1. Get ready for certification
As a first step, it is important to become familiar with ISO 45001 requirements. These are essential for structuring your OH&S Management System efficiently.
You will need to conduct a gap analysis to identify areas of non-compliance and opportunities for improvement in your current OH&S Management System when compared with ISO 45001 standards. You can request a pre-assessment audit, which provides a desktop review of your existing documentation and procedures ahead of the Stage 1 audit. Any observations identified during the pre-assessment are provided without recommendations or consultancy on how to address them. As a starting point, you may want to download our free ISO 45001 checklist and evaluate where any gaps might be.
After this, you can develop an implementation plan, train employees on health and safety practices, and establish documentation to meet the standard’s requirements. We have a range of ISO 45001 training courses designed to support all levels of expertise.
Get the official ISO 45001 standard documentation from the International Organization for Standardization (ISO).
2. Gather documentation
Proper documentation is essential for an effective and ISO-compliant OH&S Management System. This documentation acts as a record of your organization’s occupational health and safety goals, processes, steps towards certification, and direct results.
Key documents may include:
- Your OH&S scope
- Occupational health and safety policies
- Risk reports and mitigation plans
- Roles and responsibilities
- OH&S objectives
All documentation must be accessible and available to read when any relevant person requires it.
3. Put your OH&S Management System into action
You can now begin rolling out your compliant, documented OH&S Management System. As you do so, it is key to communicate all changes clearly so that employees understand their responsibilities and follow the new processes.
Any employee challenges should be addressed promptly throughout the rollout, and resources should be provided freely.
4. Undergo an internal audit
An internal audit is essential for the success of an integrated OH&S Management System, and this must be undertaken before your Stage 2 assessment.
A qualified in-house or external auditor can conduct this internal audit of your OH&S Management System to identify areas that do not comply with ISO 45001 requirements.
You should consider the internal audit’s findings and make necessary improvements and adjustments before your Stage 2 assessment to help your management system to meet ISO 45001’s requirements.
Top tip: Developing an audit schedule and checklist can support you in maintaining your system’s effectiveness and comprehensiveness.
5. Conduct a management review
A management review of the OH&S Management System must be conducted prior to the certification audits to ensure the management of the organization has reviewed the performance, suitability, and effectiveness of the system against required inputs and outputs.
6. Complete the certification process
The certification process begins with a Stage 1 assessment, where an independent certification body will assess your management system and provide you with an audit report that identifies Areas of Concern—potential non-meeting of requirements that could turn into nonconformities at the Stage 2 audit. This may be referred to as an assessment preparedness review report or a gap analysis report.
Once you have addressed any gaps identified in the Stage 1 assessment, you can schedule the certification audit, called the Stage 2 assessment, with your chosen certification body (CB). Any areas found not conforming to requirements are raised as nonconformities. You must take corrective action to address these. Upon successful closure of the nonconformities, your CB can issue a certificate.
Passing this audit upon successful completion of any identified nonconformities demonstrates your organization’s commitment to risk management and maintaining a secure, safe working environment. As a result, you will enhance your organization’s reputation among stakeholders and new clients.
Once you have achieved ISO 45001 certification, continual improvement is key. Yearly surveillance audits are required. At the end of the 3-year audit cycle (initial cert audits + two surveillances) Amtivo will do a recertification audit and the process begins again.