Share on social networks!

ISO 37301 Compliance management systems

The International Organization for Standardization (ISO) Last April, it published the ISO 37301 standard for compliance management systems. This is a standard that replaces ISO 19600:2014, which was a reference for the implementation of compliance management systems.

compliance management systems

What's new in ISO 37301

The ISO 37301 of Compliance presents important news:

It is certifiable: The first difference with respect to its predecessor is the fact that the new ISO 37301 is certifiable, That is, organizations will be able to prove compliance with said standard. 

Includes the compliance culture: It incorporates a guidance annex for use and has specific requirements on compliance culture, collecting specific examples on the essential factors for the creation and development of the compliance culture.

Encourage the use of Whistleblowing tools: They are established specific requirements to ensure the effectiveness of these tools.

More relevance of the organization's context: ISO 19600 does not give prominence to the context of the organization, however, it is a key element in regulatory compliance, especially when evaluating and identifying risks. 

Clearer responsibilities: ISO 37301 provides flexibility and allows organizations, depending on their structure, to adapt the assignment of responsibilities according to their particular conditions. However, it clarifies that the final responsibility for compliance management from a legal point of view lies with senior management.

Non-conformity and non-compliance: It maintains the distinction between “non-conformity” and “non-compliance” already contemplated in ISO 19600. “Non-conformity” refers to the violation of a requirement of the Management System, while “non-compliance” constitutes the violation of an imperative obligation.

Between his main objectives this:

  • Improve opportunities commercial and sustainability.
  • Protect the reputation of the organization. As it is an international standard, it is valid outside the country of origin.
  • Demonstrate the commitment of an organization to manage your compliance risks effectively and efficiently, being able to become certified and thus guarantee legal compliance in all your operations
  • Increase confidence from third parties. 
  • Minimize risk of an infringement occurring.

As we have pointed out previously, with the implementation of the ISO 37301 Standard you can get various benefits for the organization, promoting compliance and communication, which help optimize the interaction between its collaborators, organizations, clients and suppliers.

Through the Master in Compliance and Data Protection Management in EIP You will be able to train and be a professional in this field and know in depth all the regulations that are carried out.

Zaray Val

Legal Counsel & Compliance IBERIA in Athlon - Mercedes-Benz AG Group

Subscribe to our newsletter to stay up to date with all the news

EIP International Business School informs you that the data in this form will be processed by Mainjobs Internacional Educativa y Tecnológica, SAU as the party responsible for this website. The purpose of collecting and processing personal data is to manage your subscription to the newsletter as well as to send commercial information about the services of the data controller. The legitimacy is the explicit consent of the interested party. Data will not be transferred to third parties, except under legal obligation. You may exercise your rights of access, rectification, limitation and deletion of data at compliance@grupomainjobs.com, as well as the right to lodge a complaint with the supervisory authority. You can consult additional and detailed information on Data Protection in the Privacy Policy that you will find on our website.
Blog Master Dpo

Leave a comment

EIP International Business School informs you that the data in this form will be processed by Mainjobs Internacional Educativa y Tecnológica, SAU as the party responsible for this website. The purpose of collecting and processing personal data is to manage your subscription to the newsletter as well as to send commercial information about the services of the data controller. The legitimacy is the explicit consent of the interested party. Data will not be transferred to third parties, except under legal obligation. You may exercise your rights of access, rectification, limitation and deletion of data at compliance@grupomainjobs.com, as well as the right to lodge a complaint with the supervisory authority. You can consult additional and detailed information on Data Protection in the Privacy Policy that you will find on our website.