1、 KSKSKSKSKSKSKSK KSKSKS KSKSK KSKS KSK KS KS A ISO 22300KS A ISO 22300:2012 2012 12 28 http:/www.kats.go.krKS A ISO 22300:2012 : ( ) ( ) CM ( ) : (ISO/TC223) LIG BCP KS A ISO 22300:2012 : (http:/www.standard.go.kr) : :2012 12 28 2012-0809 : :(ISO/TC223) ( 02-509-7278) (http:/www.kats.go.kr). 10 5 ,
2、. KS A ISO 22300:2012 i ii 1 1 2 .1 2.1 .1 2.2 .3 2.3 .6 2.4 7 2.5 9 2.6 .11 12 ( ) 13 KS A ISO 22300:2012 ii 2012 1 ISO 22300, Societal security Terminology . KS A ISO 22300:2012 Societal security Terminology 1 . 2 2.1 2.1.1 (societal security) , , 2.1.2 (stakeholder) (2.2.9) 2.1.3 / (societal secu
3、rity framework) (2.1.1) , , , 1 , , . 2 , , , , . 2.1.4 / (civil protection) / , , , . 2.1.5 (risk) 1 / . KS A ISO 22300:2012 2 2 ( , , ) , ( , , , ) . 3 , . 4 ( ) . 5 ( ) . : KS A ISO/IEC GUIDE 73 2.1.6 (risk management) (2.1.5) (2.2.9) : KS A ISO/IEC GUIDE 73 2.1.7 (threat) , (2.2.9), 2.1.8 (event
4、) 1 , . 2 . 3 “ (incident)” “ (accident)” . 4 “ (near miss)”, “ (incident)”, “ (near hit)” “ (close call)” . : KS A ISO/IEC GUIDE 73 2.1.9 (consequence) 1 . 2 , . 3 . 4 . : KS A ISO/IEC GUIDE 73 2.1.10 / (business continuity) (disruptive incident)(2.1.15) (2.2.9) KS A ISO 22300:2012 3 2.1.11 (disast
5、er) (2.2.9), , , 2.1.12 (crisis) (2.2.9) / 2.1.13 (all-hazards) (2.2.9), , ( ) 2.1.14 (hazard) . : KS A ISO/IEC GUIDE 73 2.1.15 (incident) , , 2.1.16 (mitigation) , (2.1.9) , , 2.1.17 (resilience) (2.2.9) (2.2.15) (2.1.5) . : KS A ISO/IEC GUIDE 73 2.2 2.2.1 (emergency management) , , , , (2.1.6) . :
6、 ISO 22320 KS A ISO 22300:2012 4 2.2.2 (policy) (2.2.9) 2.2.3 (objective) 1 , . 2 ( , , ) , , , (3.12) . 3 , , , , (aim), (goal) (target) . 4 , . 2.2.4 (top management) (2.2.9) 1 . 2 ( ) (2.2.5) . 2.2.5 (management system) (2.2.9) , 1 . 2 , , , . 3 , , 1 . 2.2.6 (business impact analysis) 2.2.7 / (s
7、ensitive information) (2.2.9), 2.2.8 (risk source) (2.1.5) KS A ISO 22300:2012 5 . : KS A ISO/IEC GUIDE 73 2.2.9 (organization) , , , , , , , , , , . 2.2.10 (risk owner) (2.1.5) : KS A ISO/IEC GUIDE 73 2.2.11 (performance) 1 . 2 , , ( ), . 2.2.12 (partnership) (2.1.1) (2.1.15) , , (- , - , - ) 2.2.1
8、3 (mutual aid agreement) 2 2.2.14 (exercise program) 2.2.15 (capacity) (2.1.5) (2.2.9), , , , . 2.2.16 (competence) KS A ISO 22300:2012 6 2.2.17 (nonconformity) 2.2.18 (correction) (2.2.17) 2.2.19 (corrective action) (2.2.17) , , . “ ” . 2.2.20 (residual risk) 1 . 2 “ ” . : KS A ISO/IEC GUIDE 73 2.2
9、.21 (conformity) 2.2.22 (effectiveness) 2.2.23 (continual improvement) 2.3 2.3.1 / (work environment) / , , , , , . 2.3.2 (vulnerability) (2.1.9) KS A ISO 22300:2012 7 2.3.3 (risk assessment) , : KS A ISO/IEC GUIDE 73 2.3.4 (probability) 0 , 1 , 0 1 : KS A ISO/IEC GUIDE 73 2.3.5 (prioritized activit
10、ies) (2.1.15) , , , , . 2.3.6 / (contingency) , 2.3.7 (training) , 2.3.8 (test) . 2.3.9 (testing) , 1 2 “ (trial)” . 3 . 4 , . 2.4 2.4.1 (scenario) . KS A ISO 22300:2012 8 2.4.2 / (inject) 2.4.3 (script) . 2.4.4 (exercise co-ordinator) , , , . 2.4.5 (observer) . “VIP ” , VIP , . 2.4.6 (monitoring) ,
11、 , . 2.4.7 (drill) , , 2.4.8 (exercise) 1 , , , , / , , / / / / . 2 . KS A ISO 22300:2012 9 2.4.9 (exercise safety officer) 1 “ ” . 2 . 2.4.10 (functional exercise) (emergency operations center, EOC) , . 2.4.11 (full-scale exercise) (2.2.9) 2.4.12 (strategic exercise) 1 , - , . 2 . 3 , . 2.4.13 (aft
12、er-action report) , , 2.4.14 (exercise annual plan) , (agenda) 2.5 2.5.1 (incident response) , : ISO 22320 KS A ISO 22300:2012 10 2.5.2 (incident command) (2.1.15) . : ISO 22320 2.5.3 (command and control) , , , (2.1.15) . : ISO 22320 2.5.4 (coordination) (2.2.9) 1 ( , ) , . 2 , . : ISO 22320 2.5.5
13、(improvisation) , 2.5.6 (operational information) : ISO 22320 2.5.7 (protection) (2.2.9) 2.5.8 (recovery) , (2.2.9) , , KS A ISO 22300:2012 11 2.5.9 (shelter in place, ) . 2.6 2.6.1 (forensic) . . 2.6.2 CCTV closed circuit television (CCTV) system , / , , 2.6.3 (video-surveillance) 2.6.4 (scene loca
14、tion) (coordinate system) . . . . KS A ISO 22300:2012 12 1 KS Q ISO 9000, 2 KS A ISO/IEC GUIDE 73, 3 ISO 22320, Societal security Emergency management Requirements for incident response 4 KS A ISO/PAS 22399, 5 KS Q ISO 19011, 6 KS A ISO/IEC Guide 51, KS A ISO 22300:2012 13 ( ) consequence 2.1.9 mana
15、gement system 2.2.5 training 2.3.7 / civil protection 2.1.4 functional exercise 2.4.10 / sensitive information 2.2.7 emergency management 2.2.1 capacity 2.2.15 script 2.4.3 shelter in place(verb) 2.5.9 risk 2.1.5 risk management 2.1.6 risk owner 2.2.10 risk source 2.2.8 risk assessment 2.3.3 monitor
16、ing 2.4.6 objective 2.2.3 forensic 2.6.1 protection 2.5.7 recovery 2.5.8 nonconformity 2.2.17 video-surveillance 2.6.3 / business continuity 2.1.10 business impact analysis 2.2.6 event 2.1.8 incident 2.1.15 KS A ISO 22300:2012 14 incident response 2.5.1 incident command 2.5.2 societal security 2.1.1
17、 / societal security framework 2.1.3 after-action report 2.4.13 mutual aid agreement 2.2.13 performance 2.2.11 scenario 2.4.1 correction 2.2.18 corrective action 2.2.19 test 2.3.8 testing 2.3.9 CCTV closed-circuit television(cctv) system 2.6.2 competence 2.2.16 exercise annual plan 2.4.14 exercise 2
18、.4.8 exercise co-ordinator 2.4.4 exercise safety officer 2.4.9 exercise program 2.2.14 mitigation 2.1.16 / contingency 2.3.6 prioritized activities 2.3.5 operational information 2.5.6 crisis 2.1.12 hazard 2.1.14 threat 2.1.7 stakeholder 2.1.2 / work environment 2.3.1 residual risk 2.2.20 scene locat
19、ion 2.6.4 disaster 2.1.11 conformity 2.2.21 strategic exercise 2.4.12 full-scale exercise 2.4.11 policy 2.2.2 all-hazards 2.1.13 KS A ISO 22300:2012 15 coordination 2.5.4 organization 2.2.9 improvisation 2.5.5 continual improvement 2.2.23 command and control 2.5.3 drill 2.4.7 observer 2.4.5 top management 2.2.4 vulnerability 2.3.2 / inject 2.4.2 partnership 2.2.12 probability 2.3.4 resilience 2.1.17 effectiveness 2.2.22 153787 1 145 3(16) (02)26240114 (02)26240148 http:/www.kss