This document explains risk-based thinking as established in ISO 9001:2015. It involves taking a systematic approach to identifying, considering, and controlling risks throughout the quality management system. This makes preventive action inherent rather than a separate process. Risk-based thinking considers risks, opportunities, consequences, likelihood of objectives being met, and experience to continually improve processes. It is done by identifying risks, understanding their context and acceptability, planning actions to address risks, implementing plans, checking effectiveness, and learning from experience.