ISO 45001 Internal Auditor 20 10 2024
ISO 45001 Internal Auditor 20 10 2024
45001:20
18
Internal
Trainin
Auditor
g
Clause 1-4
Structure, Scope,
Clause 5 Clause 6 Planning
Definitions,
of the Clause 9
Course
Clause 7 Support Clause 8 Performan
Operation ce
Evaluation
Impact on
Clause 10
Organization Internal Auditing
Improveme
and Auditors
nt
Objectives
reputation
FREE Flexibl
e
Missed a session? No problem! Our
training programs are available for later
LIVE Learnin
g
Option
viewing through the Ǫuality Asia School
on our website, allowing you to learn at
your own pace. Log on to
INTERNA s
L
Our We are dedicated to increasing awareness
Missio about ISO standards and enhancing
n internal auditor competence. Our goal is
M
Impact of
Occupational
health G Safety
• Nearly 3 million
people die every
year due to work-
related accidents
and illnesses.
• Almost 400
million workers
suffer non-
fatal accidents.
(ILO – International
Labour Organization)
ISO
45001:201
8–
Purpose
and
Revisio
n
Histor
y
ISO
45001:20
18
• International standard
• Defines
requirements
for an OH&S
management
system
• Can be used by
any
organization
• Has a similar high-
level structure to
that of other
management
system standards (e.g.,
ISO 9001, ISO
14001…)
Structure of ISO 45001:2018
1. Scope
2. Normative
references
3. Terms and
4. Context of the
definitions
organization
5. Leadership
6. Planning Requirements for the
7. Support OHSMS
8. Operation
9. Performance evaluation
10.Improvement
Other standards for OH&S
management
Guidance on
Guidelines for the Guidelines on
psychological
implementation of ISO performance
health and safety in
45001 evaluation
the workplace
Alignment with
Building Trust with
International Standards:
Stakeholders:
Aligning with ISO 45001
Demonstrates a
ensures global applicability
commitment to
and facilitates integration
safeguarding the well-
with other management
being of workers,
systems (e.g., ISO 9001
enhancing organizational
and ISO 14001).
reputation.
Occupation
al Health G
Safety
Manageme
nt System
PDCA
(Plan – Do
– Check –
Act)
Workshop 1 - Introduction to ISO 45001
(10
Points)
1. What is the prirrtary object've of ISD 43D01? - ,2 Po•n*s;
SWOT Analysis
PESTLE Analysis
Interested party
(stakeholder)
ns of Authorities
their investment
- comply with legislation and regulations
interested Customers - offer products and services that are safe to use
• Donotdefinethescopeasto
excludeactivities orfacilities
withasignificantimpacton health
andsafety,toevade
legalrequirementsorto
misleadstakeholders.
• Thescopeshallbeavailable
asdocumented information.
4.4. OH&S
managemen
t system
• The organization
shall establish,
implement,
maintain and
continually improve
an OH&S
management
system, in
accordance with
the requirements of
ISO 45001
Climate
action
changes
T. Whyis 't important 'or an orçanizat.on to understard ils exter a! ard .ntemaI .ssues. a
mot.oned in Clause 41î ” ‹2 Peints;
2. Wr.ich or the| wirg Is an examp:e of ar. interra.l sue under Clause 4.1
of !SO 451317! ” [2 Poirtsj
Clause 5: Leadership and worker participation
The top
managemen Ensure the integration of the OHCS
management system in the business
t shall… processes
Available to
external
stakeholders, as
appropriate
Reviewed regularly
and, if necessary,
updated
5.3. Roles, responsibilities, authorities
Continual
Increased Gaining a Trust of Internal
improvement
organization competiti C External
of OHCS
al resilience ve stakeholders.
performance.
advantag
e.
Increased
reputation
with
consumers.
• This training program dives deep into
Occupational Health C Safety
Benefits for Management Systems and equips you
with the expertise to effectively audit
Professional organizations against the ISO 45001
standard.
getting • A certified auditor can help Organizations
to identify Potential Health C Safety
Certified for Risks within Organization and improves
overall performance and compliance.
ISO • Internal auditor helps increase
45001:2018 efficiency and potential cost savings
after managing OH C S related risks.
Internal • You'll gain valuable knowledge that
strengthens your credibility and
Auditor marketability, making you a more sought-
after professional.
Program
Clause 6: Planning
S. No. Claus Clause name
e No.
1. 6.1 Action to address risk and opportunities
2. 6.1.1 General
3. 6.1.2 Hazard identification and assessment of
risk and opportunities
4. 6.1.3 Determination of legal requirements and other
requirements
5. 6.1.4 Planning actions
6. 6.2 OHCS objectives and planning to achieve them
7. 6.2.1 OHCS objectives
8. 6.2.2 Planning actions to achieve OHCS objectives
6.1. Actions
to address
risks and
opportunities
• The organization shall
determine risks and
opportunities that need
to be addressed
Risk = likelihood x
severity
OH&S risk assessment
• Assesses OH&S risks from the hazards
identified
• According to a methodology
• Possibly regulated
• Conducted by competent assessors
OHGS riskassessment
Activity Hazards Consequence/ likelihood Risk
level
Getting hit by Injury/ crushing by heavy equipment but this Medium
excavator has not happened
Excavating a Exposure to dust Respiratory problems or eye irritation, and Medium
trench for an oil this is common
pipeline Falling from height Injuries (or worse) from falls, but this is very Medium
(the open trench) rare
Noise from Workers are exposed to high noise during High
machinery longer periods, and this can cause hearing
loss
Trench collapse Crushing/ suffocation from falling materials. High
Rare
Spoiled food Severe food poisoning in rare cases Medium
Hot surfaces or Burns which are quite frequent High
Food steam
preparatio Sharp objects (e.g., Minor cuts that are rare Low
n knives)
Wet and oily floors Injuries from slips and falls that are quite High
frequent
Torn electric cables Electric shock, very rare Low
and appliances
OH&S risk assessment
Severit Likelihood (1 to 5)
y (1 to Very Unlikel Possible Likel Very
5) unlikely y (2) (3) y likely
(1) (4) (5)
Death or 5 10 15 20 25
permanent
disability (5)
Permanent partial 4 8 12 16 20
disability and/ or
hospitalization (4)
Injury or illness resulting 3 6 9 12 15
in one or more days
away from work (3)
Injury or occupational 2 4 6 8 10
illness not resulting in
a lost workday (2)
First aid only, no injury 1 2 3 4 5
or illness (1)
OH&S risk assessment
OHGS
yards and
ports during winter months, due
to low
objectiv
temperatures
es
workers
Clause
3. 7.3 Awareness
4. 7.4 Communication
5. 7.4.1 General
7: 6.
7.
7.4.2
7.4.3
Internal communication
External communication
Suppor 8.
9.
7.5
7.5.1
Documented Information
General
t 10.
11.
7.5.2
7.5.3
Creating and updating
Control of documented
information
7.1. Resources
• Determine and provide the
resources needed for the
establishment, implementation,
maintenance and continual
improvement of the OH&S
management system
7.2.
Competence
• ability to apply
knowledge and skills
to achieve intended
results
• on what to communicate
• when to communicate
• with whom to communicate
• how to communicate
Communication
Effective
Reliable and transparent
• Internal communication should enable workers to
contribute to continual improvement
• Processes for receiving, documenting and
responding to communications from
external stakeholders
• Documented information as evidence of
communication
7.5. THE OHGS
MANAGEMENT SYSTEM
DOCUMENTATION
INCLUDES…
• documented information
required by ISO 45001
and
• documented information not
required, but considered
necessary
Documented information required
by ISO 45001
• scope of the OH&S management system
• OH&S policy
• risks and opportunities
• responsibilities and authorities
• OH&S objectives and plans for their
achievement
• legal and other requirements
• competence
Documented information required
by ISO 45001
• communication
• processes of the OH&S management system and their control
• processes and plans for emergency situations
• monitoring, measurement, analysis and performance
evaluation
• compliance evaluation (with legal and other requirements)
• internal audits
• management review
• incidents, nonconformities and actions taken in response
• continual improvement
Documented information not required
by ISO 45001, but that may be
considered necessary
• Procedures, regulations, records …
• An OH&S management system manual is not required,
but can be useful
7.5.2. Creating and updating
documented information
Ensure appropriate…
• identification and
description
• format and media
• review and approval
7.5.3. Control of
documented
information
• To ensure that
documents are
adequately protected,
available and suitable for
use where and when
needed
Controlling documented
information
• The following activities shall be
addressed…
ox
S. Claus Clause name
No. e No.
1. 8.1 Operational planning and control
8:
3. 8.1.2 Eliminating hazards and reducing
OHCS risks
4. 8.1.3 Management of change
on
6. 8.2 Emergency preparedness and
response
8.1. Operational
Planning and control
• Plan, implement, control and maintain the
processes needed to meet requirements, to
address risks and opportunities and to achieve
the OH&S objectives
• Control outsourced
functions and
processes
• The type and degree of
control will vary based
on different factors
• Establish, implement and
maintain a process
(processes) to prepare for
and respond to
8.2. EMERGENCY emergency situations
PREPAREDNESS
AND RESPONSE • Consider
potential
emergencies
• Establish a planned
response for
emergencies
Emergency
preparednes
s
The preparations for
emergency situations…
• assignment of
responsibilities
• availability of materials
and equipment
• development of
emergency plans
• Provision of training
Testing the
emergency plans
and preparations
• The organization shall test
and exercise
periodically its planned
response capacity
• Discussion-
based
exercises
• Table-top
exercises
• Live exercises
Emergency
preparedness
and
response
• Establish contacts
• Obtain useful information
• Train workers
• Assign
responsibilities
Establish
procedure(s)
• Make necessary
arrangements
• Conduct drills
• Improve as
necessary
Recapitulati
on
(Operation)
Recapitulati
on
(Operation)
nization do to meet the
requirements?
Develop a marketing 0°
strategy' J
Workers’
Measure/
monitor
Monitor
When?
As they occur
Who?
Supervisor
Criteria
All answered
Result
Not acceptable
complaints within 48 hours Take action
Time to close Measure Every 3 OH&S All closed in 20% > 30 days Continue with the
nonconformities months manager less than plan until December
30 days
Health condition Monitor Every 6 Health Health features X-ray image and Acceptable?
of workers in (e.g. X-ray) months center established blood test of No further action Not
the and measure hired by the law each worker acceptable? Further
laboratory (blood test) tests needed
Workers’ Monitor Continuously Supervisor Meet the Not met in 6% of Not acceptable
competence requirements workers Consider the need of
additional training
Use of PPE in all Monitor Continuously Supervisor 100% 2 out of 56 workers Unsafe act
production sites with no PPE Take action
Monitoring, measurement, analysis
and performance evaluation
Examples of KPIs (Key Performance Indicators)
• number of incidents
• total time lost due to injuries and illnesses
• severity rate (SR)
• (number of lost workdays/ total hours worked) x
200.000
• lost time injury frequency rate (LTIFR)
• (number of lost time injuries/ total hours worked) x
1.000.000
• near-miss reporting rate
• cost of OHCS related activities
• legal and regulatory compliance
•…
Monitoring, measurement, analysis
and performance evaluation
• Monitoring and measuring equipment (if used) shall be
calibrated or verified, as applicable and maintained
properly
• Documented information:
• evidence the results of monitoring, measurement,
analysis and performance evaluation
• maintenance, calibration or verification of equipment
9.1.2. Compliance evaluation
Process to evaluate compliance
with legal and other requirements
• The organization
determines the frequency
and methods
• Evaluation conducted by
competent persons
• Helps maintain knowledge and
understanding of the compliance
status
• May identify actions that need to
be taken
• Documented information to be
retained
6.2.
Internal
Audit
• Conduct internal
audits of the OH&S
management system
at planned intervals
• Establish, implement and
maintain an
Audit internal audit programme that
programme will take into account the
importance of
processes and the results of
previous audits
Internal
audit
For each internal audit of the OHCS management
organization
system the
shall …
• appoint competent and objective
auditors
• identify the audit objectives, scope and
criteria
• address
report thetheresults to managers,
findings workers
(e.g., nonconformities,
improvement)
and
opportunities for
•
• retain documented
workers’ information (audit
representatives
• programme implementation and audit
results)
9.3. Management
review
• The top management shall review the OHCS
management system at planned intervals, to
ensure its continuing suitability, adequacy and
effectiveness
Management review inputs
The management review shall include consideration of…
• changes (needs and expectations of stakeholders, risks
and
• opportunities, legal and other requirements…)
• OHCS policy and the achievement of OHCS objectives
• the performance of the OHCS management system (e.g.,
incidents, nonconformities, results of audits, monitoring
and measurement results, consultation and participation
of workers…)
• adequacy of resources
• communication with interested parties
• opportunities for improvement
Management review outputs
The outputs of the management review shall include decisions
related to…
Workshop ISïï›
7 45001
Clause 9
Oct 20,
2D24
S. Claus Clause name
No. e No.
https://
www.qualityasia.in/cont
act.php
Audits:
Definition,
Principles,
and Types
Audi
t•
“Systemic, independent and documented process for
obtaining audit evidence and evaluating it
objectively to determine the extent to which audit
criteria are fulfilled.”
• Alternative Definitions:
• Impartial documented activity
• Follows written checklists and documentation
• Uses examination of audit evidence to determine the
existence of objective evidence
• Verifies that applicable processes of a ǪMS have been
identified and are effectively controlled.
Effective Audits -
Requirements
Timely access to facilities, documents and personnel, including top
management
Support/involvement of
team
• Frequency and
timing
• Responsibility
• Criteria
• Scope
• Methods
• Duration
Planning
Internal
Frequency
Based on status and importance
Audits
and
timing:
Competent auditor with technical knowledge
Responsibility:
Scope: A process
An area of the company, e.g. distribution
Duration
Depends on the size of the scope
Planning Second Party Audits
Frequency and As determined by the
timing: organization
Contractual obligations
Criteri Organization’s management
a: system ISO 45001 or other
agreed standards
Scope
: The entire facility
An area of the company, e.g. a
product line
Duration Depends on the size of the
scope
Planning third Party Audits
Frequency
Responsibilit Criteria: Scope: Duration
and
y:
timing:
• As • Ǫualified • ISO 45001 • Entire • Depends on
determined auditor or organizati
by the with other on accreditatio
accreditation technical standard • Manageme n
knowledge s nt requiremen
C system ts
experience operations
as
defined by
applicable
standard
Audit preparation
Review documents:
Notify person to be procedures, forms, previous
audited and agree to a reports, corrective action
date and time requests, work instructions,
etc.
Prepare/review/update Brief
checklists auditor/team
Audit Checklist
The Purpose of
The Checklist Risks of the
the
Checklist Checklist
• To be used as a • To provide • Too focused
working guidance to the on a single
document auditor area
and as a record • To ensure that the • Insufficient
• Tool to audit audit scope is information
company covered included to
processes, not (processes, evaluate
standard activities) conformance in
• Should follow the • To reinforce the interviews
natural process objectives and • Not customized
of the scope of the to reflect
organization audit company’s
• To act as a record practices
Opening meeting
Conduct the
Audi audit
t
Review
Performan findings
ce
Closing
meeting
Opening Meeting
• Introduce auditors or audit team
• Discuss audit scope and process
• Explain reporting and follow-up
procedures
• Necessary for:
a)Good communication
b)Co-operation
c)Openness
Deal with top
management
Understand the key issues in the
organization Focus on the critical
processes
Audit the
Meet for business
area improvement
The representative first
Always talk to those performing
Auditor the task
Explain the purpose of the
must: visit
Be calm, polite,
reassuring Never talk
down
Never act superior
Speak clearly and
carefully
The Auditor
Process
Obtaining objective (audit) Evidence
Establish:
• Extent of
conformity/no
nconformity
Use the Checklist
• To record conformity/nonconformity
• To track where you are and manage time
• To control the pace of the audit and manage auditee
personalities
• To ensure all areas are covered
• To make notes for follow-up in other areas
• For future reference
Ǫuestioning Techniques
Rephrase misunderstood
Decisive – able to
Perceptive – aware Versatile – able Tenacious – reach timely
of and able to to readily adapt persistent and conclusions based
understand to different focused on on logical
situations situations achieving reasoning and
objectives analysis
Self-reliant – able
to act and function
independently
whilst interacting
effectively with
others
Audit principles, procedures and
Gener methods
knowledge Organizational
Manageme
apply to the auditee
Syste
Audit team leaders should be
able to: the strengths and weaknesses of the
• Balance
individual audit team members
• Develop a harmonious working relationship among
the audit team members.
Generic •
•
Plan audits and effectively use audit resources
Manage the uncertainty of achieving audit
Knowledg •
objectives
Protect the health and safety of the audit team
e and members including compliance with the
requirements
Skills of • Organize and direct the audit team members
•
Audit Provide direction and guidance to auditors-in-
training
Team •
•
Prevent and resolve conflicts as necessary
Represent the audit team
Leaders • Lead the audit team to reach the audit
conclusions
• Prepare and complete the audit report
• Introduce self and/or audit
team
• Ensure agenda is
understood
Goo • Keep to
agenda
d • Keep control of the audit and
time
Practices
• Avoid arguments
for • Listen
Registrati
on
Special Audit (If
Required) to
Stage 2 Audit Follow-Up on Package Review
Nonconformance
Process s
Ǫuality comprehensive
programs on various ISO standards:
https://www.qualityasia.in/qasia-
training
Asia school.php
• Join our WhatsApp channel for
School convenient
sessions:
access to live training
https://whatsapp.com/channel/002GVamt
nJG3wcEDIsrT1
and Free Sm
Z
Training
• Free Internal Auditor Training
Calendar: Explore upcoming
training sessions on various ISO
program standards, including ISO 14001,
on our website: https://
updates www.qualityasia.in/training-
calendar.php
…
Join us
on…
• Follow and Connect with Ǫuality Asia
Certifications: Stay updated on our latest
news and training programs by following us
on Social media:
• Instagram: https://
www.instagram.com/qualityasia/
• LinkedIn: https://
www.linkedin.com/company/quality-
asia/mycompany/
• Ǫuality Asia YouTube Channel: Subscribe for
insights and educational videos on ISO
standards and auditing practices:
https://www.youtube.com/@ǪualityAsia
Thankyo
u!