Search results

Guest

Guest

Create New Topic As guest or Sign in

HTML tags are not allowed

Assign topic to the user

  • ISO 22313 and BCMS implementation


    Answer:

    ISO 22313 gives you examples of best practices on how the requirements from ISO 22301 could be implemented, so if you organization does not have previous experience in business continuity or management systems, it can help you save time on searching for ways of implementation, or in evaluating solutions presented by consultants.

    This article will provide you further explanation about ISO 22313:
    - ISO 22301 vs. ISO 22313 https://advisera.com/27001academy/blog/2013/05/21/iso-22301-vs-iso-22313/
  • Developing BCP tests


    Answer:

    The Kobayashi maru test is a no winning scenario designed to evaluate the response of personnel in a situation they have no hope to prevail, but they do not know that.

    Considering that, to adapt this concept to a BCP test you have to meticulously develop a scenario where expected reactions of your personnel will not work, or will make situation worst. Additionally you can add time limits to achievement of some objectives. There is no definitive scenario to implement the Kobayashi maru test, so it can vary from a cascade failure of datacenter hardware to a sequence of disaster hitting you site.

    The Fukushima Power Plan disaster (an earthquake followed by a tsunami), or the Chernobyl reactor explosion are examples of no win situations.

    This article will provide you further explanation about BCP testing:
    - How to perform business continuity exercising and testing according t o ISO 22301 https://advisera.com/27001academy/blog/2015/02/02/how-to-perform-business-continuity-exercising-and-testing-according-to-iso-22301/

    This material will also help you regarding BCP testing:
    - Book Becoming Resilient: The Definitive Guide to ISO 22301 Implementation https://advisera.com/books/becoming-resilient-the-definitive-guide-to-iso-22301-implementation/
  • Scope and cost of certification


    Answer:
    Yes, you can adopt the standards for part of an organization when you define the scope of your QMS. The decision about the scope is a management decision, not a technical decision. For example, a manufacturing organization can decide to certify the part of the business that works for B2B and leave out of the QMS the part that works for B2C.

    Also do you have any info on costs for purchasing the accreditation?

    Answer:
    The correct word is certification. You cannot buy the certification directly. You choose a certification body and that organization, an independent third party, will audit your organization through a set of audits. A first one, called 1st stage audit, will audit the overall design of the management system and documentation. After passing that first stage there will be a 2nd stage audit. This one will audit the whole organization under the scope of the management system, auditors will check implementation, interview employees, observe operations and locations. After passing this 2nd stage audit the certification body will issue a certificate declaring that your organization has a management system operating according to the reference standard (for example, ISO 9001 for a quality management system).
    The cost of the certification process will depend on the number of days of the audit. The main criteria for determining that the number of days will depend on the number of employees of the organization. Certification is like any other business, some certification bodies are more expensive than others due to brand recognition, for example.

    The following material will provide you information about scope:
    - ISO 9001 – How to define the scope of the QMS according to ISO 9001:2015 - https://advisera.com/9001academy/knowledgebase/how-to-define-the-scope-of-the-qms-according-to-iso-90012015/
    - Certifying different legal entities under one certification scope in ISO 9001 - https://advisera.com/9001academy/blog/2018/03/27/certifying-different-legal-entities-under-one-certification-scope-in-iso-9001/
    - Free course – ISO 9001:2015 Internal Auditor Course - https://advisera.com/training/iso-9001-internal-auditor-course/
    · - book - Discover ISO 9001:2015 Through Practical Examples - https://advisera.com/books/discover-iso-9001-2015-through-practical-examples/
  • ISO 45001: Understanding Annex A 6.1.2.1

    Annex A of ISO 45001 is intended to give some explanation of each clause of the standard; in this case, it is explained clause 6.1.2.1, Hazard identification. The intent of the hazard identification requirements in ISO 45001 are to recognize the different hazards that are present in your processes as they apply to the occupational health & safety of your workers. Annex A 6.1.2.1 is stating that the intent is not to address product safety, so if there is an element of your product which poses a hazard to the user, but does not pose a hazard to your workers, then this hazard is not part of this requirement. An example could be an electrical shock hazard from a battery in your product which is not a hazard to workers because the battery is not installed until after delivery.

    For more information on identifying hazards in the OHSMS, see the article:

Page 573-vs-13485 of 1127 pages

Didn’t find an answer?

Start a new topic and get direct answers from the Expert Advice Community.

CREATE NEW TOPIC +