Browse Definitions :
Definition

ISO 22330

Contributor(s): Matthew Haughn

ISO 22330 is a set of standard guidelines for managing the personal side of business continuity/disaster recovery (BC/DR) in response to events that could be detrimental to employee safety and productivity. The standards publication is a creation of the International Organization for Standardization, who published the ISO 22330 guidelines in June 2018.

This collection of guidelines seeks to address the human aspect of managing crisis and stressful situations affecting BC/DR. The standards are made to create preparedness and structure in order to respond to events that might otherwise affect the productivity of the staff and thus affect the BC/DR abilities and sustainability of the organization as a whole.

Guidelines and phases for ISO 22330

The guidelines are divided into phases in relation to occurrences of disruptive events. These phases include:

  • Pre-event preparation – involves the prediction, awareness and analysis of requirements, learning and development.
  • Response – includes dealing with the immediate effects of a crisis, which is often prepared for through crisis simulations, BC/DR planning and training exercises.
  • Recovery – consists of managing people and assisting in crisis response, including addressing injuries or trauma.
  • Restoration – involves rebuilding following the crisis and implementing ongoing support for employees with lasting injuries, including offering counseling for problematic trauma.

The value of preparedness is usually not obvious until after a crisis. While traditional efforts for BC and DR focused on facilities and processes, organizations have learned from shared histories that this only addresses part of the possible problems. The ISO 22330 guidelines affirm people as the greatest asset to a business and support their safety and well-being as integral aspects of business continuity and disaster recovery.

This was last updated in September 2018

Continue Reading About ISO 22330

Start the conversation

Send me notifications when other members comment.

Please create a username to comment.

-ADS BY GOOGLE

File Extensions and File Formats

SearchCompliance

  • compliance audit

    A compliance audit is a comprehensive review of an organization's adherence to regulatory guidelines.

  • regulatory compliance

    Regulatory compliance is an organization's adherence to laws, regulations, guidelines and specifications relevant to its business...

  • Whistleblower Protection Act

    The Whistleblower Protection Act of 1989 is a law that protects federal government employees in the United States from ...

SearchSecurity

  • data breach

    A data breach is a confirmed incident in which sensitive, confidential or otherwise protected data has been accessed and/or ...

  • zero-day (computer)

    A zero-day vulnerability, also known as a computer zero day, is a flaw in software, hardware or firmware that is unknown to the ...

  • Cybercrime

    Cybercrime is any criminal activity that involves a computer, networked device or a network.

SearchHealthIT

SearchDisasterRecovery

  • cloud insurance

    Cloud insurance is any type of financial or data protection obtained by a cloud service provider. 

  • business continuity software

    Business continuity software is an application or suite designed to make business continuity planning/business continuity ...

  • business continuity policy

    Business continuity policy is the set of standards and guidelines an organization enforces to ensure resilience and proper risk ...

SearchStorage

  • business impact analysis (BIA)

    Business impact analysis (BIA) is a systematic process to determine and evaluate the potential effects of an interruption to ...

  • RAID (redundant array of independent disks)

    RAID (redundant array of independent disks) is a way of storing the same data in different places on multiple hard disks to ...

  • dedicated cloud

    A dedicated cloud is a single-tenant cloud infrastructure, which essentially acts as an isolated, single-tenant public cloud.

Close