ISO 22300:2025 Security and resilience — Vocabulary
Creating a common language for security and resilience
Why it matters
In security and resilience, misunderstandings can have real consequences. The same word may be used differently by different sectors, countries or professional communities. ISO 22300 helps reduce ambiguity by providing agreed terms and definitions that can be used consistently across standards, organizations, training, documentation and cooperation between stakeholders.
What the standard covers
Security and resilience professionals often work across organizational, sectoral and national boundaries. To work effectively together, they need a shared understanding of important terms. ISO 22300 provides definitions for terms used across the ISO/TC 292 portfolio of standards. It defines key concepts used across security and resilience, including business continuity, emergency management, crisis management, risk and management systems.
Who should use it
The standard is useful for anyone who develops, uses, implements, interprets or audits security and resilience standards. This includes business continuity professionals, emergency managers, crisis managers, risk managers, consultants, auditors, trainers, researchers and public authorities. It is also valuable for organizations that use several ISO/TC 292 standards and want a reliable source for the terminology used across the portfolio.
What it helps you do
ISO 22300 helps organizations and professionals:
- understand security and resilience terminology consistently;
- interpret related ISO/TC 292 standards more accurately;
- communicate more clearly across disciplines and sectors;
- reduce misunderstandings caused by different terminology;
- develop more consistent policies, procedures and training materials;
- use multiple ISO/TC 292 standards together more effectively.
How it fits into the ISO/TC 292 portfolio
ISO 22300 is a foundation standard within the ISO/TC 292 portfolio. By providing a common vocabulary, it supports consistent understanding and application of all other standards and helps users navigate the portfolio more effectively.
About this edition
ISO 22300:2025 is the fourth edition of the standard and replaces ISO 22300:2021. The 2025 edition updates and streamlines the vocabulary so that it better supports the current ISO/TC 292 portfolio and provides a revised set of terms for users working with security and resilience standards.
Key changes from previous edition include:
- Streamlined content: Removal of specific terms used in only one standard to focus on roughly 130 generic, high-frequency terms.
- Improved clarity: Technical revisions to make definitions more generic and applicable across the entire ISO/TC 292 portfolio.
- Structural revision: Reorganization into three main categories: terms related to security and resilience, risk, and management systems.