-hour breach notification, built into the runbook
Some incidents that take you offline also expose personal data, and that carries a legal clock your continuity plan should account for. Where a breach is likely to risk people’s rights and freedoms, GDPR Article 33 requires notifying the relevant supervisory authority without undue delay and, where feasible, within 72 hours of becoming aware, and Article 34 adds a duty to inform affected individuals when the risk to them is high. We write those notification steps into the runbook itself, so the deadline is met by people following the plan rather than recalled in a panic.
What you receive
The output is a plan your own people can run without us in the room, backed by evidence that it works. Nobody wants to be reading a recovery document for the first time during the disaster it was written for.
The continuity plan and runbooks
A prioritised recovery plan with per-system RTO and RPO targets, plus step-by-step runbooks for your most likely scenarios. The runbooks are written for a tired engineer under pressure, not for an auditor, so they are concrete and ordered.
Test results you can show
Documented restore and failover test results, including how long recovery actually took against your targets. That record is what proves to a board, an insurer or a regulator that your plan is real and not aspirational.
Pricing
Continuity work is priced by the size and complexity of your estate and how much testing and implementation you want us to run. Here is the shape of a typical European engagement.
| Package | What’s included | Response time | Price |
|---|---|---|---|
| DR & BC planning | Business impact analysis, RTO/RPO targets, backup strategy and runbooks for your core systems | 2–4 weeks, scheduled | from €1,200 |
| Implementation & testing | Backup and failover build, live failover and restore testing, tabletop exercise with your team | Scoped project | from €3,000 |
| Continuity retainer | Plan kept current, periodic re-testing and priority incident response under an agreed SLA | Guaranteed by SLA | from €800/month |
| Emergency recovery | Rapid help standing services back up on a clean footing during an active outage | Same day, 24/7 | from €900 |
| Emergency support (hourly) | Hands-on recovery and rebuild work billed by the hour during an incident | Started within hours | from €180/hr |
| Custom / multi-site | Complex estates, multiple sites or regulated environments, scoped to your needs | On scoping | custom |
Every engagement is fixed-price, quoted after a free 20-minute scoping call, with no hourly surprises and a retest of the fixes included. Start emergency response
FAQ
What’s the difference between disaster recovery and business continuity?
What are RTO and RPO?
How much does disaster recovery business continuity planning cost?
How do I make backups survive ransomware?
How often should we test the plan?
Does GDPR, DORA or NIS2 require this?
Can you help right now if we’re already down?
Do you provide the backup infrastructure, or design it?
Related services
European organisations that would lose serious money or fall out of compliance if their systems went down, and want recovery targets, ransomware-resilient backups and a tested continuity plan in place before the outage rather than after it.
Security you can prove
The same standard on every engagement, big or small.
Evidence, not opinions
Every finding ships with a reproduction and proof of concept — no vague "maybe vulnerable".
Humans over scanners
Certified engineers find the logic flaws and chained attacks automated tools walk straight past.
Fixed price, free retest
You know the cost up front, and verifying the fix is part of the deal — not a second invoice.
Ready to lock this down?
Free scoping call, fixed price, free retest. Tell us what you're running and we'll take it from there — usually within one business day.
Tell us what you're running
Scoping is free. We reply within one business day, and under 30 minutes for active incidents.