Archives

  • ISO 22301’s Relationship to BS 25999-2 and Other Standards

    Similar to other management systems standards, ISO 22301 is based on the ‘Plan-Do-Check-Act’ model that seeks to improve – in a continual manner – the effectiveness of the organization’s performance through proficient planning, implementation, supervision, review and…

    Brian Zawada, FBCI Brian Zawada, FBCI | Jan 14, 2013
  • Using ISO 27031 to Guide IT Disaster Recovery Alignment with ISO 22301

    Many organizations struggle to define the best method to meet business expectations regarding information technology (IT) recovery. ISO 27031 provides guidance to business continuity and IT disaster recovery professionals on how to plan for IT continuity and…

    Avalution Team Avalution Team | Nov 09, 2012
  • How to Determine Risk Appetite in the Context of Business Continuity

    The introduction of ISO 22301 (Societal security – Requirements – Business continuity management system) more closely aligns business continuity to the broader risk management discipline.  A major contributor to this alignment is the standard’s requirement to understand…

    Brian Zawada, FBCI Brian Zawada, FBCI | Jul 02, 2012
  • Applying Root Cause Analysis (RCA) to Business Continuity

    Though many business continuity standards emphasize the importance of tracking corrective actions to address identified issues, the recently published ISO 22301 (and previously BS 25999-2) also requires conducting a root cause analysis – looking not just at…

    Avalution Team Avalution Team | Jun 06, 2012
  • Organizational Resilience: What it could, or should, mean in the standards landscape

    As Posted in the Digital Edition of Continuity Insights Magazine Admittedly, I wrote this article to better get my mind around the swirling debate regarding the concept of organizational resilience and what it means – or better…

    Brian Zawada, FBCI Brian Zawada, FBCI | Apr 04, 2012
  • The Exercise: Where the Rubber Meets the Road

    Since 2005, Avalution Consulting has performed hundreds of business continuity exercises with organizations in every major industry and sector throughout the United States.  No matter the scope of the exercise or the level of complexity, several key…

    Avalution Team Avalution Team | Feb 08, 2012
  • What Does Effective Business Continuity Management Look Like?

    I recently read a column in the Disaster Recovery Journal where the editor interviewed John Copenhaver regarding Standards, Resilience and the Future of Business Continuity Management (BCM). John made the following statement when asked about the importance of…

    Brian Zawada, FBCI Brian Zawada, FBCI | Jan 16, 2012
  • Force Majeure: What is it and How Does it Relate to Business Continuity?

    We see a lot of confusion specific to the topic of force majeure. Often, executive management has the belief that force majeure clauses in their contracts protect them from a wide variety of disruptive events, and thus…

    Avalution Team Avalution Team | Nov 30, 2011
  • More than a Plan: Establishing a Disaster Recovery Program

    Many organizations think having a disaster recovery plan is all the protection they need from disasters. However, there is so much more to disaster recovery than just a plan! That’s why most industry professionals see disaster recovery…

    Avalution Team Avalution Team | Oct 13, 2011
  • An Update on TC 223 and ISO 22301

    Online Exclusive – as published on drj.com  | Updated June 2012 [EDITOR’S NOTE – Brian Zawada is a member of the US Technical Advisory Group to ISO Technical Committee 223. Zawada participated in the 2011 and 2012 meetings as a…

    Brian Zawada, FBCI Brian Zawada, FBCI | Aug 11, 2011
  • Business Continuity Scoping: Why Products and Services?

    A Business Continuity Scoping Approach That Contributes to Better Management Engagement and Prioritization of Risk Management Efforts One of the most common questions business continuity professionals ask is how to keep management involved in the ongoing preparedness…

    Avalution Team Avalution Team | Aug 09, 2011
  • The Basics of ISO 31000 – Risk Management

    After approval by the ISO member bodies, the ISO Technical Management Board Working Group on risk management released ISO 31000:2009, Risk Management – Principles and Guidelines in November of 2009. The authors designed the standard to be…

    Avalution Team Avalution Team | Jan 19, 2011