Frequently Asked Questions

We have a large selection of frequently asked questions organised by subject area.
Select a category a below to filter out relevant questions or search here.

If you can't find what you're looking for you can ask us a question here.

The most popular standards we provide consultancy for are ISO 9001, ISO 14001, ISO 45001 and ISO/IEC 17025. We also can provide support to organisations with other standards including ISO 50001, ISO 27001, IATF 16949, ISO 17020,  ISO 13485, ISO 14971, ISO 15189, ISO 22301 and TL 9000.

We have over 35 years’ experience in delivering Management Systems Consultancy and Training Services. We have supported thousands of businesses with the development of their Management Systems approach and in achieving various ISO registrations.

If you wish to learn more about the consultancy services we offer, and how we can help your business, call 0333 123 9001 or contact us using our online form.

A Lean Leader drives improvement activities, typically working with local management to identify and drive improvement. They also coach Lean Practitioners on process improvement methods and activities and deliver Lean training.

The auditor is responsible for identifying nonconformities during a 1st, 2nd or 3rd party audit. The auditor should advise the auditee of nonconformities, the non-fulfilment of a requirement, as they arise.

The auditor (Internal Auditor or Lead Auditor) will write a nonconformity report. The report will include a description of the nonconformity, evidence, the relevant clause number and category, if required.

ISO 9000:2015 outlines the fundamentals and vocabulary relating to quality management which ISO 9001:2015 outlines the requirements for a Quality Management System (QMS).

ISO 9000 defines 'Quality' as the "degree to which a set of inherit characteristics of an object fulfils requirements" whilst a Management System is defined as a "set of interrelated or interacting elements of an organisation to establish policies and objectives, and processes to achieve those objectives".

A Quality Management System is designed to help organisations enhance customer satisfaction through implementing effective processes and procedures, with a focus on continual improvement. The system should be regularly audited to ensure compliance and identify opportunities for improvement.

Clause 5.2 of ISO 14001:2015 details the requirements for the environmental policy which shall be established, implemented and maintained by top management.

The environmental policy should be relevant to the organisation, for example considering the size of the organisation and its impacts on the environment. The policy should provide a framework for identifying environmental objectives and include a commitment to protect the environment. When writing the environmental policy the organisation should consider compliance obligations and be committed to the continual improvement of the environmental management system (EMS). The environmental policy should be documented, communicated within the organisation and be made available to interested parties.

To learn more about ISO 14001 please click here to view our ISO 14001 training courses.

ISO 9001 and ISO 27001 are both management systems that follow Annex SL and focus on continual improvement. They can be applied to organisations of all sizes. ISO 9001:2015 focuses on improving quality within an organisation whilst ISO 27001 focuses on information security.  The standard, or standards, implemented within an organisation will depend on the aims of the company. For example, an e-commerce organisation may wish to implement ISO 9001 to assist with enhancing customer satisfaction and implement ISO 27001 to identify and manage risks relating to customer data.

ISO 9001 specifies the requirements for a quality management system (QMS). The standard focuses on consistently providing products and services which meet customer requirements and comply with the relevant regulatory requirements. In addition, the standard focuses on the continual improvement of the management system and aims to improve customer satisfaction, for example through obtaining customer feedback is obtained.

ISO 27001 specifics the requirements for an information security management system (ISMS). The standard focuses on establishing, implementing, maintaining and continually improving the security management system. ISO 27001 is designed to assist the organisation to manage risks relating to information security, in turn providing confidence to interested parties that risks are managed. The standard considers risks relating to information security such as mobile devices, the disposal of media and network access.

Copies of ISO 27001 and ISO 9001 are available to purchase online at the ISO Store.

We offer ISO 9001 and ISO 27001 training courses, including CQI and IRCA Lead Auditor training courses.

The Lead Auditor training course teaches delegates how to undertake 1st party (internal audits), 2nd party & 3rd party audits.

If you are undertaking a Lead Auditor training course you do not need to complete an internal auditor training as our certified Lead Auditor training courses equips delegates with the skills to undertake internal audits.

Please note, if you do not have prior knowledge of the standard we do recommend completing one of our introductory courses prior to completing a Lead Auditor course to gain an understanding of the clauses and terminology used in the standard.

ISO 9000:2015 describes the fundamental concepts and principles of quality management and specifies the terms and definitions that apply to all quality management and quality management system standards. ISO 9000 is regularly referenced in ISO 9001:2015. It is important to be familiar with ISO 9000 if you are auditing a quality management system. Copies of ISO 9000:2015 are available here.

We offer introductory courses across many ISO standards including ISO 9001, ISO 45001 and ISO 14001.

Our introductory courses focus on providing delegates with an understanding of the terminology and clauses within the relevant ISO standard whilst our auditing courses focus on teaching delegates the knowledge and skills to undertake audits.

If you plan to audit against an ISO standard and have little or no prior knowledge of working with the standard, for example, ISO 9001, we would strongly recommend attending an introductory course prior to attending an internal or lead auditor training course. The courses are also beneficial for those seeking to refresh their knowledge of the standard.

If you are unsure whether you would benefit from attending an introductory course, please contact our team on 033 123 9001 or email contact@bywater.co.uk

 

 

PDCA stands for Plan-Do-Check-Act.

The cycle is:
  • Plan: establish the objectives of the system and its processes, and the resources needed to deliver results in accordance with customers' requirements and the organisation's policies, and identify and address risks and opportunities;
  • Do: implement what was planned;
  • Check: monitor and (where applicable) measure processes and the resulting products and services against policies, objectives, requirements and planned activities, and report the results;
  • Act: take actions to improve performance, as necessary.

The PDCA cycle is found in ISO 9001:2015 can be applied to processes and to the quality management system.

Our Introduction to ISO 9001:2015 training course teaches delegates how to use the PDCA model for managing risk and facilitating continual improvement.

    Ask Us A Question