Skip to content

ISO 22301

What is ISO 22301?

The international standard for Business Continuity Management Systems (BCMS) that specifies requirements for planning, establishing, implementing, operating, monitoring, reviewing, maintaining, and continually improving a BCMS.

Compliance

Each of these is named in at least one of the same controls as iso 22301. The number is how many controls name both.

What the standards actually require on iso 22301

Requirements naming iso 22301 across 6 standards, quoted from the control text.

Ghana CSA crosswalk to international standards. NIST CSF 2.0 (February 2024): mapping GOVERN (CSA Ghana engagement + Cybersecurity Plan) + IDENTIFY (CII designation + asset + risk + supplier) + PROTECT (access controls + segmentation + encryption + training) +...

GhCSA-Crosswalk-NIST-ISO-27001-Sectoral · Crosswalk to NIST CSF 2.0, ISO 27001, ISO 22301 and Sector Standards
ISMAP (Japan)3 controls

ISMAP Cloud Governance establishes the management framework for Cloud Service Providers operating under ISMAP. (1) Information Security Management System (ISMS): based on ISO/IEC 27001:2022 + JIS Q 27001 (Japanese Industrial Standard equivalent) + ISMS-AC Info...

ISMAP-CloudGovernance-ISMS-RiskAssessment-SharedResponsibility-Policy-RegulatoryCompliance-RolesResponsibilities · ISMAP Cloud Governance - ISMS per ISO 27001/JIS Q 27001 + Risk Assessment + Shared Responsibility Model + Cloud Security Policy + Regulatory Compliance + Roles and Responsibilities

Recover is the fifth of five functional elements per MSC-FAL.1/Circ.3/Rev.2. Activities include: (1) Backup and Restore - prioritised backup of critical OT and IT systems (ECDIS charts + voyage planning + engine control configuration + cargo loading software +...

IMO-MSC-FAL-Recover-BackupRestore-ContinuityOfNavigation-LessonsLearned-Drills · IMO MSC-FAL Recover Function - Backup and Restore + Continuity of Navigation + Continuity of Cargo Operations + Continuity of Propulsion + Lessons Learned + Drills + Resilience

Project + Programme + Third Party + Resilience + Assurance operationalise risk management in specific contexts. (1) Project + Programme Risk Management: systematic application of risk management to projects + programmes per Association for Project Management (...

IRM-Project-Programme-ThirdParty-SupplyChain-Resilience-BCP-Crisis-AssuranceMapping-3LoD · IRM Project + Programme Risk + Third Party + Supply Chain Risk + Operational Resilience + BCP + Crisis Management + Assurance Mapping + Three Lines of Defence

Implement Operations Security + Physical/Environmental Security + Communications and Network Security per MTCS SS 584. Operations Security (ISO 27001 Annex A.12 alignment) - documented operating procedures + capacity management + separation of dev/test/prod +...

MTCS-Operations-Physical-Network-Tier-III-Data-Centre-Hardening-Patching-Network-Segmentation-DDoS · MTCS Operations + Physical + Network + Tier III Data Centre + Hardening + Patching + Segmentation + DDoS
HKMA SPM1 control

HKMA SPM crosswalk to international + sectoral standards. (a) BASEL III - BCBS Basel III capital (Pillar 1/2/3) + liquidity (LCR + NSFR) + leverage + IRRBB + FRTB + SMA operational risk + IRB + standardised approaches;

HKMA-SPM-Crosswalk-Basel-FATF-FSB-Sectoral · HKMA SPM Crosswalk to Basel III, FATF, FSB Operational Resilience, IOSCO and Sectoral Frameworks

Questions people ask about iso 22301

What is ISO 22301?
The international standard for Business Continuity Management Systems (BCMS) that specifies requirements for planning, establishing, implementing, operating, monitoring, reviewing, maintaining, and continually improving a BCMS.
Why is ISO 22301 important for compliance?
ISO 22301 is a key concept in Compliance. Understanding iso 22301 helps organizations meet regulatory requirements, reduce risk, and demonstrate due diligence during audits. Our compliance platform maps 686 frameworks with 311K cross-framework control mappings.
Which compliance frameworks address ISO 22301?
ISO 22301 appears in the requirement text of Ghana Cybersecurity Act, ISMAP (Japan), IMO Maritime Cybersecurity Guidelines (MSC-FAL.1/Circ.3/Rev.2), IRM Enterprise Risk Management Framework (Institute of Risk Management), MTCS (Singapore). Across these standards we have identified 11 controls that name it directly, each linked to the control text on the compliance platform.
Where can I learn more about ISO 22301?
Explore our compliance framework pages to see how iso 22301 applies across different standards and regulations. Our implementation guides provide step-by-step guidance, and the compliance platform offers AI-powered analysis of how this concept maps across 686 frameworks.

See how ISO 22301 applies across compliance frameworks

Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.

Written and maintained by Gerard Blokdyk, The Art of Service.