The certification process for obtaining an accredited ISO certificate consists of two key stages: Stage 1 and Stage 2. Our ISO consultancy will guide you through this process:
Stage 1: Initial assessment of the certification process
The purpose of this phase is to assess the company’s readiness for certification, ensuring that all elements of the quality management system are properly implemented and documented.
Main activities
- Presentation by the CEO or Manager: It is essential to provide a detailed overview of the company. This should include a clear explanation of senior management’s commitment to the ISO standard to be certified (ISO 9001 for quality, ISO 14001 for environmental management, ISO 45001 for occupational health and safety, or social responsibility), highlighting the quality policy, objectives and the Management Review. This demonstrates the leadership and involvement of management in the certification process.
- Documentation Review: Management and the System Manager will present the documentation generated to the ISO certification body. This documentation will include procedures, records and any other documents demonstrating compliance with the requirements of the ISO standard.
- Identification of “Findings”. At this stage, the auditors will identify and record “findings”, which are preliminary observations regarding areas that may require improvement. Formal non-conformities will not be discussed at this stage. These findings must be addressed and resolved efficiently prior to Phase 2.
Method
The assessment will be carried out through interviews and a thorough review of the documentation provided. The ISO consultant and/or the System Manager will play a central role as a liaison, ensuring that all the required documentation is made available to the auditors and facilitating communication between the offices and the auditors.
Stage 2: Certification Audit
The aim of this stage of the certification process is to verify the implementation and effectiveness of the quality management system in accordance with the ISO standard, ensuring that the company not only meets the documented requirements but also applies them effectively in its day-to-day operations.
Main Activities
- Request for additional information: Auditors will request additional and more detailed information to assess the effective implementation of processes. This may include specific records, operating procedures and other relevant documents.
- Presentation of evidence. The certification body auditor will continue to play an active role, reviewing high-level evidence. This evidence will show how the company has implemented the requirements of the ISO standard in its operations, such as the internal ISO audit or the Management Review.
- Involvement of employees, presenting detailed and specific information about their responsibilities and activities that demonstrate compliance with the requirements of the ISO standard. This will ensure that auditors understand how processes are implemented within the organization.
- Detection of Nonconformities, Observations and Improvement Opportunities: Auditors may identify Nonconformities, which are significant failures that must be corrected before certification can be granted, as well as Observations and Improvement Opportunities.
Method
The activities will include more detailed interviews and thorough reviews of the documentation. EmasConsultors, as an ISO consultancy, will play a proactive role, particularly in areas where high-level information is available, whilst the partners will provide detailed and specific information on their respective areas.
Notice of Improvements
The necessary improvements and corrections will be communicated to the ISO certification body via a Corrective Action Plan (CAP). SGS will review these plans and assess their effectiveness. The certification process concludes when the ISO certification body’s Technical Committee issues its final decision, awarding the ISO certificate once all non-conformities have been adequately resolved.
