Expert Advice Community

Guest

Management review

  Quote
Guest
Guest user Created:   Jun 02, 2018 Last commented:   Jun 02, 2018

Management review

I am currently managing an ISO22301 certification project and I’m finding your manual ‘Becoming Resilient’ very useful.
0 0

Assign topic to the user

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 27001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Rhand Leal Jun 02, 2018

However, what is the purpose of conducting a management review and internal audit as part of the initial project when in theory there is nothing yet to review or audit?

Answer: A BCMS project implementation involves running at least one complete cycle of the management system, which includes the internal audit and management review activities. Without these activities the project cannot ensure the BCMS is properly implemented, operated and improved.

Regarding issues to be audited, these are some examples:
- Results of Business Continuity Plans tests
- Records of operation of implemented controls
- Level of awareness and competency of personnel

As for inputs for management review, besides the results of internal audits, other example is the feedback of interested parties.

These article will provide you further explanation about ISO 22301:
- What is ISO 22301 https://advisera.com/27001academy/what-is-iso-22301/
- Why is management review important for ISO 27001 and ISO 22301? https://advisera.com/27001academy/blog/2014/03/03/why-is-management-review-important-for-iso-27001-and-iso-22301/

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Jun 02, 2018

Jun 02, 2018