The significance of BS 25999
Standardising Business Continuity Management
One of the most important aspects of BS 25999 is that it represents, for the first time, a consensus approach to defining processes, principles and terminology surrounding BCM developed by a broad based group of world class experts representing a cross section of industry sectors. It is viewed as a complete description of a mature, repeatable and actionable business continuity programme.
Risk Based Approach
BS 25999 provides a basis for understanding, developing and implementing a risk based BCM approach within an organisation thus providing reassurance to both internal and external stakeholders. It contains a comprehensive set of BCM best practice and covers the whole BCM lifecycle. It is not merely about ensuring that organisations have a contingency plan in place should a disaster occur, it is about understanding the business imperatives of an organisation, recognising where its critical activities are and designing availability in to them to avoid damaging disruptions in the first place.
Certified Management System
The fact that organisations can, for the first time, certify to a Standard is of major significance. With the publication of part 2 of BS 25999 in October 2007 organisations can now establish its BCM formally using an industry recognised Management System (BCMS). For those organisations providing services or products which are critical to their customers, third party validation can not only provide appropriate levels of reassurance but can a provide competitive advantage. Certification also creates an opportunity to reduce the burdens of internal and external audits and may lead to a reduction in insurance premiums.
URM believes that one of the strongest features of BS 25999 is its scaleability and relevance to organisations of all sizes and all market sectors including both public and private. This is particularly important for the smaller organisations which historically are the ones least likely to have any form of BC in place. The fact that the Standard is risk based provides the ideal platform for BCM to be tailored to the needs of the organisation.