Overview

Business Continuity & Disaster Recovery

Business Continuity & Disaster Recovery Statement

PT Divistant Teknologi Indonesia (trading as "Divistant")


Last Updated: February 24, 2026


1. Introduction


PT Divistant Teknologi Indonesia ("Divistant") is committed to ensuring the continuity of our services and the protection of our clients' data and operations in the event of disruptions. This statement outlines our approach to business continuity planning (BCP) and disaster recovery (DR) to provide assurance to our clients, partners, and stakeholders.


2. Scope


Our business continuity and disaster recovery program covers:

  1. All SaaS products and cloud-based platforms operated by Divistant
  2. Managed services environments under our management
  3. Internal IT systems and infrastructure
  4. Critical business processes and operations
  5. Client data stored and processed by our systems


3. Business Continuity Objectives


Our BCP/DR program is designed to achieve the following objectives:

  1. Minimize Service Disruption: Ensure that disruptions to critical services are minimized through proactive planning and redundancy
  2. Protect Data: Safeguard client and company data against loss, corruption, or unauthorized access during disruptions
  3. Rapid Recovery: Restore normal operations as quickly as possible following a disruption
  4. Communication: Maintain clear and timely communication with clients and stakeholders during incidents
  5. Continuous Improvement: Regularly test, review, and improve our continuity plans


4. Infrastructure Resilience


We design our infrastructure with resilience in mind:

  1. Cloud-Based Architecture: Our services are hosted on enterprise-grade cloud platforms with built-in redundancy and high availability
  2. Geographic Redundancy: Critical systems and data are replicated across multiple geographic locations to protect against regional outages
  3. Load Balancing: Traffic distribution across multiple servers ensures no single point of failure
  4. Auto-Scaling: Systems automatically scale to handle increased demand and maintain performance
  5. Network Redundancy: Multiple network paths and ISP connections to prevent connectivity failures


5. Data Backup & Recovery


  1. Automated Backups: All critical data is backed up automatically on a daily basis, with more frequent backups for high-priority systems
  2. Backup Encryption: All backups are encrypted both in transit and at rest
  3. Off-Site Storage: Backup copies are stored in geographically separate locations from primary systems
  4. Recovery Testing: Backup restoration procedures are tested regularly to verify data integrity and recoverability
  5. Retention: Backup data is retained according to our data retention policies and applicable regulations


6. Recovery Objectives


We define and maintain the following recovery targets for our critical services:

  1. Recovery Time Objective (RTO): The maximum acceptable time to restore a service after a disruption. Specific RTOs are defined per service tier in our Service Level Agreement.
  2. Recovery Point Objective (RPO): The maximum acceptable amount of data loss measured in time. For most critical systems, our RPO target is 24 hours or less.


These objectives are reviewed regularly and adjusted based on evolving business needs and client requirements.


7. Incident Management & Communication


In the event of a significant disruption:

  1. Incident Command: A dedicated incident response team is activated to manage the situation
  2. Client Notification: Affected clients are notified promptly with details about the nature of the disruption, expected impact, and estimated recovery time
  3. Status Updates: Regular updates are provided throughout the incident until resolution
  4. Post-Incident Report: A detailed post-incident report is made available to affected clients, including root cause analysis and preventive measures


8. Types of Disruptions Addressed


Our BCP/DR plans address a range of potential disruptions, including:

  1. Technical Failures: Hardware failures, software bugs, database corruption
  2. Cybersecurity Incidents: Cyberattacks, ransomware, data breaches
  3. Natural Disasters: Earthquakes, floods, severe weather events
  4. Infrastructure Outages: Power failures, network outages, cloud provider issues
  5. Pandemic/Health Crises: Events requiring remote work or operational adjustments
  6. Supply Chain Disruptions: Vendor or partner service interruptions


9. Testing & Continuous Improvement


  1. Regular Testing: BCP/DR plans are tested at least annually through tabletop exercises, failover testing, and simulated disaster scenarios
  2. Lessons Learned: Findings from tests and real incidents are incorporated into plan updates
  3. Plan Reviews: Plans are reviewed and updated at least annually or when significant changes occur in our infrastructure, services, or threat landscape
  4. Employee Training: Staff are trained on their roles and responsibilities in BCP/DR scenarios


10. Contact Information


For questions about our business continuity and disaster recovery capabilities, or during an active incident:

  1. General Inquiries: divistant.com/contacts
  2. Company: PT Divistant Teknologi Indonesia, Jakarta, Indonesia