K14 Reviewing, auditing and improving Flashcards
Formal audit process
Is useful, as they help senior management to identify certain risks and areas for development.
Auditors are not there to catch managements bad behavior. They are there to help.
Delivers of the audits subject
are not the best to give a riview of the subject, as they are biased and want to show the best of the subject.
But org. wants to learn.
Linking assurance to the three links of defence
Tre niveauer i org.
1. link of defence: Management review of the opreational team.
- link of defence: Review of business continuity team.
- link of defence: Review from formal internal audits.
Performance metrics for BC categorizations
Completebess
Compliance
Effectiveness
Performance metrics for BC categorizations
Completeness
Compliance
Effectiveness
Completeness metrics
seeks to etabislh whether BCM deliverables (plans, procedurs, policies) has been:
- Completed.
- Are up to date.
- Cover the full scope of what is critical to org. .
Completeness metrics
seeks to etabislh whether BCM deliverables (plans, procedurs, policies) has been:
- Completed.
- Are up to date.
- Cover the full scope of what is critical to org.
Compliance metrics
Om org. færdigheder er i overensstemmelse med BCM’s og resiliens politikker