ISO 17021-Conformity assessment — Requirements for bodies providing audit and certification of management systems — Part 1: Requirements Flashcards
WHAT IS ISO/IEC 17021
17021-CERTIFICATION OF A MANAGEMENT SYSTEM SUCH AS ENVIRONMENTAL MANAGEMENT SYSTEM, QUALITY MANAGEMENT SYSTEM OR INFORMATION SECURITY SYSTEM FOR THE MANAGEMENT OF RELEVANT ASPECTS OF ITS ACTIVITITES, PRODUCTS AND SERVICES, IN LINE WITH THE ORGANIZATION’S POLICY AND THE REQUIREMENTS OF THE RESPECTIVE INTERNATIONAL MANAGEMENT SYSTEM STANDARD.
WHAT ARE CERTIFICATION BODIES IN TERMS OF THIS STANDARD
CERTIFICATION BODIES: BODIES PROVIDING AUDIT AND CERTIFICATION OF MANAGEMENT SYSTEMS. PROVIDES GENERIC REQUIREMENTS FOR SUCH BODIES PERFORMING AUDITS AND CERTIFICATION IN THE FIELD OF QUALITY, THE ENVIRONMENT AND OTHER TYPES OF MANAGEMENT SYSTEMS.
COMPETENCE, CONSISTENT AND IMPARTIAL MANNER
Observance of these requirements is intended to ensure that certification bodies
operate management system certification in a competent, consistent and impartial manner, thereby
facilitating the recognition of such bodies and the acceptance of their certifications on a national and
international basis.
CERTIFICATION OF A MANAGEMENT SYSTEM PROVIDES INDEPENDENT DEMONSTRATION THAT THE MANAGEMENT SYSTEM OF AN ORGANIZATION
1-CONFORMS TO SPECIFICIED REQUIREMENTS
2-IS CAPABLE OF CONSISTENTLY ACHIEVING ITS STATED POLICY AND OBJECTIVES
3-IS EFFECTIVELY IMPLEMENTED
IN TERMS OF VERBIAGE “SHALL” INDICATES WHAT
A REQUIREMENT
IN TERMS OF VERBIAGE “SHOULD” INDICATES WHAT
A RECOMMENDATION
IN TERMS OF VERBIAGE “MAY” INDICATES WHAT?
A PERMISSION
IN TERMS OF VERBIAGE “CAN” INDICATES
A POSSIBILITY OR A CAPABILITY
PART 1: REQUIREMENTS
SCOPE: CONTAINS PRINCIPLES/REQUIREMENTS FOR THE COMPETENCE, CONSISTENCY AND IMPARTIALITY OF BODIES PROVIDING AUDIT AND CERTIFICATION OF ALL TYPES OF MANAGEMENT SYSTEMS.
NOTES: 1-EXAMPLES OF MANAGEMENT SYSTEMS INCLUDE ENVIRONMENTAL MANAGEMENT SYSTEMS, QUALITY MANAGEMENT SYSTEMS AND INFORMATION SECURITY SYSTEMS
NOTES: 2-CERTIFICATION OF MANAGEMENT SYSTEM IS REFERRED TO AS CERTIFICATION AND THIRD PARTY CONFORMITY ASSESSMENT BODIES ARE REFERRED TO AS CERTIFICATION BODIES.
NOTES: 3-A CERTIFICATION BODY CAN BE NON-GOVERNMENTAL, WITH/WITHOUT REGULATORY AUTHORITY
NOTES: 4-SCOPE/REQUIREMENTS CAN BE USED AS CRITERIA DOCUMENT FOR ACCREDITATION, PEER ASSESSMENT OR OTHER AUDIT PROCESSES.
CERTIFIED CLIENT
ORGANIZATION WHOSE MANAGEMENT SYSTEM HAS BEEN CERTIFIED
IMPARTIALITY
IMPARTIALITY: PRESENCE OF OBJECTIVITY ○ OBJECTIVITY MEANS THAT CONFLICTS OF INTEREST DO NO EXIST OR ARE RESOLVED SO AS NOT TO ADVERSELY INFLUENCE SUBSEQUENT ACTIVITIES ○ OTHER TERMS THAT ARE USEFUL IN CONVEYING THE ELEMENT OF IMPARTIALITY INCLUDE: § INDEPENDENCE § FREEDOM FROM CONFLICT OF INTEREST § FREEDOM FROM BIAS § LACK OF PREJUDICE § NEUTRALITY § FAIRNESS § OPENMINDEDNESS § EVEN-HANDEDNESS § DETACHMENT BALANCE
MANAGEMENT SYSTEM CONSULTANCY
PARTICIPATION IN ESTABLISHING, IMPLEMENTING OR MAINTAINING A MANAGEMENT SYSTEM
○ EXAMPLE: PREPARING OR PRODUCING MANUALS OR PROCEDURES
○ EXAMPLE: GIVING SPECIFIC ADVICE, INSTRUCTIONS OR SOLUTIONS TOWARDS THE DEVELOPMENT AND IMPLEMENTATION OF A MANAGEMENT SYSTEM
○ NOTE: ARRANGING TRAINING AND PARTICIPATING AS A TRAINER IS NOT CONSIDERED CONSULTANCY, PROVIDED THAT THE COURSE RELATES TO MS OR AUDITING AND IS GENERIC INFORMATION (TRAINER SHOULD NOT PROVIDE CLIENT-SPECIFIC SOLUTIONS
○ NOTE: GENERIC INFORMATION, BUT NO CLIENT SPECIFIC SOLUTIONS FOR THE IMPROVEMTN OF PROCESSES OR SYSTEMS IS NOT CONSIDERED TO BE CONSULTANCY. SUCH INFORMATION MAY INCLUDE
— explaining the meaning and intention of certification criteria;
— identifying improvement opportunities;
— explaining associated theories, methodologies, techniques or tools;
— sharing non-confidential information on related best practices;
— other management aspects that are not covered by the management system being audited
CERTIFICATION AUDIT
AUDIT CARRIED OUTBY AN AUDITING ORGANIZATION INDEPENDENT OF THE CLIENT AND THE PARTIES THAT RELY ON CERTIFICATION FOR THE PURPOSE OF CERIFYING THE CLIENT’S MANAGEMENT SYSTEM:
CLIENT:
ORGANIZATION WHOSE MANAGEMENT SYSTEM IS BEING AUDITED FOR CERTIFICATION PURPOSES
AUDITOR: PERSON WHO CONDUCT AN AUDIT
COMPETENCE:
ABILITY TO APPLY KNOWLEDGE AND SKILLS TO ACHIEVE INTENDED RESULTS