Learning Lessons from Incidents

All organisations experience “Incidents”. Some call them by other names: “Near Misses”, “Mistakes”, “Errors & Omissions”, “Operational Errors”.  Some are big and have damaging consequences (e.g. a data breach), and some are small and might be classed as “an annoyance”, e.g. email down for 10 minutes (though some might find that a positive). Whatever the incident, you should consider each of these as a “learning opportunity.” An opportunity to improve a process or avoid costly errors.

In his book Black Box Thinking, Matthew Syed described learning from incidents and adopting a “Just Culture” where individuals are encouraged to report errors / mistakes and are not punished/blamed.

The starting point is to accept that incidents will happen and that 95% of the time it is because of poor process. Encourage people to report their mistakes and don’t beat them up for human error. Understand why it happened and what measures can be taken to avoid a re-occurrence. Update your processes and procedures as required and then communicate the changes/lessons learned to all relevant stakeholders.

Consider further if the incident required the invocation of a “response plan”. How was it handled?  Did the response plans work? Did people know what to do? Were actions taken in a timely manner? Is there anything you would do differently next time? For example: change the sequence of actions, include some additional steps/actions, call in an expert earlier in the process, communicate with customers earlier and let them know what is happening.

Take these learnings into account when you review/revise your response plans. Share your experiences with peers and encourage them to share their experiences with you (do this in a safe/secure sharing environment). Smart people learn from their mistakes, but the really smart ones learn from the mistakes of others.

To learn more about managing and reporting on Incidents, contact us today to request a free tailored demo.

 

 

 

 

 

 

Recent News

CalQRisk Shortlisted as Best Technology Partner in Housing Digital Innovation Awards

CalQRisk has been named a finalist in the Housing Digital Digital Innovation awards. CalQRisk is nominated as best ...
Read More

CalQRisk Achieves G-Cloud 14 Approved Supplier Status

Delighted to confirm that following on from our GCloud 13 supplier status, that CalQRisk has been listed as ...
Read More

CalQRisk named as Finalist for Cyber Security Provider of the Year at the Cyber Insurance Awards Europe

CalQRisk are thrilled to be finalists for the Cyber Security Solution Provider of the Year at the Cyber ...
Read More

Volunteer Succession Planning – ‘Tomorrow’ has arrived.

Strong succession planning is critical for the viability of all businesses but can be particularly challenging for volunteer-led ...
Read More

What is CSRD?

The Corporate Sustainability Reporting Directive (CSRD) is a framework for non-financial reporting which is mandatory for large companies ...
Read More

CalQRisk Triumphs at the 2024 FS Awards, Winning Compliance and RegTech Award

At a distinguished ceremony held at the iconic Mansion House, CalQRisk emerged as the proud recipient of the ...
Read More

NoFrixion Selects CalQRisk for its DORA Compliance Efforts

NoFrixion, the Embedded Banking company based in Dublin, Ireland, has announced its partnership with CalQRisk to ensure compliance ...
Read More

CalQRisk is a finalist in the FS Awards

CalQRisk has been named as a finalist in the competitive and prestigious FS Awards for the Compliance and ...
Read More

CalQRisk Customer Support Manager wins Rising Star at Irish Early Career Awards 2024

Congratulations to our Customer Support Manager, Eimear Farrell, who was named as a Rising Star in the Fintech ...
Read More

CalQRisk wins Pitch Competition at ESCO Cyber Solution Days Event, Kilkenny, September 2024

The Cyber Ireland (CI) CISO Forum and ESCO Cyber Solution Days event took place in the Lyrath Hotel, ...
Read More