#132 – WHAT TO DO IF THERE IS NO AUDIT DOCUMENTATION? – GREG HUTCHINS

Featured

Greg Hutchins pixMost organizations have established operational standards, objectives, metrics and expectations, which are operationalized through procedures and work instructions. If these exist, then the value added auditor can use these as a metric to conduct an audit.

The internal auditor determines whether the business objectives, standards, metrics, processes and work instructions are acceptable to meet audit objectives and then determine if they are being met.

But, what does the internal auditor do if there are no technical, procedures, policies, specifications, standards, or other types of documents? Continue reading

#132 – 5 LESSONS I LEARNED FROM A SUCCESSFUL ISO 9001:2015 CERTIFICATON AUDIT – LILLIAN ERICKSON

Featured

2016-nl-bl-author-lily-ericksonThe publication of ISO 9001:2015 in September generated much anxiety among companies fearing a bumpy transition to the new and significantly changed international standard. Admittedly, we at MasterControl were not immune to those worries.

Despite having quality experts involved with the ISO changes since they were proposed some years ago, even we did not know how our ISO assessors would apply the new requirements, what evidence they would expect to see, and how to pre-emptively satisfy their expectations. Continue reading

#131 – ISO 31000: MUST KNOW STANDARD – GREG HUTCHINS

Featured

Greg Hutchins pixMore ISO management systems are incorporating RBT and risk, so the ISO 31000 standard is becoming a ‘must know’ standard.  ISO 31000 risk management principles, risk management framework, and risk management process are the preferred tools to use with ISO management systems because ISO 31000: Continue reading

#131 – DISASTER PREPAREDNESS AND ISO 9001 – STEPHEN FLICK

Featured

AAA FILICKThis week is “Severe Weather Awareness Week” in Missouri[1]. Seems odd, in a way, that we’re limiting our awareness of severe weather and what it can do to one week when weather disasters happen throughout the year.

Damage caused by tornado, Joplin, MO – May, 2011 (Eric Thayer, Reuters) Continue reading

#130 – ISO 31000 ERM CERTIFICATES – GREG HUTCHINS

Featured

Greg Hutchins pixBritish Standards Institution (BSI) continues to issue Enterprise Risk Management Certificates (ISO 31000) according to the Bahrain News Agency.   BSI issued a certificate to Gulf Petrochemical Industries Company (GPIC).

What’s interesting is that IS 31000 is for implementing a risk management framework NOT for certification.  But, the marketplace  is saying something else: there is demand for ISO risk certificates and certification.   Continue reading