1 Welcome to the DRI International National Preparedness Month Virtual Town Hall AnneMarie Staley NYSE EuroNext Russell Wooldridge DRI International Moderators.

Slides:



Advertisements
Similar presentations
1 Boston ACP – September 8, A Non-Profit Organization Committed to: Promoting a base of common knowledge for the continuity management industry.
Advertisements

Examining the Regulatory Landscape
1 Advisory Council April 1, 2011 Child Care Development Fund – State Plan for Federal Fiscal Years 2012 and 2013.
1 EEC Board Meeting May 10, 2011 Child Care Development Fund – State Plan for Federal Fiscal Years 2012 and 2013.
Building on Our Core Values Building on Our Core Values © 2003 by the AICPA The Sarbanes-Oxley Act.
KEITH CANTANDO, CBCP CORPORATE SECURITY - PROGRAMS PROGRESS ENERGY PS-Prep (DHS – Voluntary Private Sector Preparedness Accreditation.
BS-25999: Business Continuity Management System PS-Prep: The Voluntary Private Sector Preparedness Program Kathleen Lucey, FBCI Practice Manager, EMC
Accreditation 1. Purpose of the Module - To create knowledge and understanding on accreditation system - To build capacity of National Governments/ focal.
North Carolina Chief 101 Firefighter Safety, OSHA and NFPA.
ELECTION AND QUALIFICATIONS OF DIRECTORS Robert D. Strahota, Assistant Director * SEC Office of International Affairs Prepared for the panel on Improving.
Session 6 Integrated Emergency Management. Objectives of the Session Students will be able to 6.1 Define the principle of integration. 6.2Discuss the.
1 FSTC’s 2008 Annual Conference On the Innovative Edge: Successful Strategies for Financial Services Industry Navigators The Financial Services Technology.
Business Continuity Management for Risk Managers.
BA 427 – Assurance and Attestation Services Lecture 18 The Types of Services Offered by Public Accounting Firms.
Third ICAC Symposium The New York Stock Exchange – A Regulator and a Listed Company James F. Duffy Executive Vice President & General Counsel NYSE Regulation,
Security Controls – What Works
Greg Shaw How do we turn private sector preparedness into an investment rather than a cost of doing.
National Practice Leader Emergency Response Planning NFPA 1600: The National Preparedness Standard July 6th, 2005.
Manage and Safeguard Your BC Career Cheyene Haase BC Management, Inc.
SHRM Overview for AmChams AACCLA Conference October 19, 2011.
External Quality Assessments
KAPPA OIL SERVICES 1 VII INTERNATIONAL CONFERENCE NEFTEGAZSTANDARDT September 2012 St. PETERSBURG Alain LOPPINET.
Training Module 3: Articles of Incorporation and Association Bylaws Presented by the Southern Early Childhood Association.
Business Continuity Management for Risk Managers
1 Public Hearings: May , 2013 Child Care Development Fund Massachusetts State Plan Federal Fiscal Years 2014 and 2015.
1 VA-Affiliated Nonprofit Research and Education Corporations (NPCs) Barbara F. West Executive Director National Association of Veterans’ Research and.
Vendor Risk: Effective Management is Essential
Internal Auditing and Outsourcing
April 11, 2007 Prepared by the North American Energy Standards Board 1 North American Energy Standards Board Standards Development Process.
The Institutionalization of Business Ethics
The Institute of Internal Auditors
AUDIT COMMITTEE PRACTICES THE SOUTH AFRICAN EXPERIENCE Presenter: Beerson Baboojee | National Treasury | 4 December 2014.
HROFFICE USER CONFERENCE 2005 Creating an Effective Ethics and Compliance Program Ascentis User Group September, 2005.
BITS Proprietary and Confidential © BITS Security and Technology Risks: Risk Mitigation Activities of US Financial Institutions John Carlson Senior.
Independent School Process Agency of Education State Board of Education Presentation March 25, 2014.
Kay Higby Responsible Care Superintendent ISO Management Representative Akzo Nobel Functional Chemicals, LLC.
John Neuner, Program Manager ASCLD/LAB-International CWAG January 28, 2010 Sacramento, California.
© 2013 Cengage Learning. All Rights Reserved. 1 Part Four: Implementing Business Ethics in a Global Economy Chapter 9: Managing and Controlling Ethics.
2008 New York - Member Forum Council for Responsible Jewellery Practices, Ltd. Overview of CRJP.
1 Examining “the Business Case” for the New Voluntary Private Sector Preparedness Certification Program.
Policy Review (Top-Down Methodology) Lesson 7. Policies From the Peltier Text, p. 81 “The cornerstones of effective information security programs are.
Private Sector Voluntary Certification (PS-Prep) Small Business Considerations Debra T. Ballen October 21, 2009.
STANDARDS OVERVIEW Wednesday, April 30, 2015 KAREN RECZEK, STANDARDS COORDINATION OFFICE, NATIONAL INSTITUTE OF STANDARDS AND TECHNOLOGY
© MCR, LLC MCR Proprietary - Distribution Limited Earned Value Management Application, Guidance, and Education Neil F. Albert President/CEO MCR, LLC
1 NFPA 1600 Standard for Disaster / Emergency Management and Business Continuity Programs 2004 Edition Dean R. Larson NFPA 1600 Committee.
Advanced Program in Auditing and Accounting Regulation Module 12 Enhancing Statutory Audit Quality from a Financial Regulator’s Perspective Presenter:
Environmental Management System Definitions
1 Leveraging the WTO/TBT Agreement New Delhi, India September 11, 2008 Elise Owen Representative for China and India Affairs American National Standards.
Seeking a National Standard for Security: Developing a Systematic Crosswalk of the Final HIPAA Security Rule, the NIST SP , NIST SP Security.
International Security Management Standards. BS ISO/IEC 17799:2005 BS ISO/IEC 27001:2005 First edition – ISO/IEC 17799:2000 Second edition ISO/IEC 17799:2005.
Page 1 | Proprietary and Copyrighted Information The Australian framework Marisa Orbea IESBA Meeting New York April 2015.
Panelists ASIS International – Dr. Marc Siegel, Security Management System Consultant, ASIS International Disaster Recovery Institute International (DRII)
December 1, 2004 Slide 1 Presented by Dan Bart, TIA and ANSI-HSSP Co-Chair December 1, 2004 Presentation on ANSI and the Homeland Security Standards Panel.
Building on Our Core Values Building on Our Core Values © 2003 by the AICPA The Sarbanes-Oxley Act.
May 17, 2005 Slide 1 Presented by: Dan Bart, TIA and ANSI-HSSP Co-Chair May 17, 2005 Homeland Security Standards and the Role of the ANSI Homeland Security.
NGMA LEADING GRANTS MANAGEMENT PROFESSIONAL ASSOCIATION.
1 Presented by David Thompson, TIA December 14, 2005 NFPA 1600 and Emergency Communications.
Final Rule Accredited Third-Party Certification 1.
WELCOME TO IQCS CERTIFICATION PRIVATE LIMITED (INDIA)
HIMSS Standards Activities
Proposal to Adopt Three Standards
The Institutionalization of Business Ethics
Private Sector Perspective: Key “Best Practices” that Strengthen Protection of Environment, Health and Safety while Facilitating Trade and Economic Development.
Presented by: Dan Bart, TIA and ANSI-HSSP Co-Chair May 17, 2005
Voluntary Private Sector Preparedness Certification Program
American National Standards Institute
Panelists ASIS International – Dr. Marc Siegel, Security Management System Consultant, ASIS International Disaster Recovery Institute International (DRII)
The Value of Accreditation
An Executive Summary: The Issue the Profile Addresses, Its Development as a Solution, Its Benefits, and Support The Issue: Domestic and international regulatory.
Presentation transcript:

1 Welcome to the DRI International National Preparedness Month Virtual Town Hall AnneMarie Staley NYSE EuroNext Russell Wooldridge DRI International Moderators

2 Chloe Demrovsky, Director of International Operations DRI International New International Opportunities Introducing DRI Japan, a non-profit organization, offering certification in Japanese Announcing the formation of DRI India serving India and neighboring countries DRI Malaysia: International BCM Conference: Managing the Unexpected – “Are We Really Ready For It?” October 26-28, 2010 in Kuala Lampur.

3 Present a “thought leadership” forums Provide virtual venues for participants to earn CEAPs Provide incentive for certified professionals for visiting The Professional Development Committee Daniel Mikulsky, Chair CSC

4 The BOG Committee Benefits Discounts & group benefits for Certified Professionals Outreach Help manage current and future relationships Grants Define and seek grants Michelle Cross, Chair Wells Fargo

5 Len Pagano, President & CEO SafeAmerica Foundation Nearly ½ Million Pledged to Drill What companies can do Plans for 2011’s March to 1 Million DRILL DOWN for Safety

6 The State of Company Certifications Al Berman, Executive Development DRI International

 What Are We Trying to Accomplish? ◦ PREPAREDNESS  Emergency Management  Disaster management  Business Continuity  Is this New? ◦ Regulations ◦ Standards ◦ Guidances 7

Recommendation: We endorse the American National Standards Institute’s recommended standard for private preparedness. We were encouraged by Secretary Tom Ridge’s praise of the standard, and urge the Department of Homeland Security to promote its adoption. We also encourage the insurance and credit-rating industries to look closely at a company’s compliance with the ANSI standard in assessing its insurability and creditworthiness. We believe that compliance with the standard should define the standard of care owed by a company to its employees and the public for legal purposes. Private- sector preparedness is not a luxury; it is a cost of doing business in the post-9/11 world. 8

9 Consumer Credit Protection Act OMB Circular A-130 FEMA Guidance Document Paperwork Reduction Act ISO (Previously ISO17799) FFIEC BCP Handbook Computer Security Act 12 CFR Part 18 Presidential Decision Directive 67 FDA Guidance on Computerized Systems used in Clinical Trials used in Clinical Trials ANSI/NFPA Standard 1600 Turnbull Report (UK) ANAO Best Practice Guide (Australia) SEC Rule 17 a-4 FEMA FPC 65 CARJHACO Sarbanes-Oxley Act of 2002 HIPAA, Final Security Rule FFIEC BCP Handbook -2003/ 2008 Fair Credit Reporting Act NASD Rule 3510 NERC Security Guidelines FERC Security Standards NAIC Standard on BCP NIST Contingency Planning Guide FRB-OCC-SEC Guidelines for Strengthening the Resilience of US Strengthening the Resilience of US Financial System Financial System NYSE Rule 446 California SB 1386 Australia Standards BCM Handbook GAO Potential Terrorist Attacks Guideline Guideline Federal and Legislative BC Requirements for IRS Requirements for IRS Basel Capital Accord MAS Proposed BCP Guidelines (Singapore) (Singapore) NFA Compliance Rule 2-38 FSA Handbook (UK) BCI Standard, PAS 56 (UK) Civil Contingencies Bill (UK) Post-9/11 Pre-9/ Safety Act FCD-1/2 NYS Circular Letter 7 ASIS State of NY FIRM White Paper on CP NISCC Good Practices (Telecomm) Australian Prudential Standard on BCM HB221HB292BS25999 SS507 – SS540 TR19 CA Z1600 ISO/PAS HiTech Act of 2009 DRII Title IX – Business Continuity Regulations and Standards

10 a. Goal of the new program is to provide a method to independently certify the emergency preparedness of private sector organizations, including their disaster / emergency management and business continuity programs. The program focuses on certifying the preparedness of businesses and other private sector entities, and does not involve any individual professional certification. b. The program will be voluntary. c. Key stakeholders are invited to participate in the development of the program. Consultation with a variety of organizations and various sectors is required by the legislation. Program development will likely include involvement by a diversity of private sector advisory groups and others. d. The program will be administered outside of government by 3rd party organizations with experience / expertise in managing and implementing voluntary accreditation and certification programs. e. One or more preparedness standards can be designated. NFPA 1600 is reference by example. f. Existing industry efforts, certifications and reporting in this area will not be duplicated or displaced, but rather recognized and integrated. g. Special consideration will be made for small business. h. Proprietary and confidential information is to be protected.

 A list of Recommended Standards Against Which a Company May Certify:  ASIS International SPC Organizational Resilience: Security Preparedness, and Continuity Management System – Requirements with Guidance for use (2009 Edition).  British Standards Institution (2007 Edition) - Business Continuity Management.(BS 25999: Code of practice for business continuity management and BS 25999: Specification for business continuity management)  National Fire Protection Association 1600-Standard on Disaster / Emergency Management and Business Continuity Programs, 2007 and 2010 editions. 11

12 ANSI-ANAB In progress - ANSI DHS

 DRI/NFPA Course is proceeding with ANSI-CAP Accreditation for the Course  ANSI-CAP follows the accreditation process outlined in the international standard ISO/IEC 17011, General Requirements for Accreditation Bodies Accrediting Conformity Assessment Bodies and recognized by ANSI-ANABISO/IEC  Passing the Exam will Provide a Certificate of Completion (Because training is a requirement there can be no examination only)  This Certificate will Be Required to Seek CBCA/CBCLAs  DRI International will maintain recertification through continuing education (RSBSQA requirement) 13

Regulations  Created by Government/Industry Regulatory Bodies  Punitive ◦ Fines ◦ Shutdown  Subject to Annual (Operational/Financial) Audit  Audit Conducted by Third Party  Results are Board Issues  May Create Vendor Requirements ◦ FFIEC ◦ HIPPA

Standards  Voluntary  Non-Punitive  Auditable Through First, Second or Third Parties  State of Flux ◦ NFPA 1600 is the ANSI National Standard is in Revised Every 3 years ◦ ASIS/BS25999 are Currently in the Early Stages of Seeking ANSI Accreditation not Due until at Least End of 2009 ◦ ISO 22399/PAS (Publicly Available Specifications) Interim State ◦ New Australian Standard ◦ New Singapore Standard

 A Certification by an Approved Certification Body ◦ No Endorsement by DHS/FEMA or Federal Government  A Distancing by DHS from the Process  Private Sector Certification Bodies ◦ Available Before PS-Prep  NFPA 1600  BS  SS507 – SS540  Private Companies 16

 No Get Out of Jail Free (Safe Harbor) ◦ Safety Act of 2002  No Reduction in Insurance Premiums  Does Not Exempt Regulatory Compliance  DHS Cannot Make It Mandatory – Only Legislative Action Can ◦ Highly Unlikely ◦ Consider Sarbanes-Oxley 17

So Why Do It  Rewards ◦ May Satisfy Customer Inquiries  Supply Chain  RFPs ◦ Create Uniformity  Multi-Nationals ◦ Increase Preparedness  PS-Prep Raised Awareness of Need to Prepare

Risks  Risks ◦ Discoverable (Corrective Action Plan) ◦ May Not Provide Legal Protection  Judge and Jury Decision  No Known NFPA1600 Defense ◦ Quality of Auditors ◦ Potential Conflict  Financial – Operational Audit  Corporate Governance  Regulation ◦ Expensive

What to Do Now  Focus on the Regs *  Broaden Your Viewpoint *  Keep Your Eyes on Transition *  Hold Off On (the Actual) Certification *  Walk Don’t Run *  Talk to Your General Counsel (DHS Does) * The Standards Race Author: Mark Carroll

Final Thoughts and Ideas  Let’s Work On Preparedness ◦ Small Steps – Easily Accomplished  Safe America  National Preparedness Month – Join the Coalition  Local Community Activities  Local Red Cross Chapter