Auditing ISO 22301 - Security and Resilience and Business Continuity Management Systems
  • CODE : MICH-0030
  • Duration : 60 Minutes
  • Level : Intermediate
  • Add To Calendar
  • Refer a Friend

Dr. Michael C. Redmond, PhD is Consultant, Speaker and Author. Her certifications Include: MBCP, FBCI, PMP, CEM   ISO 27001 Lead Implementer and Lead Auditor, as well as many other ISO certifications.

Michael also conducts ISO Certification Implementation and Audit Training for PECB. Michael is the Chapter President for Association of Contingency Planners Eastern Great Lake Chapter and an active member of ISSA.

She has consulted in the area of Cyber Security for clients in the arenas of Healthcare, Insurance, Financial and Manufacturing. Her projects have included:

  • SIEM Security information and event management  which is Combining  software products and services combining security information management (SIM) and security event management (SEM)
  • (CSIRT) which is Cyber Security Incident Response Programs, Plans, Playbooks, Training and Testing.
  • Audit of  CSIRT programs and documentation
  • Information Security Programs and Implementation

Michael has consulted in the fields of Business Continuity and Disaster Recovery in the areas of Healthcare, Insurance, Financial, Manufacturing, Education and Government.

She has 2 books which are coming out in 201yand are being published by one of the Top International Publishers in the world. The first is a Cyber Security book and the second is a Business Continuity and Disaster Recovery book Michael has a series of Audio Training that receive CEU’s from Disaster Recovery Institute (DRI) and other certifications.                                                                  
They are:

  • Cyber Security Training for -  6 CEU’s 
  • Business Continuity Management for 20 CEU’s. 

Michael’s been honored as Top Woman in her field at a White House Luncheon and was selected out of the world to write the prolog for the chapter on RISK Management by the United Nations for their Disaster Book which was given to the head of state for every UN member nation.

She has recently been named on the list of “Women of Distinction for 2015” by Women of Distinction Magazine for her work in Cyber Security.

She was selected to speak on Cyber Security Incident Response and SIEM at such recent conferences as:

  • International ISSA Conference in Chicago
  • NYS Cyber Security Conference – Co Spoke with Acting CISO for New York State
  • ISACA Western New York Conference
  • Metric Stream Round Table in New York City

ISO 22301 is a standard developed by the International Organization for Standardization to provide guidance for organizations in establishing, implementing, and maintaining an effective Business Continuity Management System (BCMS). The standard helps organizations to identify potential threats and risks to their business operations and to develop strategies to mitigate them. ISO 22301 comprises of four main sections: context, leadership, planning, and support, each of which outlines key requirements that organizations must adhere to in order to achieve certification. Since its publication, ISO 22301 has helped numerous organizations enhance their capabilities for managing disruptions and to ensure the continuity of their critical products and services.

Learning Objectives    

  • In this webinar, we will discuss auditing the security and resilience of Business Continuity Management Systems (BCMS) in accordance with ISO 22301.
  • The standard is designed to ensure that organizations of all sizes can maintain critical business functions and continue operations in the event of disruptions, such as natural disasters or cyber attacks.
  • The aim is to provide auditors with a comprehensive understanding of the requirements outlined in the ISO 22301 standard.
  • It will explore the process of auditing BCMS and identifying areas of improvement for organizations.
  • It is crucial for auditors to understand the various risk and threat scenarios that an organization may face, and to assess their preparedness and resilience against them.
  • It will provide insights on how to conduct audits effectively, including risk analysis, process and system reviews, and documentation assessment.
  • Auditing ISO 22301 involves evaluating the organization’s approach to business continuity planning, emergency response, and disaster recovery activities.
  • By the end of this webinar, attendees will understand how to apply ISO 22301 guidelines and principles, and be better equipped to conduct successful BCMS audits.

Areas Covered

  • Understanding the scope and objectives of ISO 22301 Security and Resilience / Business Continuity Management Systems
  • The standard defines a framework for managing and protecting critical business processes against potential disruptions and disasters.
  • It aims to ensure that an organization can resume its operations and return to normalcy as quickly as possible.
  • The webinar will provide an overview of the principles, requirements, and benefits of ISO 22301.

Preparing for an ISO 22301 audit

  • Auditors need to be familiar with the standard and its applicability to different types of organizations and industries.
  • The webinar will explain the audit process, including scoping, planning, conducting, reporting, and follow-up.
  • Participants will learn how to assess a company's readiness for an ISO 22301 audit and identify any gaps or areas for improvement.

Conducting a risk assessment and business impact analysis

  • ISO 22301 requires organizations to identify and prioritize their critical business functions, assets, and dependencies.
  • The webinar will highlight the importance of conducting a thorough risk assessment and business impact analysis as part of the BCMS implementation.
  • Auditors will learn how to evaluate the effectiveness of these processes and ensure that they are aligned with the organization's objectives and risk appetite.

Analyzing the BCMS documentation and records

  • ISO 22301 requires organizations to maintain a documented BCMS that includes policies, procedures, plans, and records.
  • The webinar will explain how auditors can review and analyze the BCMS documentation and records to verify compliance and effectiveness.
  • Participants will learn how to identify gaps, inconsistencies, and opportunities for improvement in the documentation and records.

Assessing the effectiveness of BCMS implementation

  • The webinar will provide guidance on how to assess the effectiveness of BCMS implementation, including the management system, operational controls, and metrics.
  • Auditors will learn how to use evidence-based auditing techniques to evaluate the maturity and effectiveness of the BCMS.
  • Participants will also learn how to provide recommendations for corrective actions and improvements to the BCMS.

Auditing the BCMS performance monitoring and measurement

  • ISO 22301 requires organizations to monitor and measure the performance of their BCMS and take corrective actions as needed.
  • The webinar will provide auditors with tools and techniques to evaluate the performance monitoring and measurement processes and their alignment with the organization's objectives.
  • Participants will learn how to determine the effectiveness of the performance monitoring and measurement in supporting continuous improvement of the BCMS.

Verifying the compliance with legal, regulatory, and contractual requirements

  • The webinar will provide guidance on how to verify the organization's compliance with relevant legal, regulatory, and contractual requirements related to business continuity management.
  • Auditors will learn how to assess the BCMS's alignment with these requirements and identify any potential gaps or areas for improvement.
  • Participants will also learn how to provide recommendations for corrective actions and improvements to ensure compliance.
  • Reporting audit findings and following up on corrective actions
  • The webinar will explain how to prepare an audit report that summarizes the audit objectives, scope, methodology, observations, and recommendations.
  • Participants will learn how to communicate the audit findings effectively to the organization's management and stakeholders.
  • The webinar will also provide guidance on how to follow up on corrective actions and verify their effectiveness.

Course Level - Intermediate

Who Should Attend

The target audience for the webinar on Auditing ISO 22301 - Security and Resilience / Business Continuity Management Systems primarily comprises of auditors who are responsible for conducting audits for businesses and organizations that want to implement or maintain ISO 22301 certification. These auditors may come from independent certification bodies, consulting firms, or internal audit departments of the organizations seeking certification.

The webinar can also benefit other stakeholders, including senior management, risk and compliance officers, information security professionals, and business continuity managers. These individuals need to stay informed about the latest developments and trends in business continuity management and ISO 22301 standard compliance to ensure the organization is equipped to respond to any disruption or crisis.

The target audience for the webinar may also include professionals seeking to expand their knowledge base or seeking professional development opportunities in the field of business continuity management and ISO 22301 compliance. These individuals may include consultants, trainers, or academics who want to stay informed and up-to-date on the latest best practices, trends, and emerging issues.

In summary, the target audience for the webinar on Auditing ISO 22301 - Security and Resilience / Business Continuity Management Systems is auditors, senior management, risk and compliance officers, information security professionals, business continuity managers, consultants, trainers, and academics who want to learn about the latest developments and trends in business continuity management and ISO 22301 compliance.

Why Should You Attend

Attending a webinar focused on Auditing ISO 22301 - Security and Resilience/Business Continuity Management Systems is an excellent opportunity for auditors who want to stay up-to-date with the latest industry standards and best practices. ISO 22301 is a crucial international standard that outlines the requirements for a business continuity management system, which ensures that organizations can continue to operate under any circumstances. By attending this webinar, auditors will gain valuable insights into the auditing process for ISO 22301 and learn how to effectively assess an organization's business continuity management system. The webinar will cover essential topics such as risk assessment, incident management, business continuity planning, and performance evaluation. Additionally, it will provide auditors with the opportunity to engage with experts in the field and exchange practical tips and tricks for auditing an organization's resilience and security. By attending this webinar, auditors will sharpen their skills and become better equipped to help organizations navigate the increasingly complex business environment.

  • $160.00



Webinar Variants


contact us for your queries :

713-401-9995

support at grceducators.com



  • Contact
  • Membership
  • Subscribe
  • Secure Payment