
What is ISO 22301 Business Continuity Management System (BCMS)
ISO 22301 is a standard requirement for Business Continuity Management Systems (BCMS). It specifies all the requirements to implement and improve a management system to safeguard against, decrease the likelihood of, plan, respond, and recover from disruptions when they occur.
Regardless of the size, the type of business, or sector of the company, it is exposed to a variety of interruptions. Natural disasters, political instability, terrorism, and technological failure can strike at any time and disrupt businesses. Therefore, the ISO 22301 can be used as a business continuity management system to minimize downtime and speed up recovery times during incidents.
The latest revision of ISO 22301 was revised in year 2019 – ISO 22301:2019.
Who need ISO 22301 Certification?
ISO 22301 is applicable to any kind of organization, regardless of size, industry, government, or private sector that ensures compliance with the specified business continuity policy.
Benefits of implementing ISO 22301
The several benefits of implementing ISO 22301 could be:
- Identify the company’s current and future trends
- Reduce the impacts of incidents and losses
- Keep critical functions operational during a crisis
- Meeting legal and regulatory criteria
History of ISO 22301
Business Continuity has been subject to significant changes, including influences and development in legislation and regulation. The products and recent events have all played a vital role in the ongoing evolution of Business Continuity. ISO 22301, was initially established and launched by ISO technical committee on societal security and was initially published in 2012 (ISO 22301:2012), which completely adopted the new authoring format for management system standards stated in the management system format. The second edition, which is the latest version, was launched in 2019 (ISO 22301:2019) which consisting of modifying the standard’s wording to eliminate repetitions. Besides, it is fewer mandatory documents compare to last revision. There is 1 new requirements added which is clause 6.3 planning changes for the BCMS.
Certification process of ISO 22301
The organization that plans to get ISO 22301 can follow the ISO 22301 certification process below:
- Organizations need to understand the ISO 22301 standards requirements.
- Implement the ISO 22301 requirements in the organization’s process (Fine tune the internal procedure if needed)
- Implementing the new procedure with ISO 22301 requirements
- Select Internal audit team (require competency)
- Conducting internal audit to check on the implementation towards ISO 22301 certification
- Top management review the result of ISO 22301 implementation, objective and other mentioned in the ISO 22301 standard
- Appoint Accredited Certification Body for the external audit/3rd party audit.
- Rectify the finding or non conformity from the external audit/3rd party audit if there is
- Certification Award
Related post:
