ISO 31000 is an international risk management standard. It can be
used by any organization at a strategic or organizational level regardless of its type, activity or size. It can be applied towards the achievement of any and all types of
objectives at all levels and areas within an organization related to the risk. It can be used to help manage processes, operations, functions, projects, programs, products, services, and assets. ISO 31000 defines a set of guidelines.
ISO 31000 is used by a wide range of stakeholders, including people who need to:
- Establish a risk management policy.
- Ensure that risk is managed properly.
- Manage and control risk within an organization.
- Evaluate risk management practices and processes.
- Develop risk management procedures and guides.