SlideShare a Scribd company logo
V2
15/01/15
1
© Associate Enterprises Ltd
Risk Management
Annex SL
The Future of Management Systems
www.assentriskmanagement.co.uk
V2
15/01/15
2
© Associate Enterprises Ltd
Risk ManagementIntro
• ISO/TMB has produced Annex SL with the
objective of delivering consistent and compatible
management system standards (mss) in an
attempt to make this process easier.
• Annex SL describes the framework for a generic
management system.
• Freely Available
http://www.iso.org/sites/directives/directives.ht
ml#toc_marker-76
www.assentriskmanagement.co.uk
V2
15/01/15
3
© Associate Enterprises Ltd
Risk ManagementKey Elements
1. high level structure,
2. identical core text,
3. common terms and core definitions.
In future all management systems standards will have these 3
elements.
High Level Structure can not be changed but sub clauses can be added.
Discipline-specific text can also be added;
Common Terms and Core Definitions can not be changed but can be
added to.
www.assentriskmanagement.co.uk
V2
15/01/15
4
© Associate Enterprises Ltd
Risk ManagementHigh Level Structure
Ten clauses used in all Management System Standards:
1. Scope
2. Normative references
3. Terms and definitions
4. Context of the Organisation
5. Leadership
6. Planning
7. Support
8. Operation
9. Performance evaluation
10. Improvement.
Note: As of July 2013 ISO22301 & ISO 27001:2013 are using HLS.
Note: xxx used as placeholder to denote discipline of the standard i.e.
enironmental/quality etc.
www.assentriskmanagement.co.uk
V2
15/01/15
5
© Associate Enterprises Ltd
Risk Management
Clause 4. Context of
the Organisation
• 4.1 Understanding the organisation and its
context
• 4.2 Understanding the needs and
expectations of interested parties
• 4.3 Determining the scope of the XXX
management system
• 4.4 XXX management system
www.assentriskmanagement.co.uk
V2
15/01/15
6
© Associate Enterprises Ltd
Risk Management
Clause 4. Context of
the Organisation
• Expanded scope requirements for the
management system.
• Consider ‘Interested Parties’ both inside and
outside the organisation.
• Should be documented.
www.assentriskmanagement.co.uk
V2
15/01/15
7
© Associate Enterprises Ltd
Risk Management
Examples of
Interested Parties
MS
Customers
Employees
Suppliers
3rd Parties
• Visitors
• Contractors
Insurers
External
• Public/Neighbours
• The Media
Authorities
• Government
• Regulators
Emergency
• Utilities
• 999
www.assentriskmanagement.co.uk
V2
15/01/15
8
© Associate Enterprises Ltd
Risk ManagementClause 5. Leadership
• 5.1 Leadership and commitment
• 5.2 Policy
• 5.3 organisational roles, responsibilities and
authorities
www.assentriskmanagement.co.uk
V2
15/01/15
9
© Associate Enterprises Ltd
Risk ManagementClause 5. Leadership
• Emphasis on Leadership not just
management.
• Should communicate importance of system.
• Policy should be available to all interested
parties.
www.assentriskmanagement.co.uk
V2
15/01/15
10
© Associate Enterprises Ltd
Risk ManagementClause 6. Planning
• 6.1 Actions to address risks and opportunities
• 6.2 XXX objectives and planning to achieve
them
www.assentriskmanagement.co.uk
V2
15/01/15
11
© Associate Enterprises Ltd
Risk ManagementClause 6. Planning
• Risk is now prominent and replace Preventive
action.
• ISO 31000 provides guidance on risk
management.
• Objectives are more specific and in line with
Policy.
• Objectives should be measurable (if practicable),
monitored, communicated, and updated as
appropriate. They have to be established at
relevant functions and levels.
www.assentriskmanagement.co.uk
V2
15/01/15
12
© Associate Enterprises Ltd
Risk ManagementClause 7. Support
• 7.1 Resources
• 7.2 Competence
• 7.3 Awareness
• 7.4 Communication
• 7.5 Documented information
• 7.5.1 General
• 7.5.2 Creating and updating
• 7.5.3 Control of documented information
www.assentriskmanagement.co.uk
V2
15/01/15
13
© Associate Enterprises Ltd
Risk ManagementClause 7. Support
• Little new content here.
• Term Documented Information is used and
includes
– Documents
– Records
– Forms
– Other
www.assentriskmanagement.co.uk
V2
15/01/15
14
© Associate Enterprises Ltd
Risk ManagementClause 8. Operation
• 8.1 Operational planning and control
www.assentriskmanagement.co.uk
V2
15/01/15
15
© Associate Enterprises Ltd
Risk ManagementClause 8. Operation
• The Specifics of what the organisation does.
• The bulk to the specific standard requirements
will be here i.e. Environmental 14001, Quality
9001.
www.assentriskmanagement.co.uk
V2
15/01/15
16
© Associate Enterprises Ltd
Risk Management
Clause 9. Performance
Evaluation
• 9.1 Monitoring, measurement, analysis and
evaluation
• 9.2 Internal audit
• 9.3 Management review
Some useful common terms and core definitions
from Appendix 2 of Annex SL follows:
www.assentriskmanagement.co.uk
V2
15/01/15
17
© Associate Enterprises Ltd
Risk Management
Clause 9. Performance
Evaluation
Common terms & core definitions from Appendix 2 of Annex SL
3.12
process
set of interrelated or interacting activities which transforms inputs into outputs
3.13
performance
measurable result
Note 1 to entry: Performance can relate either to quantitative or qualitative findings.
Note 2 to entry: Performance can relate to the management of activities, processes (3.12), products (including
services), systems or organizations (3.01).
3.14
outsource (verb)
make an arrangement where an external organization (3.01) performs part of an organization's function or process
(3.12)
Note 1 to entry: An external organization is outside the scope of the management system (3.04), although the
outsourced function or process is within the scope.
3.15
monitoring
determining the status of a system, a process (3.12) or an activity
Note 1 to entry: To determine the status, there may be a need to check, supervise or critically observe.
www.assentriskmanagement.co.uk
V2
15/01/15
18
© Associate Enterprises Ltd
Risk Management
Clause 9. Performance
Evaluation
Common terms & core definitions from Appendix 2 of Annex SL
3.16
measurement
process (3.12) to determine a value
3.17
audit
systematic, independent and documented process (3.12) for obtaining audit evidence and evaluating it
objectively to determine the extent to which the audit criteria are fulfilled
Note 1 to entry: An audit can be an internal audit (first party) or an external audit (second party or
third party), and it can be a combined audit (combining two or more disciplines).
Note 2 to entry: An internal audit is conducted by the organization itself, or by an external party on its
behalf.
Note 3 to entry: “Audit evidence” and “audit criteria” are defined in ISO 19011.
www.assentriskmanagement.co.uk
V2
15/01/15
19
© Associate Enterprises Ltd
Risk Management
Clause 9. Performance
Evaluation
Common terms & core definitions from Appendix 2 of Annex SL
3.18
conformity
fulfillment of a requirement (3.03)
3.19
nonconformity
non-fulfillment of a requirement (3.03)
3.20
corrective action
action to eliminate the cause of a nonconformity (3.19) and to prevent recurrence
3.21
continual improvement
recurring activity to enhance performance (3.13)
www.assentriskmanagement.co.uk
V2
15/01/15
20
© Associate Enterprises Ltd
Risk Management
Clause 10.
Improvement
• 10.1 Nonconformity and corrective action
• 10.2 Continual improvement
Preventive action has been replaced by
Opportunities to address risks.
www.assentriskmanagement.co.uk
V2
15/01/15
21
© Associate Enterprises Ltd
Risk ManagementMore Info
• Annex
SLhttp://www.iso.org/sites/directives/directiv
es.html#toc_marker-76
• IRCA Briefing Note
http://www.irca.org/en-
gb/resources/Guidance-notes/Annex-SL-
previously-ISO-Guide-83/
www.assentriskmanagement.co.uk
V2
15/01/15
22
© Associate Enterprises Ltd
Risk ManagementContact Us
If we can help you implement any ISO standards
& achieve certification, please contact us:
• www.assentriskmanagement.co.uk
• London & South East: 020 3432 2854
• Midlands: 01332 896 478
• Wales & West: 029 2000 4623
• Twitter: @assent1
www.assentriskmanagement.co.uk

More Related Content

What's hot

ISO 9001:2015
ISO 9001:2015   ISO 9001:2015
ISO 9001:2015
aristian
 
ISO 31000:2018 Risk Management System, Framework and Implementation
ISO 31000:2018 Risk Management System, Framework and ImplementationISO 31000:2018 Risk Management System, Framework and Implementation
ISO 31000:2018 Risk Management System, Framework and Implementation
Alvin Integrated Services [AIS]
 
ISO 9001: 2015 QUALITY MANAGEMENT SYSTEMS
ISO 9001: 2015 QUALITY MANAGEMENT SYSTEMSISO 9001: 2015 QUALITY MANAGEMENT SYSTEMS
ISO 9001: 2015 QUALITY MANAGEMENT SYSTEMS
Subhendu Datta
 
ISO 31000 Risk Management
ISO 31000 Risk ManagementISO 31000 Risk Management
ISO 31000 Risk Management
Ramiro Cid
 
ISO 9001:2015 Introduction & Awareness Training
ISO  9001:2015 Introduction & Awareness Training ISO  9001:2015 Introduction & Awareness Training
ISO 9001:2015 Introduction & Awareness Training
Sadanand Borade
 
Internal quality mgmt system audit checklist (iso 9000 2000)
Internal quality mgmt system audit checklist (iso 9000   2000)Internal quality mgmt system audit checklist (iso 9000   2000)
Internal quality mgmt system audit checklist (iso 9000 2000)Carlos Serra
 
ISO 9001-2015 Awareness.pdf
ISO 9001-2015 Awareness.pdfISO 9001-2015 Awareness.pdf
ISO 9001-2015 Awareness.pdf
yousrazeidan1
 
JARO Thermal ISO9001 2015 internal auditor training 20170118
JARO Thermal ISO9001 2015 internal auditor training  20170118JARO Thermal ISO9001 2015 internal auditor training  20170118
JARO Thermal ISO9001 2015 internal auditor training 20170118
Ryan Chen
 
ISO 9001:2015
ISO 9001:2015ISO 9001:2015
ISO 9001:2015
Dr Madhu Aman Sharma
 
ISO 9001, 14001, 45001 (IMS) basics training material
ISO 9001, 14001, 45001 (IMS) basics training materialISO 9001, 14001, 45001 (IMS) basics training material
ISO 9001, 14001, 45001 (IMS) basics training material
RanganathanR9
 
ISO 31000
ISO 31000ISO 31000
ISO 31000
yeganehmajidi
 
About ISO
About ISOAbout ISO
Top 5 reasons to implement a quality management system
Top 5 reasons to implement a quality management systemTop 5 reasons to implement a quality management system
Top 5 reasons to implement a quality management system
Quality Management
 
Iso 9001 2015 audit checklist
Iso 9001 2015 audit checklistIso 9001 2015 audit checklist
Iso 9001 2015 audit checklist
Hamid Ali
 
Iso 9001 2015
Iso 9001 2015 Iso 9001 2015
Iso 9001 2015
NITISHNIWAS
 
Iso9001 2015
Iso9001 2015Iso9001 2015
ISO 19011-2018.pptx
ISO 19011-2018.pptxISO 19011-2018.pptx
ISO 19011-2018.pptx
SmppMondha
 
Quality Management System awareness for all
Quality Management System awareness for all Quality Management System awareness for all
Quality Management System awareness for all
ANUPAM RAY
 
ISO 9001 2015 Overview presentation
ISO 9001 2015 Overview presentation ISO 9001 2015 Overview presentation
ISO 9001 2015 Overview presentation
Govind Ramu
 
ISO 9001 2015 DIS 4.0 Organization Context Slides 01-25-15
ISO 9001 2015 DIS 4.0 Organization Context Slides 01-25-15ISO 9001 2015 DIS 4.0 Organization Context Slides 01-25-15
ISO 9001 2015 DIS 4.0 Organization Context Slides 01-25-15
Colin Gray
 

What's hot (20)

ISO 9001:2015
ISO 9001:2015   ISO 9001:2015
ISO 9001:2015
 
ISO 31000:2018 Risk Management System, Framework and Implementation
ISO 31000:2018 Risk Management System, Framework and ImplementationISO 31000:2018 Risk Management System, Framework and Implementation
ISO 31000:2018 Risk Management System, Framework and Implementation
 
ISO 9001: 2015 QUALITY MANAGEMENT SYSTEMS
ISO 9001: 2015 QUALITY MANAGEMENT SYSTEMSISO 9001: 2015 QUALITY MANAGEMENT SYSTEMS
ISO 9001: 2015 QUALITY MANAGEMENT SYSTEMS
 
ISO 31000 Risk Management
ISO 31000 Risk ManagementISO 31000 Risk Management
ISO 31000 Risk Management
 
ISO 9001:2015 Introduction & Awareness Training
ISO  9001:2015 Introduction & Awareness Training ISO  9001:2015 Introduction & Awareness Training
ISO 9001:2015 Introduction & Awareness Training
 
Internal quality mgmt system audit checklist (iso 9000 2000)
Internal quality mgmt system audit checklist (iso 9000   2000)Internal quality mgmt system audit checklist (iso 9000   2000)
Internal quality mgmt system audit checklist (iso 9000 2000)
 
ISO 9001-2015 Awareness.pdf
ISO 9001-2015 Awareness.pdfISO 9001-2015 Awareness.pdf
ISO 9001-2015 Awareness.pdf
 
JARO Thermal ISO9001 2015 internal auditor training 20170118
JARO Thermal ISO9001 2015 internal auditor training  20170118JARO Thermal ISO9001 2015 internal auditor training  20170118
JARO Thermal ISO9001 2015 internal auditor training 20170118
 
ISO 9001:2015
ISO 9001:2015ISO 9001:2015
ISO 9001:2015
 
ISO 9001, 14001, 45001 (IMS) basics training material
ISO 9001, 14001, 45001 (IMS) basics training materialISO 9001, 14001, 45001 (IMS) basics training material
ISO 9001, 14001, 45001 (IMS) basics training material
 
ISO 31000
ISO 31000ISO 31000
ISO 31000
 
About ISO
About ISOAbout ISO
About ISO
 
Top 5 reasons to implement a quality management system
Top 5 reasons to implement a quality management systemTop 5 reasons to implement a quality management system
Top 5 reasons to implement a quality management system
 
Iso 9001 2015 audit checklist
Iso 9001 2015 audit checklistIso 9001 2015 audit checklist
Iso 9001 2015 audit checklist
 
Iso 9001 2015
Iso 9001 2015 Iso 9001 2015
Iso 9001 2015
 
Iso9001 2015
Iso9001 2015Iso9001 2015
Iso9001 2015
 
ISO 19011-2018.pptx
ISO 19011-2018.pptxISO 19011-2018.pptx
ISO 19011-2018.pptx
 
Quality Management System awareness for all
Quality Management System awareness for all Quality Management System awareness for all
Quality Management System awareness for all
 
ISO 9001 2015 Overview presentation
ISO 9001 2015 Overview presentation ISO 9001 2015 Overview presentation
ISO 9001 2015 Overview presentation
 
ISO 9001 2015 DIS 4.0 Organization Context Slides 01-25-15
ISO 9001 2015 DIS 4.0 Organization Context Slides 01-25-15ISO 9001 2015 DIS 4.0 Organization Context Slides 01-25-15
ISO 9001 2015 DIS 4.0 Organization Context Slides 01-25-15
 

Similar to Annex SL Training for ISO 9001:2015. & ISO 14001:2015.

ISO 22301 Business Continuity Management
ISO 22301 Business Continuity ManagementISO 22301 Business Continuity Management
ISO 22301 Business Continuity Management
Ramiro Cid
 
iso22301businesscontinuitymanagement-140207090550-phpapp01.pdf
iso22301businesscontinuitymanagement-140207090550-phpapp01.pdfiso22301businesscontinuitymanagement-140207090550-phpapp01.pdf
iso22301businesscontinuitymanagement-140207090550-phpapp01.pdf
VictorNagesparan
 
Enterprise governance risk_compliance_fcm slides
Enterprise governance risk_compliance_fcm slidesEnterprise governance risk_compliance_fcm slides
Enterprise governance risk_compliance_fcm slides
EnterpriseGRC Solutions, Inc.
 
Business Continuity Management System ISO 22301:2012 An Overview
Business Continuity Management System ISO 22301:2012 An OverviewBusiness Continuity Management System ISO 22301:2012 An Overview
Business Continuity Management System ISO 22301:2012 An Overview
Ahmed Riad .
 
Business continuity management system overveiw
Business continuity management system  overveiwBusiness continuity management system  overveiw
Business continuity management system overveiw
Naresh Rao
 
IRJET- A Holistic Review of the Elements and the Tools of Lean Manufacturing
IRJET- A Holistic Review of the Elements and the Tools of Lean ManufacturingIRJET- A Holistic Review of the Elements and the Tools of Lean Manufacturing
IRJET- A Holistic Review of the Elements and the Tools of Lean Manufacturing
IRJET Journal
 
SOC 2 Compliance and Certification
SOC 2 Compliance and CertificationSOC 2 Compliance and Certification
SOC 2 Compliance and Certification
ControlCase
 
Bcm in oil&gas industry
Bcm in oil&gas industryBcm in oil&gas industry
Bcm in oil&gas industry
Eduardo Teixeira Neto
 
Be aers-fara-modellinginsolvency-nov2010
Be aers-fara-modellinginsolvency-nov2010Be aers-fara-modellinginsolvency-nov2010
Be aers-fara-modellinginsolvency-nov2010Dodi Mulyadi
 
Iso 22301
Iso 22301Iso 22301
Building a strong BC programme with ISO 22301
Building a strong BC programme with ISO 22301Building a strong BC programme with ISO 22301
Building a strong BC programme with ISO 22301
PECB
 
9001-2015
9001-20159001-2015
9001-2015
Dennis J Morgan
 
Iso 22301 2012 bcm
Iso 22301 2012 bcmIso 22301 2012 bcm
Iso 22301 2012 bcm
faisal_ss
 
Evaluating Service Organization Control Reports
Evaluating Service Organization Control ReportsEvaluating Service Organization Control Reports
Evaluating Service Organization Control Reports
Jay Crossland
 
SIX-SIGMA-GROUP-5.powerpoint presentation
SIX-SIGMA-GROUP-5.powerpoint presentationSIX-SIGMA-GROUP-5.powerpoint presentation
SIX-SIGMA-GROUP-5.powerpoint presentation
cheldulceconstan28
 
Adr calculating the_right_audit_coverage_part_2_rationalizing_audit_activities
Adr calculating the_right_audit_coverage_part_2_rationalizing_audit_activitiesAdr calculating the_right_audit_coverage_part_2_rationalizing_audit_activities
Adr calculating the_right_audit_coverage_part_2_rationalizing_audit_activities
Gaiani (CarnCorpAudit)
 
IRJET- Construction Quality Management on Site
IRJET-  	  Construction Quality Management on SiteIRJET-  	  Construction Quality Management on Site
IRJET- Construction Quality Management on Site
IRJET Journal
 
Gartner_Critical Capabilities for SIEM 9.21.15
Gartner_Critical Capabilities for SIEM 9.21.15Gartner_Critical Capabilities for SIEM 9.21.15
Gartner_Critical Capabilities for SIEM 9.21.15Jay Steidle
 

Similar to Annex SL Training for ISO 9001:2015. & ISO 14001:2015. (20)

ISO 22301 Business Continuity Management
ISO 22301 Business Continuity ManagementISO 22301 Business Continuity Management
ISO 22301 Business Continuity Management
 
iso22301businesscontinuitymanagement-140207090550-phpapp01.pdf
iso22301businesscontinuitymanagement-140207090550-phpapp01.pdfiso22301businesscontinuitymanagement-140207090550-phpapp01.pdf
iso22301businesscontinuitymanagement-140207090550-phpapp01.pdf
 
Enterprise governance risk_compliance_fcm slides
Enterprise governance risk_compliance_fcm slidesEnterprise governance risk_compliance_fcm slides
Enterprise governance risk_compliance_fcm slides
 
Business Continuity Management System ISO 22301:2012 An Overview
Business Continuity Management System ISO 22301:2012 An OverviewBusiness Continuity Management System ISO 22301:2012 An Overview
Business Continuity Management System ISO 22301:2012 An Overview
 
Business continuity management system overveiw
Business continuity management system  overveiwBusiness continuity management system  overveiw
Business continuity management system overveiw
 
IRJET- A Holistic Review of the Elements and the Tools of Lean Manufacturing
IRJET- A Holistic Review of the Elements and the Tools of Lean ManufacturingIRJET- A Holistic Review of the Elements and the Tools of Lean Manufacturing
IRJET- A Holistic Review of the Elements and the Tools of Lean Manufacturing
 
SOC 2 Compliance and Certification
SOC 2 Compliance and CertificationSOC 2 Compliance and Certification
SOC 2 Compliance and Certification
 
Bcm in oil&gas industry
Bcm in oil&gas industryBcm in oil&gas industry
Bcm in oil&gas industry
 
Ijebea14 275
Ijebea14 275Ijebea14 275
Ijebea14 275
 
Be aers-fara-modellinginsolvency-nov2010
Be aers-fara-modellinginsolvency-nov2010Be aers-fara-modellinginsolvency-nov2010
Be aers-fara-modellinginsolvency-nov2010
 
Iso 22301
Iso 22301Iso 22301
Iso 22301
 
Cobit5 and-grc
Cobit5 and-grcCobit5 and-grc
Cobit5 and-grc
 
Building a strong BC programme with ISO 22301
Building a strong BC programme with ISO 22301Building a strong BC programme with ISO 22301
Building a strong BC programme with ISO 22301
 
9001-2015
9001-20159001-2015
9001-2015
 
Iso 22301 2012 bcm
Iso 22301 2012 bcmIso 22301 2012 bcm
Iso 22301 2012 bcm
 
Evaluating Service Organization Control Reports
Evaluating Service Organization Control ReportsEvaluating Service Organization Control Reports
Evaluating Service Organization Control Reports
 
SIX-SIGMA-GROUP-5.powerpoint presentation
SIX-SIGMA-GROUP-5.powerpoint presentationSIX-SIGMA-GROUP-5.powerpoint presentation
SIX-SIGMA-GROUP-5.powerpoint presentation
 
Adr calculating the_right_audit_coverage_part_2_rationalizing_audit_activities
Adr calculating the_right_audit_coverage_part_2_rationalizing_audit_activitiesAdr calculating the_right_audit_coverage_part_2_rationalizing_audit_activities
Adr calculating the_right_audit_coverage_part_2_rationalizing_audit_activities
 
IRJET- Construction Quality Management on Site
IRJET-  	  Construction Quality Management on SiteIRJET-  	  Construction Quality Management on Site
IRJET- Construction Quality Management on Site
 
Gartner_Critical Capabilities for SIEM 9.21.15
Gartner_Critical Capabilities for SIEM 9.21.15Gartner_Critical Capabilities for SIEM 9.21.15
Gartner_Critical Capabilities for SIEM 9.21.15
 

Recently uploaded

一比一原版杜克大学毕业证(Duke毕业证)成绩单留信认证
一比一原版杜克大学毕业证(Duke毕业证)成绩单留信认证一比一原版杜克大学毕业证(Duke毕业证)成绩单留信认证
一比一原版杜克大学毕业证(Duke毕业证)成绩单留信认证
gcljeuzdu
 
CV Ensio Suopanki1.pdf ENGLISH Russian Finnish German
CV Ensio Suopanki1.pdf ENGLISH Russian Finnish GermanCV Ensio Suopanki1.pdf ENGLISH Russian Finnish German
CV Ensio Suopanki1.pdf ENGLISH Russian Finnish German
EUS+ Management & Consulting Excellence
 
W.H.Bender Quote 66 - ServPoints Sequence of Service™ should be Identified fo...
W.H.Bender Quote 66 - ServPoints Sequence of Service™ should be Identified fo...W.H.Bender Quote 66 - ServPoints Sequence of Service™ should be Identified fo...
W.H.Bender Quote 66 - ServPoints Sequence of Service™ should be Identified fo...
William (Bill) H. Bender, FCSI
 
在线办理(UVic毕业证书)维多利亚大学毕业证录取通知书一模一样
在线办理(UVic毕业证书)维多利亚大学毕业证录取通知书一模一样在线办理(UVic毕业证书)维多利亚大学毕业证录取通知书一模一样
在线办理(UVic毕业证书)维多利亚大学毕业证录取通知书一模一样
tdt5v4b
 
Case Analysis - The Sky is the Limit | Principles of Management
Case Analysis - The Sky is the Limit | Principles of ManagementCase Analysis - The Sky is the Limit | Principles of Management
Case Analysis - The Sky is the Limit | Principles of Management
A. F. M. Rubayat-Ul Jannat
 
原版制作(CDU毕业证书)查尔斯达尔文大学毕业证PDF成绩单一模一样
原版制作(CDU毕业证书)查尔斯达尔文大学毕业证PDF成绩单一模一样原版制作(CDU毕业证书)查尔斯达尔文大学毕业证PDF成绩单一模一样
原版制作(CDU毕业证书)查尔斯达尔文大学毕业证PDF成绩单一模一样
tdt5v4b
 
Comparing Stability and Sustainability in Agile Systems
Comparing Stability and Sustainability in Agile SystemsComparing Stability and Sustainability in Agile Systems
Comparing Stability and Sustainability in Agile Systems
Rob Healy
 
TCS AI for Business Study – Key Findings
TCS AI for Business Study – Key FindingsTCS AI for Business Study – Key Findings
TCS AI for Business Study – Key Findings
Tata Consultancy Services
 
在线办理(Murdoch毕业证书)莫道克大学毕业证电子版成绩单一模一样
在线办理(Murdoch毕业证书)莫道克大学毕业证电子版成绩单一模一样在线办理(Murdoch毕业证书)莫道克大学毕业证电子版成绩单一模一样
在线办理(Murdoch毕业证书)莫道克大学毕业证电子版成绩单一模一样
tdt5v4b
 
Senior Project and Engineering Leader Jim Smith.pdf
Senior Project and Engineering Leader Jim Smith.pdfSenior Project and Engineering Leader Jim Smith.pdf
Senior Project and Engineering Leader Jim Smith.pdf
Jim Smith
 
原版制作(澳洲WSU毕业证书)西悉尼大学毕业证文凭证书一模一样
原版制作(澳洲WSU毕业证书)西悉尼大学毕业证文凭证书一模一样原版制作(澳洲WSU毕业证书)西悉尼大学毕业证文凭证书一模一样
原版制作(澳洲WSU毕业证书)西悉尼大学毕业证文凭证书一模一样
tdt5v4b
 
Protected Workmen required today for growth
Protected Workmen required today for growthProtected Workmen required today for growth
Protected Workmen required today for growth
rivaraj2711
 
Training- integrated management system (iso)
Training- integrated management system (iso)Training- integrated management system (iso)
Training- integrated management system (iso)
akaash13
 
SOCIO-ANTHROPOLOGY FACULTY OF NURSING.....
SOCIO-ANTHROPOLOGY FACULTY OF NURSING.....SOCIO-ANTHROPOLOGY FACULTY OF NURSING.....
SOCIO-ANTHROPOLOGY FACULTY OF NURSING.....
juniourjohnstone
 
W.H.Bender Quote 65 - The Team Member and Guest Experience
W.H.Bender Quote 65 - The Team Member and Guest ExperienceW.H.Bender Quote 65 - The Team Member and Guest Experience
W.H.Bender Quote 65 - The Team Member and Guest Experience
William (Bill) H. Bender, FCSI
 
Public Speaking Tips to Help You Be A Strong Leader.pdf
Public Speaking Tips to Help You Be A Strong Leader.pdfPublic Speaking Tips to Help You Be A Strong Leader.pdf
Public Speaking Tips to Help You Be A Strong Leader.pdf
Pinta Partners
 
Leadership Ethics and Change, Purpose to Impact Plan
Leadership Ethics and Change, Purpose to Impact PlanLeadership Ethics and Change, Purpose to Impact Plan
Leadership Ethics and Change, Purpose to Impact Plan
Muhammad Adil Jamil
 

Recently uploaded (17)

一比一原版杜克大学毕业证(Duke毕业证)成绩单留信认证
一比一原版杜克大学毕业证(Duke毕业证)成绩单留信认证一比一原版杜克大学毕业证(Duke毕业证)成绩单留信认证
一比一原版杜克大学毕业证(Duke毕业证)成绩单留信认证
 
CV Ensio Suopanki1.pdf ENGLISH Russian Finnish German
CV Ensio Suopanki1.pdf ENGLISH Russian Finnish GermanCV Ensio Suopanki1.pdf ENGLISH Russian Finnish German
CV Ensio Suopanki1.pdf ENGLISH Russian Finnish German
 
W.H.Bender Quote 66 - ServPoints Sequence of Service™ should be Identified fo...
W.H.Bender Quote 66 - ServPoints Sequence of Service™ should be Identified fo...W.H.Bender Quote 66 - ServPoints Sequence of Service™ should be Identified fo...
W.H.Bender Quote 66 - ServPoints Sequence of Service™ should be Identified fo...
 
在线办理(UVic毕业证书)维多利亚大学毕业证录取通知书一模一样
在线办理(UVic毕业证书)维多利亚大学毕业证录取通知书一模一样在线办理(UVic毕业证书)维多利亚大学毕业证录取通知书一模一样
在线办理(UVic毕业证书)维多利亚大学毕业证录取通知书一模一样
 
Case Analysis - The Sky is the Limit | Principles of Management
Case Analysis - The Sky is the Limit | Principles of ManagementCase Analysis - The Sky is the Limit | Principles of Management
Case Analysis - The Sky is the Limit | Principles of Management
 
原版制作(CDU毕业证书)查尔斯达尔文大学毕业证PDF成绩单一模一样
原版制作(CDU毕业证书)查尔斯达尔文大学毕业证PDF成绩单一模一样原版制作(CDU毕业证书)查尔斯达尔文大学毕业证PDF成绩单一模一样
原版制作(CDU毕业证书)查尔斯达尔文大学毕业证PDF成绩单一模一样
 
Comparing Stability and Sustainability in Agile Systems
Comparing Stability and Sustainability in Agile SystemsComparing Stability and Sustainability in Agile Systems
Comparing Stability and Sustainability in Agile Systems
 
TCS AI for Business Study – Key Findings
TCS AI for Business Study – Key FindingsTCS AI for Business Study – Key Findings
TCS AI for Business Study – Key Findings
 
在线办理(Murdoch毕业证书)莫道克大学毕业证电子版成绩单一模一样
在线办理(Murdoch毕业证书)莫道克大学毕业证电子版成绩单一模一样在线办理(Murdoch毕业证书)莫道克大学毕业证电子版成绩单一模一样
在线办理(Murdoch毕业证书)莫道克大学毕业证电子版成绩单一模一样
 
Senior Project and Engineering Leader Jim Smith.pdf
Senior Project and Engineering Leader Jim Smith.pdfSenior Project and Engineering Leader Jim Smith.pdf
Senior Project and Engineering Leader Jim Smith.pdf
 
原版制作(澳洲WSU毕业证书)西悉尼大学毕业证文凭证书一模一样
原版制作(澳洲WSU毕业证书)西悉尼大学毕业证文凭证书一模一样原版制作(澳洲WSU毕业证书)西悉尼大学毕业证文凭证书一模一样
原版制作(澳洲WSU毕业证书)西悉尼大学毕业证文凭证书一模一样
 
Protected Workmen required today for growth
Protected Workmen required today for growthProtected Workmen required today for growth
Protected Workmen required today for growth
 
Training- integrated management system (iso)
Training- integrated management system (iso)Training- integrated management system (iso)
Training- integrated management system (iso)
 
SOCIO-ANTHROPOLOGY FACULTY OF NURSING.....
SOCIO-ANTHROPOLOGY FACULTY OF NURSING.....SOCIO-ANTHROPOLOGY FACULTY OF NURSING.....
SOCIO-ANTHROPOLOGY FACULTY OF NURSING.....
 
W.H.Bender Quote 65 - The Team Member and Guest Experience
W.H.Bender Quote 65 - The Team Member and Guest ExperienceW.H.Bender Quote 65 - The Team Member and Guest Experience
W.H.Bender Quote 65 - The Team Member and Guest Experience
 
Public Speaking Tips to Help You Be A Strong Leader.pdf
Public Speaking Tips to Help You Be A Strong Leader.pdfPublic Speaking Tips to Help You Be A Strong Leader.pdf
Public Speaking Tips to Help You Be A Strong Leader.pdf
 
Leadership Ethics and Change, Purpose to Impact Plan
Leadership Ethics and Change, Purpose to Impact PlanLeadership Ethics and Change, Purpose to Impact Plan
Leadership Ethics and Change, Purpose to Impact Plan
 

Annex SL Training for ISO 9001:2015. & ISO 14001:2015.

  • 1. V2 15/01/15 1 © Associate Enterprises Ltd Risk Management Annex SL The Future of Management Systems www.assentriskmanagement.co.uk
  • 2. V2 15/01/15 2 © Associate Enterprises Ltd Risk ManagementIntro • ISO/TMB has produced Annex SL with the objective of delivering consistent and compatible management system standards (mss) in an attempt to make this process easier. • Annex SL describes the framework for a generic management system. • Freely Available http://www.iso.org/sites/directives/directives.ht ml#toc_marker-76 www.assentriskmanagement.co.uk
  • 3. V2 15/01/15 3 © Associate Enterprises Ltd Risk ManagementKey Elements 1. high level structure, 2. identical core text, 3. common terms and core definitions. In future all management systems standards will have these 3 elements. High Level Structure can not be changed but sub clauses can be added. Discipline-specific text can also be added; Common Terms and Core Definitions can not be changed but can be added to. www.assentriskmanagement.co.uk
  • 4. V2 15/01/15 4 © Associate Enterprises Ltd Risk ManagementHigh Level Structure Ten clauses used in all Management System Standards: 1. Scope 2. Normative references 3. Terms and definitions 4. Context of the Organisation 5. Leadership 6. Planning 7. Support 8. Operation 9. Performance evaluation 10. Improvement. Note: As of July 2013 ISO22301 & ISO 27001:2013 are using HLS. Note: xxx used as placeholder to denote discipline of the standard i.e. enironmental/quality etc. www.assentriskmanagement.co.uk
  • 5. V2 15/01/15 5 © Associate Enterprises Ltd Risk Management Clause 4. Context of the Organisation • 4.1 Understanding the organisation and its context • 4.2 Understanding the needs and expectations of interested parties • 4.3 Determining the scope of the XXX management system • 4.4 XXX management system www.assentriskmanagement.co.uk
  • 6. V2 15/01/15 6 © Associate Enterprises Ltd Risk Management Clause 4. Context of the Organisation • Expanded scope requirements for the management system. • Consider ‘Interested Parties’ both inside and outside the organisation. • Should be documented. www.assentriskmanagement.co.uk
  • 7. V2 15/01/15 7 © Associate Enterprises Ltd Risk Management Examples of Interested Parties MS Customers Employees Suppliers 3rd Parties • Visitors • Contractors Insurers External • Public/Neighbours • The Media Authorities • Government • Regulators Emergency • Utilities • 999 www.assentriskmanagement.co.uk
  • 8. V2 15/01/15 8 © Associate Enterprises Ltd Risk ManagementClause 5. Leadership • 5.1 Leadership and commitment • 5.2 Policy • 5.3 organisational roles, responsibilities and authorities www.assentriskmanagement.co.uk
  • 9. V2 15/01/15 9 © Associate Enterprises Ltd Risk ManagementClause 5. Leadership • Emphasis on Leadership not just management. • Should communicate importance of system. • Policy should be available to all interested parties. www.assentriskmanagement.co.uk
  • 10. V2 15/01/15 10 © Associate Enterprises Ltd Risk ManagementClause 6. Planning • 6.1 Actions to address risks and opportunities • 6.2 XXX objectives and planning to achieve them www.assentriskmanagement.co.uk
  • 11. V2 15/01/15 11 © Associate Enterprises Ltd Risk ManagementClause 6. Planning • Risk is now prominent and replace Preventive action. • ISO 31000 provides guidance on risk management. • Objectives are more specific and in line with Policy. • Objectives should be measurable (if practicable), monitored, communicated, and updated as appropriate. They have to be established at relevant functions and levels. www.assentriskmanagement.co.uk
  • 12. V2 15/01/15 12 © Associate Enterprises Ltd Risk ManagementClause 7. Support • 7.1 Resources • 7.2 Competence • 7.3 Awareness • 7.4 Communication • 7.5 Documented information • 7.5.1 General • 7.5.2 Creating and updating • 7.5.3 Control of documented information www.assentriskmanagement.co.uk
  • 13. V2 15/01/15 13 © Associate Enterprises Ltd Risk ManagementClause 7. Support • Little new content here. • Term Documented Information is used and includes – Documents – Records – Forms – Other www.assentriskmanagement.co.uk
  • 14. V2 15/01/15 14 © Associate Enterprises Ltd Risk ManagementClause 8. Operation • 8.1 Operational planning and control www.assentriskmanagement.co.uk
  • 15. V2 15/01/15 15 © Associate Enterprises Ltd Risk ManagementClause 8. Operation • The Specifics of what the organisation does. • The bulk to the specific standard requirements will be here i.e. Environmental 14001, Quality 9001. www.assentriskmanagement.co.uk
  • 16. V2 15/01/15 16 © Associate Enterprises Ltd Risk Management Clause 9. Performance Evaluation • 9.1 Monitoring, measurement, analysis and evaluation • 9.2 Internal audit • 9.3 Management review Some useful common terms and core definitions from Appendix 2 of Annex SL follows: www.assentriskmanagement.co.uk
  • 17. V2 15/01/15 17 © Associate Enterprises Ltd Risk Management Clause 9. Performance Evaluation Common terms & core definitions from Appendix 2 of Annex SL 3.12 process set of interrelated or interacting activities which transforms inputs into outputs 3.13 performance measurable result Note 1 to entry: Performance can relate either to quantitative or qualitative findings. Note 2 to entry: Performance can relate to the management of activities, processes (3.12), products (including services), systems or organizations (3.01). 3.14 outsource (verb) make an arrangement where an external organization (3.01) performs part of an organization's function or process (3.12) Note 1 to entry: An external organization is outside the scope of the management system (3.04), although the outsourced function or process is within the scope. 3.15 monitoring determining the status of a system, a process (3.12) or an activity Note 1 to entry: To determine the status, there may be a need to check, supervise or critically observe. www.assentriskmanagement.co.uk
  • 18. V2 15/01/15 18 © Associate Enterprises Ltd Risk Management Clause 9. Performance Evaluation Common terms & core definitions from Appendix 2 of Annex SL 3.16 measurement process (3.12) to determine a value 3.17 audit systematic, independent and documented process (3.12) for obtaining audit evidence and evaluating it objectively to determine the extent to which the audit criteria are fulfilled Note 1 to entry: An audit can be an internal audit (first party) or an external audit (second party or third party), and it can be a combined audit (combining two or more disciplines). Note 2 to entry: An internal audit is conducted by the organization itself, or by an external party on its behalf. Note 3 to entry: “Audit evidence” and “audit criteria” are defined in ISO 19011. www.assentriskmanagement.co.uk
  • 19. V2 15/01/15 19 © Associate Enterprises Ltd Risk Management Clause 9. Performance Evaluation Common terms & core definitions from Appendix 2 of Annex SL 3.18 conformity fulfillment of a requirement (3.03) 3.19 nonconformity non-fulfillment of a requirement (3.03) 3.20 corrective action action to eliminate the cause of a nonconformity (3.19) and to prevent recurrence 3.21 continual improvement recurring activity to enhance performance (3.13) www.assentriskmanagement.co.uk
  • 20. V2 15/01/15 20 © Associate Enterprises Ltd Risk Management Clause 10. Improvement • 10.1 Nonconformity and corrective action • 10.2 Continual improvement Preventive action has been replaced by Opportunities to address risks. www.assentriskmanagement.co.uk
  • 21. V2 15/01/15 21 © Associate Enterprises Ltd Risk ManagementMore Info • Annex SLhttp://www.iso.org/sites/directives/directiv es.html#toc_marker-76 • IRCA Briefing Note http://www.irca.org/en- gb/resources/Guidance-notes/Annex-SL- previously-ISO-Guide-83/ www.assentriskmanagement.co.uk
  • 22. V2 15/01/15 22 © Associate Enterprises Ltd Risk ManagementContact Us If we can help you implement any ISO standards & achieve certification, please contact us: • www.assentriskmanagement.co.uk • London & South East: 020 3432 2854 • Midlands: 01332 896 478 • Wales & West: 029 2000 4623 • Twitter: @assent1 www.assentriskmanagement.co.uk