Các thuật ngữ trong ISO (29)
risk
effect of uncertainty on objectives
Note 1 to entry: An effect is a deviation from the expected: positive and/or negative.
Note 2 to entry: Objectives can have different aspects (such as financial, health and safety, and environmental goals) and can apply at different levels (such as strategic, organization-wide, project, product and process).
Note 3 to entry: Risk is often characterized by reference to potential events, and consequences, or a combination of these.
Note 4 to entry: Risk is often expressed in terms of a combination of the consequences of an event (including changes in circumstances) and the associated likelihood of occurrence.
Note 5 to entry: Uncertainty is the state, even partial, of deficiency of information related to, understanding or knowledge of, an event, its consequence, or likelihood.
[SOURCE: ISO 22300:2012, 2.1.5]
ISO/TS 22318:2015(en), 3.1.8
exercise
process to train for, assess, practice, and improve performance in an organization
Note 1 to entry: Exercises can be used for validating policies, plans, procedures, training, equipment, and interorganizational agreements, clarifying and training personnel in roles and responsibilities, improving interorganizational coordination and communications, identifying gaps in resources, improving individual performance and identifying opportunities for improvement, and a controlled opportunity to practice improvisation.
Note 2 to entry: A test is a unique and particular type of exercise, which incorporates an expectation of a pass or fail element within the goal or objectives of the exercise being planned.
[SOURCE: ISO 22300:2012, 2.4.8]
ISO/TS 22318:2015(en), 3.1.4
Tier 2 supplier
provides products or services to an organization indirectly and through a Tier 1 supplier
ISO/TS 22318:2015(en), 3.3.8
business continuity plan
documented procedures that guide organizations to respond, recover, resume, and restore to a pre-defined level of operation following disruption
Note 1 to entry: Typically, this covers resources, services and activities required to ensure the continuity of critical business functions.
[SOURCE: ISO 22301:2012, 3.6]
ISO/TS 22318:2015(en), 3.2.4
mutual aid agreement
pre-arranged understanding between two or more entities to render assistance to each other
[SOURCE: ISO 22300:2012, 2.2.13]
ISO/TS 22318:2015(en), 3.1.6
business impact analysis
process of analysing activities and the effect that the business disruption might have upon them
[SOURCE: ISO 22300:2012, 2.2.6]
ISO/TS 22318:2015(en), 3.1.2
organization
person or group of people that has its own functions with responsibilities, authorities and relationships to achieve its objectives
Note 1 to entry: The concept of organization includes, but is not limited to, sole-trader, company, corporation, firm, enterprise, authority, partnership, charity or institution, or part or combination thereof, whether incorporated or not, public or private.
Note 2 to entry: For organizations with more than one operating unit, a single operating unit can be defined as an organization.
[SOURCE: ISO 22301:2012, 3.33]
ISO/TS 22318:2015(en), 3.2.8
interested party
stakeholder
person or organization that can affect, be affected by, or perceive themselves to be affected by a decision or activity
Note 1 to entry: This can be an individual or group that has an interest in any decision or activity of an organization.
[SOURCE: ISO 22301:2012, 3.21]
ISO/TS 22318:2015(en), 3.2.6
Tier 1 supplier
directly supplies products or services to the organization usually through a contractual arrangement
ISO/TS 22318:2015(en), 3.3.7
critical customer
individual or entity, the loss of whose business would threaten the survival of the organization
ISO/TS 22318:2015(en), 3.3.1