Browse Definitions :
Definition

ISO 22330

Contributor(s): Matthew Haughn

ISO 22330 is a set of standard guidelines for managing the personal side of business continuity/disaster recovery (BC/DR) in response to events that could be detrimental to employee safety and productivity. The standards publication is a creation of the International Organization for Standardization, who published the ISO 22330 guidelines in June 2018.

This collection of guidelines seeks to address the human aspect of managing crisis and stressful situations affecting BC/DR. The standards are made to create preparedness and structure in order to respond to events that might otherwise affect the productivity of the staff and thus affect the BC/DR abilities and sustainability of the organization as a whole.

Guidelines and phases for ISO 22330

The guidelines are divided into phases in relation to occurrences of disruptive events. These phases include:

  • Pre-event preparation – involves the prediction, awareness and analysis of requirements, learning and development.
  • Response – includes dealing with the immediate effects of a crisis, which is often prepared for through crisis simulations, BC/DR planning and training exercises.
  • Recovery – consists of managing people and assisting in crisis response, including addressing injuries or trauma.
  • Restoration – involves rebuilding following the crisis and implementing ongoing support for employees with lasting injuries, including offering counseling for problematic trauma.

The value of preparedness is usually not obvious until after a crisis. While traditional efforts for BC and DR focused on facilities and processes, organizations have learned from shared histories that this only addresses part of the possible problems. The ISO 22330 guidelines affirm people as the greatest asset to a business and support their safety and well-being as integral aspects of business continuity and disaster recovery.

This was last updated in September 2018

Continue Reading About ISO 22330

Start the conversation

Send me notifications when other members comment.

Please create a username to comment.

File Extensions and File Formats

SearchCompliance

  • risk assessment

    Risk assessment is the identification of hazards that could negatively impact an organization's ability to conduct business.

  • PCI DSS (Payment Card Industry Data Security Standard)

    The Payment Card Industry Data Security Standard (PCI DSS) is a widely accepted set of policies and procedures intended to ...

  • risk management

    Risk management is the process of identifying, assessing and controlling threats to an organization's capital and earnings.

SearchSecurity

SearchHealthIT

SearchDisasterRecovery

  • call tree

    A call tree is a layered hierarchical communication model that is used to notify specific individuals of an event and coordinate ...

  • Disaster Recovery as a Service (DRaaS)

    Disaster recovery as a service (DRaaS) is the replication and hosting of physical or virtual servers by a third party to provide ...

  • cloud disaster recovery (cloud DR)

    Cloud disaster recovery (cloud DR) is a combination of strategies and services intended to back up data, applications and other ...

SearchStorage

Close