06.11.2014 Views

ISO 22301

ISO 22301

ISO 22301

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Challenges to overcome<br />

when developing global standards<br />

in a field with extreme national interest<br />

Dr Stefan Tangen<br />

Secretary of <strong>ISO</strong>/TC 223 Societal security<br />

SIS, Swedish Standards Institute<br />

Stockholm, Sweden<br />

stefan.tangen@sis.se<br />

+46 8 555 521 60


Agenda<br />

• What is a ”good” standard?<br />

• How should a ”good” standard be developed?<br />

• Why become a standards developer<br />

• Current status of standards<br />

• Trends and news in <strong>ISO</strong><br />

• <strong>ISO</strong>/TC 223


What is a standard?


What makes it good?<br />

EN 12195-1 IMO


How to achieve good?<br />

General principles of <strong>ISO</strong><br />

• Consensus<br />

• Voluentary<br />

• Equal footing<br />

• Market needs<br />

Which requires<br />

• Participation<br />

• A slow process<br />

• Understanding of various views<br />

• Will to compromise


Leed or follow?<br />

Standards followers<br />

• wait 3 years and buys standards<br />

• adapts to whatever comes out<br />

Standards developers<br />

• joins a mirror committe<br />

• influenses the standard<br />

• makes sure to know everything before their competitors<br />

• have access to the best experts and knowledge in the<br />

world


EN 12195-1:2003 and 2010


Current status on Management System Standards<br />

for Security, BCM, Organisational resilience<br />

• More than 10 existing standards and several under<br />

development (NFPA 1600, BS 25999, SI 240001 etc)<br />

• Extreme national interest, all standards wants to become<br />

THE standard<br />

The <strong>ISO</strong>/TC 223 way:<br />

• Use input from all standards, not just one<br />

• First step <strong>ISO</strong>/PAS 22399 – Guidence on IPOCM<br />

• Second step: <strong>ISO</strong> <strong>22301</strong> – MSS with requirements<br />

• Third step: <strong>ISO</strong> 22323 – separate BCM from OR


Joint Technical Coordination Group<br />

• Set up to align all existing and future MSSs<br />

• Will be applied to <strong>ISO</strong> 9001, 14001, 27001 etc<br />

• Identical highlevel structure, sub-clauses, texts and<br />

definitions<br />

• For the management system only (not the disciplin)<br />

• For better understanding of MSS and easier intergration<br />

• Proposal ready for approval during 2011<br />

• <strong>ISO</strong>/TC 223 is an early adopter


K-141 Kursk


<strong>ISO</strong>/TC 223 Societal Security -<br />

secretariat<br />

• Chair: Krister Kumlin<br />

• Secretary: Stefan Tangen<br />

• P-members: 42<br />

• O-members: 19<br />

• Working Groups: 5<br />

• Ad hoc group<br />

• DC contact group<br />

• Twinning<br />

• Work Items: 10<br />

• Deliverables: 2


Members<br />

P-members 42 O-members 19 Liaisons<br />

■Australia ( SA )<br />

■Austria ( ASI )<br />

■Belgium ( NBN )<br />

■Cameroon ( ANOR )<br />

■Canada ( SCC )<br />

■China ( SAC )<br />

■Colombia ( ICONTEC )<br />

■Côte d'Ivoire ( CODINORM )<br />

■Denmark ( DS )<br />

■Egypt ( EOS )<br />

■Finland ( SFS )<br />

■France ( AFNOR )<br />

■Germany ( DIN )<br />

■Indonesia ( BSN )<br />

■Israel ( SII )<br />

■Italy ( UNI )<br />

■Jamaica ( BSJ )<br />

■Japan ( JISC )<br />

■Kenya ( KEBS )<br />

■Korea, Republic of ( KATS )<br />

■Libyan Arab Jamahiriya ( LNCSM )<br />

■Malaysia ( DSM )<br />

■Morocco ( SNIMA )<br />

■Netherlands ( NEN )<br />

■Nigeria ( SON )<br />

■Norway ( SN )<br />

■Peru ( INDECOPI )<br />

■Portugal ( IPQ )<br />

■Romania ( ASRO )<br />

■Russian Federation ( GOST R )<br />

■Serbia ( ISS )<br />

■Singapore ( SPRING SG )<br />

■South Africa ( SABS )<br />

■Spain ( AENOR )<br />

■Sri Lanka ( SLSI )<br />

■Sweden ( SIS )<br />

■Switzerland ( SNV )<br />

■Tanzania, United Republic of ( TBS )<br />

■Thailand ( TISI )<br />

■Trinidad and Tobago ( TTBS )<br />

■USA ( ANSI )<br />

■United Kingdom ( BSI )<br />

■Argentina ( IRAM )<br />

■Bolivia ( IBNORCA ) (Correspondent member)<br />

■Brazil ( ABNT )<br />

■Costa Rica ( INTECO )<br />

■Cyprus ( CYS )<br />

■Czech Republic ( UNMZ )<br />

■Ecuador ( INEN )<br />

■Ethiopia ( QSAE )<br />

■Greece ( ELOT )<br />

■Hong Kong, China ( ITCHKSAR ) (Correspondent member)<br />

■Ireland ( NSAI )<br />

■Kazakhstan ( KAZMEMST )<br />

■Mauritius ( MSB )<br />

■Poland ( PKN )<br />

■Slovakia ( SUTN )<br />

■Uganda ( UNBS ) (Correspondent member)<br />

■Ukraine ( DSSU )<br />

• <strong>ISO</strong>/TC 8, Ships and marine technology<br />

• <strong>ISO</strong>/TC 159/SC 4, Ergonomics of human-system interaction<br />

• <strong>ISO</strong>/IEC/JTC 1/SC 27, IT Security techniques<br />

• ASIS International<br />

• CEN/TC 391, Societal and citizen security<br />

• PMI, Project Management Institute<br />

• UN/DP, United Nations Development Programme<br />

• UN/FPA, United Nations Population Fund<br />

• UN/ISDR, International Strategy for Disaster Reduction


9 plenary’s<br />

60 working group meetings and<br />

workshops<br />

Stockholm (2006) Bangkok (2006)<br />

Orlando (2007) The Hague (2007)<br />

Next event:<br />

Bangkok(2010)<br />

29 Nov - 3 Dec<br />

Seoul (2008)<br />

Stockholm (2010) Ekurhuleni (2009) Paris (2009)<br />

Bali (2008)


<strong>ISO</strong>/TC 223 Scope<br />

• <strong>ISO</strong>/TC 223 develops international standards that aim to<br />

increase societal security, i.e. protection of society from<br />

and response to incidents, emergencies, and disasters<br />

caused by intentional and unintentional human acts,<br />

natural hazards, and technical failures.<br />

• An all-hazards perspective is used covering adaptive,<br />

proactive and reactive strategies in all phases before,<br />

during and after a disruptive incident.<br />

• The area of societal security is multi-disciplinary and<br />

involves actors from both the public and private sectors,<br />

including not-for-profit organisations.


<strong>ISO</strong>/TC 223 Organization<br />

<strong>ISO</strong>/TC 223<br />

Societal<br />

Security<br />

WG 1<br />

Framework on<br />

Societal Security<br />

Management<br />

WG 2<br />

Terminology<br />

WG 3<br />

Command, Control,<br />

Coordination and<br />

Cooperation<br />

WG 4<br />

Preparedness and<br />

Continuity<br />

WG 5<br />

Video<br />

surveillance


Ongoing work – the <strong>ISO</strong> 22300 series<br />

WG 1<br />

<strong>ISO</strong>/NP 22397 Public/Private partnerships<br />

<strong>ISO</strong>/CD 22398 Guidelines for exercises and testing<br />

WG 2<br />

<strong>ISO</strong>/DIS 22300 Vocabulary<br />

The <strong>ISO</strong> process:<br />

1) New work item proposal (NP)<br />

2) Working draft (WD)<br />

3) Committee draft (CD)<br />

4) Draft international standard (DIS)<br />

5) Final draft international standard (FDIS)<br />

6) <strong>ISO</strong> standard (IS)<br />

WG 3<br />

<strong>ISO</strong>/FDIS 22320 Emergency management – Requirements for command and control<br />

<strong>ISO</strong>/WD 22322 Emergency management – Public warning<br />

<strong>ISO</strong>/NP 22351 Emergency management – Shared situation awareness - under ballot until Nov 23<br />

WG 4<br />

<strong>ISO</strong>/DIS <strong>22301</strong> Business continuity management systems – Requirements – submitted to <strong>ISO</strong>/CS for ballot<br />

<strong>ISO</strong>/CD 22399 Business continuity management systems – Guidelines<br />

<strong>ISO</strong>/NP 22323 Organisational resiliencemanagement systems – Requirements<br />

WG 5<br />

<strong>ISO</strong>/CD 22311 Video surveillance


First deliverable:<br />

<strong>ISO</strong>/PAS 22399:2007<br />

Guideline for incident preparedness and operational continuity management<br />

A ‘best of five’ document based on:<br />

1. NFPA 1600:2004, Standard on disaster/emergency management and business continuity programs,<br />

National Fire Protection Association.<br />

2. BS 25999-1:2006, Business continuity management -Code of practice, BSI British Standards.<br />

3. HB 221:2004, Business continuity management, Standards Australia/Standards New Zealand, ISBN 0-<br />

7337-6250-6<br />

4. INS 24001:2007, Security and continuity management systems – Requirements and guidance for use,<br />

Standards Institution of Israel.<br />

5. Business Continuity Guideline, Central Disaster Management Council, Cabinet Office, Government of<br />

Japan, 2005


Available information sources<br />

• <strong>ISO</strong>TC Portal: www.iso.org<br />

• <strong>ISO</strong>/IEC Directives<br />

– Part 1, Procedures for the technical work<br />

– Part 2, Rules for the structure and drafting<br />

• My <strong>ISO</strong> Job<br />

• <strong>ISO</strong>/TC 223:<br />

http://www.iso.org/iso/standards_development/techn<br />

ical_committees/list_of_iso_technical_committees/is<br />

o_technical_committee.htm?commid=295786

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!