ISO 31000:2018
Framework – ISO 31000:2018

ISO 31000:2018 5.1: General

Guidance: the framework exists to get risk management inside the organization's significant activities and functions, and its effect depends on how far it is built into governance and decision-making, with top management behind it. Developing the framework means integrating risk management and designing, implementing, evaluating and improving it throughout the whole organization. The organization should look at the risk management practices it already has, find the gaps against the framework and close them, and should tailor the components and the way they fit together to its own needs.

Maintained by Gerard BlokdykControl text last updated

What else in your programme already covers this

This control maps to 6 controls across 4 other frameworks. If you already hold one of them, the evidence you collected for it is the starting point here rather than new work.

ISO 19011:2018 · 3 controls

ISO 13485:2016 · 1 control

  • 4.1 General requirements

ISO 14004:2016 · 1 control

  • 8.1.1 General guidance: Operational control
  • 6.1 General concepts

Every mapping shown was judged rather than inferred from wording similarity, and the ones that failed review are published too. See the coverage reports and what was rejected.

Other controls in Framework – ISO 31000:2018

Query this from an agent

The graph holds this control, the 6 it maps to, and the evidence behind each claim, over MCP and REST.