A Business Continuity Management (BCM) programme cannot be successfully implemented or sustained without a clearly defined governance structure and a dedicated team responsible for planning, coordinating, implementing, and maintaining continuity arrangements across the organisation.
ISO 22301 requires organisations to establish roles, responsibilities, authorities, and governance mechanisms to support the effective operation of the Business Continuity Management System (BCMS).
Given the complexity of GRA's regulatory responsibilities and its reliance on technology, inter-agency collaboration, and specialised personnel, the BCM team must represent all key functions within the organisation.
The purpose of this chapter is to propose a practical BCM governance structure and team composition that supports GRA's operational resilience objectives. This structure is designed to facilitate effective decision-making, cross-functional coordination, accountability, and continuous improvement of the BCM programme.
The BCM team serves as the central governance and coordination mechanism for the organisation's BCM programme.
The objectives of establishing the BCM team are to:
An effective BCM team provides the following benefits:
The BCM governance structure should operate at three levels:
Provide strategic oversight, executive sponsorship, and governance for the BCM programme.
|
Position |
Proposed Representative |
|
Chairperson |
Chief Executive Officer / Chief Executive |
|
Executive Sponsor |
Deputy Chief Executive |
|
Members |
Heads of Regulatory Divisions |
|
Members |
Chief Information Officer (CIO) |
|
Members |
Head of Corporate Services |
|
Members |
Head of Risk Management |
|
Members |
Head of Communications |
|
Members |
Head of Legal and Policy |
Coordinate BCM implementation and maintenance activities across GRA.
|
Position |
Proposed Representative |
|
BCM Manager / BCM Coordinator |
BCM Programme Lead |
|
Licensing Representative |
Licensing Division |
|
Compliance Representative |
Compliance Division |
|
Enforcement Representative |
Enforcement Division |
|
Legal Representative |
Legal & Policy Division |
|
ICT Representative |
Information Technology Division |
|
HR Representative |
Human Resources |
|
Corporate Services Representative |
Corporate Services |
|
Communications Representative |
Corporate Communications |
|
Risk Representative |
Enterprise Risk Management |
Implement BCM activities within individual departments and business units.
Each division should appoint:
|
Department |
BCM Coordinator Required |
|
Licensing |
Yes |
|
Compliance |
Yes |
|
Enforcement |
Yes |
|
Legal & Policy |
Yes |
|
ICT |
Yes |
|
Finance |
Yes |
|
Human Resources |
Yes |
|
Communications |
Yes |
|
Corporate Services |
Yes |
|
Risk Management |
Yes |
BCM Steering Committee
│
▼
BCM Manager / BCM Coordinator
│
┌──────┼──────┐
▼ ▼ ▼
BCM Working Committee
│
┌──────┼───────────────────────────────┐
▼ ▼ ▼ ▼ ▼ ▼
Licensing Compliance Enforcement ICT Legal Corporate Services
BCM Team BCM Team BCM Team BCM Team BCM Team BCM Team
Provides strategic leadership and governance.
Acts as the central coordinator of all BCM activities.
Responsibilities include:
Act as BCM focal points within their respective departments.
Responsibilities include:
The BCM structure should integrate closely with GRA's Crisis Management Team (CMT).
Many BCM team members may also participate in the Crisis Management Team during major incidents.
For the BCM team to be effective, GRA should ensure:
The proposed Business Continuity Management (BCM) team structure for the Gambling Regulatory Authority (GRA) provides a governance framework that aligns with the requirements of ISO 22301 and supports organisational resilience.
The structure consists of a BCM Steering Committee, BCM Working Committee, and Department BCM Coordinators representing all critical regulatory and support functions.
By establishing a formal BCM governance structure, GRA can effectively coordinate continuity planning, strengthen regulatory resilience, improve recovery capabilities, and ensure the continued delivery of critical services during disruptions.
The BCM team serves as the foundation for implementing, maintaining, and continuously improving the organisation's BCM programme, thereby supporting GRA's mission to maintain regulatory integrity, safeguard the public interest, and ensure operational continuity under all circumstances.
| eBook 1: Understanding Your Organisation | |||||
| C1 | C2 | C3 | C4 | C5 | C6 |
| C7 | C8 | C9 | C10 | C11 | C12 |
To learn more about the course and schedule, click the buttons below for BCM-300 Business Continuity Management Implementer [BCM-3] and BCM-5000 Business Continuity Management Expert Implementer [BCM-5].
|
Please feel free to send us a note if you have any questions. |
||