International Standards on Risk Management Topic 2 SMQR 5103
The Standard Infrastructure in Malaysia
Draft International Standard International Standard Stages of International Standards Development Proposal Working Draft Committee Draft Draft International Standard International Standard
Standards on Risk Management
Terms and Definitions (ISO Guide 73) Risk Risk management Risk management process Risk assessment Risk identification Risk source Risk owner Risk analysis Risk evaluation Risk appetite Risk treatment Risk retention Residual risk Risk profile Risk register
Risk Management Principles, Framework & Process
QSHE MS and Risk Management Standards RISK MANAGEMENT SYSTEM ISO 31000 QUALITY MANAGEMENT SYSTEM ISO 9001:2015 OSH MANAGEMENT SYSTEM ISO 45001 ENVIRONMENTAL MANAGEMENT SYSTEM ISO 14001 RISK ASSESSMENT TECHNIQUES (Env. Impact assessment, HIRADC, FMEA, etc) ISO 31010
High Level Structure (HLS) in QSHE-MS ISO 9001: 2015 ISO 14001: 2015 ISO 45001: 2016 (expected) 0. Introduction 1. Scope 2. Normative Reference 3. Terms and Definitions 4. Context of the Organization 5. Leadership Planning Support 8. Operation 9. Performance Evaluation 10. Improvement
The new generation of iso management systems standards Cl. 1: Scope Cl. 2: Normative references Cl. 3: Terms and definitions Cl. 4: Context of the organization Cl. 5: Leadership Cl. 6: Planning Cl. 6.1 Action to address risks and opportunities Cl. 6.2 OH&S objectives and planning to achieve them Cl. 7: Support Cl. 8: Operation Cl. 9: Performance evaluation Cl. 10: Improvement RISK ASSESSMENT
ISO 9001/14001/45001 structure Organization & its context (4) PLAN DO Support (7) Communication & consultation Operation (8) Risk Control Process Planning (6) Risk Assessment Performance evaluation (9) Monitor & review RM Improvement (10) Update risk & opportunities Leadership (5) Determine risk & opportunities DO PLAN ACT CHECK Organization & its context (4) Customer requirement Needs & expectations of relevant interested parties (4) Intended Outcomes of QMS/EMS/OSH MS
ISO 31000 : Risk Management Process Communication & Consultation (5.2) Monitoring & Review (5.6) Establishing the context (5.3) Risk assessment (5.4) Risk identification (5.4.2) Risk analysis (5.4.3) Risk evaluation (5.4.4) Risk treatment (5.5)
Integration between ISO 31000: 2009 and ISO 9001: 2015 Communication & Consultation (5.2) Monitoring and review (5.6) Establishing the context (5.3) Risk Assessment (5.4) Risk Identification (5.4.2) Risk Analysis (5.4.3) Risk Evaluation (5.4.4) Risk Treatment (5.5) 4.1 & 4.2 6.1.1 7.4 9.3.2 & 10.2.1 6.1.2 & 8.1 Legend: ISO 31000 clause ISO 9001 clause