Quality Management

ISO 9001, Run As A Programme

ISO 9001 is the world's most widely held certification, and the one your customers are most likely to ask for. It is also the standard most often implemented as a folder of documents nobody reads. Auditara runs it as a programme: your processes mapped, your risks planned, your evidence collected as you go, and an audit pack a certification body can work through.

What This Is, And What It Is Not

Not a certification body

Auditara prepares you. A separate accredited certification body audits and issues the certificate. Their fees are always separate and we will tell you what to expect.

Design may not apply

If you deliver to customer or standard specifications and design nothing yourself, clause 8.3 can be excluded with justification. The intake asks, and the scope statement records the reasoning.

Works alongside your other standards

ISO 9001 shares most of its structure with ISO 14001, ISO 45001 and ISO 27001. Run more than one in the same workspace and the shared evidence serves each.

What The Programme Covers

Fifty six clause requirements assessed one at a time, each with guidance written in plain English and a question you can actually answer.

Context And Interested Parties

What affects your ability to deliver quality work, who cares about it, and what each of them requires.

Scope And Exclusions

Which products, services, sites and processes the certificate covers, with any excluded requirement justified in a way that survives challenge.

Leadership And Policy

Approved quality policy, assigned responsibilities, and evidence that leadership can talk about the system rather than just sign it.

Process Mapping

Your processes, their sequence and interaction, their owners and the measures that show whether each is working. This is where most organisations lose marks.

Risk, Opportunity And Objectives

What could go wrong or go well, the actions planned for each, and measurable objectives with a plan behind them.

Operational Control

How work is planned and delivered, how customer requirements are reviewed before you commit, and how design is controlled where you do design work.

Supplier And Release Control

Evaluating and monitoring external providers proportionate to their impact, verifying work before it goes out, and controlling anything that does not conform.

Audit, Review And Improvement

Internal audit by someone independent, management review covering every input the standard lists, and corrective action that addresses cause rather than symptom.

How The Programme Runs

Step 1

Book the call

Fifteen minutes with a PECB certified Lead Auditor and Lead Implementer. Your business, your scope, whether you design, and what is driving the deadline.

Step 2

Answer the intake

Plain English questions about your organisation. Three of them determine whether design, calibration and customer property requirements apply to you at all.

Step 3

Assess every clause

Fifty six requirements, one at a time, each with a question describing situations you can recognise rather than compliance language you have to decode.

Step 4

Generate the documents

Quality policy, scope statement, process map, document control procedure, operational procedures and the rest, drafted from your own intake answers.

Step 5

Remediate with owners and dates

Every gap becomes a tracked item. Recurring duties become tasks with reminders.

Step 6

Face the audit

Stage 1 and Stage 2 audit records, nonconformity closure, and surveillance on a schedule once you hold the certificate.

Every route starts with a call with a certified ISO 27001 and ISO 42001 Lead Implementer.

Book A Call

Questions

How long does ISO 9001 take?

It depends on your starting position, the complexity of your processes and how quickly your people can give the programme attention. The call gives you a realistic view of your own position rather than an average.

Do we need a quality manual?

The 2015 edition removed that requirement. What you need is documented information appropriate to your size and complexity, which for most organisations is considerably less than a manual.

We are a service business, not a manufacturer. Does this fit?

Yes. The standard says products and services throughout, and the guidance in Auditara is written for service delivery as well as production.

What does the certification body actually check?

Whether your system matches what you documented, and whether it works in practice. They will sample records, talk to your people and follow a job through your process.

Can we exclude a requirement we do not do?

You can exclude a requirement that genuinely does not apply, with a justification showing it does not affect your ability to deliver conforming work. Excluding something because it is inconvenient is the most common finding at certification.

We already hold ISO 27001. How much of this is new?

The management clauses overlap substantially: context, leadership, competence, documented information, internal audit, management review and improvement. What is new is the quality specific operational content in clause 8.

Ready To Get Started?

Book the call. Fifteen minutes, no obligation, and you leave with a route.

See all frameworks