Hurricane IT Preparedness Checklist for Bahamian Businesses

A practical technology checklist to help Bahamian businesses protect data, prepare for outages, maintain communications, and recover essential systems after severe weather.
Hurricane preparation is not only about shutters, supplies, and insurance. For a modern business, it is also about protecting the systems, data, communications, and access people need to keep essential operations moving.
A company may avoid physical damage and still experience days of disruption because its internet connection failed, a server shut down incorrectly, critical files were stored on one computer, or no one knew which system needed to be restored first.
For businesses in Nassau and throughout The Bahamas, technology continuity should be part of hurricane planning—not an afterthought once conditions deteriorate.
1. Identify the technology your business cannot operate without
Start by listing the systems required for the most important business activities. Depending on your organization, that may include:
- Microsoft 365 email and files
- Accounting, payroll, or property-management software
- Point-of-sale and payment systems
- Internet connections and business Wi-Fi
- Security cameras and access-control systems
- Shared drives, servers, and cloud applications
- Business phone systems
- Vendor portals and banking access
Do not treat every system as equally urgent. Decide what must be available within the first few hours, what can wait until the next business day, and what can remain offline for several days.
This recovery order helps your team avoid wasting limited time and power on lower-priority systems while essential services remain unavailable.
2. Confirm that backups are complete and recoverable
A green “backup successful” notification is not enough. Your business should know:
- Which devices, servers, cloud accounts, and applications are protected
- How frequently backups run
- Where backup copies are stored
- Who receives failure alerts
- How long information is retained
- When a real restore was last tested
At least one backup copy should be protected from the same failure that could affect the primary system. If both copies are in the same building, connected to the same equipment, or accessible using the same compromised account, one event may affect everything.
The Cybersecurity and Infrastructure Security Agency recommends maintaining protected backups and regularly testing their availability and integrity. This is valuable for both natural-disaster recovery and cyber incidents such as ransomware.
Before severe weather, perform a controlled restore test of a representative file or system. The purpose is to prove that the recovery process works—not merely that backup software is running.
3. Protect equipment from power problems
Technology is vulnerable before, during, and after a storm. Voltage changes, abrupt shutdowns, generator transitions, and repeated outages can damage equipment or corrupt data.
Review the protection available for:
- Firewalls, switches, and Wi-Fi equipment
- Servers and network storage
- Desktop workstations
- Phone systems
- Security and access-control equipment
- Internet-provider equipment
Battery backup units can provide time for equipment to remain stable during brief interruptions or shut down safely during a longer outage. They should not be treated as permanent power sources. Check battery age, capacity, alerts, and the load attached to each unit.
If a generator is part of the continuity plan, identify which technology circuits it supports and how equipment will behave when transferring between utility and generator power.
4. Document the network before conditions worsen
If a device fails after an outage, your team should not have to guess how the network was connected.
Maintain an up-to-date record of:
- Internet service providers and account numbers
- Firewall, switch, and wireless access-point models
- Equipment locations
- Network and Wi-Fi names
- Vendor support contacts
- Warranty information
- Important license details
- The people authorized to approve emergency work
Passwords and recovery codes should be stored securely rather than written directly into general network diagrams.
Take clear photographs of network racks and cable connections where appropriate. Label critical equipment and cables. Simple documentation can reduce recovery time when a replacement device must be installed quickly.
5. Prepare for internet and communications disruption
Cloud systems are useful only when staff can reach them. Consider what happens if the primary internet connection is unavailable.
Depending on the importance of connectivity, options may include:
- A secondary internet provider
- Cellular failover
- Approved mobile hotspots
- Cloud-based phone routing
- An emergency contact tree
- A pre-agreed customer communication channel
Confirm that key employees can access email, files, and business applications from approved devices outside the office. Test multi-factor authentication before the storm. Make sure employees know how to access backup codes without weakening account security.
Avoid waiting until an outage to discover that a manager’s authentication method depends on a phone number, device, or email account they can no longer access.
6. Secure remote access instead of improvising it
In an emergency, teams often create risky workarounds to regain access quickly. Examples include sharing passwords, using personal email for company documents, exposing internal systems directly to the internet, or installing unapproved remote-access tools.
Prepare secure remote access in advance. Apply multi-factor authentication, limit access to the people who need it, keep systems updated, and document how access can be revoked.
Staff should also understand which information may be stored on personal devices and which business processes must wait for approved systems to return.
7. Decide when systems will be shut down
Not every office should keep all equipment running until the last possible moment.
Create a shutdown checklist that identifies:
- Who makes the shutdown decision
- Which applications must be closed first
- How users will be notified
- Which devices remain operational
- Which systems require a controlled shutdown
- How the office will confirm that backups completed
- Who is allowed to restart equipment afterward
Keep a copy of this checklist somewhere accessible even if the network is offline.
8. Plan the recovery before the outage
Recovery should be deliberate. Before reconnecting or powering up equipment, check for water intrusion, unstable power, damaged cabling, unusual smells, and visible equipment damage. Do not energize technology in an unsafe environment.
Once the location is safe, restore services according to the priorities established earlier. Confirm internet and network stability, security controls, data availability, communications, and user access. Record failures and decisions as recovery proceeds.
After operations return, review what worked and what did not. Update the plan while the experience is still fresh.
A practical readiness checklist
Before the next period of severe weather, confirm that your business can answer “yes” to these questions:
- Do we know which systems must recover first?
- Have our backups completed successfully?
- Have we tested a restore?
- Are critical accounts protected with multi-factor authentication?
- Do key systems have appropriate power protection?
- Is our network documented?
- Can essential staff work securely from another location?
- Do we have an alternative communications method?
- Is there a written shutdown and restart procedure?
- Does everyone know who is responsible for each decision?
If several answers are uncertain, the business has identified useful work to complete before an emergency.
Build a continuity plan suited to your business
Every organization has different systems, dependencies, locations, and recovery expectations. A small professional office will not need the same plan as a hotel, retail operation, homeowners association, or multi-site property manager.
TEHQUE Solutions helps Bahamian organizations review technology risks, verify backups, document critical systems, improve power and connectivity resilience, and create practical recovery priorities.
Learn more about backup and disaster recovery services in The Bahamas, or request a technology risk assessment.