14. Jan 2020

What is new?

ISO 22301:2019

The new revision of ISO 22301 – Business Continuity Management Systems was published on October 30 and is now available as ISO 22301:2019; the changes are minor.

The focus was laid on increasing the standard’s practical suitability; this is already reflected by the new name – the former title „Societal security” of the 2012 version has been changed to „Security and resilience – Business continuity management systems – Requirements” in the 2019 version.

ISO 22301 is the first Standard that specifies the requirements for implementing and maintaining an effective business continuity plan. It will help an organization to respond more effectively and to recover more quickly to disruption, thus reducing the impacts on persons, products and the company performance.

The key changes in ISO 22301:2019:

  • focus on a resilient organization to adapt to changes more effectively
  • focus on quick recovery from disruption based on response plans and employees who know how to respond in case of disruptive incident
  • systematic identification of internal weaknesses to mitigate them and implementation of plans to respond in case of disruption
  • redundancies of texts and requirements have been removed
  • 100% adaption of the „high level structure“
  • improved and „process-oriented“ structure – clear and logical operational sequence
  • emphasis on processes
  • enhanced user-orientation such as
    • 4.1 – “Context of the organization” – documentation requirements have been reduced
    • 5.1 –„Leadership and commitment“ and management commitment are now summed up in one clause
    • 5.2 – Active participation of management in response exercises is no longer required
    • 6.3 – It is now required to plan the changes to the BCM management system
    • 8.2 – A BIA (Business Impact Analysis) now should take impact categories as a starting point
    • 8.3 – In the previous version of the standard, the focus was on BCM strategies; now, the practical focus is also on finding solutions for specific risks and impacts
  • improved integration into existing management systems, such as ISO 9001, ISO 14001; ISO 45001, etc.
  • instead of an organization’s risk appetite, the focus is now on impacts and the extent to which an impact is acceptable for an organization.

The transition period will be 3 years, which means, after 30 October 2022 certificates for ISO 22301:2012 will no longer be valid.

Contact Persons Risk and Security

Unfortunately your search was unsuccessful. Please check your settings and your spelling.

News & Events

The basis for long-term success!

18. Jun 2024

QMD Services: First in-vitro diagnostics certificate achieved in record time

IVDR certificate for test kits for the identification of infectious diseases

Learn more
27. May 2024

New accreditation for SCC VAZ 2021 A and SHE Personal VAZ 2021

News regarding SCC

Learn more
22. May 2024

With QMD Services, Austria has its own national Notified Body for medical devices since mid-May

National Notified Body for medical devices

Learn more
06. May 2024

QMD Services: Florian Heffeter (43) new second Managing Director

Management expanded

Learn more
30. Apr 2024

5 hints on how companies can get a grip on their reporting requirements

Building on existing systems:

Learn more
23. Apr 2024

Climate change becomes the focus of management system standards

New ISO requirements:

Learn more
18. Apr 2024

Above-average high recommendation rate for Quality Austria

Achieving top performance together

Learn more
28. Mar 2024

ISO 14001 is being revised – what can we expect?

New revision planned

Learn more
22. Mar 2024

Into the future with a system

New qualityaustria Overview of Services 2024 published

Learn more
08. Jan 2024

Current information on the ISO 450xx series

New publication EN ISO 45001:2023

Learn more
13. Mar 2024

Event: 29. qualityaustria Forum

21. Dec 2023

ISO 9001 Revision: What you need to know now!

The first board meeting has taken place

Learn more
+43 732 34 23 22