SBS - The best value in QMS software

BS25999-1:2006 First Part of Business Continuity Standard Published

Sidney Vianna

Post Responsibly
Staff member
Admin
#11
BSI Standards does just that, develop standards and serves as a member of the ISO.

BSI Management Systems is who does the certification work.
Thanks, Randy for the clarification. Myself was fully aware of that. But without skirting the issue, according to the article at hand (which we don't know if is reliable or not), BSi would be warning against self declaration to a voluntary standard and deeming self attestation worthless. If the article is false, BSi should go after the editor. If the article is true, I have already made my position clear about it.
 
Elsmar Forum Sponsor
I

ISOgal2

#13
Indeed. There seem to be business continuity related standards emerging all over the place (PAS77 for example), with little in the way of clarity of delineation.
 
T

tyker

#14
Thanks, Randy for the clarification. Myself was fully aware of that. But without skirting the issue, according to the article at hand (which we don't know if is reliable or not), BSi would be warning against self declaration to a voluntary standard and deeming self attestation worthless. If the article is false, BSi should go after the editor. If the article is true, I have already made my position clear about it.
This article in BSI's Business Standards magazine suggests that BSI supports self assessment and is developing tools to support it (page 3 of the article).

http://www.bsi-global.com/upload/St...k Management/Stayingontrack_BS25999_Feb07.pdf

There's obviously no guarantee that some elements within that organization don't have a different policy.:notme:
 

Paul Simpson

Trusted Information Resource
#15
I would hope that a Standard Developing Body such as BSI British Standards would not get involved with the conformity assessment (provided by BSI Management Systems) route an organization decides to take in order to demonstrate compliance to a standard.
Aaah, if it weren't for the almighty dollar, pound, euro, pick a currency! Standards development organizations in theory operate totally altruistically. :mg: But then you get the marketing people saying - "Can we slant it so that people come to us?"
That decision, as well as the degree of confidence any stakeholder, such as a customer, places on self declaration mechanisms should be outside of the realm of standard developers. Unless BSI is mixing standard development with conformity assessment activities, I don’t understand why a Standard Developing Body would warn anyone against self declaration routes.
Again conformity assessment bodies have become part of the industry - so standards development committees include certification companies now - a self perpetuating cycle?

Only if people continue to buy the standards and the certification. ;)
Look at the ISO Management System Standards, such as ISO 9001 and 14001 families of documents. They contain self-assessment guidance. The market and the consenting parties (customer and supplier) should decide the appropriate routes for someone to provide attestation of conformity to voluntary standards; not a standard development body.
Agreed. But as both of us represent companies who promote assessment and certification we might hope that people use the "independent" route. :lol:
 
I

ISOgal2

#16
I've seen this sort of confusion from BSI before, with other standards.

I'm guessing that what they are referring to with respect to self assessment is Part 1 of the standard, which is just the code of practice (basically best practice). Self assessment against this surely wouldn't appear to be worth too much.

This is entirely different to Part 2, which will be the specification, which will also presumably be certifiable (third party).

To add to the BSI mix (and confusion) though one might wonder about another BSI standard in the same approximate area: BS25777 (ref:
http://www.27001.net/2007/07/iso-27000-iso-27031-and-business.html).

Exactly how that fits together with BS25999 is difficult to see, even taking the ISO developments out of the equation.
 
P

Phil P

#17
Morning All,

Does anyone have any reasonable examples of BCM Policies per chance? Im putting a system in place thats going to eventually be certified by BSI to 25999 so if anyone has any useful tips or ideas they'll be warmly received.

This is going to be particularly interesting as I only have the draft version of 25999-2 at the moment.

Given the level of interest in this standard should there be a main thread for BCM? Business Continuity Policy? If someone can add one then Ill be happy to contribute to it to help others in the future.

Thanks in advance,

Phil.
 
I

ISOgal2

#18
Phil,

I'm not 100% on what you mean by policies. Policies covering BCM are usually included within an organization's security policies. There is some association with ISO 17799/27002 in this respect, as section 5 of this standard specifically covers such policies. You might wish to take a look at that.

Bear in mind too that 25999 is just one of a number of current initiatives in the BCM area. It is probably worth waiting for things to settle before thinking about categorization on Elsmar.

One final point: contrary to some of the information in circulation out there, part 2 of this standard will not in fact be published on 25th September, as origianlly planned. The most likely date is now sometime in November.

Hope this helps.
 
Thread starter Similar threads Forum Replies Date
Randy Some hints on BS25999-2:2007 - "Business Continuity (BC)" Business Continuity & Resiliency Planning (BCRP) 5
A Coverage and differences: EN 60601-1:2006+A12:2014 Vs AAMI/IEC 60601-1:2005+AMD1:2012 IEC 60601 - Medical Electrical Equipment Safety Standards Series 2
R Machine directory (2006/42/EEC) is applicable or not Other Medical Device Related Standards 0
M 10993-11 vs 2006 gap analysis Other Medical Device Related Standards 2
P IEC 62304:2006 A1:2015 - Software from the early 1990s IEC 62304 - Medical Device Software Life Cycle Processes 4
B Does EMC Directive 2014/30/EU cease to apply when the Machine Directive 2006/42/EC is applicable? CE Marking (Conformité Européene) / CB Scheme 4
B IEC 62304:2015 vs IEC 62304:2006 + AMD1 IEC 62304 - Medical Device Software Life Cycle Processes 4
J Implementing EN 62304:2006 on existing and proven medical devices IEC 62304 - Medical Device Software Life Cycle Processes 6
S EN 285:2006 and EN 285:2015 - Can we test according to EN 285 ourself? Other Medical Device Related Standards 2
S IRAM 2006 and compliance IEC 60601 - Medical Electrical Equipment Safety Standards Series 5
P IEC 62304 AMD1:2015: What's new vs.the 2006 Edition? IEC 62304 - Medical Device Software Life Cycle Processes 4
B Clarification on interpretation of some EN ISO 14971:2012 & IEC 62304:2006 req's ISO 14971 - Medical Device Risk Management 46
B IEC 62304:2006/AMD1:2015 Changes for Class A Software IEC 62304 - Medical Device Software Life Cycle Processes 3
L Differences in the requirements between IEC 60601-1 3rd ed. and EN 60601-1:2006 IEC 60601 - Medical Electrical Equipment Safety Standards Series 5
M ISO 14971, IEC 60601 Satisfy 98/37/EC, 2006/95/EC, 2004/108/EC Directives? Other ISO and International Standards and European Regulations 3
Q Question about 2012 ASQ CQE certification primer vs 2006 primer Professional Certifications and Degrees 2
O Changes from En 61000-3-2:1995 to En 61000-3-2:2006 CE Marking (Conformité Européene) / CB Scheme 5
O Differences between EN 61326-1:2006 and EN 61326-1:2013 CE Marking (Conformité Européene) / CB Scheme 2
Q Referencing EN 63204:2006 instead of EN 62304:2006 AC:2008 IEC 62304 - Medical Device Software Life Cycle Processes 9
G Directive 2004/108/EC & EU Directive 2006/95/EC - IVD Instruments Other ISO and International Standards and European Regulations 1
I ISO 9000 series, 13485:2003, 15378:2006 - Small Compounding Pharmacy ISO 9000, ISO 9001, and ISO 9004 Quality Management Systems Standards 2
O Directives 1935/2004/ЕС and 2023/2006 and Enameled Metalware CE Marking (Conformité Européene) / CB Scheme 1
I Are IEC 60601-1:2012 and BS EN 60601-1:2006+A11:2011 still identical? IEC 60601 - Medical Electrical Equipment Safety Standards Series 2
B PAS99:2012 - What has changed since the 2006 version? Other ISO and International Standards and European Regulations 6
S Measurement Uncertainty for Neutral Salt Spray test to BS EN ISO 9227:2006 General Measurement Device and Calibration Topics 4
BradM Class action lawsuit against Apple - iPod Software updates - 2006 thru 2009 After Work and Weekend Discussion Topics 2
M FAQ - Implementation of EN 60601-1:2006 related to MDD 93/42/EEC IEC 60601 - Medical Electrical Equipment Safety Standards Series 6
P Retrospective Application of EN 60601-1:2006 - Harmonized Standards IEC 60601 - Medical Electrical Equipment Safety Standards Series 27
B ISO 11607-1:2009 vs. 2006 - What Changed? Other Medical Device Related Standards 2
P IEC EN 60601-1-4 vs. IEC EN 62304:2006 Gap Analysis? IEC 62304 - Medical Device Software Life Cycle Processes 6
S Low Voltage Directive LVD 2006/95/EC - New to CE Marking CE Marking (Conformité Européene) / CB Scheme 4
I IEC 62304:2006 Definitions - Software System, a Software Element and Software Unit IEC 62304 - Medical Device Software Life Cycle Processes 13
A EN 62304:2006 Class A Stuff - Light Boxes for Eye Testing IEC 62304 - Medical Device Software Life Cycle Processes 3
M IEC 60601-1-8 2006 Alarm Auditory Requirements IEC 60601 - Medical Electrical Equipment Safety Standards Series 3
glork98 IEC 62304:2006/AMD1:2015 Checklist .xls file attached IEC 62304 - Medical Device Software Life Cycle Processes 6
T IEC 62304:2006: Medical device software SDLC- CE Vs. Fda 510(k) submission IEC 62304 - Medical Device Software Life Cycle Processes 16
R What the difference in ISO 10993-11:2006 and 2009? Other Medical Device Related Standards 17
D En 62366:2006 - Can someone explain what EN 62366:2006 covers? Other ISO and International Standards and European Regulations 3
J Medical Device Directive (MDD) 2007/47/EC and 2006/42/EC EHSR checklist EU Medical Device Regulations 7
B Information on ISO 16792:2006 and Boeing standard D6-51991 Other ISO and International Standards and European Regulations 3
B PAS 99: 2006 (Publicly Available Specification) ISO 9000, ISO 9001, and ISO 9004 Quality Management Systems Standards 4
M Checklist for ISO 11607-2:2006 - Medical Device Packaging - Information needed Other Medical Device Related Standards 9
C Relationship of IEC 60601-1-6:2006 vs. IEC 60601-1 3rd Edition IEC 60601 - Medical Electrical Equipment Safety Standards Series 3
R Low Voltage Directive 2006/95/EC - Is Notified Body (NB) needed? CE Marking (Conformité Européene) / CB Scheme 4
D Training for IEC 60601-1-8:2006 Alarm Systems in Medical equipment. IEC 60601 - Medical Electrical Equipment Safety Standards Series 7
T Handbook for Interpretation of ANSI/NCSL Z540.3-2006 General Measurement Device and Calibration Topics 5
S Was QS9000 replaced by ISO/TS 16949 since December 2006? Document Control Systems, Procedures, Forms and Templates 4
T ANSI/NCSL Z540.3-2006 vs ANSI/NCSL Z540-1-1994. General Measurement Device and Calibration Topics 8
C Anyone using the new ANSI/NCSL Z540.3-2006? General Measurement Device and Calibration Topics 28
B FORD Supplier CQI-9 rollout letter, Oct. 16th, 2006 - Heat treat suppliers Customer and Company Specific Requirements 1

Similar threads

Top Bottom