SlideShare una empresa de Scribd logo
1 de 23
Societal Security – the new standard ISO 22301 for
Business Continuity Management
Luigi Brusamolino, Managing Director Southern EMEA - BSI




Copyright © 2012 BSI. All rights reserved.
Who is BSI? – 10 fast facts


                                                                                                        No owners/
                                                                      Global independent
                              Founded in                              business services
                                                                                                      shareholders …
                                                                                                         all profit
                                1901                                     organization               reinvested into the
                                                                                                         business




         Standards,
   assessment, testing,                                      National                  #1 certification                 >2,500 staff
   certification, training,                                 Standards                  body in the UK                  and >50% non-
           software
                                                          Body in the UK                 and USA                            UK


                           53 offices                                 64,000 clients                       £244.9m
                        located around                                    in 147                          revenue in
                           the world                                    countries                            2011



                        Copyright © 2012 BSI. All rights reserved.                                                                     2
What is business continuity?


• “Business continuity is the capability of an organization to
  continue delivery of products or services at acceptable
  predefined levels following disruptive incident.”        (ISO
  22301 – Societal security – Terminology)




             Copyright © 2012 BSI. All rights reserved.       3
Examples of disruptions

• Extreme weather conditions
• Loss of IT/Cyber Security
• Loss of people
• Supply chain disruption
• Transport Disruption
• Loss of access to site


 The dependency on offshore outsourcing, the use of just-in-time sourcing, and
 the reliance on global supply chains make businesses highly vulnerable.

              Copyright © 2012 BSI. All rights reserved.                         4
Organisations which are at risk




• 72% of companies surveyed had experienced at least one disruption to their
  supply chain.
• 83% had experienced disruption over all.
              Copyright © 2012 BSI. All rights reserved.                       5
6

                    Are organisations ready for the next crisis?
              83% AGREE BCM is important/very important yet…*


• 61% of CEO’s surveyed say they have BCM plans in place
• 50% of organizations with BCM report that it includes plans for handling the
  media
• 45% of organizations with BCM do not require any supply chain partners to
  have their own plans
• 50% of organizations with BCM exercise their plans once a year.
• Around 25% fail to exercise their plans on a regular basis.

* BSI/BCI/Cabinet Office survey 2012 with Chartered Management Institute (CMI)




                    Copyright © 2012 BSI. All rights reserved.                   6
2012 BCM survey – key findings


• The business case for BCM – 81 per cent of managers whose
  organisations activated their Business Continuity Management (BCM)
  arrangements in the last 12 months agree that it effectively reduced disruption.
  The same number agree that the benefits outweighed the cost.
• Adoption of BCM – Overall 61 per cent of managers report that their
  organisation has BCM in place, up from 58 per cent last year and 49 per cent in
  2010.




             Copyright © 2012 BSI. All rights reserved.                          7
2012 BCM survey – key findings


• Drivers – the three biggest external drivers of BCM were corporate
  governance (42%), demand from existing or potential customers (37%) and
  regulation (33%).
• Disruptive events of 2011 – four in ten were affected by the BlackBerry
  outage in 2011, 55% of organisations by public sector strikes and 26% by the
  summer riots*
• Disruptive weather – severe weather conditions caused disruption to 49% of
  organisations over the last year.




*UK specific disruptive events of 2011

                    Copyright © 2012 BSI. All rights reserved.               8
9
International development of BCM standard

  PAS 56                                                   BS 25999   ISO 22301
  2003                                                       2006        2012
  • Started as a “PAS” (Publicly Available Specification) by BSI
  • Became British Standard BS 25999 in 2006
  • New ISO 22301 (16 May 2012)




              Copyright © 2012 BSI. All rights reserved.                          9
Introducing ISO 22301


• ISO 22301 Societal Security - Business
  continuity management system - Requirements.
• Management system standard
• All core business continuity elements in BS
  25999-2 are present in ISO 22301




            Copyright © 2012 BSI. All rights reserved.   10
Societal Security – ISO 223xx family standard


The term Societal Security was first uded by Barry Buzan in the book People, States
and Fear: National Security Problems in International Relations (1991).
ISO defines Societal Security as the challenge an organization, group of organizations or
society may face before, during and after a disruptive event.
Societal Security ISO 223xx family standards integrates a range of interconnected
disciplines: asset protection, security, risk management, preparedness, crisis management,
emergy management, business continuity management , recovery management and
disaster management.

In order to assure sustainability of operations and maintain resilience, competitiveness and
performance, organizations must have an integrated framework and system to
manage risks.


                Copyright © 2012 BSI. All rights reserved.   29/08/12                      11
B2S – Business to Society paradigma
The term Societal Security and the importance of the
economic, political, social environment ini which an organization
operate, re-define the business priorities and focus from traditional
B2C, B2B models to a B2S (Business-to-Society) model in
which the importance of interested parties (supply chain,
governments, local authorities, citizens,..) is critical to the success
and sustainability of an organization.




            Copyright © 2012 BSI. All rights reserved.   29/08/12     12
What is ISO 22301?


• Provides the requirements for a business continuity management system
  (BCMS)
• Based on global BCM best practice
• Created in response to strong interest in the original British Standard BS 25999-
  2 and other regional standards
• BS 25999-2 key source text in its development
• For those certified to or aligned with BS 25999-2, the additional requirements
  are not onerous




             Copyright © 2012 BSI. All rights reserved.                          13
Societal Security and BCM?


• ISO 22301 now comes under a wider societal
  security remit
• This acknowledges the important role that BCM
  has to play in protecting society and ensuring our
  ability to respond to incidents, emergencies and
  disasters.




             Copyright © 2012 BSI. All rights reserved.   14
Comparing ISO 22301 and BS 25999-2


Includes all core requirements
• The ‘Plan Do Check Act’ cycle                                     atte
                                                                        e
                                                                                             w dd
                                                                 rra          tt          ieew aann
• Business continuity policy                                 pee nndd eenn
                                                          oop aa em         m      r i
                                                                                       vvi r
                                                                                    ree ti toor      k
• Business impact analysis                                         mp
                                                                      pl le
                                                                                   Mo
                                                                                      onn
                                                                                                h ec
                                                                 Im D o            M
• Risk assessment and risk treatments
                                                               I                              C

• Exercising
• Business continuity plans and strategy                                                     vee
                                                                           shh            oov
• Internal audit                                                  bbl li is               r
                                                                                       ppr nndd ai nn
                                                                                                   i
                                                              ttaa                    m
• Management review
                                                             s                     i im aa ntta c t
                                                           Es
                                                           E
                                                                l            an             aai
                                                                                                in A
• Non conformity and corrective action                              P                     MM

• Improvement actions

             Copyright © 2012 BSI. All rights reserved.                                                  15
Key changes and aspects


Notable shifts in emphasis from BS 25999-2:2007:
• First standard written in accordance with Guide 83
• Change in the way an organization is defined (extended enterprise)
• Clearer expectations on management
• Preventive action has been replaced with “actions to address risks and
  opportunities” and features earlier
• ISO 22301 puts a much greater emphasis on setting the objectives, monitoring
  performance and metrics – aligning BC to top management strategic thinking




             Copyright © 2012 BSI. All rights reserved.                      16
Key changes and aspects


• 22301 requires more careful planning for and preparing the resources needed
  for ensuring business continuity
• Communication elements more demanding and there is a responsibility to the
  wider community defined
• BIA similar but with some changes to terminology
• There is a stronger link to the organizations approach to risk (integrated risk-
  management)
• To reflect the societal security approach some new terminology has been
  introduced, see ISO 22300




              Copyright © 2012 BSI. All rights reserved.                             17
BCM standard global adoption




          Copyright © 2012 BSI. All rights reserved.   18
Multi-sector adoption




             Copyright © 2012 BSI. All rights reserved.   19
Benefits of ISO 22301


• Allows organizations to benefit from global BCM
  best practice, regardless of whether they are
  planning to certify or not
• Provides a foundation and a common
  vocabulary for BCM best practice and guidance
• Consensus standards like ISO 22301 represent
  the input and recommendations of hundreds of
  BC professionals and industry experts
• Saves you having to reinvent the wheel




             Copyright © 2012 BSI. All rights reserved.   20
Benefits of certification


• Certification offers many advantages, including:
• It challenges your BCM programme and organization to reach a higher level of
  maturity and preparedness
• Supply chain requirement
• Prequalification for tenders
• Provides a competitive advantage
• Signifies a base level of readiness and a commitment and seriousness about
  BCM




              Copyright © 2012 BSI. All rights reserved.                         21
Questions?




             Copyright © 2012 BSI. All rights reserved.   22
Contact us


Address:       BSI

               Via Fara, 35

               Milano 20124

Telephone:     +39 02 6679091

Email:         Marketing.italy@bsigroup.com

Links:         www.bsigroup.it




             Copyright © 2012 BSI. All rights reserved.   23

Más contenido relacionado

La actualidad más candente

Business Continuity - Business Risk & Management
Business Continuity - Business Risk & ManagementBusiness Continuity - Business Risk & Management
Business Continuity - Business Risk & ManagementAndrew Styles
 
Business continuity management system
Business continuity management systemBusiness continuity management system
Business continuity management systemsubbusai82
 
Assess Your Business Continuity Management Process
Assess Your Business Continuity Management ProcessAssess Your Business Continuity Management Process
Assess Your Business Continuity Management ProcessAnand Subramaniam
 
Implementing a Business Continuity Management System in Telecoms
Implementing a Business Continuity Management System in TelecomsImplementing a Business Continuity Management System in Telecoms
Implementing a Business Continuity Management System in TelecomsGlobal Risk Forum GRFDavos
 
Governance, risk and compliance framework
Governance, risk and compliance frameworkGovernance, risk and compliance framework
Governance, risk and compliance frameworkCeyeap
 
Konsep Fundamental ISO 22301_BCMS & Crisis Management _ Materi Training BCMS...
Konsep Fundamental  ISO 22301_BCMS & Crisis Management _ Materi Training BCMS...Konsep Fundamental  ISO 22301_BCMS & Crisis Management _ Materi Training BCMS...
Konsep Fundamental ISO 22301_BCMS & Crisis Management _ Materi Training BCMS...Kanaidi ken
 
2022 Webinar - ISO 27001 Certification.pdf
2022 Webinar - ISO 27001 Certification.pdf2022 Webinar - ISO 27001 Certification.pdf
2022 Webinar - ISO 27001 Certification.pdfControlCase
 
ISO 22301:2019 BCMS Awareness
ISO 22301:2019 BCMS AwarenessISO 22301:2019 BCMS Awareness
ISO 22301:2019 BCMS AwarenessAli Fuad R
 
How to select the best business continuity strategy and solution?
How to select the best business continuity strategy and solution?How to select the best business continuity strategy and solution?
How to select the best business continuity strategy and solution?PECB
 
PECB Webinar: ISO 31000 - The Benchmark for Risk Management in uncertain times
PECB Webinar: ISO 31000 - The Benchmark for Risk Management in uncertain timesPECB Webinar: ISO 31000 - The Benchmark for Risk Management in uncertain times
PECB Webinar: ISO 31000 - The Benchmark for Risk Management in uncertain timesPECB
 
02 Practical Strategies of Conducting BIA
02 Practical Strategies of Conducting BIA02 Practical Strategies of Conducting BIA
02 Practical Strategies of Conducting BIABCM Institute
 
Enterprise Risk Management - Aligning Risk with Strategy and Performance
Enterprise Risk Management - Aligning Risk with Strategy and PerformanceEnterprise Risk Management - Aligning Risk with Strategy and Performance
Enterprise Risk Management - Aligning Risk with Strategy and PerformanceResolver Inc.
 
NQA ISO 22301 Business Continuity Checklist
NQA ISO 22301 Business Continuity ChecklistNQA ISO 22301 Business Continuity Checklist
NQA ISO 22301 Business Continuity ChecklistNQA
 
ISO 37301 Compliance Management Systems
ISO 37301 Compliance Management SystemsISO 37301 Compliance Management Systems
ISO 37301 Compliance Management SystemsNimonik
 
Governance, Risk & Compliance Management Solution
Governance, Risk & Compliance Management SolutionGovernance, Risk & Compliance Management Solution
Governance, Risk & Compliance Management SolutionRishabh Software
 

La actualidad más candente (20)

Business Continuity - Business Risk & Management
Business Continuity - Business Risk & ManagementBusiness Continuity - Business Risk & Management
Business Continuity - Business Risk & Management
 
Business continuity management system
Business continuity management systemBusiness continuity management system
Business continuity management system
 
Assess Your Business Continuity Management Process
Assess Your Business Continuity Management ProcessAssess Your Business Continuity Management Process
Assess Your Business Continuity Management Process
 
ISO 27001_2022 What has changed 2.0 for ISACA.pdf
ISO 27001_2022 What has changed 2.0 for ISACA.pdfISO 27001_2022 What has changed 2.0 for ISACA.pdf
ISO 27001_2022 What has changed 2.0 for ISACA.pdf
 
Implementing a Business Continuity Management System in Telecoms
Implementing a Business Continuity Management System in TelecomsImplementing a Business Continuity Management System in Telecoms
Implementing a Business Continuity Management System in Telecoms
 
Governance, risk and compliance framework
Governance, risk and compliance frameworkGovernance, risk and compliance framework
Governance, risk and compliance framework
 
Konsep Fundamental ISO 22301_BCMS & Crisis Management _ Materi Training BCMS...
Konsep Fundamental  ISO 22301_BCMS & Crisis Management _ Materi Training BCMS...Konsep Fundamental  ISO 22301_BCMS & Crisis Management _ Materi Training BCMS...
Konsep Fundamental ISO 22301_BCMS & Crisis Management _ Materi Training BCMS...
 
2022 Webinar - ISO 27001 Certification.pdf
2022 Webinar - ISO 27001 Certification.pdf2022 Webinar - ISO 27001 Certification.pdf
2022 Webinar - ISO 27001 Certification.pdf
 
GRC
GRCGRC
GRC
 
ISO 22301:2019 BCMS Awareness
ISO 22301:2019 BCMS AwarenessISO 22301:2019 BCMS Awareness
ISO 22301:2019 BCMS Awareness
 
How to select the best business continuity strategy and solution?
How to select the best business continuity strategy and solution?How to select the best business continuity strategy and solution?
How to select the best business continuity strategy and solution?
 
PECB Webinar: ISO 31000 - The Benchmark for Risk Management in uncertain times
PECB Webinar: ISO 31000 - The Benchmark for Risk Management in uncertain timesPECB Webinar: ISO 31000 - The Benchmark for Risk Management in uncertain times
PECB Webinar: ISO 31000 - The Benchmark for Risk Management in uncertain times
 
02 Practical Strategies of Conducting BIA
02 Practical Strategies of Conducting BIA02 Practical Strategies of Conducting BIA
02 Practical Strategies of Conducting BIA
 
Enterprise Risk Management - Aligning Risk with Strategy and Performance
Enterprise Risk Management - Aligning Risk with Strategy and PerformanceEnterprise Risk Management - Aligning Risk with Strategy and Performance
Enterprise Risk Management - Aligning Risk with Strategy and Performance
 
NQA ISO 22301 Business Continuity Checklist
NQA ISO 22301 Business Continuity ChecklistNQA ISO 22301 Business Continuity Checklist
NQA ISO 22301 Business Continuity Checklist
 
ISO 37001 Anti-Bribery Management System
ISO 37001 Anti-Bribery Management SystemISO 37001 Anti-Bribery Management System
ISO 37001 Anti-Bribery Management System
 
27001 awareness Training
27001 awareness Training27001 awareness Training
27001 awareness Training
 
ISO 27001 How to use the ISMS Implementation Toolkit.pdf
ISO 27001 How to use the ISMS Implementation Toolkit.pdfISO 27001 How to use the ISMS Implementation Toolkit.pdf
ISO 27001 How to use the ISMS Implementation Toolkit.pdf
 
ISO 37301 Compliance Management Systems
ISO 37301 Compliance Management SystemsISO 37301 Compliance Management Systems
ISO 37301 Compliance Management Systems
 
Governance, Risk & Compliance Management Solution
Governance, Risk & Compliance Management SolutionGovernance, Risk & Compliance Management Solution
Governance, Risk & Compliance Management Solution
 

Similar a Societal Security – the new standard ISO 22301 for Business Continuity Management

Business Continuity Management: How to get started
Business Continuity Management: How to get startedBusiness Continuity Management: How to get started
Business Continuity Management: How to get startedIT Governance Ltd
 
ISO/IEC 27001 vs ISO 22301 vs ISO 31000: What you need to know
ISO/IEC 27001 vs ISO 22301 vs ISO 31000: What you need to knowISO/IEC 27001 vs ISO 22301 vs ISO 31000: What you need to know
ISO/IEC 27001 vs ISO 22301 vs ISO 31000: What you need to knowPECB
 
PECB Webinar: Rethinking Business Continuity: Applying ISO 22301 to improve r...
PECB Webinar: Rethinking Business Continuity: Applying ISO 22301 to improve r...PECB Webinar: Rethinking Business Continuity: Applying ISO 22301 to improve r...
PECB Webinar: Rethinking Business Continuity: Applying ISO 22301 to improve r...PECB
 
Sustainable event management: A practitione's guide ( workshop for C&IT Forum)
Sustainable event management: A practitione's guide ( workshop for C&IT Forum) Sustainable event management: A practitione's guide ( workshop for C&IT Forum)
Sustainable event management: A practitione's guide ( workshop for C&IT Forum) Ardea International
 
Managing and Implementing a National BCM Programme: A World's First
Managing and Implementing a National BCM Programme: A World's FirstManaging and Implementing a National BCM Programme: A World's First
Managing and Implementing a National BCM Programme: A World's FirstBCM Institute
 
Renewed focus of Business and Practitioners on BCM (in Asia)
Renewed focus of Business and Practitioners on BCM (in Asia)Renewed focus of Business and Practitioners on BCM (in Asia)
Renewed focus of Business and Practitioners on BCM (in Asia)Continuity and Resilience
 
Business Continuity Management System ISO 22301:2012 An Overview
Business Continuity Management System ISO 22301:2012 An OverviewBusiness Continuity Management System ISO 22301:2012 An Overview
Business Continuity Management System ISO 22301:2012 An OverviewAhmed Riad .
 
Iso 22301 2012 bcm
Iso 22301 2012 bcmIso 22301 2012 bcm
Iso 22301 2012 bcmfaisal_ss
 
iso22301businesscontinuitymanagement-140207090550-phpapp01.pdf
iso22301businesscontinuitymanagement-140207090550-phpapp01.pdfiso22301businesscontinuitymanagement-140207090550-phpapp01.pdf
iso22301businesscontinuitymanagement-140207090550-phpapp01.pdfVictorNagesparan
 
Renewed Focus of Businesses and Practitioners on BCM (in Asia)
Renewed Focus of Businesses and Practitioners on BCM (in Asia)Renewed Focus of Businesses and Practitioners on BCM (in Asia)
Renewed Focus of Businesses and Practitioners on BCM (in Asia)Continuity and Resilience
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity ManagementECC International
 
PCI IT Conference 2009
PCI IT Conference 2009PCI IT Conference 2009
PCI IT Conference 2009guest43efa2
 
Module 2 - Energy Efficiency: Accounting and reporting considerations
Module 2 - Energy Efficiency: Accounting and reporting considerationsModule 2 - Energy Efficiency: Accounting and reporting considerations
Module 2 - Energy Efficiency: Accounting and reporting considerationsPaul Brown
 
Mci sr 2011report_summary_lit
Mci sr 2011report_summary_litMci sr 2011report_summary_lit
Mci sr 2011report_summary_litMCI Brasil
 

Similar a Societal Security – the new standard ISO 22301 for Business Continuity Management (20)

Business Continuity Management: How to get started
Business Continuity Management: How to get startedBusiness Continuity Management: How to get started
Business Continuity Management: How to get started
 
ISO 22301, The first ever ISO for BCM - Presented at BCI Qatar Forum
ISO 22301, The first ever ISO for BCM - Presented at BCI Qatar ForumISO 22301, The first ever ISO for BCM - Presented at BCI Qatar Forum
ISO 22301, The first ever ISO for BCM - Presented at BCI Qatar Forum
 
Business Continuity Audit
Business Continuity AuditBusiness Continuity Audit
Business Continuity Audit
 
ISO/IEC 27001 vs ISO 22301 vs ISO 31000: What you need to know
ISO/IEC 27001 vs ISO 22301 vs ISO 31000: What you need to knowISO/IEC 27001 vs ISO 22301 vs ISO 31000: What you need to know
ISO/IEC 27001 vs ISO 22301 vs ISO 31000: What you need to know
 
PECB Webinar: Rethinking Business Continuity: Applying ISO 22301 to improve r...
PECB Webinar: Rethinking Business Continuity: Applying ISO 22301 to improve r...PECB Webinar: Rethinking Business Continuity: Applying ISO 22301 to improve r...
PECB Webinar: Rethinking Business Continuity: Applying ISO 22301 to improve r...
 
Sustainable event management: A practitione's guide ( workshop for C&IT Forum)
Sustainable event management: A practitione's guide ( workshop for C&IT Forum) Sustainable event management: A practitione's guide ( workshop for C&IT Forum)
Sustainable event management: A practitione's guide ( workshop for C&IT Forum)
 
Managing and Implementing a National BCM Programme: A World's First
Managing and Implementing a National BCM Programme: A World's FirstManaging and Implementing a National BCM Programme: A World's First
Managing and Implementing a National BCM Programme: A World's First
 
Renewed focus of Business and Practitioners on BCM (in Asia)
Renewed focus of Business and Practitioners on BCM (in Asia)Renewed focus of Business and Practitioners on BCM (in Asia)
Renewed focus of Business and Practitioners on BCM (in Asia)
 
Business Continuity Management System ISO 22301:2012 An Overview
Business Continuity Management System ISO 22301:2012 An OverviewBusiness Continuity Management System ISO 22301:2012 An Overview
Business Continuity Management System ISO 22301:2012 An Overview
 
Iso 22301 2012 bcm
Iso 22301 2012 bcmIso 22301 2012 bcm
Iso 22301 2012 bcm
 
iso22301businesscontinuitymanagement-140207090550-phpapp01.pdf
iso22301businesscontinuitymanagement-140207090550-phpapp01.pdfiso22301businesscontinuitymanagement-140207090550-phpapp01.pdf
iso22301businesscontinuitymanagement-140207090550-phpapp01.pdf
 
Renewed Focus of Businesses and Practitioners on BCM (in Asia)
Renewed Focus of Businesses and Practitioners on BCM (in Asia)Renewed Focus of Businesses and Practitioners on BCM (in Asia)
Renewed Focus of Businesses and Practitioners on BCM (in Asia)
 
Business Continuity Management
Business Continuity ManagementBusiness Continuity Management
Business Continuity Management
 
PCI IT conference 2009
PCI IT conference 2009PCI IT conference 2009
PCI IT conference 2009
 
PCI IT Conference 2009
PCI IT Conference 2009PCI IT Conference 2009
PCI IT Conference 2009
 
Growth & Development in BCM
Growth & Development in BCMGrowth & Development in BCM
Growth & Development in BCM
 
Module 2 - Energy Efficiency: Accounting and reporting considerations
Module 2 - Energy Efficiency: Accounting and reporting considerationsModule 2 - Energy Efficiency: Accounting and reporting considerations
Module 2 - Energy Efficiency: Accounting and reporting considerations
 
Keeping Benefits Management simple, alive and workable in BT
Keeping Benefits Management simple, alive and workable in BT Keeping Benefits Management simple, alive and workable in BT
Keeping Benefits Management simple, alive and workable in BT
 
Keeping benefits management simple, workable, and alive in BT
Keeping benefits management simple, workable, and alive in BTKeeping benefits management simple, workable, and alive in BT
Keeping benefits management simple, workable, and alive in BT
 
Mci sr 2011report_summary_lit
Mci sr 2011report_summary_litMci sr 2011report_summary_lit
Mci sr 2011report_summary_lit
 

Más de Global Risk Forum GRFDavos

Disaster Risk Management Knowledge Centre, Brian Doherty
Disaster Risk Management Knowledge Centre, Brian DohertyDisaster Risk Management Knowledge Centre, Brian Doherty
Disaster Risk Management Knowledge Centre, Brian DohertyGlobal Risk Forum GRFDavos
 
Disaster risk reduction and nursing - human science research the view of surv...
Disaster risk reduction and nursing - human science research the view of surv...Disaster risk reduction and nursing - human science research the view of surv...
Disaster risk reduction and nursing - human science research the view of surv...Global Risk Forum GRFDavos
 
Global alliance of disaster research institutes (GADRI) discussion session, A...
Global alliance of disaster research institutes (GADRI) discussion session, A...Global alliance of disaster research institutes (GADRI) discussion session, A...
Global alliance of disaster research institutes (GADRI) discussion session, A...Global Risk Forum GRFDavos
 
Towards a safe, secure and sustainable energy supply the role of resilience i...
Towards a safe, secure and sustainable energy supply the role of resilience i...Towards a safe, secure and sustainable energy supply the role of resilience i...
Towards a safe, secure and sustainable energy supply the role of resilience i...Global Risk Forum GRFDavos
 
Making Hard Choices An Analysis of Settlement Choices and Willingness to Retu...
Making Hard Choices An Analysis of Settlement Choices and Willingness to Retu...Making Hard Choices An Analysis of Settlement Choices and Willingness to Retu...
Making Hard Choices An Analysis of Settlement Choices and Willingness to Retu...Global Risk Forum GRFDavos
 
The Relocation Challenges in Coastal Urban Centers Options and Limitations, A...
The Relocation Challenges in Coastal Urban Centers Options and Limitations, A...The Relocation Challenges in Coastal Urban Centers Options and Limitations, A...
The Relocation Challenges in Coastal Urban Centers Options and Limitations, A...Global Risk Forum GRFDavos
 
C&A Save the Children Urban DRR Project, Ray KANCHARLA
C&A Save the Children Urban DRR Project, Ray KANCHARLAC&A Save the Children Urban DRR Project, Ray KANCHARLA
C&A Save the Children Urban DRR Project, Ray KANCHARLAGlobal Risk Forum GRFDavos
 
Involving the Mining Sector in Achieving Land Degradation Neutrality, Simone ...
Involving the Mining Sector in Achieving Land Degradation Neutrality, Simone ...Involving the Mining Sector in Achieving Land Degradation Neutrality, Simone ...
Involving the Mining Sector in Achieving Land Degradation Neutrality, Simone ...Global Risk Forum GRFDavos
 
Disaster Risk Reduction and Nursing - Human Science research the view of surv...
Disaster Risk Reduction and Nursing - Human Science research the view of surv...Disaster Risk Reduction and Nursing - Human Science research the view of surv...
Disaster Risk Reduction and Nursing - Human Science research the view of surv...Global Risk Forum GRFDavos
 
Training and awareness raising in Critical Infrastructure Protection & Resili...
Training and awareness raising in Critical Infrastructure Protection & Resili...Training and awareness raising in Critical Infrastructure Protection & Resili...
Training and awareness raising in Critical Infrastructure Protection & Resili...Global Risk Forum GRFDavos
 
IDRC Davos 2016 - Workshop Awareness Raising, Education and Training - Capaci...
IDRC Davos 2016 - Workshop Awareness Raising, Education and Training - Capaci...IDRC Davos 2016 - Workshop Awareness Raising, Education and Training - Capaci...
IDRC Davos 2016 - Workshop Awareness Raising, Education and Training - Capaci...Global Risk Forum GRFDavos
 
Global Alliance of Disaster Research Institutes - Hirokazu TATANO
Global Alliance of Disaster Research Institutes - Hirokazu TATANOGlobal Alliance of Disaster Research Institutes - Hirokazu TATANO
Global Alliance of Disaster Research Institutes - Hirokazu TATANOGlobal Risk Forum GRFDavos
 
Capacity Development for DRR, Beatrice PROGIDA
Capacity Development for DRR, Beatrice PROGIDACapacity Development for DRR, Beatrice PROGIDA
Capacity Development for DRR, Beatrice PROGIDAGlobal Risk Forum GRFDavos
 
Dynamic factors influencing the post-disaster resettlement success Lessons fr...
Dynamic factors influencing the post-disaster resettlement success Lessons fr...Dynamic factors influencing the post-disaster resettlement success Lessons fr...
Dynamic factors influencing the post-disaster resettlement success Lessons fr...Global Risk Forum GRFDavos
 
Consequences of the Armed Conflict as a Stressor of Climate Change in Colombi...
Consequences of the Armed Conflict as a Stressor of Climate Change in Colombi...Consequences of the Armed Conflict as a Stressor of Climate Change in Colombi...
Consequences of the Armed Conflict as a Stressor of Climate Change in Colombi...Global Risk Forum GRFDavos
 
Disaster Risk Perception in Cameroon and its Implications for the Rehabilitat...
Disaster Risk Perception in Cameroon and its Implications for the Rehabilitat...Disaster Risk Perception in Cameroon and its Implications for the Rehabilitat...
Disaster Risk Perception in Cameroon and its Implications for the Rehabilitat...Global Risk Forum GRFDavos
 
Systematic Knowledge Sharing of Natural Hazard Damages in Public-private Part...
Systematic Knowledge Sharing of Natural Hazard Damages in Public-private Part...Systematic Knowledge Sharing of Natural Hazard Damages in Public-private Part...
Systematic Knowledge Sharing of Natural Hazard Damages in Public-private Part...Global Risk Forum GRFDavos
 
Exploring the Effectiveness of Humanitarian NGO-Private Sector Collaborations...
Exploring the Effectiveness of Humanitarian NGO-Private Sector Collaborations...Exploring the Effectiveness of Humanitarian NGO-Private Sector Collaborations...
Exploring the Effectiveness of Humanitarian NGO-Private Sector Collaborations...Global Risk Forum GRFDavos
 
Can UK Water Service Providers Manage Risk and Resilience as Part of a Multi-...
Can UK Water Service Providers Manage Risk and Resilience as Part of a Multi-...Can UK Water Service Providers Manage Risk and Resilience as Part of a Multi-...
Can UK Water Service Providers Manage Risk and Resilience as Part of a Multi-...Global Risk Forum GRFDavos
 
A Holistic Approach Towards International Disaster Resilient Architecture by ...
A Holistic Approach Towards International Disaster Resilient Architecture by ...A Holistic Approach Towards International Disaster Resilient Architecture by ...
A Holistic Approach Towards International Disaster Resilient Architecture by ...Global Risk Forum GRFDavos
 

Más de Global Risk Forum GRFDavos (20)

Disaster Risk Management Knowledge Centre, Brian Doherty
Disaster Risk Management Knowledge Centre, Brian DohertyDisaster Risk Management Knowledge Centre, Brian Doherty
Disaster Risk Management Knowledge Centre, Brian Doherty
 
Disaster risk reduction and nursing - human science research the view of surv...
Disaster risk reduction and nursing - human science research the view of surv...Disaster risk reduction and nursing - human science research the view of surv...
Disaster risk reduction and nursing - human science research the view of surv...
 
Global alliance of disaster research institutes (GADRI) discussion session, A...
Global alliance of disaster research institutes (GADRI) discussion session, A...Global alliance of disaster research institutes (GADRI) discussion session, A...
Global alliance of disaster research institutes (GADRI) discussion session, A...
 
Towards a safe, secure and sustainable energy supply the role of resilience i...
Towards a safe, secure and sustainable energy supply the role of resilience i...Towards a safe, secure and sustainable energy supply the role of resilience i...
Towards a safe, secure and sustainable energy supply the role of resilience i...
 
Making Hard Choices An Analysis of Settlement Choices and Willingness to Retu...
Making Hard Choices An Analysis of Settlement Choices and Willingness to Retu...Making Hard Choices An Analysis of Settlement Choices and Willingness to Retu...
Making Hard Choices An Analysis of Settlement Choices and Willingness to Retu...
 
The Relocation Challenges in Coastal Urban Centers Options and Limitations, A...
The Relocation Challenges in Coastal Urban Centers Options and Limitations, A...The Relocation Challenges in Coastal Urban Centers Options and Limitations, A...
The Relocation Challenges in Coastal Urban Centers Options and Limitations, A...
 
C&A Save the Children Urban DRR Project, Ray KANCHARLA
C&A Save the Children Urban DRR Project, Ray KANCHARLAC&A Save the Children Urban DRR Project, Ray KANCHARLA
C&A Save the Children Urban DRR Project, Ray KANCHARLA
 
Involving the Mining Sector in Achieving Land Degradation Neutrality, Simone ...
Involving the Mining Sector in Achieving Land Degradation Neutrality, Simone ...Involving the Mining Sector in Achieving Land Degradation Neutrality, Simone ...
Involving the Mining Sector in Achieving Land Degradation Neutrality, Simone ...
 
Disaster Risk Reduction and Nursing - Human Science research the view of surv...
Disaster Risk Reduction and Nursing - Human Science research the view of surv...Disaster Risk Reduction and Nursing - Human Science research the view of surv...
Disaster Risk Reduction and Nursing - Human Science research the view of surv...
 
Training and awareness raising in Critical Infrastructure Protection & Resili...
Training and awareness raising in Critical Infrastructure Protection & Resili...Training and awareness raising in Critical Infrastructure Protection & Resili...
Training and awareness raising in Critical Infrastructure Protection & Resili...
 
IDRC Davos 2016 - Workshop Awareness Raising, Education and Training - Capaci...
IDRC Davos 2016 - Workshop Awareness Raising, Education and Training - Capaci...IDRC Davos 2016 - Workshop Awareness Raising, Education and Training - Capaci...
IDRC Davos 2016 - Workshop Awareness Raising, Education and Training - Capaci...
 
Global Alliance of Disaster Research Institutes - Hirokazu TATANO
Global Alliance of Disaster Research Institutes - Hirokazu TATANOGlobal Alliance of Disaster Research Institutes - Hirokazu TATANO
Global Alliance of Disaster Research Institutes - Hirokazu TATANO
 
Capacity Development for DRR, Beatrice PROGIDA
Capacity Development for DRR, Beatrice PROGIDACapacity Development for DRR, Beatrice PROGIDA
Capacity Development for DRR, Beatrice PROGIDA
 
Dynamic factors influencing the post-disaster resettlement success Lessons fr...
Dynamic factors influencing the post-disaster resettlement success Lessons fr...Dynamic factors influencing the post-disaster resettlement success Lessons fr...
Dynamic factors influencing the post-disaster resettlement success Lessons fr...
 
Consequences of the Armed Conflict as a Stressor of Climate Change in Colombi...
Consequences of the Armed Conflict as a Stressor of Climate Change in Colombi...Consequences of the Armed Conflict as a Stressor of Climate Change in Colombi...
Consequences of the Armed Conflict as a Stressor of Climate Change in Colombi...
 
Disaster Risk Perception in Cameroon and its Implications for the Rehabilitat...
Disaster Risk Perception in Cameroon and its Implications for the Rehabilitat...Disaster Risk Perception in Cameroon and its Implications for the Rehabilitat...
Disaster Risk Perception in Cameroon and its Implications for the Rehabilitat...
 
Systematic Knowledge Sharing of Natural Hazard Damages in Public-private Part...
Systematic Knowledge Sharing of Natural Hazard Damages in Public-private Part...Systematic Knowledge Sharing of Natural Hazard Damages in Public-private Part...
Systematic Knowledge Sharing of Natural Hazard Damages in Public-private Part...
 
Exploring the Effectiveness of Humanitarian NGO-Private Sector Collaborations...
Exploring the Effectiveness of Humanitarian NGO-Private Sector Collaborations...Exploring the Effectiveness of Humanitarian NGO-Private Sector Collaborations...
Exploring the Effectiveness of Humanitarian NGO-Private Sector Collaborations...
 
Can UK Water Service Providers Manage Risk and Resilience as Part of a Multi-...
Can UK Water Service Providers Manage Risk and Resilience as Part of a Multi-...Can UK Water Service Providers Manage Risk and Resilience as Part of a Multi-...
Can UK Water Service Providers Manage Risk and Resilience as Part of a Multi-...
 
A Holistic Approach Towards International Disaster Resilient Architecture by ...
A Holistic Approach Towards International Disaster Resilient Architecture by ...A Holistic Approach Towards International Disaster Resilient Architecture by ...
A Holistic Approach Towards International Disaster Resilient Architecture by ...
 

Último

Virtual-Orientation-on-the-Administration-of-NATG12-NATG6-and-ELLNA.pdf
Virtual-Orientation-on-the-Administration-of-NATG12-NATG6-and-ELLNA.pdfVirtual-Orientation-on-the-Administration-of-NATG12-NATG6-and-ELLNA.pdf
Virtual-Orientation-on-the-Administration-of-NATG12-NATG6-and-ELLNA.pdfErwinPantujan2
 
INTRODUCTION TO CATHOLIC CHRISTOLOGY.pptx
INTRODUCTION TO CATHOLIC CHRISTOLOGY.pptxINTRODUCTION TO CATHOLIC CHRISTOLOGY.pptx
INTRODUCTION TO CATHOLIC CHRISTOLOGY.pptxHumphrey A Beña
 
ANG SEKTOR NG agrikultura.pptx QUARTER 4
ANG SEKTOR NG agrikultura.pptx QUARTER 4ANG SEKTOR NG agrikultura.pptx QUARTER 4
ANG SEKTOR NG agrikultura.pptx QUARTER 4MiaBumagat1
 
ROLES IN A STAGE PRODUCTION in arts.pptx
ROLES IN A STAGE PRODUCTION in arts.pptxROLES IN A STAGE PRODUCTION in arts.pptx
ROLES IN A STAGE PRODUCTION in arts.pptxVanesaIglesias10
 
MULTIDISCIPLINRY NATURE OF THE ENVIRONMENTAL STUDIES.pptx
MULTIDISCIPLINRY NATURE OF THE ENVIRONMENTAL STUDIES.pptxMULTIDISCIPLINRY NATURE OF THE ENVIRONMENTAL STUDIES.pptx
MULTIDISCIPLINRY NATURE OF THE ENVIRONMENTAL STUDIES.pptxAnupkumar Sharma
 
Concurrency Control in Database Management system
Concurrency Control in Database Management systemConcurrency Control in Database Management system
Concurrency Control in Database Management systemChristalin Nelson
 
Influencing policy (training slides from Fast Track Impact)
Influencing policy (training slides from Fast Track Impact)Influencing policy (training slides from Fast Track Impact)
Influencing policy (training slides from Fast Track Impact)Mark Reed
 
The Contemporary World: The Globalization of World Politics
The Contemporary World: The Globalization of World PoliticsThe Contemporary World: The Globalization of World Politics
The Contemporary World: The Globalization of World PoliticsRommel Regala
 
4.18.24 Movement Legacies, Reflection, and Review.pptx
4.18.24 Movement Legacies, Reflection, and Review.pptx4.18.24 Movement Legacies, Reflection, and Review.pptx
4.18.24 Movement Legacies, Reflection, and Review.pptxmary850239
 
AUDIENCE THEORY -CULTIVATION THEORY - GERBNER.pptx
AUDIENCE THEORY -CULTIVATION THEORY -  GERBNER.pptxAUDIENCE THEORY -CULTIVATION THEORY -  GERBNER.pptx
AUDIENCE THEORY -CULTIVATION THEORY - GERBNER.pptxiammrhaywood
 
Inclusivity Essentials_ Creating Accessible Websites for Nonprofits .pdf
Inclusivity Essentials_ Creating Accessible Websites for Nonprofits .pdfInclusivity Essentials_ Creating Accessible Websites for Nonprofits .pdf
Inclusivity Essentials_ Creating Accessible Websites for Nonprofits .pdfTechSoup
 
GRADE 4 - SUMMATIVE TEST QUARTER 4 ALL SUBJECTS
GRADE 4 - SUMMATIVE TEST QUARTER 4 ALL SUBJECTSGRADE 4 - SUMMATIVE TEST QUARTER 4 ALL SUBJECTS
GRADE 4 - SUMMATIVE TEST QUARTER 4 ALL SUBJECTSJoshuaGantuangco2
 
4.16.24 Poverty and Precarity--Desmond.pptx
4.16.24 Poverty and Precarity--Desmond.pptx4.16.24 Poverty and Precarity--Desmond.pptx
4.16.24 Poverty and Precarity--Desmond.pptxmary850239
 
Grade 9 Quarter 4 Dll Grade 9 Quarter 4 DLL.pdf
Grade 9 Quarter 4 Dll Grade 9 Quarter 4 DLL.pdfGrade 9 Quarter 4 Dll Grade 9 Quarter 4 DLL.pdf
Grade 9 Quarter 4 Dll Grade 9 Quarter 4 DLL.pdfJemuel Francisco
 
Activity 2-unit 2-update 2024. English translation
Activity 2-unit 2-update 2024. English translationActivity 2-unit 2-update 2024. English translation
Activity 2-unit 2-update 2024. English translationRosabel UA
 
Student Profile Sample - We help schools to connect the data they have, with ...
Student Profile Sample - We help schools to connect the data they have, with ...Student Profile Sample - We help schools to connect the data they have, with ...
Student Profile Sample - We help schools to connect the data they have, with ...Seán Kennedy
 
Oppenheimer Film Discussion for Philosophy and Film
Oppenheimer Film Discussion for Philosophy and FilmOppenheimer Film Discussion for Philosophy and Film
Oppenheimer Film Discussion for Philosophy and FilmStan Meyer
 
Presentation Activity 2. Unit 3 transv.pptx
Presentation Activity 2. Unit 3 transv.pptxPresentation Activity 2. Unit 3 transv.pptx
Presentation Activity 2. Unit 3 transv.pptxRosabel UA
 

Último (20)

Virtual-Orientation-on-the-Administration-of-NATG12-NATG6-and-ELLNA.pdf
Virtual-Orientation-on-the-Administration-of-NATG12-NATG6-and-ELLNA.pdfVirtual-Orientation-on-the-Administration-of-NATG12-NATG6-and-ELLNA.pdf
Virtual-Orientation-on-the-Administration-of-NATG12-NATG6-and-ELLNA.pdf
 
INTRODUCTION TO CATHOLIC CHRISTOLOGY.pptx
INTRODUCTION TO CATHOLIC CHRISTOLOGY.pptxINTRODUCTION TO CATHOLIC CHRISTOLOGY.pptx
INTRODUCTION TO CATHOLIC CHRISTOLOGY.pptx
 
ANG SEKTOR NG agrikultura.pptx QUARTER 4
ANG SEKTOR NG agrikultura.pptx QUARTER 4ANG SEKTOR NG agrikultura.pptx QUARTER 4
ANG SEKTOR NG agrikultura.pptx QUARTER 4
 
ROLES IN A STAGE PRODUCTION in arts.pptx
ROLES IN A STAGE PRODUCTION in arts.pptxROLES IN A STAGE PRODUCTION in arts.pptx
ROLES IN A STAGE PRODUCTION in arts.pptx
 
MULTIDISCIPLINRY NATURE OF THE ENVIRONMENTAL STUDIES.pptx
MULTIDISCIPLINRY NATURE OF THE ENVIRONMENTAL STUDIES.pptxMULTIDISCIPLINRY NATURE OF THE ENVIRONMENTAL STUDIES.pptx
MULTIDISCIPLINRY NATURE OF THE ENVIRONMENTAL STUDIES.pptx
 
Concurrency Control in Database Management system
Concurrency Control in Database Management systemConcurrency Control in Database Management system
Concurrency Control in Database Management system
 
Influencing policy (training slides from Fast Track Impact)
Influencing policy (training slides from Fast Track Impact)Influencing policy (training slides from Fast Track Impact)
Influencing policy (training slides from Fast Track Impact)
 
The Contemporary World: The Globalization of World Politics
The Contemporary World: The Globalization of World PoliticsThe Contemporary World: The Globalization of World Politics
The Contemporary World: The Globalization of World Politics
 
4.18.24 Movement Legacies, Reflection, and Review.pptx
4.18.24 Movement Legacies, Reflection, and Review.pptx4.18.24 Movement Legacies, Reflection, and Review.pptx
4.18.24 Movement Legacies, Reflection, and Review.pptx
 
AUDIENCE THEORY -CULTIVATION THEORY - GERBNER.pptx
AUDIENCE THEORY -CULTIVATION THEORY -  GERBNER.pptxAUDIENCE THEORY -CULTIVATION THEORY -  GERBNER.pptx
AUDIENCE THEORY -CULTIVATION THEORY - GERBNER.pptx
 
Inclusivity Essentials_ Creating Accessible Websites for Nonprofits .pdf
Inclusivity Essentials_ Creating Accessible Websites for Nonprofits .pdfInclusivity Essentials_ Creating Accessible Websites for Nonprofits .pdf
Inclusivity Essentials_ Creating Accessible Websites for Nonprofits .pdf
 
GRADE 4 - SUMMATIVE TEST QUARTER 4 ALL SUBJECTS
GRADE 4 - SUMMATIVE TEST QUARTER 4 ALL SUBJECTSGRADE 4 - SUMMATIVE TEST QUARTER 4 ALL SUBJECTS
GRADE 4 - SUMMATIVE TEST QUARTER 4 ALL SUBJECTS
 
Paradigm shift in nursing research by RS MEHTA
Paradigm shift in nursing research by RS MEHTAParadigm shift in nursing research by RS MEHTA
Paradigm shift in nursing research by RS MEHTA
 
4.16.24 Poverty and Precarity--Desmond.pptx
4.16.24 Poverty and Precarity--Desmond.pptx4.16.24 Poverty and Precarity--Desmond.pptx
4.16.24 Poverty and Precarity--Desmond.pptx
 
Grade 9 Quarter 4 Dll Grade 9 Quarter 4 DLL.pdf
Grade 9 Quarter 4 Dll Grade 9 Quarter 4 DLL.pdfGrade 9 Quarter 4 Dll Grade 9 Quarter 4 DLL.pdf
Grade 9 Quarter 4 Dll Grade 9 Quarter 4 DLL.pdf
 
Activity 2-unit 2-update 2024. English translation
Activity 2-unit 2-update 2024. English translationActivity 2-unit 2-update 2024. English translation
Activity 2-unit 2-update 2024. English translation
 
Student Profile Sample - We help schools to connect the data they have, with ...
Student Profile Sample - We help schools to connect the data they have, with ...Student Profile Sample - We help schools to connect the data they have, with ...
Student Profile Sample - We help schools to connect the data they have, with ...
 
Oppenheimer Film Discussion for Philosophy and Film
Oppenheimer Film Discussion for Philosophy and FilmOppenheimer Film Discussion for Philosophy and Film
Oppenheimer Film Discussion for Philosophy and Film
 
FINALS_OF_LEFT_ON_C'N_EL_DORADO_2024.pptx
FINALS_OF_LEFT_ON_C'N_EL_DORADO_2024.pptxFINALS_OF_LEFT_ON_C'N_EL_DORADO_2024.pptx
FINALS_OF_LEFT_ON_C'N_EL_DORADO_2024.pptx
 
Presentation Activity 2. Unit 3 transv.pptx
Presentation Activity 2. Unit 3 transv.pptxPresentation Activity 2. Unit 3 transv.pptx
Presentation Activity 2. Unit 3 transv.pptx
 

Societal Security – the new standard ISO 22301 for Business Continuity Management

  • 1. Societal Security – the new standard ISO 22301 for Business Continuity Management Luigi Brusamolino, Managing Director Southern EMEA - BSI Copyright © 2012 BSI. All rights reserved.
  • 2. Who is BSI? – 10 fast facts No owners/ Global independent Founded in business services shareholders … all profit 1901 organization reinvested into the business Standards, assessment, testing, National #1 certification >2,500 staff certification, training, Standards body in the UK and >50% non- software Body in the UK and USA UK 53 offices 64,000 clients £244.9m located around in 147 revenue in the world countries 2011 Copyright © 2012 BSI. All rights reserved. 2
  • 3. What is business continuity? • “Business continuity is the capability of an organization to continue delivery of products or services at acceptable predefined levels following disruptive incident.” (ISO 22301 – Societal security – Terminology) Copyright © 2012 BSI. All rights reserved. 3
  • 4. Examples of disruptions • Extreme weather conditions • Loss of IT/Cyber Security • Loss of people • Supply chain disruption • Transport Disruption • Loss of access to site The dependency on offshore outsourcing, the use of just-in-time sourcing, and the reliance on global supply chains make businesses highly vulnerable. Copyright © 2012 BSI. All rights reserved. 4
  • 5. Organisations which are at risk • 72% of companies surveyed had experienced at least one disruption to their supply chain. • 83% had experienced disruption over all. Copyright © 2012 BSI. All rights reserved. 5
  • 6. 6 Are organisations ready for the next crisis? 83% AGREE BCM is important/very important yet…* • 61% of CEO’s surveyed say they have BCM plans in place • 50% of organizations with BCM report that it includes plans for handling the media • 45% of organizations with BCM do not require any supply chain partners to have their own plans • 50% of organizations with BCM exercise their plans once a year. • Around 25% fail to exercise their plans on a regular basis. * BSI/BCI/Cabinet Office survey 2012 with Chartered Management Institute (CMI) Copyright © 2012 BSI. All rights reserved. 6
  • 7. 2012 BCM survey – key findings • The business case for BCM – 81 per cent of managers whose organisations activated their Business Continuity Management (BCM) arrangements in the last 12 months agree that it effectively reduced disruption. The same number agree that the benefits outweighed the cost. • Adoption of BCM – Overall 61 per cent of managers report that their organisation has BCM in place, up from 58 per cent last year and 49 per cent in 2010. Copyright © 2012 BSI. All rights reserved. 7
  • 8. 2012 BCM survey – key findings • Drivers – the three biggest external drivers of BCM were corporate governance (42%), demand from existing or potential customers (37%) and regulation (33%). • Disruptive events of 2011 – four in ten were affected by the BlackBerry outage in 2011, 55% of organisations by public sector strikes and 26% by the summer riots* • Disruptive weather – severe weather conditions caused disruption to 49% of organisations over the last year. *UK specific disruptive events of 2011 Copyright © 2012 BSI. All rights reserved. 8
  • 9. 9 International development of BCM standard PAS 56 BS 25999 ISO 22301 2003 2006 2012 • Started as a “PAS” (Publicly Available Specification) by BSI • Became British Standard BS 25999 in 2006 • New ISO 22301 (16 May 2012) Copyright © 2012 BSI. All rights reserved. 9
  • 10. Introducing ISO 22301 • ISO 22301 Societal Security - Business continuity management system - Requirements. • Management system standard • All core business continuity elements in BS 25999-2 are present in ISO 22301 Copyright © 2012 BSI. All rights reserved. 10
  • 11. Societal Security – ISO 223xx family standard The term Societal Security was first uded by Barry Buzan in the book People, States and Fear: National Security Problems in International Relations (1991). ISO defines Societal Security as the challenge an organization, group of organizations or society may face before, during and after a disruptive event. Societal Security ISO 223xx family standards integrates a range of interconnected disciplines: asset protection, security, risk management, preparedness, crisis management, emergy management, business continuity management , recovery management and disaster management. In order to assure sustainability of operations and maintain resilience, competitiveness and performance, organizations must have an integrated framework and system to manage risks. Copyright © 2012 BSI. All rights reserved. 29/08/12 11
  • 12. B2S – Business to Society paradigma The term Societal Security and the importance of the economic, political, social environment ini which an organization operate, re-define the business priorities and focus from traditional B2C, B2B models to a B2S (Business-to-Society) model in which the importance of interested parties (supply chain, governments, local authorities, citizens,..) is critical to the success and sustainability of an organization. Copyright © 2012 BSI. All rights reserved. 29/08/12 12
  • 13. What is ISO 22301? • Provides the requirements for a business continuity management system (BCMS) • Based on global BCM best practice • Created in response to strong interest in the original British Standard BS 25999- 2 and other regional standards • BS 25999-2 key source text in its development • For those certified to or aligned with BS 25999-2, the additional requirements are not onerous Copyright © 2012 BSI. All rights reserved. 13
  • 14. Societal Security and BCM? • ISO 22301 now comes under a wider societal security remit • This acknowledges the important role that BCM has to play in protecting society and ensuring our ability to respond to incidents, emergencies and disasters. Copyright © 2012 BSI. All rights reserved. 14
  • 15. Comparing ISO 22301 and BS 25999-2 Includes all core requirements • The ‘Plan Do Check Act’ cycle atte e w dd rra tt ieew aann • Business continuity policy pee nndd eenn oop aa em m r i vvi r ree ti toor k • Business impact analysis mp pl le Mo onn h ec Im D o M • Risk assessment and risk treatments I C • Exercising • Business continuity plans and strategy vee shh oov • Internal audit bbl li is r ppr nndd ai nn i ttaa m • Management review s i im aa ntta c t Es E l an aai in A • Non conformity and corrective action P MM • Improvement actions Copyright © 2012 BSI. All rights reserved. 15
  • 16. Key changes and aspects Notable shifts in emphasis from BS 25999-2:2007: • First standard written in accordance with Guide 83 • Change in the way an organization is defined (extended enterprise) • Clearer expectations on management • Preventive action has been replaced with “actions to address risks and opportunities” and features earlier • ISO 22301 puts a much greater emphasis on setting the objectives, monitoring performance and metrics – aligning BC to top management strategic thinking Copyright © 2012 BSI. All rights reserved. 16
  • 17. Key changes and aspects • 22301 requires more careful planning for and preparing the resources needed for ensuring business continuity • Communication elements more demanding and there is a responsibility to the wider community defined • BIA similar but with some changes to terminology • There is a stronger link to the organizations approach to risk (integrated risk- management) • To reflect the societal security approach some new terminology has been introduced, see ISO 22300 Copyright © 2012 BSI. All rights reserved. 17
  • 18. BCM standard global adoption Copyright © 2012 BSI. All rights reserved. 18
  • 19. Multi-sector adoption Copyright © 2012 BSI. All rights reserved. 19
  • 20. Benefits of ISO 22301 • Allows organizations to benefit from global BCM best practice, regardless of whether they are planning to certify or not • Provides a foundation and a common vocabulary for BCM best practice and guidance • Consensus standards like ISO 22301 represent the input and recommendations of hundreds of BC professionals and industry experts • Saves you having to reinvent the wheel Copyright © 2012 BSI. All rights reserved. 20
  • 21. Benefits of certification • Certification offers many advantages, including: • It challenges your BCM programme and organization to reach a higher level of maturity and preparedness • Supply chain requirement • Prequalification for tenders • Provides a competitive advantage • Signifies a base level of readiness and a commitment and seriousness about BCM Copyright © 2012 BSI. All rights reserved. 21
  • 22. Questions? Copyright © 2012 BSI. All rights reserved. 22
  • 23. Contact us Address: BSI Via Fara, 35 Milano 20124 Telephone: +39 02 6679091 Email: Marketing.italy@bsigroup.com Links: www.bsigroup.it Copyright © 2012 BSI. All rights reserved. 23

Notas del editor

  1. Good morning/afternoon, my name is Suzanne Fribbins, and I am BSI’s EMEA Product Marketing Manager for the Risk Portfolio. 29/08/12
  2. So what is business continuity? “ Business continuity is the capability of an organization to continue delivery of products or services at acceptable predefined levels following disruptive incident.” The plan is called a business continuity plan.
  3. The business case for BCM – 81 per cent of managers whose organisations activated their Business Continuity Management (BCM) arrangements in the last 12 months agree that it effectively reduced disruption. The same number agree that the cost of developing BCM is justified by the benefits it brings their organisation. Adoption of BCM – adoption of BCM continues to rise cementing a sharp increase in uptake over the past two years. Overall 61 per cent of managers report that their organisation has BCM in place, up from 58 per cent last year and 49 per cent in 2010.
  4. Drivers of BCM – corporate governance remains the biggest external driver of BCM, with 42 per cent of managers highlighting it as a catalyst for their organisation implementing or changing BCM. Demand from existing or potential customers makes up the second biggest driver (37 per cent), followed by regulation/legislation (33 per cent). Disruptive events of 2011 – almost four in ten managers report that the BlackBerry outage in 2011 caused their organisation some disruption, while 55 per cent of managers say their organisation was affected by public sector strikes. The riots last summer caused disruption for 26 per cent of managers, with the worst of the disruption felt by managers in central and local government and the emergency services. Disruptive weather – 49 per cent of managers report that severe weather conditions caused disruption to their organisation over the last year, making it the leading cause of business disruption for the third year running.
  5. ISO 22301 is the new international standard for business continuity management (BCM). Its official title is ISO 22301 Societal Security - Business continuity management system - Requirements. ISO 22301 is an ISO requirements standard, which effectively means we can audit to it. All core business continuity elements in BS 25999-2 are present in ISO 22301 too.
  6. ISO 22301 provides the requirements for a business continuity management system (BCMS) and is based on global BCM best practice. BSI is one of the pioneers of the original BCM best practice standard, BS 25999-2 and this has now been superseded by ISO 22301. Since its introduction in 2007, BS 25999-2 has grown in acceptance worldwide. Unlike BS 25999-2, ISO 22301 is an international standard, which will see greater international acceptance. For those certified to or aligned with BS 25999-2, the additional requirements are not onerous.
  7. ISO 22301 now comes under a wider societal security remit, acknowledging the important role that BCM has to play in protecting society and ensuring our ability to respond to incidents, emergencies and disasters.
  8. In comparing ISO 22301 with BS 25999-2 you will see that it includes all the core requirements of 25999-2. The ‘Plan Do Check Act’ cycle Business continuity policy Business impact analysis Risk assessment and risk treatments Exercising Business continuity plans and strategy Internal audit Management review Non conformity and corrective action Improvement actions
  9. Notable shifts in emphasis from BS 25999-2:2007: First standard written in accordance with Guide 83 Change in the way an organization is defined Clearer expectations on management Preventive action has been replaced with “actions to address risks and opportunities” and features earlier ISO 22301 puts a much greater emphasis on setting the objectives, monitoring performance and metrics – aligning BC to top management strategic thinking
  10. 22301 requires more careful planning for and preparing the resources needed for ensuring business continuity Communication elements more demanding and there is a responsibility to the wider community defined BIA similar but with some changes to terminology There is a stronger link to the organizations approach to risk To reflect the Societal security approach some new terminology has been introduced, see ISO 22300
  11. Even if organizations don’t intend to certify to these standards, they should strongly influence their BCM program. By adopting ISO 22301 organizations will benefit from global BCM best practice, regardless of whether they intend to certify or not. Standards provide a foundation and a common vocabulary for BCM best practices and processes. These standards represent the input and recommendations of hundreds of BC professionals and industry experts. Rather than reinvent the wheel, you can take advantage of years of expertise and the lessons learned from your peers.
  12. Certification offers many advantages, including: It challenges your BCM program and your organization to reach a higher level of maturity and preparedness. You will also find that through the certification process, opportunities for improvement will be identified … and this is one of the greatest benefits of having a third party audit, having a fresh set of eyes on your business. All of our client managers not only understand the Standards, they understand your industry, and can make informed observations Partners may demand it of you anyway. It can allow you to meet the prequalification requirements for tenders, reducing the amount of time it takes to comply with external audits of your BCM program. It can provide a competitive advantage, opening up new markets and helping you to win new business, and finally It signifies a base level readiness and a commitment and seriousness about BCM An accredited certification can only be conducted by a certification body that is accredited with a recognised national body e.g. UKAS. At present there are no certification bodies in the UK able to offer accredited certifications, however BSI will be offering unaccredited certification until such a point as we are accredited to offer accredited certification to ISO 22301 and is already made arrangements to be first in line to be accredited by UKAS.