BS EN ISO 22313:2014
$102.76
Societal security. Business continuity management systems. Guidance
Published By | Publication Date | Number of Pages |
BSI | 2014 | 58 |
This International Standard for business continuity management systems provides guidance based on good international practice for planning, establishing, implementing, operating, monitoring, reviewing, maintaining and continually improving a documented management system that enables organizations to prepare for, respond to and recover from disruptive incidents when they arise.
It is not the intent of this International Standard to imply uniformity in the structure of a BCMS but for an organization to design a BCMS that is appropriate to its needs and that meets the requirements of its interested parties. These needs are shaped by legal, regulatory, organizational and industry requirements, the products and services, the processes employed, the environment in which it operates, the size and structure of the organization and the requirements of its interested parties.
This International Standard is generic and applicable to all sizes and types of organizations, including large, medium and small organizations operating in industrial, commercial, public and not-for-profit sectors that wish to:
-
establish, implement, maintain and improve a BCMS;
-
ensure conformance with the organization’s business continuity policy; or
-
make a self-determination and self-declaration of compliance with this International Standard.
This International Standard cannot be used to assess an organization’s ability to meet its own business continuity needs, nor any customer, legal or regulatory needs. Organizations wishing to do so can use the ISO 22301 requirements to demonstrate conformance to others or seek certification of its BCMS by an accredited third party certification body.
PDF Catalog
PDF Pages | PDF Title |
---|---|
5 | Untitled |
6 | Foreword |
7 | Introduction |
8 | Figure fig_1 Table tab_1 |
9 | Table tab_2 |
10 | Figure fig_2 |
11 | Section sec_1 Section sec_2 Section sec_3 Section sec_4 Section sec_4.1 1 Scope 2 Normative references 3 Terms and definitions 4 Context of the organization 4.1 Understanding of the organization and its context |
12 | Section sec_4.2 Section sec_4.2.1 4.2 Understanding the needs and expectations of interested parties |
13 | Figure fig_4 Section sec_4.2.2 |
14 | Section sec_4.3 Section sec_4.3.1 Section sec_4.3.2 Section sec_4.4 Section sec_5 Section sec_5.1 4.3 Determining the scope of the management system 4.4 Business continuity management system 5 Leadership 5.1 Leadership and commitment |
15 | Section sec_5.2 Section sec_5.3 5.2 Management commitment 5.3 Policy |
16 | Section sec_5.4 5.4 Organizational roles, responsibilities and authorities |
17 | Section sec_6 Section sec_6.1 Section sec_6.2 Section sec_7 Section sec_7.1 Section sec_7.1.1 6 Planning 6.1 Actions to address risks and opportunities 6.2 Business continuity objectives and plans to achieve them 7 Support 7.1 Resources |
18 | Section sec_7.1.2 Section sec_7.1.3 Section sec_7.2 7.2 Competence |
20 | Section sec_7.3 7.3 Awareness |
21 | Section sec_7.4 7.4 Communication |
22 | Section sec_7.5 Section sec_7.5.1 7.5 Documented information |
23 | Section sec_7.5.2 Section sec_7.5.3 |
24 | Section sec_8 Section sec_8.1 8 Operation 8.1 Operational planning and control |
25 | Section sec_8.1.1 Figure fig_5 |
26 | Section sec_8.1.2 Section sec_8.1.3 Section sec_8.1.4 |
27 | Section sec_8.1.5 Section sec_8.2 Section sec_8.2.1 8.2 Business impact analysis and risk assessment |
28 | Figure fig_6 Section sec_8.2.2 |
30 | Section sec_8.2.3 |
31 | Section sec_8.3 Section sec_8.3.1 Section sec_8.3.1.1 Section sec_8.3.1.2 8.3 Business continuity strategy |
32 | Section sec_8.3.1.3 Section sec_8.3.1.4 |
33 | Section sec_8.3.1.5 Section sec_8.3.2 Section sec_8.3.2.1 Section sec_8.3.2.2 |
34 | Section sec_8.3.2.3 |
35 | Section sec_8.3.2.4 |
36 | Section sec_8.3.2.5 Section sec_8.3.2.6 |
37 | Section sec_8.3.2.7 |
38 | Section sec_8.3.2.8 Section sec_8.3.2.9 Section sec_8.3.3 Section sec_8.4 Section sec_8.4.1 Section sec_8.4.2 8.4 Establish and implement business continuity procedures |
39 | Section sec_8.4.3 Section sec_8.4.3.1 |
40 | Section sec_8.4.3.2 Section sec_8.4.3.3 |
41 | Section sec_8.4.4 Section sec_8.4.4.1 |
42 | Section sec_8.4.4.2 |
43 | Section sec_8.4.4.3 Section sec_8.4.4.3.1 |
44 | Section sec_8.4.4.3.2 Section sec_8.4.4.3.3 |
46 | Section sec_8.4.4.3.4 Section sec_8.4.4.3.5 |
47 | Section sec_8.4.4.3.6 Section sec_8.4.5 |
48 | Section sec_8.5 Section sec_8.5.1 Section sec_8.5.2 8.5 Exercising and testing |
49 | Section sec_8.5.3 |
50 | Section sec_9 Section sec_9.1 Section sec_9.1.1 9 Performance evaluation 9.1 Monitoring, measurement, analysis and evaluation |
51 | Section sec_9.1.2 |
52 | Section sec_9.2 9.2 Internal audit |
53 | Section sec_9.3 9.3 Management review |
54 | Section sec_10 Section sec_10.1 10 Improvement 10.1 Nonconformity and corrective action |
55 | Section sec_10.2 10.2 Continual improvement |
56 | Reference ref_1 Reference ref_2 Reference ref_3 Reference ref_4 Reference ref_5 Reference ref_6 Reference ref_7 Reference ref_8 Reference ref_9 Reference ref_10 Reference ref_11 Reference ref_12 Reference ref_13 Reference ref_14 Reference ref_15 Reference ref_16 Reference ref_17 Bibliography |