Browse Definitions :
Definition

ISO 22330

ISO 22330 is a set of standard guidelines for managing the personal side of business continuity/disaster recovery (BC/DR) in response to events that could be detrimental to employee safety and productivity. The standards publication is a creation of the International Organization for Standardization, who published the ISO 22330 guidelines in June 2018.

This collection of guidelines seeks to address the human aspect of managing crisis and stressful situations affecting BC/DR. The standards are made to create preparedness and structure in order to respond to events that might otherwise affect the productivity of the staff and thus affect the BC/DR abilities and sustainability of the organization as a whole.

Guidelines and phases for ISO 22330

The guidelines are divided into phases in relation to occurrences of disruptive events. These phases include:

  • Pre-event preparation – involves the prediction, awareness and analysis of requirements, learning and development.
  • Response – includes dealing with the immediate effects of a crisis, which is often prepared for through crisis simulations, BC/DR planning and training exercises.
  • Recovery – consists of managing people and assisting in crisis response, including addressing injuries or trauma.
  • Restoration – involves rebuilding following the crisis and implementing ongoing support for employees with lasting injuries, including offering counseling for problematic trauma.

The value of preparedness is usually not obvious until after a crisis. While traditional efforts for BC and DR focused on facilities and processes, organizations have learned from shared histories that this only addresses part of the possible problems. The ISO 22330 guidelines affirm people as the greatest asset to a business and support their safety and well-being as integral aspects of business continuity and disaster recovery.

This was last updated in September 2018

Continue Reading About ISO 22330

SearchCompliance
  • OPSEC (operations security)

    OPSEC (operations security) is a security and risk management process and strategy that classifies information, then determines ...

  • smart contract

    A smart contract is a decentralized application that executes business logic in response to events.

  • compliance risk

    Compliance risk is an organization's potential exposure to legal penalties, financial forfeiture and material loss, resulting ...

SearchSecurity
  • What is cybersecurity?

    Cybersecurity is the protection of internet-connected systems such as hardware, software and data from cyberthreats.

  • DOS (disk operating system)

    A DOS, or disk operating system, is an operating system that runs from a disk drive. The term can also refer to a particular ...

  • private key

    A private key, also known as a secret key, is a variable in cryptography that is used with an algorithm to encrypt and decrypt ...

SearchHealthIT
SearchDisasterRecovery
  • What is risk mitigation?

    Risk mitigation is a strategy to prepare for and lessen the effects of threats faced by a business.

  • change control

    Change control is a systematic approach to managing all changes made to a product or system.

  • disaster recovery (DR)

    Disaster recovery (DR) is an organization's ability to respond to and recover from an event that affects business operations.

SearchStorage
  • RAM (Random Access Memory)

    RAM (Random Access Memory) is the hardware in a computing device where the operating system (OS), application programs and data ...

  • RAID 6

    RAID 6, also known as double-parity RAID, uses two parity stripes on each disk. It allows for two disk failures within the RAID ...

  • NOR flash memory

    NOR flash memory is one of two types of non-volatile storage technologies.

Close