SlideShare ist ein Scribd-Unternehmen logo
1 von 50
Downloaden Sie, um offline zu lesen
Raimund Laqua, PMP, P.Eng
ray.laqua@leancompliance.ca
Know Your
Obligations
Hi, I’m an
obligation Wsup A BEST PRACTICE COMPLIANCE
MANAGEMENT FRAMEWORK:
ISO 19600
KNOW YOUR OBLIGATIONS
1. Customer Identification Program
2. Customer Due Diligence
3. On-going Monitoring
Requirements
KYC, KYP, KYB, Etc.
The better you know your customer
the better you can evaluate the risk.
KNOW YOUR OBLIGATIONS
ABC Pipeline Company Environmental Manager
Carl the Environmental Manager
Obligations
managed
Obligations
at Risk
KNOW YOUR OBLIGATIONS
Unknown and Unmanaged Obligations
KNOW YOUR OBLIGATIONS
Carl’s Questions
1. How should we identify our environmental
obligations?
2. What information about these obligations will
help us effectively contend with compliance
risk?
3. How do we improve the use of our legal
register to better manage our obligations?
What do I need to Know
KNOW YOUR OBLIGATIONS
ISO 19600 Guidelines
KNOW YOUR OBLIGATIONS
Obligation Types
Obligation
Requirement
Mandatory Voluntary
Commitment
An obligation is defined as
being a requirement or a
commitment.
Something a company
must do or chooses to do.
KNOW YOUR OBLIGATIONS
4.5 / 4.6 Compliance Obligations
Identification of compliance
obligations and evaluation
compliance risk (4.5./4.6)
Leadership commitment,
Independent compliance
function (5.1), Responsibilities
at all levels (5.3), Support
functions (7)
Planning to address
compliance risks and to
achieve objectives (6)
Operational
planning and
control of
compliance
risks (8)
Performance
evaluation and
compliance
reporting (9)
Managing
compliances and
continual
improvement (10)
Maintain Develop
ImplementEvaluate
Improve
KNOW YOUR OBLIGATIONS
1. Identification of Compliance
Obligations (4.5.1)
2. Identification, analysis and
evaluation of compliance risk (4.6)
3. Maintenance of Compliance
Obligations (4.5.2)
KYO Requirements
Know Your
Obligations
Hi, I’m an
obligation Wsup
The better you know your obligation
the better you can evaluate the risk.
▷ The organization should systematically identify its compliance
obligations and their implications for its activities, products and
services.
▷ The organization should take these obligations into account in
establishing, developing, implementing, evaluating, maintaining and
improving its compliance management system.
▷ The organization should document its compliance obligations in a
manner that is appropriate to its size, complexity, structure and
operations.
▷ Sources of compliance obligations should include compliance
requirements and can include compliance commitments.
KNOW YOUR OBLIGATIONS
4.5.1 Identification of Compliance Obligations
KNOW YOUR OBLIGATIONS
Obligation Landscape
Mission
Quality
Health & Safety
Security
Environmental
Process Safety
Social License
Conformance
to Industry Standards
Conformance
to Legal Requirements
Accept Stakeholder
Responsibilities
Accept Public
Responsibilities
Legal
Regulatory
Ethics
Code of Conduct
Contracts
Permits
Certifications
Public Safety
Regulatory License• Voluntary
• Focused on Performance
• Risk-based
• Learn / Improve Cycle
• Proactive
• Mandatory
• Focused on Conformance
• Prescriptive
• Audit / Fix Cycle
• Reactive
ORGANIZATIONAL CORPORATE
OVERLAP
▷ The process to identify obligations.
▷ The obligation requirements or commitments.
▷ Their implications with respect to activities,
products and services.
▷ How obligations should be taken into
account.
▷ How obligations should be documented.
KNOW YOUR OBLIGATIONS
What Do We Need to Know
Are these identified for your organization?
KNOW YOUR OBLIGATIONS
Obligation Sources
Source
KNOW YOUR OBLIGATIONS
Government Obligations
Source
Pan-Canadian Framework on Clean Growth and
Climate Change
Canadian Environmental Protection Act, 1999 (CEPA)
SOR/2018-66 - Regulations Respecting Reduction in
the Release of Methane and Certain Volatile Organic
Compounds (Upstream Oil and Gas Sector)
SOR/2020-60 - Order Declaring that the Provisions of
the Regulations Respecting Reduction in the Release
of Methane and Certain Volatile Organic Compounds
(Upstream Oil and Gas Sector)
Canadian Energy Regulator Onshore Pipeline
Regulations (SOR/99-294)
KNOW YOUR OBLIGATIONS
Industry Specific Obligations
Source
CSA-Z662:19 Oil & Gas Pipeline Systems
CEPA Integrity First Program
API RP 1173 – Pipeline Safety
KNOW YOUR OBLIGATIONS
International Obligations
Source
ISO 14000: 2015 Environmental Management System
ISO 19600: 2014 Compliance Management System
KNOW YOUR OBLIGATIONS
Interna Obligationsl
Source
Corporate EHS Policy
KNOW YOUR OBLIGATIONS
All Sources
Source
Pan-Canadian Framework on Clean Growth and
Climate Change
Canadian Environmental Protection Act, 1999 (CEPA)
SOR/2018-66 - Regulations Respecting Reduction in
the Release of Methane and Certain Volatile Organic
Compounds (Upstream Oil and Gas Sector)
SOR/2020-60 - Order Declaring that the Provisions of
the Regulations Respecting Reduction in the Release
of Methane and Certain Volatile Organic Compounds
(Upstream Oil and Gas Sector)
CSA-Z662:19 Oil & Gas Pipeline Systems
Canadian Energy Regulator Onshore Pipeline
Regulations (SOR/99-294)
CEPA Integrity First Program
ISO 14000: 2015 Environmental Management System
ISO 19600: 2014 Compliance Management System
Corporate EHS Policy
API RP 1173 – Pipeline Safety
KNOW YOUR OBLIGATIONS
Categories
Source Category
Pan-Canadian Framework on Clean Growth and
Climate Change
Framework
Canadian Environmental Protection Act, 1999 (CEPA) Act
SOR/2018-66 - Regulations Respecting Reduction in
the Release of Methane and Certain Volatile Organic
Compounds (Upstream Oil and Gas Sector)
Regulation
SOR/2020-60 - Order Declaring that the Provisions of
the Regulations Respecting Reduction in the Release
of Methane and Certain Volatile Organic Compounds
(Upstream Oil and Gas Sector)
Order
CSA-Z662:19 Oil & Gas Pipeline Systems Standard, Regulation
Canadian Energy Regulator Onshore Pipeline
Regulations (SOR/99-294)
Regulation
CEPA Integrity First Program Association
ISO 14000: 2015 Environmental Management System Standard
ISO 19600: 2014 Compliance Management System Guideline
Corporate EHS Policy Policy
API RP 1173 – Pipeline Safety Guideline
KNOW YOUR OBLIGATIONS
Example Categories
INTERNAL
EXTERNAL
What does
CATEGORY
tell us about how obligations
should be managed?
KNOW YOUR OBLIGATIONS
Topic
Source Category Topic
Pan-Canadian Framework on Clean Growth and
Climate Change
Framework Environment, Climate
Canadian Environmental Protection Act, 1999 (CEPA) Act Environment
SOR/2018-66 - Regulations Respecting Reduction in
the Release of Methane and Certain Volatile Organic
Compounds (Upstream Oil and Gas Sector)
Regulation Environment
SOR/2020-60 - Order Declaring that the Provisions of
the Regulations Respecting Reduction in the Release
of Methane and Certain Volatile Organic Compounds
(Upstream Oil and Gas Sector)
Order Environment
CSA-Z662:19 Oil & Gas Pipeline Systems Standard, Regulation
Pipeline Safety, Safety,
Environment
Canadian Energy Regulator Onshore Pipeline
Regulations (SOR/99-294)
Regulation Environment, Safety
CEPA Integrity First Program Association Environment, Safety
ISO 14000: 2015 Environmental Management System Standard Environment
ISO 19600: 2014 Compliance Management System Guideline Compliance
Corporate EHS Policy Policy
Environmental, Health,
Safety
API RP 1173 – Pipeline Safety Guideline
Environment, Pipeline
Safety
KNOW YOUR OBLIGATIONS
Example Topics
What does
TOPIC
tell us about how obligations
should be managed?
KNOW YOUR OBLIGATIONS
Compliance Design
Source Category Topic Design
Pan-Canadian Framework on Clean Growth and
Climate Change
Framework Environment, Climate Performance-based
Canadian Environmental Protection Act, 1999 (CEPA) Act Environment Prescriptive-based
SOR/2018-66 - Regulations Respecting Reduction in
the Release of Methane and Certain Volatile Organic
Compounds (Upstream Oil and Gas Sector)
Regulation Environment Performance-based
SOR/2020-60 - Order Declaring that the Provisions of
the Regulations Respecting Reduction in the Release
of Methane and Certain Volatile Organic Compounds
(Upstream Oil and Gas Sector)
Order Environment Performance-based
CSA-Z662:19 Oil & Gas Pipeline Systems Standard, Regulation
Pipeline Safety, Safety,
Environment
Management-based, Prescriptive-
based, Performance-based
Canadian Energy Regulator Onshore Pipeline
Regulations (SOR/99-294)
Regulation Environment, Safety Prescriptive-based
CEPA Integrity First Program Association Environment, Safety Performance-based
ISO 14000: 2015 Environmental Management System Standard Environment Management-based
ISO 19600: 2014 Compliance Management System Guideline Compliance Management-based
Corporate EHS Policy Policy
Environmental, Health,
Safety
Outcome-based, Performance-based
API RP 1173 – Pipeline Safety Guideline
Environment, Pipeline
Safety
Management-based, Performance-
based
KNOW YOUR OBLIGATIONS
Compliance Designs
MICRO MACRO
MEANS
1. Prescriptive-based
Prescriptive regulation
Design standards
Technology-based regulation
Specification standards
Codes
2. Management-based
International Standards
Industry Standards
Goal-based regulation
Safety case regulation
Enforced self-regulation
ENDS
3. Performance-based
Performance Agreements
Output-based regulation
Market-based regulation
4. Outcome-based
Duty and Liability provisions
Outcome-based regulation
Non-Persistent
(event driven)
KNOWING YOUR OBLIGATIONS
Obligation Objectives
Persistent
Maintenance
Persistent
Achievement
KNOW YOUR OBLIGATIONS
Obligation Taxonomy
OBJECTIVE Rank
Agreed Criteria
a. attribute
b. attribute
c. attribute
Scorecard
a. attribute
b. attribute
c. attribute
9
7
4
OUTCOME
Rules
a. rule
b. rule
KNOW YOUR OBLIGATIONS
Obligation Taxonomy
OBJECTIVE Rank
Agreed Criteria
a. attribute
b. attribute
c. attribute
Scorecard
a. attribute
b. attribute
c. attribute
9
7
4
OUTCOME
Outcome-based
Rules
a. rule
b. rule
KNOW YOUR OBLIGATIONS
Obligation Taxonomy
OBJECTIVE Rank
Agreed Criteria
a. attribute
b. attribute
c. attribute
Scorecard
a. attribute
b. attribute
c. attribute
9
7
4
OUTCOME
Outcome-based
Rules
a. rule
b. rule
Performance-based
KNOW YOUR OBLIGATIONS
Obligation Taxonomy
OBJECTIVE Rank
Agreed Criteria
a. attribute
b. attribute
c. attribute
Scorecard
a. attribute
b. attribute
c. attribute
9
7
4
OUTCOME
Outcome-based
Rules
a. rule
b. rule
Performance-based
Prescriptive-based
KNOW YOUR OBLIGATIONS
Obligation Taxonomy
OBJECTIVE Rank
Agreed Criteria
a. attribute
b. attribute
c. attribute
Scorecard
a. attribute
b. attribute
c. attribute
9
7
4
OUTCOME
Validate and
Assure
Verify and
Ensure
Satisfy and
Sustain
Continually
Improve
Outcome-based
Performance-based
Management-based
Prescriptive-based
Rules
a. rule
b. rule
Standard Procedures
KNOW YOUR OBLIGATIONS
Compliance Measures
MoE
MoP
MoC
Measures of Effectiveness
progress against compliance
outcomes towards zero: non-
conformance, injuries,
violations, emissions, etc.
Measures of Performance
capabilities, capacity,
competency to meet
compliance objectives
Measures of Conformance
evidentiary artifacts that
demonstrate conformance to
standard.
MoI
Measures of Integrity
values, beliefs, behavior,
honesty, promise keeping,
disciplined, respect for
people, etc.
KNOW YOUR OBLIGATIONS
Example Compliance Designs
What does
COMPLIANCE DESIGN
tell us about how obligations
should be managed?
▷The organization should identify and evaluate its compliance risks.
This evaluation can be based on a formal compliance risk
assessment or conducted via alternative approaches. Compliance
risk assessment constitutes the basis for the implementation of the
compliance management system and the planned allocation of
appropriate and adequate resources and processes to manage
identified compliance risks.
▷The organization should identify compliance risks by relating its
compliance obligations to its activities, products, services and
relevant aspects of its operations in order to identify situations
where noncompliance can occur. The organization should identify the
causes for and consequences of noncompliance.
KNOW YOUR OBLIGATIONS
4.6 Identification, Analysis and Evaluation of Compliance Risk
▷ The organization should analyse compliance risks by
considering causes and sources of noncompliance and the
severity of their consequences, as well as the likelihood that
noncompliance and associated consequences can occur.
Consequences can include, for example, personal and
environmental harm, economic loss, reputational harm and
administrative liability.
▷ Risk evaluation involves comparing the level of compliance
risk found during the analysis process with the level of
compliance risk the organization is able and willing to accept.
Based on this comparison, priorities can be set as a basis for
determining the need for implementing controls and the
extent of these controls (see 6.1).
KNOW YOUR OBLIGATIONS
Risk Evaluation
“The effects of uncertainty
on compliance objectives.”
KNOW YOUR OBLIGATIONS
Risk Definition
THREATS
OPPORTUNITIES
CAUSES
CONSEQUENCES
Preventive
Controls
Mitigative
Controls
Bow-Tie Analysis
▷ Organizations should have processes in place to
identify new and changed laws, regulations, codes
and other compliance obligations to ensure on-
going compliance.
▷ Organizations should have processes to evaluate
the impact of the identified changes and
implement any changes in the management of the
compliance obligations.
KNOW YOUR OBLIGATIONS
4.5.2 Maintenance of Compliance Obligations
KNOW YOUR OBLIGATIONS
Obligation Change Process
INITIATION
• Change description
• Type of change
• Reason for change
• Time limitations
IMPACT ANALYSIS
• Identify implications of change
• Conduct risk assessment
• Identify affected parties
APPROVAL
• Approve implementation of
requested change
PLANNING
• Develop implementation plan
• Develop communication plan
INITIATION
IMPLEMEN-
TATION
IMPACT
ANALYSIS
PLANNING APPROVAL
IMPLEMENTATION
• Execute implementation plan
• Notify affected parties
• Conduct necessary training
and qualification
KNOW YOUR OBLIGATIONS
What Do We Need To Know?
OBLIGATION
Obligation Source
Obligation Category
Obligation Topic
Obligation Design
Obligation Reference
Obligation Requirement
/ Commitment
Obligation Outcome
Obligation Objectives
Obligation Criteria
Obligation
Dependencies
KNOW YOUR OBLIGATIONS
What do we need to know?
OBLIGATION IMPACT
Obligation Source Products
Obligation Category Services
Obligation Topic Activities
Obligation Design Systems
Obligation Reference Processes
Obligation Requirement
/ Commitment
Organization
Obligation Outcome Governance
Obligation Objectives Culture
Obligation Criteria Stakeholders
Obligation
Dependencies
KNOW YOUR OBLIGATIONS
What do we need to know?
OBLIGATION IMPACT RISK
Obligation Source Products Risk Threshold
Obligation Category Services Inherit Risk
Obligation Topic Activities Treated Risk
Obligation Design Systems Causes
Obligation Reference Processes Effects
Obligation Requirement
/ Commitment
Organization Likelihood
Obligation Outcome Governance Severity
Obligation Objectives Culture
Obligation Criteria Stakeholders
Obligation
Dependencies
KNOW YOUR OBLIGATIONS
What do we need to know?
OBLIGATION IMPACT RISK CHANGE
Obligation Source Products Risk Threshold
Change
Description
Obligation Category Services Inherit Risk Change Impact
Obligation Topic Activities Treated Risk Change Risk
Obligation Design Systems Causes
Change
Implementation
Obligation Reference Processes Effects
Obligation Requirement
/ Commitment
Organization Likelihood
Obligation Outcome Governance Severity
Obligation Objectives Culture
Obligation Criteria Stakeholders
Obligation
Dependencies
KNOW YOUR OBLIGATIONS
What do we need to know?
OBLIGATION IMPACT RISK CHANGE MEASURES
Obligation Source Products Risk Threshold
Change
Description
Measures of
Integrity
Obligation Category Services Inherit Risk Change Impact
Measures of
Effectiveness
Obligation Topic Activities Treated Risk Change Risk
Measures of
Performance
Obligation Design Systems Causes
Change
Implementation
Measure of
Conformance
Obligation Reference Processes Effects
Obligation Requirement
/ Commitment
Organization Likelihood
Obligation Outcome Governance Severity
Obligation Objectives Culture
Obligation Criteria Stakeholders
Obligation
Dependencies
KNOW YOUR OBLIGATIONS
What do we need to know?
OBLIGATION IMPACT RISK CHANGE MEASURES CONTROLS
Obligation Source Products Risk Threshold
Change
Description
Measures of
Integrity
Administrative
Controls
Obligation Category Services Inherit Risk Change Impact
Measures of
Effectiveness
Risk Controls
Obligation Topic Activities Treated Risk Change Risk
Measures of
Performance
Preventative
Controls
Obligation Design Systems Causes
Change
Implementation
Measure of
Conformance
Detection
Controls
Obligation Reference Processes Effects
Mitigative
Controls
Obligation Requirement
/ Commitment
Organization Likelihood
Obligation Outcome Governance Severity
Obligation Objectives Culture
Obligation Criteria Stakeholders
Obligation
Dependencies
KNOW YOUR OBLIGATIONS
What do we need to know?
KNOW YOUR OBLIGATIONS
How did we do?
If you were Carl would this information
help you better manage your
environmental obligations?
KNOW YOUR OBLIGATIONS
How did we do?
Would it help you
better manage your
obligations?
KNOW YOUR OBLIGATIONS
What steps can you take to know your obligations better?
1. Which attributes or sets of attributes tend to
be missing from your obligation register?
2. What 3 attributes would significantly improve
your ability to manage your obligations?
3. What steps could you take to start including
those attributes in your obligation registers?
4. Will you be acting on those steps in the
upcoming weeks?
The better you know your obligations
the better you can evaluate the risk.
A BEST PRACTICE COMPLIANCE
MANAGEMENT FRAMEWORK:
ISO 19600
Know Your
Obligations
Hi, I’m an
obligation Wsup
Know Your
Obligations
Hi, I’m an
obligation Wsup
Know Your
Obligations
Hi, I’m an
obligation Wsup

Weitere ähnliche Inhalte

Was ist angesagt?

ISO 14001 2015 7 requirements
ISO 14001 2015 7 requirementsISO 14001 2015 7 requirements
ISO 14001 2015 7 requirements
Nigel Leehane
 
Auditor for quality and environmental management systems
Auditor for quality and environmental management systemsAuditor for quality and environmental management systems
Auditor for quality and environmental management systems
Ahmed Sabry
 
Environmental Management Systems - ISO 14001
Environmental Management Systems - ISO 14001Environmental Management Systems - ISO 14001
Environmental Management Systems - ISO 14001
Hector Rodriguez
 
What ISO Management Systems can learn from Balanced Scorecard?
What ISO Management Systems can learn from Balanced Scorecard?What ISO Management Systems can learn from Balanced Scorecard?
What ISO Management Systems can learn from Balanced Scorecard?
PECB
 

Was ist angesagt? (20)

ISO14001-2015 - ems learn - translate
ISO14001-2015 - ems learn - translateISO14001-2015 - ems learn - translate
ISO14001-2015 - ems learn - translate
 
Auditing Difficulties in ISO 14001
Auditing Difficulties in ISO 14001 Auditing Difficulties in ISO 14001
Auditing Difficulties in ISO 14001
 
ISO 14001 2015 7 requirements
ISO 14001 2015 7 requirementsISO 14001 2015 7 requirements
ISO 14001 2015 7 requirements
 
ISO 14001 Managers Training
ISO 14001 Managers TrainingISO 14001 Managers Training
ISO 14001 Managers Training
 
Auditor for quality and environmental management systems
Auditor for quality and environmental management systemsAuditor for quality and environmental management systems
Auditor for quality and environmental management systems
 
Changes to ISO 14001 2015 in Plain Language
Changes to ISO 14001 2015 in Plain LanguageChanges to ISO 14001 2015 in Plain Language
Changes to ISO 14001 2015 in Plain Language
 
LRQA ISO 14001:2015 standards revsion update
LRQA ISO 14001:2015 standards revsion updateLRQA ISO 14001:2015 standards revsion update
LRQA ISO 14001:2015 standards revsion update
 
The New Era for ISO 140001:2015
The New Era for ISO 140001:2015The New Era for ISO 140001:2015
The New Era for ISO 140001:2015
 
Environmental Management Systems - ISO 14001
Environmental Management Systems - ISO 14001Environmental Management Systems - ISO 14001
Environmental Management Systems - ISO 14001
 
ISO 14001:2015 Integrity in Implementation and Auditing the New EMS Standard
 ISO 14001:2015 Integrity in Implementation and Auditing the New EMS Standard ISO 14001:2015 Integrity in Implementation and Auditing the New EMS Standard
ISO 14001:2015 Integrity in Implementation and Auditing the New EMS Standard
 
The iia s 2017 international professional practices framework
The iia s 2017 international professional practices frameworkThe iia s 2017 international professional practices framework
The iia s 2017 international professional practices framework
 
PECB Webinar: Steps to OHSAS 18001 Certification
PECB Webinar: Steps to OHSAS 18001 CertificationPECB Webinar: Steps to OHSAS 18001 Certification
PECB Webinar: Steps to OHSAS 18001 Certification
 
NQA ISO 14001:2015 – Accredited Certification Transition Webinar Slides
NQA ISO 14001:2015 – Accredited Certification Transition Webinar SlidesNQA ISO 14001:2015 – Accredited Certification Transition Webinar Slides
NQA ISO 14001:2015 – Accredited Certification Transition Webinar Slides
 
PECB Webinar: QMS Risk Assessment
PECB Webinar: QMS Risk AssessmentPECB Webinar: QMS Risk Assessment
PECB Webinar: QMS Risk Assessment
 
Introduction to Hazardous Material, Worker Health, Housekeeping and Hygiene
Introduction to Hazardous Material, Worker Health, Housekeeping and HygieneIntroduction to Hazardous Material, Worker Health, Housekeeping and Hygiene
Introduction to Hazardous Material, Worker Health, Housekeeping and Hygiene
 
Key steps to successful ISO 14001 Implementation
Key steps to successful ISO 14001 ImplementationKey steps to successful ISO 14001 Implementation
Key steps to successful ISO 14001 Implementation
 
What ISO Management Systems can learn from Balanced Scorecard?
What ISO Management Systems can learn from Balanced Scorecard?What ISO Management Systems can learn from Balanced Scorecard?
What ISO Management Systems can learn from Balanced Scorecard?
 
IEMA ISO14001 - External Auditors viewpoint
IEMA ISO14001 - External Auditors viewpoint IEMA ISO14001 - External Auditors viewpoint
IEMA ISO14001 - External Auditors viewpoint
 
How to align a Robust Materiality Assessment with Corporate Strategy and Target?
How to align a Robust Materiality Assessment with Corporate Strategy and Target?How to align a Robust Materiality Assessment with Corporate Strategy and Target?
How to align a Robust Materiality Assessment with Corporate Strategy and Target?
 
ISO 14001:2015 Awareness
ISO 14001:2015 AwarenessISO 14001:2015 Awareness
ISO 14001:2015 Awareness
 

Ähnlich wie ISO 19600 Section 4.5 - Know your Obligations

Managerstraining 12675884284189-phpapp01 (1)
Managerstraining 12675884284189-phpapp01 (1)Managerstraining 12675884284189-phpapp01 (1)
Managerstraining 12675884284189-phpapp01 (1)
Alan Crabtree
 
MRC ISO 14001 Implementation
MRC ISO 14001 ImplementationMRC ISO 14001 Implementation
MRC ISO 14001 Implementation
Essam Al-Kahloot
 
Climate Check Canarie Workshop March4
Climate Check Canarie Workshop March4Climate Check Canarie Workshop March4
Climate Check Canarie Workshop March4
Bill St. Arnaud
 
Corporate Social Responsibility
Corporate Social ResponsibilityCorporate Social Responsibility
Corporate Social Responsibility
Hillary Jenkins
 

Ähnlich wie ISO 19600 Section 4.5 - Know your Obligations (20)

ISO14000 Awareness Programme Slide Show By Eashwer
ISO14000   Awareness Programme   Slide Show By EashwerISO14000   Awareness Programme   Slide Show By Eashwer
ISO14000 Awareness Programme Slide Show By Eashwer
 
Managerstraining 12675884284189-phpapp01 (1)
Managerstraining 12675884284189-phpapp01 (1)Managerstraining 12675884284189-phpapp01 (1)
Managerstraining 12675884284189-phpapp01 (1)
 
EHS Management Systems Overview For The Hazardous Materials Professional
EHS Management Systems Overview For The Hazardous Materials ProfessionalEHS Management Systems Overview For The Hazardous Materials Professional
EHS Management Systems Overview For The Hazardous Materials Professional
 
MRC ISO 14001 Implementation
MRC ISO 14001 ImplementationMRC ISO 14001 Implementation
MRC ISO 14001 Implementation
 
Promotional Email
Promotional EmailPromotional Email
Promotional Email
 
ISO_14000_Series[1].pdf
ISO_14000_Series[1].pdfISO_14000_Series[1].pdf
ISO_14000_Series[1].pdf
 
Enviromental precaion ,regulation, and iniciatives and
Enviromental precaion ,regulation, and iniciatives andEnviromental precaion ,regulation, and iniciatives and
Enviromental precaion ,regulation, and iniciatives and
 
Climate Check Canarie Workshop March4
Climate Check Canarie Workshop March4Climate Check Canarie Workshop March4
Climate Check Canarie Workshop March4
 
Climate Check Canarie Workshop March4
Climate Check Canarie Workshop March4Climate Check Canarie Workshop March4
Climate Check Canarie Workshop March4
 
Developing an EMS and ISO 14001:2015 and Life Cycle Perspective
Developing an EMS and ISO 14001:2015 and Life Cycle PerspectiveDeveloping an EMS and ISO 14001:2015 and Life Cycle Perspective
Developing an EMS and ISO 14001:2015 and Life Cycle Perspective
 
Ellen Cruz
Ellen CruzEllen Cruz
Ellen Cruz
 
Corporate Social Responsibility
Corporate Social ResponsibilityCorporate Social Responsibility
Corporate Social Responsibility
 
Quality systems
Quality systemsQuality systems
Quality systems
 
Webinar: TSCA reform
Webinar: TSCA reform Webinar: TSCA reform
Webinar: TSCA reform
 
Iso 9000 and iso 14000
Iso 9000 and iso 14000Iso 9000 and iso 14000
Iso 9000 and iso 14000
 
ACO
ACOACO
ACO
 
ISO 14000 Standards
ISO 14000 StandardsISO 14000 Standards
ISO 14000 Standards
 
Environmental ISO 14001 Intro
Environmental ISO 14001 IntroEnvironmental ISO 14001 Intro
Environmental ISO 14001 Intro
 
Formation iso 9001
Formation iso 9001Formation iso 9001
Formation iso 9001
 
EHS Compliance in China
EHS Compliance in China EHS Compliance in China
EHS Compliance in China
 

Mehr von Nimonik

Mehr von Nimonik (20)

Generative AI for Regulatory Analysis
Generative AI for Regulatory AnalysisGenerative AI for Regulatory Analysis
Generative AI for Regulatory Analysis
 
Nimonik Brochure
Nimonik BrochureNimonik Brochure
Nimonik Brochure
 
ISO 37301 Compliance Management Systems
ISO 37301 Compliance Management SystemsISO 37301 Compliance Management Systems
ISO 37301 Compliance Management Systems
 
Calgary Oil & Gas Regulatory and Standards Day January 18th 2023
Calgary Oil & Gas Regulatory and Standards Day January 18th 2023Calgary Oil & Gas Regulatory and Standards Day January 18th 2023
Calgary Oil & Gas Regulatory and Standards Day January 18th 2023
 
Best Practices for Regulatory Change Management
Best Practices for Regulatory Change ManagementBest Practices for Regulatory Change Management
Best Practices for Regulatory Change Management
 
Build a business case for compliance March 2022
Build a business case for compliance March 2022Build a business case for compliance March 2022
Build a business case for compliance March 2022
 
ESG and Compliance: Where do we go from here?
ESG and Compliance: Where do we go from here?ESG and Compliance: Where do we go from here?
ESG and Compliance: Where do we go from here?
 
State of Compliance 2021 at Mid-Market Firms - Nimonik
State of Compliance 2021 at Mid-Market Firms - NimonikState of Compliance 2021 at Mid-Market Firms - Nimonik
State of Compliance 2021 at Mid-Market Firms - Nimonik
 
COVID-19 Biological Risk Assessment Webinar
COVID-19 Biological Risk Assessment WebinarCOVID-19 Biological Risk Assessment Webinar
COVID-19 Biological Risk Assessment Webinar
 
Preparing for a Post Covid World
Preparing for a Post Covid WorldPreparing for a Post Covid World
Preparing for a Post Covid World
 
19600 Compliance Management System Guidelines
19600 Compliance Management System Guidelines19600 Compliance Management System Guidelines
19600 Compliance Management System Guidelines
 
Continous compliance october 2019 webinar (2)
Continous compliance   october 2019 webinar (2)Continous compliance   october 2019 webinar (2)
Continous compliance october 2019 webinar (2)
 
The not so hidden costs of non-compliance
The not so hidden costs of non-complianceThe not so hidden costs of non-compliance
The not so hidden costs of non-compliance
 
The 4 key types of regulations and how to comply (3)
The 4 key types of regulations and how to comply (3)The 4 key types of regulations and how to comply (3)
The 4 key types of regulations and how to comply (3)
 
Comprehensive Compliance for Environmental, Safety, Quality Requirements in C...
Comprehensive Compliance for Environmental, Safety, Quality Requirements in C...Comprehensive Compliance for Environmental, Safety, Quality Requirements in C...
Comprehensive Compliance for Environmental, Safety, Quality Requirements in C...
 
Process Area Site Assessments techniques for the Management
Process Area Site Assessments techniques for the ManagementProcess Area Site Assessments techniques for the Management
Process Area Site Assessments techniques for the Management
 
Air monitoring presentation
Air monitoring presentationAir monitoring presentation
Air monitoring presentation
 
Electronics recycling webinar final presentation
Electronics recycling webinar final presentationElectronics recycling webinar final presentation
Electronics recycling webinar final presentation
 
环境影响评价及政府审批服务负责 Latest enforcement of environmental protection law
环境影响评价及政府审批服务负责 Latest enforcement of environmental protection law环境影响评价及政府审批服务负责 Latest enforcement of environmental protection law
环境影响评价及政府审批服务负责 Latest enforcement of environmental protection law
 
2107 EHS法规回顾与立法趋势
2107 EHS法规回顾与立法趋势2107 EHS法规回顾与立法趋势
2107 EHS法规回顾与立法趋势
 

Kürzlich hochgeladen

6th sem cpc notes for 6th semester students samjhe. Padhlo bhai
6th sem cpc notes for 6th semester students samjhe. Padhlo bhai6th sem cpc notes for 6th semester students samjhe. Padhlo bhai
6th sem cpc notes for 6th semester students samjhe. Padhlo bhai
ShashankKumar441258
 
Code_Ethics of_Mechanical_Engineering.ppt
Code_Ethics of_Mechanical_Engineering.pptCode_Ethics of_Mechanical_Engineering.ppt
Code_Ethics of_Mechanical_Engineering.ppt
JosephCanama
 
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
bd2c5966a56d
 
一比一原版(纽大毕业证书)美国纽约大学毕业证如何办理
一比一原版(纽大毕业证书)美国纽约大学毕业证如何办理一比一原版(纽大毕业证书)美国纽约大学毕业证如何办理
一比一原版(纽大毕业证书)美国纽约大学毕业证如何办理
e9733fc35af6
 
一比一原版曼彻斯特城市大学毕业证如何办理
一比一原版曼彻斯特城市大学毕业证如何办理一比一原版曼彻斯特城市大学毕业证如何办理
一比一原版曼彻斯特城市大学毕业证如何办理
Airst S
 
Audience profile - SF.pptxxxxxxxxxxxxxxxxxxxxxxxxxxx
Audience profile - SF.pptxxxxxxxxxxxxxxxxxxxxxxxxxxxAudience profile - SF.pptxxxxxxxxxxxxxxxxxxxxxxxxxxx
Audience profile - SF.pptxxxxxxxxxxxxxxxxxxxxxxxxxxx
MollyBrown86
 
一比一原版(UC毕业证书)堪培拉大学毕业证如何办理
一比一原版(UC毕业证书)堪培拉大学毕业证如何办理一比一原版(UC毕业证书)堪培拉大学毕业证如何办理
一比一原版(UC毕业证书)堪培拉大学毕业证如何办理
bd2c5966a56d
 
一比一原版赫尔大学毕业证如何办理
一比一原版赫尔大学毕业证如何办理一比一原版赫尔大学毕业证如何办理
一比一原版赫尔大学毕业证如何办理
Airst S
 
一比一原版(RMIT毕业证书)皇家墨尔本理工大学毕业证如何办理
一比一原版(RMIT毕业证书)皇家墨尔本理工大学毕业证如何办理一比一原版(RMIT毕业证书)皇家墨尔本理工大学毕业证如何办理
一比一原版(RMIT毕业证书)皇家墨尔本理工大学毕业证如何办理
ss
 

Kürzlich hochgeladen (20)

6th sem cpc notes for 6th semester students samjhe. Padhlo bhai
6th sem cpc notes for 6th semester students samjhe. Padhlo bhai6th sem cpc notes for 6th semester students samjhe. Padhlo bhai
6th sem cpc notes for 6th semester students samjhe. Padhlo bhai
 
Performance of contract-1 law presentation
Performance of contract-1 law presentationPerformance of contract-1 law presentation
Performance of contract-1 law presentation
 
Code_Ethics of_Mechanical_Engineering.ppt
Code_Ethics of_Mechanical_Engineering.pptCode_Ethics of_Mechanical_Engineering.ppt
Code_Ethics of_Mechanical_Engineering.ppt
 
3 Formation of Company.www.seribangash.com.ppt
3 Formation of Company.www.seribangash.com.ppt3 Formation of Company.www.seribangash.com.ppt
3 Formation of Company.www.seribangash.com.ppt
 
Smarp Snapshot 210 -- Google's Social Media Ad Fraud & Disinformation Strategy
Smarp Snapshot 210 -- Google's Social Media Ad Fraud & Disinformation StrategySmarp Snapshot 210 -- Google's Social Media Ad Fraud & Disinformation Strategy
Smarp Snapshot 210 -- Google's Social Media Ad Fraud & Disinformation Strategy
 
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
一比一原版(QUT毕业证书)昆士兰科技大学毕业证如何办理
 
The Active Management Value Ratio: The New Science of Benchmarking Investment...
The Active Management Value Ratio: The New Science of Benchmarking Investment...The Active Management Value Ratio: The New Science of Benchmarking Investment...
The Active Management Value Ratio: The New Science of Benchmarking Investment...
 
Hely-Hutchinson v. Brayhead Ltd .pdf
Hely-Hutchinson v. Brayhead Ltd         .pdfHely-Hutchinson v. Brayhead Ltd         .pdf
Hely-Hutchinson v. Brayhead Ltd .pdf
 
Relationship Between International Law and Municipal Law MIR.pdf
Relationship Between International Law and Municipal Law MIR.pdfRelationship Between International Law and Municipal Law MIR.pdf
Relationship Between International Law and Municipal Law MIR.pdf
 
WhatsApp 📞 8448380779 ✅Call Girls In Nangli Wazidpur Sector 135 ( Noida)
WhatsApp 📞 8448380779 ✅Call Girls In Nangli Wazidpur Sector 135 ( Noida)WhatsApp 📞 8448380779 ✅Call Girls In Nangli Wazidpur Sector 135 ( Noida)
WhatsApp 📞 8448380779 ✅Call Girls In Nangli Wazidpur Sector 135 ( Noida)
 
一比一原版(纽大毕业证书)美国纽约大学毕业证如何办理
一比一原版(纽大毕业证书)美国纽约大学毕业证如何办理一比一原版(纽大毕业证书)美国纽约大学毕业证如何办理
一比一原版(纽大毕业证书)美国纽约大学毕业证如何办理
 
CAFC Chronicles: Costly Tales of Claim Construction Fails
CAFC Chronicles: Costly Tales of Claim Construction FailsCAFC Chronicles: Costly Tales of Claim Construction Fails
CAFC Chronicles: Costly Tales of Claim Construction Fails
 
一比一原版曼彻斯特城市大学毕业证如何办理
一比一原版曼彻斯特城市大学毕业证如何办理一比一原版曼彻斯特城市大学毕业证如何办理
一比一原版曼彻斯特城市大学毕业证如何办理
 
How do cyber crime lawyers in Mumbai collaborate with law enforcement agencie...
How do cyber crime lawyers in Mumbai collaborate with law enforcement agencie...How do cyber crime lawyers in Mumbai collaborate with law enforcement agencie...
How do cyber crime lawyers in Mumbai collaborate with law enforcement agencie...
 
Audience profile - SF.pptxxxxxxxxxxxxxxxxxxxxxxxxxxx
Audience profile - SF.pptxxxxxxxxxxxxxxxxxxxxxxxxxxxAudience profile - SF.pptxxxxxxxxxxxxxxxxxxxxxxxxxxx
Audience profile - SF.pptxxxxxxxxxxxxxxxxxxxxxxxxxxx
 
Human Rights_FilippoLuciani diritti umani.pptx
Human Rights_FilippoLuciani diritti umani.pptxHuman Rights_FilippoLuciani diritti umani.pptx
Human Rights_FilippoLuciani diritti umani.pptx
 
一比一原版(UC毕业证书)堪培拉大学毕业证如何办理
一比一原版(UC毕业证书)堪培拉大学毕业证如何办理一比一原版(UC毕业证书)堪培拉大学毕业证如何办理
一比一原版(UC毕业证书)堪培拉大学毕业证如何办理
 
一比一原版赫尔大学毕业证如何办理
一比一原版赫尔大学毕业证如何办理一比一原版赫尔大学毕业证如何办理
一比一原版赫尔大学毕业证如何办理
 
PPT- Voluntary Liquidation (Under section 59).pptx
PPT- Voluntary Liquidation (Under section 59).pptxPPT- Voluntary Liquidation (Under section 59).pptx
PPT- Voluntary Liquidation (Under section 59).pptx
 
一比一原版(RMIT毕业证书)皇家墨尔本理工大学毕业证如何办理
一比一原版(RMIT毕业证书)皇家墨尔本理工大学毕业证如何办理一比一原版(RMIT毕业证书)皇家墨尔本理工大学毕业证如何办理
一比一原版(RMIT毕业证书)皇家墨尔本理工大学毕业证如何办理
 

ISO 19600 Section 4.5 - Know your Obligations

  • 1. Raimund Laqua, PMP, P.Eng ray.laqua@leancompliance.ca Know Your Obligations Hi, I’m an obligation Wsup A BEST PRACTICE COMPLIANCE MANAGEMENT FRAMEWORK: ISO 19600
  • 2. KNOW YOUR OBLIGATIONS 1. Customer Identification Program 2. Customer Due Diligence 3. On-going Monitoring Requirements KYC, KYP, KYB, Etc. The better you know your customer the better you can evaluate the risk.
  • 3. KNOW YOUR OBLIGATIONS ABC Pipeline Company Environmental Manager Carl the Environmental Manager
  • 4. Obligations managed Obligations at Risk KNOW YOUR OBLIGATIONS Unknown and Unmanaged Obligations
  • 5. KNOW YOUR OBLIGATIONS Carl’s Questions 1. How should we identify our environmental obligations? 2. What information about these obligations will help us effectively contend with compliance risk? 3. How do we improve the use of our legal register to better manage our obligations? What do I need to Know
  • 6. KNOW YOUR OBLIGATIONS ISO 19600 Guidelines
  • 7. KNOW YOUR OBLIGATIONS Obligation Types Obligation Requirement Mandatory Voluntary Commitment An obligation is defined as being a requirement or a commitment. Something a company must do or chooses to do.
  • 8. KNOW YOUR OBLIGATIONS 4.5 / 4.6 Compliance Obligations Identification of compliance obligations and evaluation compliance risk (4.5./4.6) Leadership commitment, Independent compliance function (5.1), Responsibilities at all levels (5.3), Support functions (7) Planning to address compliance risks and to achieve objectives (6) Operational planning and control of compliance risks (8) Performance evaluation and compliance reporting (9) Managing compliances and continual improvement (10) Maintain Develop ImplementEvaluate Improve
  • 9. KNOW YOUR OBLIGATIONS 1. Identification of Compliance Obligations (4.5.1) 2. Identification, analysis and evaluation of compliance risk (4.6) 3. Maintenance of Compliance Obligations (4.5.2) KYO Requirements Know Your Obligations Hi, I’m an obligation Wsup The better you know your obligation the better you can evaluate the risk.
  • 10. ▷ The organization should systematically identify its compliance obligations and their implications for its activities, products and services. ▷ The organization should take these obligations into account in establishing, developing, implementing, evaluating, maintaining and improving its compliance management system. ▷ The organization should document its compliance obligations in a manner that is appropriate to its size, complexity, structure and operations. ▷ Sources of compliance obligations should include compliance requirements and can include compliance commitments. KNOW YOUR OBLIGATIONS 4.5.1 Identification of Compliance Obligations
  • 11. KNOW YOUR OBLIGATIONS Obligation Landscape Mission Quality Health & Safety Security Environmental Process Safety Social License Conformance to Industry Standards Conformance to Legal Requirements Accept Stakeholder Responsibilities Accept Public Responsibilities Legal Regulatory Ethics Code of Conduct Contracts Permits Certifications Public Safety Regulatory License• Voluntary • Focused on Performance • Risk-based • Learn / Improve Cycle • Proactive • Mandatory • Focused on Conformance • Prescriptive • Audit / Fix Cycle • Reactive ORGANIZATIONAL CORPORATE OVERLAP
  • 12. ▷ The process to identify obligations. ▷ The obligation requirements or commitments. ▷ Their implications with respect to activities, products and services. ▷ How obligations should be taken into account. ▷ How obligations should be documented. KNOW YOUR OBLIGATIONS What Do We Need to Know Are these identified for your organization?
  • 14. KNOW YOUR OBLIGATIONS Government Obligations Source Pan-Canadian Framework on Clean Growth and Climate Change Canadian Environmental Protection Act, 1999 (CEPA) SOR/2018-66 - Regulations Respecting Reduction in the Release of Methane and Certain Volatile Organic Compounds (Upstream Oil and Gas Sector) SOR/2020-60 - Order Declaring that the Provisions of the Regulations Respecting Reduction in the Release of Methane and Certain Volatile Organic Compounds (Upstream Oil and Gas Sector) Canadian Energy Regulator Onshore Pipeline Regulations (SOR/99-294)
  • 15. KNOW YOUR OBLIGATIONS Industry Specific Obligations Source CSA-Z662:19 Oil & Gas Pipeline Systems CEPA Integrity First Program API RP 1173 – Pipeline Safety
  • 16. KNOW YOUR OBLIGATIONS International Obligations Source ISO 14000: 2015 Environmental Management System ISO 19600: 2014 Compliance Management System
  • 17. KNOW YOUR OBLIGATIONS Interna Obligationsl Source Corporate EHS Policy
  • 18. KNOW YOUR OBLIGATIONS All Sources Source Pan-Canadian Framework on Clean Growth and Climate Change Canadian Environmental Protection Act, 1999 (CEPA) SOR/2018-66 - Regulations Respecting Reduction in the Release of Methane and Certain Volatile Organic Compounds (Upstream Oil and Gas Sector) SOR/2020-60 - Order Declaring that the Provisions of the Regulations Respecting Reduction in the Release of Methane and Certain Volatile Organic Compounds (Upstream Oil and Gas Sector) CSA-Z662:19 Oil & Gas Pipeline Systems Canadian Energy Regulator Onshore Pipeline Regulations (SOR/99-294) CEPA Integrity First Program ISO 14000: 2015 Environmental Management System ISO 19600: 2014 Compliance Management System Corporate EHS Policy API RP 1173 – Pipeline Safety
  • 19. KNOW YOUR OBLIGATIONS Categories Source Category Pan-Canadian Framework on Clean Growth and Climate Change Framework Canadian Environmental Protection Act, 1999 (CEPA) Act SOR/2018-66 - Regulations Respecting Reduction in the Release of Methane and Certain Volatile Organic Compounds (Upstream Oil and Gas Sector) Regulation SOR/2020-60 - Order Declaring that the Provisions of the Regulations Respecting Reduction in the Release of Methane and Certain Volatile Organic Compounds (Upstream Oil and Gas Sector) Order CSA-Z662:19 Oil & Gas Pipeline Systems Standard, Regulation Canadian Energy Regulator Onshore Pipeline Regulations (SOR/99-294) Regulation CEPA Integrity First Program Association ISO 14000: 2015 Environmental Management System Standard ISO 19600: 2014 Compliance Management System Guideline Corporate EHS Policy Policy API RP 1173 – Pipeline Safety Guideline
  • 20. KNOW YOUR OBLIGATIONS Example Categories INTERNAL EXTERNAL What does CATEGORY tell us about how obligations should be managed?
  • 21. KNOW YOUR OBLIGATIONS Topic Source Category Topic Pan-Canadian Framework on Clean Growth and Climate Change Framework Environment, Climate Canadian Environmental Protection Act, 1999 (CEPA) Act Environment SOR/2018-66 - Regulations Respecting Reduction in the Release of Methane and Certain Volatile Organic Compounds (Upstream Oil and Gas Sector) Regulation Environment SOR/2020-60 - Order Declaring that the Provisions of the Regulations Respecting Reduction in the Release of Methane and Certain Volatile Organic Compounds (Upstream Oil and Gas Sector) Order Environment CSA-Z662:19 Oil & Gas Pipeline Systems Standard, Regulation Pipeline Safety, Safety, Environment Canadian Energy Regulator Onshore Pipeline Regulations (SOR/99-294) Regulation Environment, Safety CEPA Integrity First Program Association Environment, Safety ISO 14000: 2015 Environmental Management System Standard Environment ISO 19600: 2014 Compliance Management System Guideline Compliance Corporate EHS Policy Policy Environmental, Health, Safety API RP 1173 – Pipeline Safety Guideline Environment, Pipeline Safety
  • 22. KNOW YOUR OBLIGATIONS Example Topics What does TOPIC tell us about how obligations should be managed?
  • 23. KNOW YOUR OBLIGATIONS Compliance Design Source Category Topic Design Pan-Canadian Framework on Clean Growth and Climate Change Framework Environment, Climate Performance-based Canadian Environmental Protection Act, 1999 (CEPA) Act Environment Prescriptive-based SOR/2018-66 - Regulations Respecting Reduction in the Release of Methane and Certain Volatile Organic Compounds (Upstream Oil and Gas Sector) Regulation Environment Performance-based SOR/2020-60 - Order Declaring that the Provisions of the Regulations Respecting Reduction in the Release of Methane and Certain Volatile Organic Compounds (Upstream Oil and Gas Sector) Order Environment Performance-based CSA-Z662:19 Oil & Gas Pipeline Systems Standard, Regulation Pipeline Safety, Safety, Environment Management-based, Prescriptive- based, Performance-based Canadian Energy Regulator Onshore Pipeline Regulations (SOR/99-294) Regulation Environment, Safety Prescriptive-based CEPA Integrity First Program Association Environment, Safety Performance-based ISO 14000: 2015 Environmental Management System Standard Environment Management-based ISO 19600: 2014 Compliance Management System Guideline Compliance Management-based Corporate EHS Policy Policy Environmental, Health, Safety Outcome-based, Performance-based API RP 1173 – Pipeline Safety Guideline Environment, Pipeline Safety Management-based, Performance- based
  • 24. KNOW YOUR OBLIGATIONS Compliance Designs MICRO MACRO MEANS 1. Prescriptive-based Prescriptive regulation Design standards Technology-based regulation Specification standards Codes 2. Management-based International Standards Industry Standards Goal-based regulation Safety case regulation Enforced self-regulation ENDS 3. Performance-based Performance Agreements Output-based regulation Market-based regulation 4. Outcome-based Duty and Liability provisions Outcome-based regulation
  • 25. Non-Persistent (event driven) KNOWING YOUR OBLIGATIONS Obligation Objectives Persistent Maintenance Persistent Achievement
  • 26. KNOW YOUR OBLIGATIONS Obligation Taxonomy OBJECTIVE Rank Agreed Criteria a. attribute b. attribute c. attribute Scorecard a. attribute b. attribute c. attribute 9 7 4 OUTCOME Rules a. rule b. rule
  • 27. KNOW YOUR OBLIGATIONS Obligation Taxonomy OBJECTIVE Rank Agreed Criteria a. attribute b. attribute c. attribute Scorecard a. attribute b. attribute c. attribute 9 7 4 OUTCOME Outcome-based Rules a. rule b. rule
  • 28. KNOW YOUR OBLIGATIONS Obligation Taxonomy OBJECTIVE Rank Agreed Criteria a. attribute b. attribute c. attribute Scorecard a. attribute b. attribute c. attribute 9 7 4 OUTCOME Outcome-based Rules a. rule b. rule Performance-based
  • 29. KNOW YOUR OBLIGATIONS Obligation Taxonomy OBJECTIVE Rank Agreed Criteria a. attribute b. attribute c. attribute Scorecard a. attribute b. attribute c. attribute 9 7 4 OUTCOME Outcome-based Rules a. rule b. rule Performance-based Prescriptive-based
  • 30. KNOW YOUR OBLIGATIONS Obligation Taxonomy OBJECTIVE Rank Agreed Criteria a. attribute b. attribute c. attribute Scorecard a. attribute b. attribute c. attribute 9 7 4 OUTCOME Validate and Assure Verify and Ensure Satisfy and Sustain Continually Improve Outcome-based Performance-based Management-based Prescriptive-based Rules a. rule b. rule Standard Procedures
  • 31. KNOW YOUR OBLIGATIONS Compliance Measures MoE MoP MoC Measures of Effectiveness progress against compliance outcomes towards zero: non- conformance, injuries, violations, emissions, etc. Measures of Performance capabilities, capacity, competency to meet compliance objectives Measures of Conformance evidentiary artifacts that demonstrate conformance to standard. MoI Measures of Integrity values, beliefs, behavior, honesty, promise keeping, disciplined, respect for people, etc.
  • 32. KNOW YOUR OBLIGATIONS Example Compliance Designs What does COMPLIANCE DESIGN tell us about how obligations should be managed?
  • 33. ▷The organization should identify and evaluate its compliance risks. This evaluation can be based on a formal compliance risk assessment or conducted via alternative approaches. Compliance risk assessment constitutes the basis for the implementation of the compliance management system and the planned allocation of appropriate and adequate resources and processes to manage identified compliance risks. ▷The organization should identify compliance risks by relating its compliance obligations to its activities, products, services and relevant aspects of its operations in order to identify situations where noncompliance can occur. The organization should identify the causes for and consequences of noncompliance. KNOW YOUR OBLIGATIONS 4.6 Identification, Analysis and Evaluation of Compliance Risk
  • 34. ▷ The organization should analyse compliance risks by considering causes and sources of noncompliance and the severity of their consequences, as well as the likelihood that noncompliance and associated consequences can occur. Consequences can include, for example, personal and environmental harm, economic loss, reputational harm and administrative liability. ▷ Risk evaluation involves comparing the level of compliance risk found during the analysis process with the level of compliance risk the organization is able and willing to accept. Based on this comparison, priorities can be set as a basis for determining the need for implementing controls and the extent of these controls (see 6.1). KNOW YOUR OBLIGATIONS Risk Evaluation
  • 35. “The effects of uncertainty on compliance objectives.” KNOW YOUR OBLIGATIONS Risk Definition THREATS OPPORTUNITIES CAUSES CONSEQUENCES Preventive Controls Mitigative Controls Bow-Tie Analysis
  • 36. ▷ Organizations should have processes in place to identify new and changed laws, regulations, codes and other compliance obligations to ensure on- going compliance. ▷ Organizations should have processes to evaluate the impact of the identified changes and implement any changes in the management of the compliance obligations. KNOW YOUR OBLIGATIONS 4.5.2 Maintenance of Compliance Obligations
  • 37. KNOW YOUR OBLIGATIONS Obligation Change Process INITIATION • Change description • Type of change • Reason for change • Time limitations IMPACT ANALYSIS • Identify implications of change • Conduct risk assessment • Identify affected parties APPROVAL • Approve implementation of requested change PLANNING • Develop implementation plan • Develop communication plan INITIATION IMPLEMEN- TATION IMPACT ANALYSIS PLANNING APPROVAL IMPLEMENTATION • Execute implementation plan • Notify affected parties • Conduct necessary training and qualification
  • 38. KNOW YOUR OBLIGATIONS What Do We Need To Know?
  • 39. OBLIGATION Obligation Source Obligation Category Obligation Topic Obligation Design Obligation Reference Obligation Requirement / Commitment Obligation Outcome Obligation Objectives Obligation Criteria Obligation Dependencies KNOW YOUR OBLIGATIONS What do we need to know?
  • 40. OBLIGATION IMPACT Obligation Source Products Obligation Category Services Obligation Topic Activities Obligation Design Systems Obligation Reference Processes Obligation Requirement / Commitment Organization Obligation Outcome Governance Obligation Objectives Culture Obligation Criteria Stakeholders Obligation Dependencies KNOW YOUR OBLIGATIONS What do we need to know?
  • 41. OBLIGATION IMPACT RISK Obligation Source Products Risk Threshold Obligation Category Services Inherit Risk Obligation Topic Activities Treated Risk Obligation Design Systems Causes Obligation Reference Processes Effects Obligation Requirement / Commitment Organization Likelihood Obligation Outcome Governance Severity Obligation Objectives Culture Obligation Criteria Stakeholders Obligation Dependencies KNOW YOUR OBLIGATIONS What do we need to know?
  • 42. OBLIGATION IMPACT RISK CHANGE Obligation Source Products Risk Threshold Change Description Obligation Category Services Inherit Risk Change Impact Obligation Topic Activities Treated Risk Change Risk Obligation Design Systems Causes Change Implementation Obligation Reference Processes Effects Obligation Requirement / Commitment Organization Likelihood Obligation Outcome Governance Severity Obligation Objectives Culture Obligation Criteria Stakeholders Obligation Dependencies KNOW YOUR OBLIGATIONS What do we need to know?
  • 43. OBLIGATION IMPACT RISK CHANGE MEASURES Obligation Source Products Risk Threshold Change Description Measures of Integrity Obligation Category Services Inherit Risk Change Impact Measures of Effectiveness Obligation Topic Activities Treated Risk Change Risk Measures of Performance Obligation Design Systems Causes Change Implementation Measure of Conformance Obligation Reference Processes Effects Obligation Requirement / Commitment Organization Likelihood Obligation Outcome Governance Severity Obligation Objectives Culture Obligation Criteria Stakeholders Obligation Dependencies KNOW YOUR OBLIGATIONS What do we need to know?
  • 44. OBLIGATION IMPACT RISK CHANGE MEASURES CONTROLS Obligation Source Products Risk Threshold Change Description Measures of Integrity Administrative Controls Obligation Category Services Inherit Risk Change Impact Measures of Effectiveness Risk Controls Obligation Topic Activities Treated Risk Change Risk Measures of Performance Preventative Controls Obligation Design Systems Causes Change Implementation Measure of Conformance Detection Controls Obligation Reference Processes Effects Mitigative Controls Obligation Requirement / Commitment Organization Likelihood Obligation Outcome Governance Severity Obligation Objectives Culture Obligation Criteria Stakeholders Obligation Dependencies KNOW YOUR OBLIGATIONS What do we need to know?
  • 45. KNOW YOUR OBLIGATIONS How did we do? If you were Carl would this information help you better manage your environmental obligations?
  • 46. KNOW YOUR OBLIGATIONS How did we do? Would it help you better manage your obligations?
  • 47. KNOW YOUR OBLIGATIONS What steps can you take to know your obligations better? 1. Which attributes or sets of attributes tend to be missing from your obligation register? 2. What 3 attributes would significantly improve your ability to manage your obligations? 3. What steps could you take to start including those attributes in your obligation registers? 4. Will you be acting on those steps in the upcoming weeks?
  • 48. The better you know your obligations the better you can evaluate the risk. A BEST PRACTICE COMPLIANCE MANAGEMENT FRAMEWORK: ISO 19600 Know Your Obligations Hi, I’m an obligation Wsup
  • 49. Know Your Obligations Hi, I’m an obligation Wsup
  • 50. Know Your Obligations Hi, I’m an obligation Wsup