BS EN ISO 22301:2019 Security and Resilience - Business Continuity Management - Requirements

BS EN ISO 22301:2019 - TC

Tracked Changes. Security and resilience. Business continuity management systems. Requirements

Status : Current   Published : November 2019


What is a tracked changes standard?

A tracked changes version of a Standard indicates the changes made, during the standards revision process, between the active standard and its previous version. Additions, deletions, and other formatting and/or content revisions are clearly displayed as underlined and strikethrough texts, ensuring all changes made between the two documents are quickly and easily identified. This version of the standard includes both a copy of the new standard, along with a track changes version.

What is this standard about?

This updated international standard details the requirements of a business continuity management system (BCMS). It enables organizations to prepare for disruptive incidents that might otherwise prevent them from achieving their objectives. Users will be better prepared for disruptions and will recover more quickly, minimizing the impact on employees, customers and suppliers.

Who is this standard for?

  • Senior business managers
  • Continuity, resilience, risk and change management industries
  • Quality management industry
  • Insurers

Why should you use this standard?

BS EN ISO 22301 specifies requirements to implement, maintain and improve a management system which prepares for, responds to, reduces the likelihood of, and speeds recovery from disruptions. It’s based on the ‘Plan-Do-Check-Act’ model which continually improves organizational effectiveness through proficient planning, implementation, supervision, review and maintenance.

The requirements are generic and to apply to all organizations, or parts thereof, regardless of the type, size and nature of the organization. It applies to organizations that: 

  • Implement, maintain and improve a BCMS
  • Seek to ensure conformity with stated business continuity policy
  • Need to be able to continue to deliver products and services at an acceptable predefined capacity during a disruption
  • Seek to enhance their resilience through the effective application of the BCMS

The extent of application of requirements depends on the organization's operating environment and complexity. 

Business continuity contributes to the development of a more resilient society while organizations without an effective BCMS risk significant vulnerability.

The standard can also be used to assess an organization’s ability to meet its own continuity needs and obligations, and to establish a business continuity management policy that provides a framework for implementing effective business continuity arrangements.

What’s changed since the last update?

This second edition cancels and replaces the first edition (BS ISO 22301:2012), which has been technically revised. The main changes compared with the previous edition are:

  • It now conforms to ISO’s requirements for management system standards, which have evolved since 2012
  • Requirements have been clarified, with no new requirements added
  • Discipline-specific business continuity requirements are now almost entirely within section 8
  • Section 8 has been re-structured to provide clearer understanding of the key requirements
  • A number of discipline-specific business continuity terms have been modified to improve clarity and reflect current thinking         

Standard NumberBS EN ISO 22301:2019 - TC
TitleTracked Changes. Security and resilience. Business continuity management systems. Requirements
Publication Date19 November 2019
Normative References(Required to achieve compliance to this standard)ISO 22300
Informative References(Provided for Information)ISO 31000, ISO/TS 22317, ISO 19011, ISO 28000, ISO/TS 22330, ISO/IEC/TS 17021-6, ISO 9001, ISO/TS 22331, ISO Guide 73, IEC 31010, ISO/IEC 27031, ISO 22316, ISO/IEC 27001, ISO 22313, ISO/IEC 20000-1, ISO/TS 22318, ISO 14001
International RelationshipsEN ISO 22301:2019,ERROR,ISO 22301:2019
Draft Superseded By19/30382482 DC
DescriptorsEnterprises, Commerce, Management operations, Documents, Planning, Security, Risk analysis, Business continuity, Organizations, Management, Risk assessment, Emergency measures
Title in FrenchSécurité et résilience. Systèmes de management de la continuité d'activité. Exigences
Title in GermanSicherheit und Resilienz. Business Continuity Management System. Anforderungen
ISBN978 0 539 06791 0
File Size3.479 MB

 Your basket
Your basket is empty

Multi-user access to over 3,500 medical device standards, regulations, expert commentaries and other documents

Tracked Changes

Understand the changes made to a standard with our new Tracked Changes version


Access, view and download standards with multiple user access, across multiple sites with BSOL

Develop a PAS

Develop a fast-track standardization document in 9-12 months