SlideShare uma empresa Scribd logo
1 de 16
PECB Webinar
2015-11-04
© 2015
Dr. Wolfgang H. Mahr, M.Sc., BBA, MBCI,
CISA
governance & continuuuity gmbh
CH-8408 Winterthur, Switzerland
www.continuuuity.ch
LinkedIn, XING, Twitter, YouTube
wolfgang.mahr@continuuuity.ch
Page1
PECB Webinar
2015-11-04
© 2015 Page2
 Why Supply Chain Continuity?
 Publication status
 SCCM in the BCM Life Cycle
 SCCM in the BCMS Life Cycle
 Context of ISO/TS 22318
 SCC supporting BCM Goals
 ISO/TC 22318
 Importance of SCC
 Analysis of the Supply Chain
 SCC Strategies
 Managing Disruptions
 Supplier Performance Evaluation
 SCC Critical Success Factors
PECB Webinar
2015-11-04
© 2015 Page3
 Supply Chain Continuity Management 
SCCM
 Critical importance of the supply chain
◦ National level critical infrastructure
 Hierarchical, multi-tier relationships
 Challenge to handle a third party
 Hardly “visible”
PECB Webinar
2015-11-04
© 2015 Page4
PECB Webinar
2015-11-04
© 2015
SCCM in the BCM Life Cycle
Reference: The Business Continuity Institute
Page5
BIA
Strategy
Handling Events
Tests and
Exercises
Embedding
SCCM
PECB Webinar
2015-11-04
© 2015
SCCM in the BCMS Life Cycle
Reference: ISO 22301:2012
Page6
PECB Webinar
2015-11-04
© 2015
Context of ISO/TS 22318
Page7
ISO/TS 22317 (BIA Guidance)
ISO/TS 22318 (SCC Guidance)
ISO 22313 (BCMS Guidance)
ISO 22301(BCMS Specification)
PECB Webinar
2015-11-04
© 2015
 Protecting company value and reputation
 Safeguards the reputation and future of the company in an
emergency
 Increase shareholder value and demonstrates commitment by
management
 Assures the survival of the company in the case of a serious
incident
 Minimize financial losses in case of an incident or emergency
SCC supporting BCM Goals
Page8
PECB Webinar
2015-11-04
© 2015
 Developed by ISO TC/292 (“Security and Resilience”),
◦ work started in ISO TC/223
 Published on 2015-09-16
 Based on ISO 22301, ISO 22313 and ISO 22300
 Focus on:
◦ Importance of SCC
◦ Analysis of the Supply Chain
◦ SCCM Strategies
◦ Managing disruptions
◦ (Supplier) Performance evaluation
ISO/TS 22318 on SCC
Page9
PECB Webinar
2015-11-04
© 2015
 To be analyzed during the BIA
 …and on an ongoing basis
 Business processes are likely to be highly dependent on
suppliers
 Be aware of hidden, non-obvious dependencies
 Be aware of pseudo-redundancies
Page10
PECB Webinar
2015-11-04
© 2015
 Obtain an overview of the levels of the supply chain
 Determine the relevance of the suppliers
 Inspect contractual relationships
 Identify critically important suppliers, as per the BIA
 Identify challenges when dealing with SCCM
Page11
Tier 3 Tier 2 Tier 1
Our Organisation
PECB Webinar
2015-11-04
© 2015
 Do nothing, maybe apply insurance cover
 Reduce dependency (from a single supplier)
 Insourcing, switch suppliers
 Develop a deeper relationship with the supplier
◦ Obtain assurance on the supplier’s own BC approach
 Terminate the relationship
Page12
PECB Webinar
2015-11-04
© 2015
 Preparation phase:
◦ Analysis
◦ SCC strategies
◦ Exercises
 Early detection
 Incident handling
◦ Monitoring and communication
◦ Switch to pre-approved alternate supplier
 Managing the return-to-normal phase
◦ Lessons learned
Page13
PECB Webinar
2015-11-04
© 2015
 Focus on critical suppliers
◦ …on an ongoing basis,
◦ …in BIA revisions
 Exercises and tests
 Monitoring and review
Page14
PECB Webinar
2015-11-04
© 2015
SCC Critical Success Factors
Page15
 Follow best practices such as
◦ BCI’s Good Practice Guidelines and/or
◦ ISO Standards such a ISO 22301, ISO 22313
and ISO/TS 22318
 Obtain top management commitment
 Apply project management methodologies
 Use an approach compatible with the company’s
structure
 Try to “drill down” to the ultimate tier supplier, to
reveal true dependencies
PECB Webinar
2015-11-04
© 2015
Thank you
Page16

Mais conteúdo relacionado

Destaque

Destaque (11)

PECB Infographic: The Importance of Road Traffic Safety
PECB Infographic: The Importance of Road Traffic Safety PECB Infographic: The Importance of Road Traffic Safety
PECB Infographic: The Importance of Road Traffic Safety
 
PECB Webinar: Understanding the basics of laboratory management with ISO/IEC ...
PECB Webinar: Understanding the basics of laboratory management with ISO/IEC ...PECB Webinar: Understanding the basics of laboratory management with ISO/IEC ...
PECB Webinar: Understanding the basics of laboratory management with ISO/IEC ...
 
PECB Webinar: ISO 39001 Road Traffic Safety
PECB Webinar: ISO 39001 Road Traffic SafetyPECB Webinar: ISO 39001 Road Traffic Safety
PECB Webinar: ISO 39001 Road Traffic Safety
 
PECB Webinar: Introduction to ISO 22317 – Business Impact Analysis (BIA)
PECB Webinar: Introduction to ISO 22317 – Business Impact Analysis (BIA)PECB Webinar: Introduction to ISO 22317 – Business Impact Analysis (BIA)
PECB Webinar: Introduction to ISO 22317 – Business Impact Analysis (BIA)
 
PECB Webinar: Occupational Hazard Identification Risk Assessment and Risk Con...
PECB Webinar: Occupational Hazard Identification Risk Assessment and Risk Con...PECB Webinar: Occupational Hazard Identification Risk Assessment and Risk Con...
PECB Webinar: Occupational Hazard Identification Risk Assessment and Risk Con...
 
PECB Webinar: ISO 9001:2015 Transition – Understanding the changes
PECB Webinar: ISO 9001:2015 Transition – Understanding the changes PECB Webinar: ISO 9001:2015 Transition – Understanding the changes
PECB Webinar: ISO 9001:2015 Transition – Understanding the changes
 
Project management Critical Success Factor
Project management Critical Success FactorProject management Critical Success Factor
Project management Critical Success Factor
 
The new ISO 9001:2015
The new ISO 9001:2015The new ISO 9001:2015
The new ISO 9001:2015
 
Workshop SEO + ECOMMERCE #ECOMTEAM
Workshop SEO + ECOMMERCE #ECOMTEAMWorkshop SEO + ECOMMERCE #ECOMTEAM
Workshop SEO + ECOMMERCE #ECOMTEAM
 
OHSAS Hazard identification & Risk assessment
OHSAS Hazard identification & Risk assessmentOHSAS Hazard identification & Risk assessment
OHSAS Hazard identification & Risk assessment
 
Powerpoint Risk Assessment
Powerpoint Risk AssessmentPowerpoint Risk Assessment
Powerpoint Risk Assessment
 

Semelhante a PECB Webinar: ISO/TS 22318: A New ISO Technical Specification on Supply Chain Continuity Management (SCCM)

Driving Ambiguities Out of Requirements through Stronger Elicitation Techniques
Driving Ambiguities Out of Requirements through Stronger Elicitation TechniquesDriving Ambiguities Out of Requirements through Stronger Elicitation Techniques
Driving Ambiguities Out of Requirements through Stronger Elicitation Techniques
Susan Schanta
 
IADC Sept 2015 -RCM-Print PDF
IADC Sept 2015 -RCM-Print PDFIADC Sept 2015 -RCM-Print PDF
IADC Sept 2015 -RCM-Print PDF
Pieter van Asten
 
ITME 2015 - Module introduction
ITME 2015 - Module introductionITME 2015 - Module introduction
ITME 2015 - Module introduction
Cathy Coolen
 
Webinar Critical Chain Project Management - Marris Consulting - June 2020
Webinar Critical Chain Project Management  - Marris Consulting - June 2020Webinar Critical Chain Project Management  - Marris Consulting - June 2020
Webinar Critical Chain Project Management - Marris Consulting - June 2020
MARRIS Consulting
 
A business continuity challenge - Joseph Thomas
A business continuity challenge - Joseph ThomasA business continuity challenge - Joseph Thomas
A business continuity challenge - Joseph Thomas
BCM Institute
 
E-Commerce And Supply Chain Management
E-Commerce And Supply Chain ManagementE-Commerce And Supply Chain Management
E-Commerce And Supply Chain Management
RebekahSamuel2
 

Semelhante a PECB Webinar: ISO/TS 22318: A New ISO Technical Specification on Supply Chain Continuity Management (SCCM) (20)

Presentation ub
Presentation ubPresentation ub
Presentation ub
 
PAS 2015: NHS Resilience Next Steps, Phil Storr Head of NHS Resilience Projec...
PAS 2015: NHS Resilience Next Steps, Phil Storr Head of NHS Resilience Projec...PAS 2015: NHS Resilience Next Steps, Phil Storr Head of NHS Resilience Projec...
PAS 2015: NHS Resilience Next Steps, Phil Storr Head of NHS Resilience Projec...
 
Business Continuity Audit
Business Continuity AuditBusiness Continuity Audit
Business Continuity Audit
 
CHAPTER 15 MANAGING SUPPLIERS AND CUSTOMERS solution.pdf
CHAPTER 15 MANAGING SUPPLIERS AND CUSTOMERS solution.pdfCHAPTER 15 MANAGING SUPPLIERS AND CUSTOMERS solution.pdf
CHAPTER 15 MANAGING SUPPLIERS AND CUSTOMERS solution.pdf
 
FCB Partners Webinar: Measure What Matters
FCB Partners Webinar: Measure What Matters FCB Partners Webinar: Measure What Matters
FCB Partners Webinar: Measure What Matters
 
Business Continuity Strategy Benchmarking April 8th, 2009
Business Continuity Strategy Benchmarking April 8th, 2009Business Continuity Strategy Benchmarking April 8th, 2009
Business Continuity Strategy Benchmarking April 8th, 2009
 
FCB Partners Webinar: Process 2020: The Cutting Edge of Process Innovation
FCB Partners Webinar: Process 2020: The Cutting Edge of Process Innovation FCB Partners Webinar: Process 2020: The Cutting Edge of Process Innovation
FCB Partners Webinar: Process 2020: The Cutting Edge of Process Innovation
 
Webinar lean in maintenance 1 juli 2020
Webinar   lean in maintenance 1 juli 2020Webinar   lean in maintenance 1 juli 2020
Webinar lean in maintenance 1 juli 2020
 
Driving Ambiguities Out of Requirements through Stronger Elicitation Techniques
Driving Ambiguities Out of Requirements through Stronger Elicitation TechniquesDriving Ambiguities Out of Requirements through Stronger Elicitation Techniques
Driving Ambiguities Out of Requirements through Stronger Elicitation Techniques
 
Vendor management using COBIT 5
Vendor management using COBIT 5Vendor management using COBIT 5
Vendor management using COBIT 5
 
IADC Sept 2015 -RCM-Print PDF
IADC Sept 2015 -RCM-Print PDFIADC Sept 2015 -RCM-Print PDF
IADC Sept 2015 -RCM-Print PDF
 
Consulting Skills: The Art and Science of Success
Consulting Skills: The Art and Science of SuccessConsulting Skills: The Art and Science of Success
Consulting Skills: The Art and Science of Success
 
ITME 2015 - Module introduction
ITME 2015 - Module introductionITME 2015 - Module introduction
ITME 2015 - Module introduction
 
VDA Robuster_en 2019 Product Manufacturing and Delivery Robust Production Pro...
VDA Robuster_en 2019 Product Manufacturing and Delivery Robust Production Pro...VDA Robuster_en 2019 Product Manufacturing and Delivery Robust Production Pro...
VDA Robuster_en 2019 Product Manufacturing and Delivery Robust Production Pro...
 
Webinar Critical Chain Project Management - Marris Consulting - June 2020
Webinar Critical Chain Project Management  - Marris Consulting - June 2020Webinar Critical Chain Project Management  - Marris Consulting - June 2020
Webinar Critical Chain Project Management - Marris Consulting - June 2020
 
The Business Continuity Conference, 25th October 2023 in Riyadh - Mr. Atiq Bajwa
The Business Continuity Conference, 25th October 2023 in Riyadh - Mr. Atiq BajwaThe Business Continuity Conference, 25th October 2023 in Riyadh - Mr. Atiq Bajwa
The Business Continuity Conference, 25th October 2023 in Riyadh - Mr. Atiq Bajwa
 
Responsibly Managing Supply Chain Chemical Compliance in the Decade of Regula...
Responsibly Managing Supply Chain Chemical Compliance in the Decade of Regula...Responsibly Managing Supply Chain Chemical Compliance in the Decade of Regula...
Responsibly Managing Supply Chain Chemical Compliance in the Decade of Regula...
 
A business continuity challenge - Joseph Thomas
A business continuity challenge - Joseph ThomasA business continuity challenge - Joseph Thomas
A business continuity challenge - Joseph Thomas
 
E-Commerce And Supply Chain Management
E-Commerce And Supply Chain ManagementE-Commerce And Supply Chain Management
E-Commerce And Supply Chain Management
 
Avoid Post-M&A Supply Chain Surprises - OMTEC 2017
Avoid Post-M&A Supply Chain Surprises - OMTEC 2017Avoid Post-M&A Supply Chain Surprises - OMTEC 2017
Avoid Post-M&A Supply Chain Surprises - OMTEC 2017
 

Mais de PECB

Beyond the EU: DORA and NIS 2 Directive's Global Impact
Beyond the EU: DORA and NIS 2 Directive's Global ImpactBeyond the EU: DORA and NIS 2 Directive's Global Impact
Beyond the EU: DORA and NIS 2 Directive's Global Impact
PECB
 
DORA, ISO/IEC 27005, and the Rise of AI: Securing the Future of Cybersecurity
DORA, ISO/IEC 27005, and the Rise of AI: Securing the Future of CybersecurityDORA, ISO/IEC 27005, and the Rise of AI: Securing the Future of Cybersecurity
DORA, ISO/IEC 27005, and the Rise of AI: Securing the Future of Cybersecurity
PECB
 
Securing the Future: ISO/IEC 27001, ISO/IEC 42001, and AI Governance
Securing the Future: ISO/IEC 27001, ISO/IEC 42001, and AI GovernanceSecuring the Future: ISO/IEC 27001, ISO/IEC 42001, and AI Governance
Securing the Future: ISO/IEC 27001, ISO/IEC 42001, and AI Governance
PECB
 
ISO/IEC 27032, ISO/IEC 27002, and CMMC Frameworks - Achieving Cybersecurity M...
ISO/IEC 27032, ISO/IEC 27002, and CMMC Frameworks - Achieving Cybersecurity M...ISO/IEC 27032, ISO/IEC 27002, and CMMC Frameworks - Achieving Cybersecurity M...
ISO/IEC 27032, ISO/IEC 27002, and CMMC Frameworks - Achieving Cybersecurity M...
PECB
 
ISO/IEC 27001 and ISO/IEC 27035: Building a Resilient Cybersecurity Strategy ...
ISO/IEC 27001 and ISO/IEC 27035: Building a Resilient Cybersecurity Strategy ...ISO/IEC 27001 and ISO/IEC 27035: Building a Resilient Cybersecurity Strategy ...
ISO/IEC 27001 and ISO/IEC 27035: Building a Resilient Cybersecurity Strategy ...
PECB
 
ISO/IEC 27001 and ISO/IEC 27005: Managing AI Risks Effectively
ISO/IEC 27001 and ISO/IEC 27005: Managing AI Risks EffectivelyISO/IEC 27001 and ISO/IEC 27005: Managing AI Risks Effectively
ISO/IEC 27001 and ISO/IEC 27005: Managing AI Risks Effectively
PECB
 
Aligning ISO/IEC 27032:2023 and ISO/IEC 27701: Strengthening Cybersecurity Re...
Aligning ISO/IEC 27032:2023 and ISO/IEC 27701: Strengthening Cybersecurity Re...Aligning ISO/IEC 27032:2023 and ISO/IEC 27701: Strengthening Cybersecurity Re...
Aligning ISO/IEC 27032:2023 and ISO/IEC 27701: Strengthening Cybersecurity Re...
PECB
 
ISO/IEC 27001 and ISO/IEC 27032:2023 - Safeguarding Your Digital Transformation
ISO/IEC 27001 and ISO/IEC 27032:2023 - Safeguarding Your Digital TransformationISO/IEC 27001 and ISO/IEC 27032:2023 - Safeguarding Your Digital Transformation
ISO/IEC 27001 and ISO/IEC 27032:2023 - Safeguarding Your Digital Transformation
PECB
 
Managing ISO 31000 Framework in AI Systems - The EU ACT and other regulations
Managing ISO 31000 Framework in AI Systems - The EU ACT and other regulationsManaging ISO 31000 Framework in AI Systems - The EU ACT and other regulations
Managing ISO 31000 Framework in AI Systems - The EU ACT and other regulations
PECB
 
Impact of Generative AI in Cybersecurity - How can ISO/IEC 27032 help?
Impact of Generative AI in Cybersecurity - How can ISO/IEC 27032 help?Impact of Generative AI in Cybersecurity - How can ISO/IEC 27032 help?
Impact of Generative AI in Cybersecurity - How can ISO/IEC 27032 help?
PECB
 
GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...
GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...
GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...
PECB
 
How Can ISO/IEC 27001 Help Organizations Align With the EU Cybersecurity Regu...
How Can ISO/IEC 27001 Help Organizations Align With the EU Cybersecurity Regu...How Can ISO/IEC 27001 Help Organizations Align With the EU Cybersecurity Regu...
How Can ISO/IEC 27001 Help Organizations Align With the EU Cybersecurity Regu...
PECB
 
ISO/IEC 27001 and ISO 22301 - How to ensure business survival against cyber a...
ISO/IEC 27001 and ISO 22301 - How to ensure business survival against cyber a...ISO/IEC 27001 and ISO 22301 - How to ensure business survival against cyber a...
ISO/IEC 27001 and ISO 22301 - How to ensure business survival against cyber a...
PECB
 
Integrating ISO/IEC 27001 and ISO 31000 for Effective Information Security an...
Integrating ISO/IEC 27001 and ISO 31000 for Effective Information Security an...Integrating ISO/IEC 27001 and ISO 31000 for Effective Information Security an...
Integrating ISO/IEC 27001 and ISO 31000 for Effective Information Security an...
PECB
 
IT Governance and Information Security – How do they map?
IT Governance and Information Security – How do they map?IT Governance and Information Security – How do they map?
IT Governance and Information Security – How do they map?
PECB
 
Student Information Session University Digital Encode.pptx
Student Information Session University Digital Encode.pptxStudent Information Session University Digital Encode.pptx
Student Information Session University Digital Encode.pptx
PECB
 
Cybersecurity trends - What to expect in 2023
Cybersecurity trends - What to expect in 2023Cybersecurity trends - What to expect in 2023
Cybersecurity trends - What to expect in 2023
PECB
 

Mais de PECB (20)

Beyond the EU: DORA and NIS 2 Directive's Global Impact
Beyond the EU: DORA and NIS 2 Directive's Global ImpactBeyond the EU: DORA and NIS 2 Directive's Global Impact
Beyond the EU: DORA and NIS 2 Directive's Global Impact
 
DORA, ISO/IEC 27005, and the Rise of AI: Securing the Future of Cybersecurity
DORA, ISO/IEC 27005, and the Rise of AI: Securing the Future of CybersecurityDORA, ISO/IEC 27005, and the Rise of AI: Securing the Future of Cybersecurity
DORA, ISO/IEC 27005, and the Rise of AI: Securing the Future of Cybersecurity
 
Securing the Future: ISO/IEC 27001, ISO/IEC 42001, and AI Governance
Securing the Future: ISO/IEC 27001, ISO/IEC 42001, and AI GovernanceSecuring the Future: ISO/IEC 27001, ISO/IEC 42001, and AI Governance
Securing the Future: ISO/IEC 27001, ISO/IEC 42001, and AI Governance
 
ISO/IEC 27032, ISO/IEC 27002, and CMMC Frameworks - Achieving Cybersecurity M...
ISO/IEC 27032, ISO/IEC 27002, and CMMC Frameworks - Achieving Cybersecurity M...ISO/IEC 27032, ISO/IEC 27002, and CMMC Frameworks - Achieving Cybersecurity M...
ISO/IEC 27032, ISO/IEC 27002, and CMMC Frameworks - Achieving Cybersecurity M...
 
ISO/IEC 27001 and ISO/IEC 27035: Building a Resilient Cybersecurity Strategy ...
ISO/IEC 27001 and ISO/IEC 27035: Building a Resilient Cybersecurity Strategy ...ISO/IEC 27001 and ISO/IEC 27035: Building a Resilient Cybersecurity Strategy ...
ISO/IEC 27001 and ISO/IEC 27035: Building a Resilient Cybersecurity Strategy ...
 
ISO/IEC 27001 and ISO/IEC 27005: Managing AI Risks Effectively
ISO/IEC 27001 and ISO/IEC 27005: Managing AI Risks EffectivelyISO/IEC 27001 and ISO/IEC 27005: Managing AI Risks Effectively
ISO/IEC 27001 and ISO/IEC 27005: Managing AI Risks Effectively
 
Aligning ISO/IEC 27032:2023 and ISO/IEC 27701: Strengthening Cybersecurity Re...
Aligning ISO/IEC 27032:2023 and ISO/IEC 27701: Strengthening Cybersecurity Re...Aligning ISO/IEC 27032:2023 and ISO/IEC 27701: Strengthening Cybersecurity Re...
Aligning ISO/IEC 27032:2023 and ISO/IEC 27701: Strengthening Cybersecurity Re...
 
ISO/IEC 27001 and ISO/IEC 27032:2023 - Safeguarding Your Digital Transformation
ISO/IEC 27001 and ISO/IEC 27032:2023 - Safeguarding Your Digital TransformationISO/IEC 27001 and ISO/IEC 27032:2023 - Safeguarding Your Digital Transformation
ISO/IEC 27001 and ISO/IEC 27032:2023 - Safeguarding Your Digital Transformation
 
Managing ISO 31000 Framework in AI Systems - The EU ACT and other regulations
Managing ISO 31000 Framework in AI Systems - The EU ACT and other regulationsManaging ISO 31000 Framework in AI Systems - The EU ACT and other regulations
Managing ISO 31000 Framework in AI Systems - The EU ACT and other regulations
 
Impact of Generative AI in Cybersecurity - How can ISO/IEC 27032 help?
Impact of Generative AI in Cybersecurity - How can ISO/IEC 27032 help?Impact of Generative AI in Cybersecurity - How can ISO/IEC 27032 help?
Impact of Generative AI in Cybersecurity - How can ISO/IEC 27032 help?
 
GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...
GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...
GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...
 
How Can ISO/IEC 27001 Help Organizations Align With the EU Cybersecurity Regu...
How Can ISO/IEC 27001 Help Organizations Align With the EU Cybersecurity Regu...How Can ISO/IEC 27001 Help Organizations Align With the EU Cybersecurity Regu...
How Can ISO/IEC 27001 Help Organizations Align With the EU Cybersecurity Regu...
 
Student Information Session University KTMC
Student Information Session University KTMC Student Information Session University KTMC
Student Information Session University KTMC
 
ISO/IEC 27001 and ISO 22301 - How to ensure business survival against cyber a...
ISO/IEC 27001 and ISO 22301 - How to ensure business survival against cyber a...ISO/IEC 27001 and ISO 22301 - How to ensure business survival against cyber a...
ISO/IEC 27001 and ISO 22301 - How to ensure business survival against cyber a...
 
Integrating ISO/IEC 27001 and ISO 31000 for Effective Information Security an...
Integrating ISO/IEC 27001 and ISO 31000 for Effective Information Security an...Integrating ISO/IEC 27001 and ISO 31000 for Effective Information Security an...
Integrating ISO/IEC 27001 and ISO 31000 for Effective Information Security an...
 
Student Information Session University CREST ADVISORY AFRICA
Student Information Session University CREST ADVISORY AFRICA Student Information Session University CREST ADVISORY AFRICA
Student Information Session University CREST ADVISORY AFRICA
 
IT Governance and Information Security – How do they map?
IT Governance and Information Security – How do they map?IT Governance and Information Security – How do they map?
IT Governance and Information Security – How do they map?
 
Information Session University Egybyte.pptx
Information Session University Egybyte.pptxInformation Session University Egybyte.pptx
Information Session University Egybyte.pptx
 
Student Information Session University Digital Encode.pptx
Student Information Session University Digital Encode.pptxStudent Information Session University Digital Encode.pptx
Student Information Session University Digital Encode.pptx
 
Cybersecurity trends - What to expect in 2023
Cybersecurity trends - What to expect in 2023Cybersecurity trends - What to expect in 2023
Cybersecurity trends - What to expect in 2023
 

Último

The basics of sentences session 3pptx.pptx
The basics of sentences session 3pptx.pptxThe basics of sentences session 3pptx.pptx
The basics of sentences session 3pptx.pptx
heathfieldcps1
 
Making and Justifying Mathematical Decisions.pdf
Making and Justifying Mathematical Decisions.pdfMaking and Justifying Mathematical Decisions.pdf
Making and Justifying Mathematical Decisions.pdf
Chris Hunter
 
1029 - Danh muc Sach Giao Khoa 10 . pdf
1029 -  Danh muc Sach Giao Khoa 10 . pdf1029 -  Danh muc Sach Giao Khoa 10 . pdf
1029 - Danh muc Sach Giao Khoa 10 . pdf
QucHHunhnh
 

Último (20)

Measures of Dispersion and Variability: Range, QD, AD and SD
Measures of Dispersion and Variability: Range, QD, AD and SDMeasures of Dispersion and Variability: Range, QD, AD and SD
Measures of Dispersion and Variability: Range, QD, AD and SD
 
Role Of Transgenic Animal In Target Validation-1.pptx
Role Of Transgenic Animal In Target Validation-1.pptxRole Of Transgenic Animal In Target Validation-1.pptx
Role Of Transgenic Animal In Target Validation-1.pptx
 
The basics of sentences session 3pptx.pptx
The basics of sentences session 3pptx.pptxThe basics of sentences session 3pptx.pptx
The basics of sentences session 3pptx.pptx
 
Ecological Succession. ( ECOSYSTEM, B. Pharmacy, 1st Year, Sem-II, Environmen...
Ecological Succession. ( ECOSYSTEM, B. Pharmacy, 1st Year, Sem-II, Environmen...Ecological Succession. ( ECOSYSTEM, B. Pharmacy, 1st Year, Sem-II, Environmen...
Ecological Succession. ( ECOSYSTEM, B. Pharmacy, 1st Year, Sem-II, Environmen...
 
Food Chain and Food Web (Ecosystem) EVS, B. Pharmacy 1st Year, Sem-II
Food Chain and Food Web (Ecosystem) EVS, B. Pharmacy 1st Year, Sem-IIFood Chain and Food Web (Ecosystem) EVS, B. Pharmacy 1st Year, Sem-II
Food Chain and Food Web (Ecosystem) EVS, B. Pharmacy 1st Year, Sem-II
 
Advanced Views - Calendar View in Odoo 17
Advanced Views - Calendar View in Odoo 17Advanced Views - Calendar View in Odoo 17
Advanced Views - Calendar View in Odoo 17
 
Web & Social Media Analytics Previous Year Question Paper.pdf
Web & Social Media Analytics Previous Year Question Paper.pdfWeb & Social Media Analytics Previous Year Question Paper.pdf
Web & Social Media Analytics Previous Year Question Paper.pdf
 
Energy Resources. ( B. Pharmacy, 1st Year, Sem-II) Natural Resources
Energy Resources. ( B. Pharmacy, 1st Year, Sem-II) Natural ResourcesEnergy Resources. ( B. Pharmacy, 1st Year, Sem-II) Natural Resources
Energy Resources. ( B. Pharmacy, 1st Year, Sem-II) Natural Resources
 
Making and Justifying Mathematical Decisions.pdf
Making and Justifying Mathematical Decisions.pdfMaking and Justifying Mathematical Decisions.pdf
Making and Justifying Mathematical Decisions.pdf
 
TỔNG ÔN TẬP THI VÀO LỚP 10 MÔN TIẾNG ANH NĂM HỌC 2023 - 2024 CÓ ĐÁP ÁN (NGỮ Â...
TỔNG ÔN TẬP THI VÀO LỚP 10 MÔN TIẾNG ANH NĂM HỌC 2023 - 2024 CÓ ĐÁP ÁN (NGỮ Â...TỔNG ÔN TẬP THI VÀO LỚP 10 MÔN TIẾNG ANH NĂM HỌC 2023 - 2024 CÓ ĐÁP ÁN (NGỮ Â...
TỔNG ÔN TẬP THI VÀO LỚP 10 MÔN TIẾNG ANH NĂM HỌC 2023 - 2024 CÓ ĐÁP ÁN (NGỮ Â...
 
PROCESS RECORDING FORMAT.docx
PROCESS      RECORDING        FORMAT.docxPROCESS      RECORDING        FORMAT.docx
PROCESS RECORDING FORMAT.docx
 
Key note speaker Neum_Admir Softic_ENG.pdf
Key note speaker Neum_Admir Softic_ENG.pdfKey note speaker Neum_Admir Softic_ENG.pdf
Key note speaker Neum_Admir Softic_ENG.pdf
 
Micro-Scholarship, What it is, How can it help me.pdf
Micro-Scholarship, What it is, How can it help me.pdfMicro-Scholarship, What it is, How can it help me.pdf
Micro-Scholarship, What it is, How can it help me.pdf
 
Asian American Pacific Islander Month DDSD 2024.pptx
Asian American Pacific Islander Month DDSD 2024.pptxAsian American Pacific Islander Month DDSD 2024.pptx
Asian American Pacific Islander Month DDSD 2024.pptx
 
1029 - Danh muc Sach Giao Khoa 10 . pdf
1029 -  Danh muc Sach Giao Khoa 10 . pdf1029 -  Danh muc Sach Giao Khoa 10 . pdf
1029 - Danh muc Sach Giao Khoa 10 . pdf
 
This PowerPoint helps students to consider the concept of infinity.
This PowerPoint helps students to consider the concept of infinity.This PowerPoint helps students to consider the concept of infinity.
This PowerPoint helps students to consider the concept of infinity.
 
Sociology 101 Demonstration of Learning Exhibit
Sociology 101 Demonstration of Learning ExhibitSociology 101 Demonstration of Learning Exhibit
Sociology 101 Demonstration of Learning Exhibit
 
ICT role in 21st century education and it's challenges.
ICT role in 21st century education and it's challenges.ICT role in 21st century education and it's challenges.
ICT role in 21st century education and it's challenges.
 
Unit-IV- Pharma. Marketing Channels.pptx
Unit-IV- Pharma. Marketing Channels.pptxUnit-IV- Pharma. Marketing Channels.pptx
Unit-IV- Pharma. Marketing Channels.pptx
 
microwave assisted reaction. General introduction
microwave assisted reaction. General introductionmicrowave assisted reaction. General introduction
microwave assisted reaction. General introduction
 

PECB Webinar: ISO/TS 22318: A New ISO Technical Specification on Supply Chain Continuity Management (SCCM)

  • 1. PECB Webinar 2015-11-04 © 2015 Dr. Wolfgang H. Mahr, M.Sc., BBA, MBCI, CISA governance & continuuuity gmbh CH-8408 Winterthur, Switzerland www.continuuuity.ch LinkedIn, XING, Twitter, YouTube wolfgang.mahr@continuuuity.ch Page1
  • 2. PECB Webinar 2015-11-04 © 2015 Page2  Why Supply Chain Continuity?  Publication status  SCCM in the BCM Life Cycle  SCCM in the BCMS Life Cycle  Context of ISO/TS 22318  SCC supporting BCM Goals  ISO/TC 22318  Importance of SCC  Analysis of the Supply Chain  SCC Strategies  Managing Disruptions  Supplier Performance Evaluation  SCC Critical Success Factors
  • 3. PECB Webinar 2015-11-04 © 2015 Page3  Supply Chain Continuity Management  SCCM  Critical importance of the supply chain ◦ National level critical infrastructure  Hierarchical, multi-tier relationships  Challenge to handle a third party  Hardly “visible”
  • 5. PECB Webinar 2015-11-04 © 2015 SCCM in the BCM Life Cycle Reference: The Business Continuity Institute Page5 BIA Strategy Handling Events Tests and Exercises Embedding SCCM
  • 6. PECB Webinar 2015-11-04 © 2015 SCCM in the BCMS Life Cycle Reference: ISO 22301:2012 Page6
  • 7. PECB Webinar 2015-11-04 © 2015 Context of ISO/TS 22318 Page7 ISO/TS 22317 (BIA Guidance) ISO/TS 22318 (SCC Guidance) ISO 22313 (BCMS Guidance) ISO 22301(BCMS Specification)
  • 8. PECB Webinar 2015-11-04 © 2015  Protecting company value and reputation  Safeguards the reputation and future of the company in an emergency  Increase shareholder value and demonstrates commitment by management  Assures the survival of the company in the case of a serious incident  Minimize financial losses in case of an incident or emergency SCC supporting BCM Goals Page8
  • 9. PECB Webinar 2015-11-04 © 2015  Developed by ISO TC/292 (“Security and Resilience”), ◦ work started in ISO TC/223  Published on 2015-09-16  Based on ISO 22301, ISO 22313 and ISO 22300  Focus on: ◦ Importance of SCC ◦ Analysis of the Supply Chain ◦ SCCM Strategies ◦ Managing disruptions ◦ (Supplier) Performance evaluation ISO/TS 22318 on SCC Page9
  • 10. PECB Webinar 2015-11-04 © 2015  To be analyzed during the BIA  …and on an ongoing basis  Business processes are likely to be highly dependent on suppliers  Be aware of hidden, non-obvious dependencies  Be aware of pseudo-redundancies Page10
  • 11. PECB Webinar 2015-11-04 © 2015  Obtain an overview of the levels of the supply chain  Determine the relevance of the suppliers  Inspect contractual relationships  Identify critically important suppliers, as per the BIA  Identify challenges when dealing with SCCM Page11 Tier 3 Tier 2 Tier 1 Our Organisation
  • 12. PECB Webinar 2015-11-04 © 2015  Do nothing, maybe apply insurance cover  Reduce dependency (from a single supplier)  Insourcing, switch suppliers  Develop a deeper relationship with the supplier ◦ Obtain assurance on the supplier’s own BC approach  Terminate the relationship Page12
  • 13. PECB Webinar 2015-11-04 © 2015  Preparation phase: ◦ Analysis ◦ SCC strategies ◦ Exercises  Early detection  Incident handling ◦ Monitoring and communication ◦ Switch to pre-approved alternate supplier  Managing the return-to-normal phase ◦ Lessons learned Page13
  • 14. PECB Webinar 2015-11-04 © 2015  Focus on critical suppliers ◦ …on an ongoing basis, ◦ …in BIA revisions  Exercises and tests  Monitoring and review Page14
  • 15. PECB Webinar 2015-11-04 © 2015 SCC Critical Success Factors Page15  Follow best practices such as ◦ BCI’s Good Practice Guidelines and/or ◦ ISO Standards such a ISO 22301, ISO 22313 and ISO/TS 22318  Obtain top management commitment  Apply project management methodologies  Use an approach compatible with the company’s structure  Try to “drill down” to the ultimate tier supplier, to reveal true dependencies