Back

Establish, implement, and maintain an environmental management system.


CONTROL ID
14945
CONTROL TYPE
Business Processes
CLASSIFICATION
Preventive

SUPPORTING AND SUPPORTED CONTROLS




This Control directly supports the implied Control(s):
  • Operational management, CC ID: 00805

This Control has the following implementation support Control(s):
  • Establish, implement, and maintain environmental management system processes., CC ID: 14954
  • Include risks and opportunities in the environmental management system., CC ID: 15201
  • Include communications in the environmental management system., CC ID: 15199
  • Establish, implement, and maintain environmental performance monitoring procedures., CC ID: 15222
  • Prioritize and select controls based on environmental management system requirements., CC ID: 15197
  • Disseminate and communicate environmental information to interested personnel and affected parties., CC ID: 15195
  • Disseminate and communicate environmental requirements to interested personnel and affected parties., CC ID: 15196
  • Include compliance obligations in the environmental management system., CC ID: 15185
  • Establish, implement, and maintain environmental objectives., CC ID: 15186
  • Analyze environmental aspects using established criteria., CC ID: 15230
  • Include the environmental management system requirements in the environmental management system., CC ID: 14978
  • Include environmental impacts in the environmental management system., CC ID: 15175
  • Analyze the environmental impact of organizational changes., CC ID: 14979
  • Disseminate and communicate the environmental management system to interested personnel and affected parties., CC ID: 14976
  • Include roles and responsibilities in the environmental management system., CC ID: 14971
  • Include a commitment to continuous improvement in the environmental management system., CC ID: 14970
  • Provide management direction and support for the environmental management system., CC ID: 14968
  • Assign accountability for the effectiveness of the environmental management system., CC ID: 14966
  • Include third party requirements in the environmental management system., CC ID: 14964
  • Provide assurance that the environmental management system meets all compliance requirements., CC ID: 14958
  • Include environmental conditions in the environmental management system., CC ID: 14952
  • Include the scope in the environmental management system., CC ID: 14950
  • Establish, implement, and maintain an environmental policy., CC ID: 14947


SELECTED AUTHORITY DOCUMENTS COMPLIED WITH




  • The organization shall consider the knowledge gained in 4.1 and 4.2 when establishing and maintaining the environmental management system. (§ 4.4 ¶ 2, ISO 14001:2015 - Environmental management systems — Requirements with guidance for use, Third Edition)
  • ensuring that the environmental management system achieves its intended outcomes; (§ 5.1 ¶ 1 f), ISO 14001:2015 - Environmental management systems — Requirements with guidance for use, Third Edition)
  • To achieve the intended outcomes, including enhancing its environmental performance, the organization shall establish, implement, maintain and continually improve an environmental management system, including the processes needed and their interactions, in accordance with the requirements of this In… (§ 4.4 ¶ 1, ISO 14001:2015 - Environmental management systems — Requirements with guidance for use, Third Edition)
  • The organization shall continually improve the suitability, adequacy and effectiveness of the environmental management system to enhance environmental performance. (§ 10.3 ¶ 1, ISO 14001:2015 - Environmental management systems — Requirements with guidance for use, Third Edition)
  • conclusions on the continuing suitability, adequacy and effectiveness of the environmental management system; (§ 9.3 ¶ 3 Bullet 1, ISO 14001:2015 - Environmental management systems — Requirements with guidance for use, Third Edition)
  • The organization shall establish, implement, control and maintain the processes needed to meet environmental management system requirements, and to implement the actions identified in 6.1 and 6.2, by: (§ 8.1 ¶ 1, ISO 14001:2015 - Environmental management systems — Requirements with guidance for use, Third Edition)
  • make changes to the environmental management system, if necessary. (§ 10.2 ¶ 1 e), ISO 14001:2015 - Environmental management systems — Requirements with guidance for use, Third Edition)
  • Top management shall review the organization's environmental management system, at planned intervals, to ensure its continuing suitability, adequacy and effectiveness. (§ 9.3 ¶ 1, ISO 14001:2015 - Environmental management systems — Requirements with guidance for use, Third Edition)
  • Planning to take action can include a single action, such as establishing an environmental objective, operational control, emergency preparedness, or another business process, e.g. supplier evaluation. Alternatively, the organization can use a combination of actions that include environmental object… (6.1.4 ¶ 2, ISO 14004:2016, Environmental management systems — General guidelines on implementation, Third Edition)
  • Planning is an ongoing process, used to establish, implement, maintain and improve the EMS elements. The planning process can help an organization identify, and focus its resources on, those areas that are most important for reducing adverse environmental impacts, and for enhancing beneficial impact… (§ 5.3 ¶ 2, ISO 14005:2019, Environmental management systems — Guidelines for a flexible approach to phased implementation, Second Edition)
  • The organization should then decide whether to proceed with the implementation of an EMS that meets the full requirements of ISO 14001. Alternatively, it can decide to undertake another set of improvement actions. (§ 6.7 ¶ 4, ISO 14005:2019, Environmental management systems — Guidelines for a flexible approach to phased implementation, Second Edition)
  • Management of the IT environment (e.g., facilities, help desk, IAM, backup and replication, configuration management, resilience, and cyber and information security). (App A Objective 2:9c Bullet 6, FFIEC Information Technology Examination Handbook - Architecture, Infrastructure, and Operations, June 2021)