Articles tagged with: iso 22301

Training in risk management, business continuity and information security: how to choose?

Training in risk management, business continuity and information security: how to choose?

A team may need training because it is about to start implementing ISO 27001. Another may already have the system in place but need to review responsibilities and records. The course may be the same, even though the work to be carried out afterwards is different.

⏱️ Estimated reading time: 4 minutes

When choosing training in risk management, business continuity or information security, the enrolment request should specify that work. This allows business unit management and HR to assess the course programme, select participants and plan when they will apply what they have learnt.

ISO 22301: practical guide to business continuity

ISO 22301_Practical Guide to Business Continuity

ISO 22301: practical guide to business continuity

How to prepare your organisation, structure evidence and build capability.

⏱️ Estimated reading time: 8 minutes

This practical guide to ISO 22301 and business continuity explains how to prepare your organisation, define recovery priorities and objectives, test plans and compile audit evidence.

ISO 22301 and business continuity: what is it and who does it apply to?

ISO 22301 specifies the requirements for establishing, implementing, maintaining and improving a Business Continuity Management System (BCMS). It can be applied by organisations of any size or sector that need to ensure the delivery of prioritised products and services during a disruption.

The standard is voluntary as a management system and certification framework. Nevertheless, legal, sector-specific or contractual requirements may require specific continuity, recovery and evidence capabilities. Certification is one way to demonstrate conformity with the standard, but it does not replace obligations applicable to the organisation.