ISO22301 – The Business Continuity Management Standard

Expect the unexpected

Not everything in life goes our way.
ISO22301, the Business Continuity Management System (BCMS), will help your team to minimise the impact that risks can have on your future success by protecting business-critical processes and systems.
Animated Shape

Benefits of ISO22301

ISO22301 will enable your organisation to:

Understand potential risks and their impact

React calmly and confidently in case of an incident

Continue to deliver services or manufacture products despite challenges

Ensure that you communicate effectively with stakeholders and interested parties

Protect ongoing customer relationships, turnover and GP

Reassure customers and prospects that you have taken steps to ‘future-proof’ your business and protect the integrity of their supply chain

Regularly re-evaluate risks and test plans to ensure they are fit for purpose

How we can help you achieve ISO22301 certification

Our experienced consultants will help you establish what you need to do to achieve ISO22301 certification and put together a step-by-step plan to achieve compliance. This will include making sure that your staff are competent at assessing risk and making informed decisions and that your leadership team are providing the support needed to guarantee success. We will also help you develop business continuity plans tailored to the resources and needs of your business and put them to the test.

Our ISO certification process includes conducting a thorough internal audit and ensuring that you can provide the evidence required for a successful external audit.

Please note: this service, including ISO certification audits, can be delivered remotely. 

Animated Shape

Getting started with certification

Approaching audits with confidence

Animated Shape

How we can help you maintain ISO23001 compliance

Making ISO22301 compliance part of your ‘business as usual’ will help to safeguard the future of your organisation. We can help you learn the skills needed to conduct effective internal audits and chair management review meetings or, if you prefer, we can manage these on your behalf.

You may also enjoy the peace of mind that our telephone and email support service, Compliance as a Service, brings. This fixed cost service includes support for ISO, GDPR, Cyber Essentials and H&S.

FAQs

ISO22301 is the internationally recognised standard for business continuity. Being certified to ISO22301 indicates that an organisation’s Business Continuity Management System (BCMS) complies with the requirements detailed by the International Organization for Standardization (ISO).

A Business Continuity Management System is a system that documents the policies, processes and procedures that ensure that your business can continue to operate in an emergency. It helps to ensure that you can carry out business as usual, no matter what happens.

Like many of the popular ISO standards, ISO22301 uses Plan-Do-Check-Act (PDCA) to drive continual improvement.

During the ‘plan’ stage, you will determine the scope of your business continuity management system and determine roles, objectives, resources and competencies. To do so, you will need to look at your organisation in its context and ensure you understand the needs of interested parties.

During the ‘do’ stage you will conduct business impact analysis and risk assessments and document strategies, solutions, plans and procedures to drive business continuity. In the ‘check’ stage, you will check how your plans worked and report the results. Finally, during the ‘act’ stage, you will take corrective action to remedy non-conformances and ensure continual improvement.

There are many threats to business continuity, including cyberattack, fire, internet outages, data breaches and H&S incidents. We may not know what is around the corner, but we can minimise disruptions and improve our resilience by anticipating, rehearsing and evaluating various scenarios.

Every business faces threats. ISO22301 has been designed to be relevant to businesses of all sizes, regardless of location or sector.

Scenario planning will help your employees to respond to crises more quickly and confidently, reducing the potential damage to turnover, profits and your reputation.

It will also help you prove to potential clients that you have taken steps to protect their supply chain.  

If you already have ISO9001 (Quality), ISO14001 (Environmental), ISO27001 (Information Security) and/or ISO45001 (Occupational Health & Safety) you’ll be able to add ISO22301 as part of an integrated management system thanks to their common structure (Annex SL).

The cost depends on the size and complexity of your organisation and how much time you can devote to the project. We have a number of solutions available and offer flexible payments as we all know that cash flow is important.

A revision to the standard in 2019 aligned it more closely with other popular standards including ISO9001 and ISO27001

If you certify with us, or subscribe to our newsletter, we’ll let you know when a new version is to be released. You will normally have three years to transition and we’ll provide whatever support you need to do so smoothly.  

You’ll need to make sure that your systems meet the requirements detailed in the standards before having them audited by a third party.

Our team includes expert risk management consultants. They’ll help you develop a step-by-step plan to achieve compliance. Find out more about our four-step ISO certification process.

Once you have passed your external audit, your certification body will send you an ISO22301 logo and your certificate.

We’ll also make it easy for you to tell your existing and potential customers about your certification by providing you with a free ten step guide (our Promotion Power Pack). We can also ask your certification body to consider providing a testimonial for you to use in tenders.

You’ll need to pass an external audit every year to maintain your certification. We know time flies when you’re busy, so we’ll remind you before your audit is due. This will give you time to prepare and ensure that you don’t let your certification lapse by accident.

We can provide whatever help you need to feel in control of your compliance. This may include managing internal audits, chairing management reviews or providing telephone or email support as part of our Compliance as a Service.

If you’re interested in improving your resilience and reputation, please contact us today for a free no-obligation discussion.

Testimonials

Further reading