Exposure to threats, hazards and risks leads to vulnerabilities that an organization must deal with. Commonly these are addressed via a mitigation process. Once mitigation is accomplished, often times the organization feels that the risk, threat, hazard does not need to be revisited. However, as a result of the mitigation efforts on the part of the organization, the risks, threats, hazards reconfigure and re-emerge in a different form. In order for mitigation to be successful it has to be a constant and ongoing process that produces a resilience to the negative effects of risks, threats and hazards that are realized. Continue reading
Category Archives: ISO9001:2015@Risk™ – Greg Hutchins
#89 – WHAT IS COSO ERM FRAMEWORK? – GREG HUTCHINS
The COSO ERM cube is designed as a three-dimensional box or matrix. The cube consists of 8 elements as can be seen in the above figure, specifically: Continue reading
#89 – STRATEGIC MANAGEMENT: HOW TO TURN A STRATEGIC PLAN INTO RESULTS – GREG CARROLL
Corporate objectives are not the “bulls eye” of strategic planning they’re just the dartboard. Boards are assessed by the quality of their Results not the quality of their Objectives. Continue reading
#88 – WHY DID ISO ADOPT RISK BASED THINKING? – GREG HUTCHINS
Many organizations, associations, and standards are going through disruptive change and innovation. We believe this is occurring to ISO 9001:2015 and the other ISO families of standards. Continue reading
#87 – TIME TO REVISE THE ISO 31000 RISK MANAGEMENT STANDARD – GREG CARROLL
With the recent release of a new British standard BS 65000 on Organisational Resilience, and COSO’s announcement of a review of its 2001 COSO ERM framework, I believe that business is moving ahead of ISO 31000 as a necessary response the evolving business environment and accelerating rate of technical change; therefore there is a strong case for a taking a fresh look at ISO 31000. Continue reading