Overview
ISO 22316:2017 - Security and resilience - Organizational resilience - Principles and attributes - provides guidance to enhance organizational resilience for any size or type of organization. It is sector‑agnostic and applicable throughout an organization’s life. The standard establishes core principles and describes the attributes and activities that support resilience, without prescribing a single uniform approach. ISO 22316:2017 emphasizes alignment between strategy, leadership, culture, and risk‑informed decision making to help organizations absorb, adapt and respond to change.
Key topics and requirements
ISO 22316:2017 focuses on principles and attributes rather than prescriptive controls. Core elements include:
Practical applications
ISO 22316:2017 is a guidance tool for organizations seeking to strengthen their ability to withstand disruptions and change. Typical uses:
- Designing or improving enterprise resilience strategies and governance
- Integrating resilience thinking into strategic planning, risk management and business continuity
- Developing leadership programs and cultural change initiatives that support resilience
- Establishing monitoring, assessment and reporting processes for resilience performance
Who should use it
- Senior leaders and executives responsible for strategy and governance
- Risk, business continuity, and security managers
- Organizational development and HR professionals (culture and leadership)
- Consultants and advisors working on resilience, continuity and crisis management
Related standards
- ISO 22300 (Societal security - Terminology) is referenced for terms and definitions used in ISO 22316:2017.
Keywords: ISO 22316:2017, organizational resilience, security and resilience, resilience attributes, resilience principles, risk management, leadership, organizational culture.