1
00:00:06,480 --> 00:00:08,850
- Now in this lesson, 13.3,

2
00:00:08,850 --> 00:00:12,930
we're gonna be talking about
continuity of operations.

3
00:00:12,930 --> 00:00:14,160
Now in its simplest form

4
00:00:14,160 --> 00:00:17,070
continuity of operations is the capability

5
00:00:17,070 --> 00:00:20,220
of a business to continue
to operate in adverse

6
00:00:20,220 --> 00:00:23,790
sometimes referred to
as disaster conditions.

7
00:00:23,790 --> 00:00:25,950
Now, in a business context, disasters are

8
00:00:25,950 --> 00:00:28,980
gonna be disruptive events
that can significantly

9
00:00:28,980 --> 00:00:32,490
impact an organization's
capability to operate.

10
00:00:32,490 --> 00:00:34,590
Now the impact could be to people,

11
00:00:34,590 --> 00:00:38,640
to technologies, to facilities,
or any combination thereof.

12
00:00:38,640 --> 00:00:40,560
So in our previous lessons when we talked

13
00:00:40,560 --> 00:00:42,630
about resiliency and redundancy,

14
00:00:42,630 --> 00:00:43,980
we were really looking at kind

15
00:00:43,980 --> 00:00:46,470
of individual systems or component level

16
00:00:46,470 --> 00:00:48,570
and we talked about backup and recovery.

17
00:00:48,570 --> 00:00:52,650
It was system configurations
and specific data sets.

18
00:00:52,650 --> 00:00:55,890
Here we're really looking
at a bigger situation.

19
00:00:55,890 --> 00:00:59,580
We're saying that we may
have an event so disruptive

20
00:00:59,580 --> 00:01:02,820
that it significantly
impacts the organization's

21
00:01:02,820 --> 00:01:06,450
capability to operate,
to conduct business.

22
00:01:06,450 --> 00:01:09,630
Again, that impact could be
people, technology, facilities

23
00:01:09,630 --> 00:01:11,643
or any combination.

24
00:01:12,980 --> 00:01:16,260
Now adverse conditions
that cause the situation

25
00:01:16,260 --> 00:01:18,960
could be external,
internal, or even human.

26
00:01:18,960 --> 00:01:21,600
We could have things like
large scale geological

27
00:01:21,600 --> 00:01:25,140
or meteorological events such
as an earthquake, a storm,

28
00:01:25,140 --> 00:01:28,590
a flood, a hurricane, a
tornado, or a wildfire.

29
00:01:28,590 --> 00:01:32,430
Environmental events such
as pollution or sea rise,

30
00:01:32,430 --> 00:01:33,720
or a public health event such

31
00:01:33,720 --> 00:01:37,020
as a pandemic that we all
recently went through.

32
00:01:37,020 --> 00:01:38,220
It could be infrastructure.

33
00:01:38,220 --> 00:01:40,950
We could have major loss of
service such as electricity

34
00:01:40,950 --> 00:01:44,850
or HVAC, or water, or
significant technical issues

35
00:01:44,850 --> 00:01:47,430
with equipment or communications failure

36
00:01:47,430 --> 00:01:49,140
or they could be human base.

37
00:01:49,140 --> 00:01:51,000
They could be based on workplace accidents

38
00:01:51,000 --> 00:01:54,240
or walkouts or strikes
or civil disturbance

39
00:01:54,240 --> 00:01:59,240
or a cyber attack, or cyber
warfare, or war and terrorism.

40
00:02:00,060 --> 00:02:02,130
So there are lots of conditions

41
00:02:02,130 --> 00:02:04,530
that could be problematic, right?

42
00:02:04,530 --> 00:02:06,510
That we'd consider adverse conditions

43
00:02:06,510 --> 00:02:07,950
and we need to make sure

44
00:02:07,950 --> 00:02:09,930
that we can continue to operate, right?

45
00:02:09,930 --> 00:02:12,210
Continue to operate as a business

46
00:02:12,210 --> 00:02:14,343
in these adverse conditions.

47
00:02:15,900 --> 00:02:17,970
So continuity of operations

48
00:02:17,970 --> 00:02:19,950
is really a shared responsibility.

49
00:02:19,950 --> 00:02:23,040
It doesn't belong to just any one person

50
00:02:23,040 --> 00:02:25,140
or any one group.

51
00:02:25,140 --> 00:02:27,540
The board of directors or
the equivalent is responsible

52
00:02:27,540 --> 00:02:30,690
for the approval of continuity
of operations policies

53
00:02:30,690 --> 00:02:34,410
as well as oversight of strategy,
development and testing.

54
00:02:34,410 --> 00:02:36,510
Management is responsible
for the development

55
00:02:36,510 --> 00:02:39,960
of strategic and tactical
plans and procedures,

56
00:02:39,960 --> 00:02:44,070
external relationships,
training, testing, and audit.

57
00:02:44,070 --> 00:02:46,680
And then individual business
units are responsible

58
00:02:46,680 --> 00:02:49,923
for developing unit specific procedures.

59
00:02:51,930 --> 00:02:54,900
Now the objective of continuity
of operations planning,

60
00:02:54,900 --> 00:02:57,990
again is to prepare for
continued operations.

61
00:02:57,990 --> 00:03:00,090
And in most organizations
that's gonna fall

62
00:03:00,090 --> 00:03:01,920
into really two buckets.

63
00:03:01,920 --> 00:03:05,100
Recovery and operations.

64
00:03:05,100 --> 00:03:07,620
Disaster recovery plans, DRPs,

65
00:03:07,620 --> 00:03:11,370
focus on the recovery and the
restoration of technology,

66
00:03:11,370 --> 00:03:13,830
physical plan and personnel.

67
00:03:13,830 --> 00:03:17,100
Where business continuity
or operations plans

68
00:03:17,100 --> 00:03:19,050
focuses on the overall strategy

69
00:03:19,050 --> 00:03:22,500
for sustaining the business
activity during a disaster

70
00:03:22,500 --> 00:03:24,570
or even during a smaller interruption

71
00:03:24,570 --> 00:03:27,360
and during the subsequent recovery period.

72
00:03:27,360 --> 00:03:28,500
So recovery is all about how

73
00:03:28,500 --> 00:03:30,960
do we get everything fixed and back going?

74
00:03:30,960 --> 00:03:34,200
Continuity is how do
we continue to provide

75
00:03:34,200 --> 00:03:37,140
essential services during this recovery

76
00:03:37,140 --> 00:03:38,433
and resumption period.

77
00:03:40,800 --> 00:03:41,850
So looking at the continuity

78
00:03:41,850 --> 00:03:44,370
of operations planning workflow,

79
00:03:44,370 --> 00:03:46,620
we really need to think
about this as a project

80
00:03:46,620 --> 00:03:49,320
and have a good project manager assigned.

81
00:03:49,320 --> 00:03:50,550
Then we're gonna do what's known

82
00:03:50,550 --> 00:03:53,190
as a BIA, a business impact analysis,

83
00:03:53,190 --> 00:03:56,520
and we'll be talking about
that a little bit later on.

84
00:03:56,520 --> 00:03:58,350
After we've finished our BIA, right?

85
00:03:58,350 --> 00:04:00,120
We've got the outcome of our BIA,

86
00:04:00,120 --> 00:04:03,300
then we will start developing our plans.

87
00:04:03,300 --> 00:04:05,940
We'll then develop our procedures.

88
00:04:05,940 --> 00:04:08,760
We then wanna make sure that
we're training everybody

89
00:04:08,760 --> 00:04:10,503
on what they're supposed to do.

90
00:04:11,640 --> 00:04:13,200
Then we want to test,

91
00:04:13,200 --> 00:04:15,690
we wanna make sure that
our plans and procedures

92
00:04:15,690 --> 00:04:18,420
are working the way we
expect them to work,

93
00:04:18,420 --> 00:04:21,600
and that everybody understands their roles

94
00:04:21,600 --> 00:04:23,730
and their responsibilities.

95
00:04:23,730 --> 00:04:25,110
And on a regular basis

96
00:04:25,110 --> 00:04:26,970
we wanna bring an audit to audit

97
00:04:26,970 --> 00:04:29,130
our plans and our procedures,

98
00:04:29,130 --> 00:04:31,950
to look at them and say,
okay, are they complete?

99
00:04:31,950 --> 00:04:33,060
Are they comprehensive?

100
00:04:33,060 --> 00:04:34,170
Have we done our training?

101
00:04:34,170 --> 00:04:35,730
Have we done our testing?

102
00:04:35,730 --> 00:04:39,540
And are they aligned or
strategically aligned

103
00:04:39,540 --> 00:04:41,433
with the needs of the organization?

104
00:04:43,410 --> 00:04:45,570
And then on a very regular basis

105
00:04:45,570 --> 00:04:49,410
we're going to have to do
maintenance, review, and update.

106
00:04:49,410 --> 00:04:51,090
And for most organizations

107
00:04:51,090 --> 00:04:54,570
that's at a minimum, an annual process.

108
00:04:54,570 --> 00:04:57,810
But very often whenever something
new has been added, right?

109
00:04:57,810 --> 00:05:01,380
We have a new process,
we have a new division,

110
00:05:01,380 --> 00:05:05,160
we have a new factory
floor, whatever it is,

111
00:05:05,160 --> 00:05:08,190
we're gonna go and update those plans,

112
00:05:08,190 --> 00:05:10,320
both our disaster recovery

113
00:05:10,320 --> 00:05:12,363
and our business continuity plans.

114
00:05:14,460 --> 00:05:17,580
Now, our plans, disaster
recovery and business continuity,

115
00:05:17,580 --> 00:05:20,490
should always be maintained
in a state of readiness.

116
00:05:20,490 --> 00:05:22,290
So we wanna keep them up to date,

117
00:05:22,290 --> 00:05:23,640
as we just mentioned.

118
00:05:23,640 --> 00:05:24,750
We also wanna make sure that people

119
00:05:24,750 --> 00:05:25,950
know what they're supposed to do.

120
00:05:25,950 --> 00:05:28,020
So personnel should be
trained to fulfill their roles

121
00:05:28,020 --> 00:05:30,270
and responsibilities within the plan.

122
00:05:30,270 --> 00:05:32,760
Our plans and strategies are exercised

123
00:05:32,760 --> 00:05:34,650
to validate their content.

124
00:05:34,650 --> 00:05:37,110
Our system and our system
components have been tested

125
00:05:37,110 --> 00:05:38,640
on a scheduled basis to ensure

126
00:05:38,640 --> 00:05:41,550
their recoverability and operability.

127
00:05:41,550 --> 00:05:44,040
And we have plan examination
and auditing again

128
00:05:44,040 --> 00:05:46,953
to ensure compliance
with business objectives.

129
00:05:48,810 --> 00:05:50,760
Now the objective of testing

130
00:05:50,760 --> 00:05:52,800
is to evaluate the continuity

131
00:05:52,800 --> 00:05:55,260
of operations strategies,
plans and procedures,

132
00:05:55,260 --> 00:05:59,100
meaning our BCP and our DRP.

133
00:05:59,100 --> 00:06:01,080
Not institutional knowledge.

134
00:06:01,080 --> 00:06:03,510
So what we're not looking
to do when we test is say,

135
00:06:03,510 --> 00:06:05,970
okay you guys just
innately know what to do

136
00:06:05,970 --> 00:06:07,410
based on institutional knowledge,

137
00:06:07,410 --> 00:06:08,760
just use your own judgment.

138
00:06:08,760 --> 00:06:10,500
It's not what we wanna do.

139
00:06:10,500 --> 00:06:12,060
Whenever we're doing
testing, we're saying,

140
00:06:12,060 --> 00:06:14,520
okay, let's pull out
our strategies or plans,

141
00:06:14,520 --> 00:06:16,770
our procedures and follow them.

142
00:06:16,770 --> 00:06:18,540
Because really what we're trying to do,

143
00:06:18,540 --> 00:06:22,623
is to evaluate the strategies,
plans, and procedures.

144
00:06:23,520 --> 00:06:25,710
Now the outcome of
testing should be strategy

145
00:06:25,710 --> 00:06:29,160
plan, and procedures,
modification if necessary,

146
00:06:29,160 --> 00:06:31,950
and an enhanced participant familiarity

147
00:06:31,950 --> 00:06:33,813
with all facets of the plan.

148
00:06:35,160 --> 00:06:37,110
So there are three primary
testing approaches you

149
00:06:37,110 --> 00:06:38,460
wanna be able to identify,

150
00:06:38,460 --> 00:06:42,750
tabletop, failover, and simulation.

151
00:06:42,750 --> 00:06:46,440
A tabletop testing is just a
hypothetical group workshop.

152
00:06:46,440 --> 00:06:47,730
So we bring a bunch of people into

153
00:06:47,730 --> 00:06:50,490
departmental and altogether and it focuses

154
00:06:50,490 --> 00:06:53,430
on the application of
plans and procedures.

155
00:06:53,430 --> 00:06:55,200
So we say, okay, here's the scenario.

156
00:06:55,200 --> 00:06:56,520
Pull out your plan.

157
00:06:56,520 --> 00:06:57,480
What would we use?

158
00:06:57,480 --> 00:06:58,350
How would we do it?

159
00:06:58,350 --> 00:06:59,760
We're just talking through it.

160
00:06:59,760 --> 00:07:01,650
And part of talking through that

161
00:07:01,650 --> 00:07:04,323
is identifying gaps in our preparedness.

162
00:07:05,820 --> 00:07:07,110
In a failover,

163
00:07:07,110 --> 00:07:10,290
we're doing testing to
evaluate the ability

164
00:07:10,290 --> 00:07:13,080
of a particular system or application

165
00:07:13,080 --> 00:07:14,820
to recover from a failure,

166
00:07:14,820 --> 00:07:18,900
and then to switch to a
backup or secondary system

167
00:07:18,900 --> 00:07:21,630
or component seamlessly.

168
00:07:21,630 --> 00:07:23,610
So failover testing, we're really think

169
00:07:23,610 --> 00:07:25,710
of this as much more
technical testing, right?

170
00:07:25,710 --> 00:07:26,730
That we're just saying,

171
00:07:26,730 --> 00:07:29,490
what happens if we have a system

172
00:07:29,490 --> 00:07:30,840
or an application that fails?

173
00:07:30,840 --> 00:07:33,600
How well can it recover from that failure?

174
00:07:33,600 --> 00:07:35,610
And can we switch to a backup

175
00:07:35,610 --> 00:07:37,800
or secondary component seamlessly?

176
00:07:37,800 --> 00:07:39,500
And ultimately can we switch back?

177
00:07:40,440 --> 00:07:43,080
In simulation, DR and or BCP plans

178
00:07:43,080 --> 00:07:45,390
are executed in a controlled environment.

179
00:07:45,390 --> 00:07:47,310
So we're actually running through,

180
00:07:47,310 --> 00:07:49,350
physically running through our plans

181
00:07:49,350 --> 00:07:52,920
to simulate a real world
disaster or outage.

182
00:07:52,920 --> 00:07:54,390
Now, simulations can be done

183
00:07:54,390 --> 00:07:56,340
at different levels of granularity.

184
00:07:56,340 --> 00:07:58,290
It could be done at a business unit level,

185
00:07:58,290 --> 00:08:01,320
it could be done at a campus level,

186
00:08:01,320 --> 00:08:03,603
it could be done at an enterprise level.

187
00:08:04,530 --> 00:08:05,610
Now, another approach,

188
00:08:05,610 --> 00:08:07,800
and this requires a lot of investment

189
00:08:07,800 --> 00:08:09,750
and a high degree of maturity

190
00:08:09,750 --> 00:08:12,570
is to have business continuity
parallel processing.

191
00:08:12,570 --> 00:08:14,550
Parallel processing is a pretty complex

192
00:08:14,550 --> 00:08:17,220
and costly strategy
that can be employed to

193
00:08:17,220 --> 00:08:19,740
ensure uninterrupted business operations

194
00:08:19,740 --> 00:08:23,070
during unexpected events or disruption.

195
00:08:23,070 --> 00:08:24,930
Now in parallel processing requires

196
00:08:24,930 --> 00:08:26,550
that we have the implementation

197
00:08:26,550 --> 00:08:29,310
of parallel processing systems,

198
00:08:29,310 --> 00:08:32,490
that can handle critical
business functions simultaneously

199
00:08:32,490 --> 00:08:35,700
or in parallel, really
minimizing the impact

200
00:08:35,700 --> 00:08:38,793
of disruption on overall operations.

201
00:08:41,370 --> 00:08:42,240
And we've already mentioned

202
00:08:42,240 --> 00:08:43,530
that we need to do a plan audit.

203
00:08:43,530 --> 00:08:45,300
So let's just reinforce that.

204
00:08:45,300 --> 00:08:46,980
A plan audit provides management

205
00:08:46,980 --> 00:08:50,130
with an independent assessment
of the effectiveness

206
00:08:50,130 --> 00:08:53,790
of plans and procedures
and training and testing

207
00:08:53,790 --> 00:08:57,183
as well as strategic alignment assurance.

208
00:08:58,170 --> 00:08:59,790
Now the type and the extent of auditing

209
00:08:59,790 --> 00:09:01,140
that's gonna be done really depends

210
00:09:01,140 --> 00:09:02,490
on the risk involved,

211
00:09:02,490 --> 00:09:04,650
management's assurance requirements

212
00:09:04,650 --> 00:09:07,560
and the availability of audit resources.

213
00:09:07,560 --> 00:09:09,930
But don't forget about audit, right?

214
00:09:09,930 --> 00:09:11,790
It's really important
that we bring audit in

215
00:09:11,790 --> 00:09:14,640
because audit has this independent view

216
00:09:14,640 --> 00:09:16,440
of what should be done.

217
00:09:16,440 --> 00:09:19,230
That my friends brings us
to a three second challenge.

218
00:09:19,230 --> 00:09:20,220
You know what to do?

219
00:09:20,220 --> 00:09:22,170
Five questions, three seconds each.

220
00:09:22,170 --> 00:09:23,003
Let's do it.

221
00:09:23,940 --> 00:09:25,890
Term used to describe disruptive events

222
00:09:25,890 --> 00:09:27,300
that significantly impact

223
00:09:27,300 --> 00:09:29,943
an organization's capability to operate.

224
00:09:31,050 --> 00:09:33,453
One, two, three.

225
00:09:34,410 --> 00:09:35,660
That would be a disaster.

226
00:09:37,050 --> 00:09:38,130
Number two.

227
00:09:38,130 --> 00:09:40,290
This type of plan describes plans

228
00:09:40,290 --> 00:09:42,690
and procedures for
recovering and restoring

229
00:09:42,690 --> 00:09:46,770
technology, facilities, and personnel.

230
00:09:46,770 --> 00:09:50,160
Keyword here is recovering and restoring.

231
00:09:50,160 --> 00:09:51,873
One, two, three,

232
00:09:52,860 --> 00:09:55,293
it's gonna be a disaster recovery plan.

233
00:09:56,160 --> 00:09:57,090
Number three.

234
00:09:57,090 --> 00:09:59,430
This type of plan describes
the overall strategy

235
00:09:59,430 --> 00:10:01,683
for sustaining business activities.

236
00:10:02,610 --> 00:10:04,503
One, two, three.

237
00:10:05,430 --> 00:10:07,863
It's gonna be a business continuity plan.

238
00:10:09,630 --> 00:10:10,590
Number four.

239
00:10:10,590 --> 00:10:12,810
A hypothetical group workshop that focuses

240
00:10:12,810 --> 00:10:16,593
on the application of
plans and procedures.

241
00:10:17,490 --> 00:10:19,173
One, two, three.

242
00:10:20,250 --> 00:10:21,600
That's gonna be a tabletop.

243
00:10:22,560 --> 00:10:24,270
And lastly, number five.

244
00:10:24,270 --> 00:10:26,340
Independent assessment
of the effectiveness

245
00:10:26,340 --> 00:10:28,953
of plans, procedures,
training, and testing.

246
00:10:30,390 --> 00:10:31,560
I know everybody's gonna get this one.

247
00:10:31,560 --> 00:10:32,580
One, two, three.

248
00:10:32,580 --> 00:10:33,993
And that's gonna be audit.

249
00:10:35,160 --> 00:10:36,480
So let's do a security-in-action

250
00:10:36,480 --> 00:10:38,100
of continuity of operations.

251
00:10:38,100 --> 00:10:39,030
And if you're thinking,

252
00:10:39,030 --> 00:10:40,440
I'd really love more detail

253
00:10:40,440 --> 00:10:41,790
about how all this works,

254
00:10:41,790 --> 00:10:44,070
don't fear, because in a later lesson,

255
00:10:44,070 --> 00:10:45,840
we're gonna dive right back into

256
00:10:45,840 --> 00:10:48,240
disaster recovery and
business continuity planning,

257
00:10:48,240 --> 00:10:50,610
and in particular how to do a BIA.

258
00:10:50,610 --> 00:10:54,900
But for right now let's talk
about continuity of operations.

259
00:10:54,900 --> 00:10:56,700
After months of work your organization

260
00:10:56,700 --> 00:11:00,180
has completed an overhaul of
its disaster recovery plan

261
00:11:00,180 --> 00:11:02,550
and its business continuity plan.

262
00:11:02,550 --> 00:11:05,310
And your boss is eager to see if it works

263
00:11:05,310 --> 00:11:07,923
and wants to schedule a simulation test.

264
00:11:08,940 --> 00:11:10,530
That's the first thing he wants to do.

265
00:11:10,530 --> 00:11:11,880
Get that simulation test.

266
00:11:11,880 --> 00:11:13,140
Let's see if it works.

267
00:11:13,140 --> 00:11:14,790
And my question to you is,

268
00:11:14,790 --> 00:11:17,130
is this a reasonable approach?

269
00:11:17,130 --> 00:11:18,840
So just a recap, right?

270
00:11:18,840 --> 00:11:20,880
We've been doing this for months of work.

271
00:11:20,880 --> 00:11:24,803
We've just recently completed
this complete overhaul

272
00:11:24,803 --> 00:11:27,150
of our disaster recovery

273
00:11:27,150 --> 00:11:29,400
and our business continuity plan.

274
00:11:29,400 --> 00:11:30,990
And our boss is really excited about it,

275
00:11:30,990 --> 00:11:32,280
says let's "See if it works".

276
00:11:32,280 --> 00:11:34,500
Let's do a simulation test.

277
00:11:34,500 --> 00:11:35,333
Do you agree?

278
00:11:35,333 --> 00:11:36,750
Do you think that's the right thing to do?

279
00:11:36,750 --> 00:11:38,610
Is it a reasonable approach?

280
00:11:38,610 --> 00:11:40,230
Do you have any alternate suggestions?

281
00:11:40,230 --> 00:11:41,430
Go ahead and put me on pause,

282
00:11:41,430 --> 00:11:42,480
put some notes down,

283
00:11:42,480 --> 00:11:43,350
and then come back and

284
00:11:43,350 --> 00:11:45,250
we'll talk about training and testing,

285
00:11:46,230 --> 00:11:48,230
which should give you a couple of hints.

286
00:11:50,130 --> 00:11:52,470
All right well a simulation
test requires a maturity

287
00:11:52,470 --> 00:11:54,180
level that's achieved over time.

288
00:11:54,180 --> 00:11:58,050
It's definitely not gonna
be a good starting point.

289
00:11:58,050 --> 00:12:02,040
The new plan should be first
introduced organization-wide,

290
00:12:02,040 --> 00:12:03,720
and applicable training provided

291
00:12:03,720 --> 00:12:05,370
so everybody knows what's in the plan

292
00:12:05,370 --> 00:12:09,360
and most importantly knows what
their responsibilities are.

293
00:12:09,360 --> 00:12:11,610
And then the usual order of testing

294
00:12:11,610 --> 00:12:13,860
is going to be to do tabletop,

295
00:12:13,860 --> 00:12:18,180
maybe some failover, and then simulation.

296
00:12:18,180 --> 00:12:21,540
So we really want to do a lot of pre-work

297
00:12:21,540 --> 00:12:24,120
and not just jump right
into our simulation.

298
00:12:24,120 --> 00:12:25,650
It's cool that your boss is excited

299
00:12:25,650 --> 00:12:28,110
and wants to see how it works,

300
00:12:28,110 --> 00:12:31,260
but we need to introduce, publish, train,

301
00:12:31,260 --> 00:12:35,940
and then take our testing
in the appropriate steps.

302
00:12:35,940 --> 00:12:38,550
Doing that security-in-action.

303
00:12:38,550 --> 00:12:39,870
There's your word cloud.

304
00:12:39,870 --> 00:12:41,970
Not particularly big but important.

305
00:12:41,970 --> 00:12:43,950
Make sure you can really define

306
00:12:43,950 --> 00:12:45,570
all of these terms and understand them.

307
00:12:45,570 --> 00:12:49,083
And again, we are gonna revisit
them all in a later lesson.

308
00:12:49,980 --> 00:12:52,470
When you're ready, we've
got a quiz coming up.

309
00:12:52,470 --> 00:12:53,420
I'll see you there.
