#100 – YES, ISO 31000 IS AN ERM SYSTEM – GREG HUTCHINS

Greg Hutchins pixYes, ISO 31000 is an ERM System.

But, in ISO 31000 terms ERM stands for ‘Enhanced Risk Management’, which is the standard’s equivalent to Enterprise Risk Management.

ISO 31000 Annex A describes the ‘Attributes of Enhanced Risk Management,’ which is the ERM equivalent for ISO 31000. Continue reading

#99 – ISO 31000 AND COSO CAN WORK TOGETHER – GREG HUTCHINS

Greg Hutchins pixYes.  The COSO definition of control supports and reinforces ISO 9001:2015 control requirements, specifically both frameworks are:

  • Process based.  COSO is a process consisting of ongoing tasks and activities.  ISO 31000 emphasizes the process approach throughout the standard. Continue reading