SlideShare a Scribd company logo
1 of 74
The British Standards Institution raising standards worldwide TM Issue 1 December, 2008                   QMS-030-01-EN-GX           © 2008 BSI Management Systems
ISO Internal Auditor   Compliance Management Prepared & Presented by  Yamin K Hajeej
1 5 Introduction to Auditing Auditor Competence and Responsibilities 2 3 6 4 Table of Content The Process Approach and Process Auditing Managing an Audit Program Audit Activities Conclusion
Introduction to Auditing
Auditing What is an audit? ,[object Object],	        (ISO19011: 2002 clause 3.1) Why audit? ,[object Object]
Monitor and measure the management system
Promote continuous improvement of the management system,[object Object]
Fair presentation
Due professional carePrinciples relating to audit: ,[object Object]
Evidence-based approachNote: reference to ISO 19011:2002 Clause number
Benefits of Auditing Verifies conformity to requirements Increases awareness and understanding Provides a measurement of effectiveness of the management system to top management Reduces risk of management system failure Identifies improvement opportunities Continuous improvement if performed regularly
Types of Audit Registration / Certification Product Customer contract Gap assessment / Pre-assessment Surveillance Combined audit / joint audit
The Process Approach and Process Auditing
Process Approach The process approach emphasize the importance of: Understanding and meeting requirements Looking at processes in terms of added value Obtaining results of process performance Continual improvement of process
Plan Your Process Act Do Check PDCA (Plan-Do-Check-Act) The Plan-do-Check-Act (PDCA) methodology applies to all processes ,[object Object]
Activities
Controls
Documentation
Resources
ObjectivesContinual Improvement ,[object Object]
Decide/change
Improve effectiveness
Measure and monitor for conformity and effectiveness,[object Object]
Applies the PDCA cycle to implementing, operating, monitoring, exercising, maintaining and improving the effectiveness of a QMSISO 19011:2002 does not explicitly mention process audits, but is written for application to all management system audits
Applying the Process Approach to Auditing Auditors can apply the process approach to auditing by ensuring the auditee: Can define the objectives, inputs, outputs, activities, and resources for its processes Analyzes, monitors, measures, and improves its processes Understands the sequence and interaction of its processes
Process Auditing Approaches Individual Process: Input / Output / Value-added Activity Plan-Do-Check-Act Resources Relationship with other processes: Flow / Sequence / Linkage / Combination Interaction / Communication Evidence Customer and supplier contract(s)
Process Auditing “Turtle Diagram” With what? Resources With who? Personnel Inputs From  Whom/ Where Outputs To Whom/ Where Process (specific value-added  activities) What results? Performance indicators How done? Methods/ Documentation
Process Auditing Example With what? ,[object Object],With who? ,[object Object]
Competent sales and         processing staff Inputs ,[object Object],            requirements ,[object Object],Outputs Production/Service Delivery Contract Review What results? ,[object Object],time ,[object Object]
Value of orders
Contract accuracyHow done? ,[object Object]
Processing system
Terms and conditions
Contract review procedure,[object Object]
Managing an Audit Program Process Flow 5.1 PLAN DO CHECK ACT AUTHORIZE MONITOR & REVIEW ESTABLISH IMPLEMENT IMPROVE ,[object Object]
 EVALUATE
  AUDITORS
 SELECT TEAMS
 DIRECT ACTIVITIES
 MAINTAIN RECORDS
 OBJECTIVES
 EXTENT
 ROLES
 RESOURCES
 PROCEDURES
 MONITOR
 REVIEW
 IDENTIFY NEED  FOR CA/PA ,[object Object],  OPPORTUNITIES   TO IMPROVE AUDITOR COMPETENCE & EVALUZATION SPECIFIC AUDIT ACTIVITIES
Audit Activities
Typical Audit Activities 6.1 Initialing the Audit PLAN Conducting Document Review Preparing for On-site Activities Conducting for On-site Activities DO Preparing, Approving, Distributing Audit Report Completing the Audit CHECK Conducting Audit Follow-up ACT
Audit Program Top management should authorize responsibility for program management to: ,[object Object]
Identify the necessary resources and ensure they are provided
Organization should develop audit program processes
Program should be managed by a member of the organization
Keep appropriate audit records to monitor and review the audit program,[object Object]
Identify the necessary resources and ensure they are provided,[object Object]
Defining Audit Objectives, Scope, Criteria 6.2.2 Audit Objectives may include: Determining of the extent of conformity of auditee`s QMS with audit criteria Evaluation of capability of QMS to ensure compliance with statutory, regulatory, and contractual requirements Evaluation of effectiveness of the QMS to meet its objectives Identification of areas of improvement
Selecting the Audit Team 6.2.4 For Team size and competence, consider: Audit objectives, scope, criteria, and duration Whether audit is combined or joint Competence of team to meet objectives Statutory, regulatory, contractual and accreditation/certification requirements Independence of the team
Auditor Competence and Responsibilities
Auditor Competence 7.1 Auditor competence is based on: ,[object Object]
Application of knowledge and skillsCompetence is to be developed, maintained, and improved
Personal Attributes Open-minded Decisive Perceptive Ethical Observant Diplomatic Versatile Tenacious Self-reliant Auditor CompetencePersonal Attributes 7.2
Auditor CompetenceGeneric Knowledge and skills 7.3.1 Auditor skills and competence could include: Audit principles, procedures, and techniques Management system and reference documents Organizational situations Laws, regulations, and other requirements
Auditor CompetenceSpecific Knowledge and skills 7.3.3 Specific knowledge and skills for quality auditors could include: Quality methods and techniques Quality terminology Quality management tools and their application Processes and products/services specific to the sector being audited
Auditor Responsibilities Arrive on time Maintain confidentiality Be objective and ethical Support the audit team and team leader Plan and prepare work documents Inform auditees of the audit process Document and support all findings Keep auditee informed Safeguard all documents Prepare the audit report
Audit Activities (Continued)
Audit Planning Determine the objective of the audit Identify specified requirements Determine audit duration and resources needed Select the team Contact the auditee – agree the date(s) Draw up audit plan Brief the team Prepare work documents
Conducting Document Review 6.3 A review of documentation: Should be conducted prior to on-site audit activities unless deferring review is not detrimental to the effectiveness of the audit May include relevant QMS documents, records, and previous audit reports May include a preliminary site visit
Prepare Work Documents Prepare work documents Use as a reference and for recording audit proceedings Include checklists, sampling plans and forms, ISO 9001:2008 standard, etc. Keep checklists flexible to allow changes resulting from information collected during the audit Safeguard any confidential and proprietary information Retain work documents and records
Checklists Preparation One Approach is to: Identify audit scope and process(es) within scope Identify applicable factors (inputs, outputs, measures, resources, etc.) Use these points and other requirements 	(ISO 9001-2008, system documentation, etc.) to: ,[object Object]
Plan what to look for (audit evidence) Prepare checklist
Checklists Structure Audit checklist structure:
Conduct on-Site Audit Activities 6.5 Conduct opening meeting Communicate during the audit Explain roles and responsibilities of participants Collect and verify information Generate audit findings Prepare audit conclusions Conduct closing meeting
Opening Meeting 6.5.1 Hold opening meeting with auditee top management and       those responsible for processes audited Meeting may be informal Chaired by team leader Audit team present Purpose is to confirm all prior arrangements

More Related Content

What's hot

ISO 9001 2015 Overview presentation
ISO 9001 2015 Overview presentation ISO 9001 2015 Overview presentation
ISO 9001 2015 Overview presentation Govind Ramu
 
ISO 9001, 14001, 45001 (IMS) basics training material
ISO 9001, 14001, 45001 (IMS) basics training materialISO 9001, 14001, 45001 (IMS) basics training material
ISO 9001, 14001, 45001 (IMS) basics training materialRanganathanR9
 
Quality Management System awareness for all
Quality Management System awareness for all Quality Management System awareness for all
Quality Management System awareness for all ANUPAM RAY
 
ISO 9001:2015 Awareness Training
ISO 9001:2015 Awareness TrainingISO 9001:2015 Awareness Training
ISO 9001:2015 Awareness TrainingANUPAM RAY
 
ISO 9001:2015 - Greendot Management Solutions
ISO 9001:2015 - Greendot Management Solutions ISO 9001:2015 - Greendot Management Solutions
ISO 9001:2015 - Greendot Management Solutions Nirav Trivedi
 
A brief Introduction to ISO 9001 2015-Quality Management System
A brief Introduction to ISO 9001 2015-Quality Management SystemA brief Introduction to ISO 9001 2015-Quality Management System
A brief Introduction to ISO 9001 2015-Quality Management SystemSARWAR SALAM
 
ISO 14001:2015 Awareness
ISO 14001:2015 AwarenessISO 14001:2015 Awareness
ISO 14001:2015 AwarenessRathin Biswas
 
An Integrated Management System Standard
An Integrated Management System StandardAn Integrated Management System Standard
An Integrated Management System StandardRalph Reid
 
Internal Audit 03-03-16
Internal Audit 03-03-16Internal Audit 03-03-16
Internal Audit 03-03-16Lisa Barnes
 
ISO 9001: 2015 QUALITY MANAGEMENT SYSTEMS
ISO 9001: 2015 QUALITY MANAGEMENT SYSTEMSISO 9001: 2015 QUALITY MANAGEMENT SYSTEMS
ISO 9001: 2015 QUALITY MANAGEMENT SYSTEMSSubhendu Datta
 
Iso 9001 2015 process audit checklist
Iso 9001 2015 process audit checklistIso 9001 2015 process audit checklist
Iso 9001 2015 process audit checklistCinthiia Akamii
 
Iso 9001:2015 Documented Information Guidance
Iso 9001:2015 Documented Information GuidanceIso 9001:2015 Documented Information Guidance
Iso 9001:2015 Documented Information GuidanceMohammad Elshahat
 
ISO 9001:2015 Introduction & Awareness Training
ISO  9001:2015 Introduction & Awareness Training ISO  9001:2015 Introduction & Awareness Training
ISO 9001:2015 Introduction & Awareness Training Sadanand Borade
 

What's hot (20)

ISO 9001 2015 Overview presentation
ISO 9001 2015 Overview presentation ISO 9001 2015 Overview presentation
ISO 9001 2015 Overview presentation
 
ISO 9001:2015 (QMS) Awareness Training
ISO 9001:2015 (QMS) Awareness TrainingISO 9001:2015 (QMS) Awareness Training
ISO 9001:2015 (QMS) Awareness Training
 
ISO 9001, 14001, 45001 (IMS) basics training material
ISO 9001, 14001, 45001 (IMS) basics training materialISO 9001, 14001, 45001 (IMS) basics training material
ISO 9001, 14001, 45001 (IMS) basics training material
 
Quality Management System awareness for all
Quality Management System awareness for all Quality Management System awareness for all
Quality Management System awareness for all
 
The new ISO 9001:2015
The new ISO 9001:2015The new ISO 9001:2015
The new ISO 9001:2015
 
Iso 9001 2015 Understanding
Iso 9001 2015 Understanding Iso 9001 2015 Understanding
Iso 9001 2015 Understanding
 
ISO 9001:2015 Awareness Training
ISO 9001:2015 Awareness TrainingISO 9001:2015 Awareness Training
ISO 9001:2015 Awareness Training
 
Risk based thinking
Risk based thinkingRisk based thinking
Risk based thinking
 
ISO 9001:2015 - Greendot Management Solutions
ISO 9001:2015 - Greendot Management Solutions ISO 9001:2015 - Greendot Management Solutions
ISO 9001:2015 - Greendot Management Solutions
 
A brief Introduction to ISO 9001 2015-Quality Management System
A brief Introduction to ISO 9001 2015-Quality Management SystemA brief Introduction to ISO 9001 2015-Quality Management System
A brief Introduction to ISO 9001 2015-Quality Management System
 
Iso9001training slide
Iso9001training slideIso9001training slide
Iso9001training slide
 
ISO 14001:2015 Awareness
ISO 14001:2015 AwarenessISO 14001:2015 Awareness
ISO 14001:2015 Awareness
 
An Integrated Management System Standard
An Integrated Management System StandardAn Integrated Management System Standard
An Integrated Management System Standard
 
Internal Audit 03-03-16
Internal Audit 03-03-16Internal Audit 03-03-16
Internal Audit 03-03-16
 
ISO 9001:2015 awareness.
ISO 9001:2015 awareness. ISO 9001:2015 awareness.
ISO 9001:2015 awareness.
 
ISO 9001: 2015 QUALITY MANAGEMENT SYSTEMS
ISO 9001: 2015 QUALITY MANAGEMENT SYSTEMSISO 9001: 2015 QUALITY MANAGEMENT SYSTEMS
ISO 9001: 2015 QUALITY MANAGEMENT SYSTEMS
 
Iso 9001 2015 process audit checklist
Iso 9001 2015 process audit checklistIso 9001 2015 process audit checklist
Iso 9001 2015 process audit checklist
 
Iso 9001:2015 Documented Information Guidance
Iso 9001:2015 Documented Information GuidanceIso 9001:2015 Documented Information Guidance
Iso 9001:2015 Documented Information Guidance
 
ISO 9001:2015 Introduction & Awareness Training
ISO  9001:2015 Introduction & Awareness Training ISO  9001:2015 Introduction & Awareness Training
ISO 9001:2015 Introduction & Awareness Training
 
ISO 9001: 2015
ISO 9001: 2015 ISO 9001: 2015
ISO 9001: 2015
 

Viewers also liked

Principles of accounting
Principles of accountingPrinciples of accounting
Principles of accountingSuraj Rana
 
Law 323 tax law (part i & ii) akhtar ali and asim zulfiqar ali
Law 323 tax law (part i & ii) akhtar ali and asim zulfiqar aliLaw 323 tax law (part i & ii) akhtar ali and asim zulfiqar ali
Law 323 tax law (part i & ii) akhtar ali and asim zulfiqar aliUniversity Of Central Punjab
 
Causal Relationship between Macroeconomic Factors and Stock Prices in Pakistan
Causal Relationship between Macroeconomic Factors and Stock Prices in PakistanCausal Relationship between Macroeconomic Factors and Stock Prices in Pakistan
Causal Relationship between Macroeconomic Factors and Stock Prices in PakistanUniversity Of Central Punjab
 
[David j. sheskin]_handbook_of_parametric_and_nonp
[David j. sheskin]_handbook_of_parametric_and_nonp[David j. sheskin]_handbook_of_parametric_and_nonp
[David j. sheskin]_handbook_of_parametric_and_nonpNERRU
 
Human error and secure systems - DevOpsDays Ohio 2015
Human error and secure systems - DevOpsDays Ohio 2015Human error and secure systems - DevOpsDays Ohio 2015
Human error and secure systems - DevOpsDays Ohio 2015Dustin Collins
 
US National standardization strategy
 US National standardization strategy US National standardization strategy
US National standardization strategyStella Tsank
 
[] Medical notes_clinical_medicine_pocket_guide
[] Medical notes_clinical_medicine_pocket_guide[] Medical notes_clinical_medicine_pocket_guide
[] Medical notes_clinical_medicine_pocket_guideAchmad Dainuri
 
Building your All-Star DevOps Team – "Planning, Process and Partners"
Building your All-Star DevOps Team – "Planning, Process and Partners"Building your All-Star DevOps Team – "Planning, Process and Partners"
Building your All-Star DevOps Team – "Planning, Process and Partners"Dustin Collins
 
Usability in healthcare, general overview on new standards and metrics (Inter...
Usability in healthcare, general overview on new standards and metrics (Inter...Usability in healthcare, general overview on new standards and metrics (Inter...
Usability in healthcare, general overview on new standards and metrics (Inter...Stella Tsank
 
Risk management in-60601-1
Risk management in-60601-1Risk management in-60601-1
Risk management in-60601-1Stella Tsank
 
Ratios and formulas in customer financial analysis
Ratios and formulas in customer financial analysisRatios and formulas in customer financial analysis
Ratios and formulas in customer financial analysisUniversity Of Central Punjab
 
Inside Attacker: An Overview
Inside Attacker: An OverviewInside Attacker: An Overview
Inside Attacker: An OverviewDustin Collins
 
2011 final fixed-seprate block_tax_regimes_updated
2011 final fixed-seprate block_tax_regimes_updated2011 final fixed-seprate block_tax_regimes_updated
2011 final fixed-seprate block_tax_regimes_updatedUniversity Of Central Punjab
 
2017 power fundamentals (2)
2017 power fundamentals (2)2017 power fundamentals (2)
2017 power fundamentals (2)Kristin Allen
 

Viewers also liked (20)

Principles of accounting
Principles of accountingPrinciples of accounting
Principles of accounting
 
Law 323 tax law (part i & ii) akhtar ali and asim zulfiqar ali
Law 323 tax law (part i & ii) akhtar ali and asim zulfiqar aliLaw 323 tax law (part i & ii) akhtar ali and asim zulfiqar ali
Law 323 tax law (part i & ii) akhtar ali and asim zulfiqar ali
 
Causal Relationship between Macroeconomic Factors and Stock Prices in Pakistan
Causal Relationship between Macroeconomic Factors and Stock Prices in PakistanCausal Relationship between Macroeconomic Factors and Stock Prices in Pakistan
Causal Relationship between Macroeconomic Factors and Stock Prices in Pakistan
 
[David j. sheskin]_handbook_of_parametric_and_nonp
[David j. sheskin]_handbook_of_parametric_and_nonp[David j. sheskin]_handbook_of_parametric_and_nonp
[David j. sheskin]_handbook_of_parametric_and_nonp
 
Human error and secure systems - DevOpsDays Ohio 2015
Human error and secure systems - DevOpsDays Ohio 2015Human error and secure systems - DevOpsDays Ohio 2015
Human error and secure systems - DevOpsDays Ohio 2015
 
US National standardization strategy
 US National standardization strategy US National standardization strategy
US National standardization strategy
 
[] Medical notes_clinical_medicine_pocket_guide
[] Medical notes_clinical_medicine_pocket_guide[] Medical notes_clinical_medicine_pocket_guide
[] Medical notes_clinical_medicine_pocket_guide
 
Labor policy in pakistan
Labor policy in pakistanLabor policy in pakistan
Labor policy in pakistan
 
Building your All-Star DevOps Team – "Planning, Process and Partners"
Building your All-Star DevOps Team – "Planning, Process and Partners"Building your All-Star DevOps Team – "Planning, Process and Partners"
Building your All-Star DevOps Team – "Planning, Process and Partners"
 
Usability in healthcare, general overview on new standards and metrics (Inter...
Usability in healthcare, general overview on new standards and metrics (Inter...Usability in healthcare, general overview on new standards and metrics (Inter...
Usability in healthcare, general overview on new standards and metrics (Inter...
 
Risk management in-60601-1
Risk management in-60601-1Risk management in-60601-1
Risk management in-60601-1
 
Ratios and formulas in customer financial analysis
Ratios and formulas in customer financial analysisRatios and formulas in customer financial analysis
Ratios and formulas in customer financial analysis
 
Prospectus University of lahore 2012-13
Prospectus University of lahore 2012-13Prospectus University of lahore 2012-13
Prospectus University of lahore 2012-13
 
Inside Attacker: An Overview
Inside Attacker: An OverviewInside Attacker: An Overview
Inside Attacker: An Overview
 
Exempt user guide ACCA
Exempt user guide ACCAExempt user guide ACCA
Exempt user guide ACCA
 
Evolutionary_forensic_psychology__darwinian_foundations_of_crime_and_law
  Evolutionary_forensic_psychology__darwinian_foundations_of_crime_and_law  Evolutionary_forensic_psychology__darwinian_foundations_of_crime_and_law
Evolutionary_forensic_psychology__darwinian_foundations_of_crime_and_law
 
2011 final fixed-seprate block_tax_regimes_updated
2011 final fixed-seprate block_tax_regimes_updated2011 final fixed-seprate block_tax_regimes_updated
2011 final fixed-seprate block_tax_regimes_updated
 
2017 power fundamentals (2)
2017 power fundamentals (2)2017 power fundamentals (2)
2017 power fundamentals (2)
 
Miracles in the_quran
Miracles in the_quranMiracles in the_quran
Miracles in the_quran
 
Miracles of the_quran
Miracles of the_quranMiracles of the_quran
Miracles of the_quran
 

Similar to Iso Internal Auditor

Internal Audit Training with different .pptx
Internal Audit Training with different .pptxInternal Audit Training with different .pptx
Internal Audit Training with different .pptxBonAlexisGuatato
 
Establishing A Qms Ppt2
Establishing A Qms  Ppt2Establishing A Qms  Ppt2
Establishing A Qms Ppt2guevarra_2000
 
Business Excellence Through QMS
Business Excellence Through QMSBusiness Excellence Through QMS
Business Excellence Through QMSArefin Khan
 
Guide for the implementation of a Quality management
Guide for the implementation of a Quality managementGuide for the implementation of a Quality management
Guide for the implementation of a Quality managementDomenika Calvopiña
 
Internal audit
Internal auditInternal audit
Internal auditHpm India
 
QMS - Quality Management System - Internal Quality Auditor - ISO 9001:2008
QMS - Quality Management System - Internal Quality Auditor - ISO 9001:2008QMS - Quality Management System - Internal Quality Auditor - ISO 9001:2008
QMS - Quality Management System - Internal Quality Auditor - ISO 9001:2008Engr. Syed Noor Mustafa Shah
 
Auditing Management systems based on ISO19011 By Eng. Karam Malkawi - Jordan
Auditing Management systems based on ISO19011 By Eng. Karam Malkawi - JordanAuditing Management systems based on ISO19011 By Eng. Karam Malkawi - Jordan
Auditing Management systems based on ISO19011 By Eng. Karam Malkawi - JordanEng. A.karam Al Malkawi
 
39635837 iso-9001-2008-awarness
39635837 iso-9001-2008-awarness39635837 iso-9001-2008-awarness
39635837 iso-9001-2008-awarnesssride01
 
vdocuments.net_chapter-10-quality-management-systems.ppt
vdocuments.net_chapter-10-quality-management-systems.pptvdocuments.net_chapter-10-quality-management-systems.ppt
vdocuments.net_chapter-10-quality-management-systems.pptssuserf9a2791
 
Quality_Management_system in total quality
Quality_Management_system in total qualityQuality_Management_system in total quality
Quality_Management_system in total qualityHamHere
 
Iso9001 implementation increasing-value_reducing_leadtime
Iso9001 implementation increasing-value_reducing_leadtimeIso9001 implementation increasing-value_reducing_leadtime
Iso9001 implementation increasing-value_reducing_leadtimeOmnex Inc.
 
Iqa training -manufacturing[1]
Iqa training -manufacturing[1]Iqa training -manufacturing[1]
Iqa training -manufacturing[1]Jitesh Gaurav
 
All Elements Lead an EHS Audit.pptx
All Elements Lead an EHS Audit.pptxAll Elements Lead an EHS Audit.pptx
All Elements Lead an EHS Audit.pptxMuhammad Adeel Ahmad
 
Typical Quality Management System Based On Iso 9001 2008
Typical Quality Management System Based On Iso 9001 2008Typical Quality Management System Based On Iso 9001 2008
Typical Quality Management System Based On Iso 9001 2008Isidro Sid Calayag
 

Similar to Iso Internal Auditor (20)

Internal Audit Training with different .pptx
Internal Audit Training with different .pptxInternal Audit Training with different .pptx
Internal Audit Training with different .pptx
 
Establishing A Qms Ppt2
Establishing A Qms  Ppt2Establishing A Qms  Ppt2
Establishing A Qms Ppt2
 
Auditing Principles
Auditing PrinciplesAuditing Principles
Auditing Principles
 
Business Excellence Through QMS
Business Excellence Through QMSBusiness Excellence Through QMS
Business Excellence Through QMS
 
QMS Audit Process June 2015
QMS Audit Process June 2015QMS Audit Process June 2015
QMS Audit Process June 2015
 
SFC Plan of engagement
SFC Plan of engagementSFC Plan of engagement
SFC Plan of engagement
 
Guide for the implementation of a Quality management
Guide for the implementation of a Quality managementGuide for the implementation of a Quality management
Guide for the implementation of a Quality management
 
Internal audit
Internal auditInternal audit
Internal audit
 
Auditing.pdf
Auditing.pdfAuditing.pdf
Auditing.pdf
 
QMS - Quality Management System - Internal Quality Auditor - ISO 9001:2008
QMS - Quality Management System - Internal Quality Auditor - ISO 9001:2008QMS - Quality Management System - Internal Quality Auditor - ISO 9001:2008
QMS - Quality Management System - Internal Quality Auditor - ISO 9001:2008
 
Auditing Management systems based on ISO19011 By Eng. Karam Malkawi - Jordan
Auditing Management systems based on ISO19011 By Eng. Karam Malkawi - JordanAuditing Management systems based on ISO19011 By Eng. Karam Malkawi - Jordan
Auditing Management systems based on ISO19011 By Eng. Karam Malkawi - Jordan
 
39635837 iso-9001-2008-awarness
39635837 iso-9001-2008-awarness39635837 iso-9001-2008-awarness
39635837 iso-9001-2008-awarness
 
vdocuments.net_chapter-10-quality-management-systems.ppt
vdocuments.net_chapter-10-quality-management-systems.pptvdocuments.net_chapter-10-quality-management-systems.ppt
vdocuments.net_chapter-10-quality-management-systems.ppt
 
Quality_Management_system in total quality
Quality_Management_system in total qualityQuality_Management_system in total quality
Quality_Management_system in total quality
 
Iso9001 implementation increasing-value_reducing_leadtime
Iso9001 implementation increasing-value_reducing_leadtimeIso9001 implementation increasing-value_reducing_leadtime
Iso9001 implementation increasing-value_reducing_leadtime
 
Iqa training -manufacturing[1]
Iqa training -manufacturing[1]Iqa training -manufacturing[1]
Iqa training -manufacturing[1]
 
Quality Assurance
Quality AssuranceQuality Assurance
Quality Assurance
 
All Elements Lead an EHS Audit.pptx
All Elements Lead an EHS Audit.pptxAll Elements Lead an EHS Audit.pptx
All Elements Lead an EHS Audit.pptx
 
Typical Quality Management System Based On Iso 9001 2008
Typical Quality Management System Based On Iso 9001 2008Typical Quality Management System Based On Iso 9001 2008
Typical Quality Management System Based On Iso 9001 2008
 
Quality assurance (qa) online training
Quality assurance (qa) online trainingQuality assurance (qa) online training
Quality assurance (qa) online training
 

Recently uploaded

The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxThe Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxLoriGlavin3
 
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024BookNet Canada
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Mark Simos
 
WordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your BrandWordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your Brandgvaughan
 
From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .Alan Dix
 
A Deep Dive on Passkeys: FIDO Paris Seminar.pptx
A Deep Dive on Passkeys: FIDO Paris Seminar.pptxA Deep Dive on Passkeys: FIDO Paris Seminar.pptx
A Deep Dive on Passkeys: FIDO Paris Seminar.pptxLoriGlavin3
 
DSPy a system for AI to Write Prompts and Do Fine Tuning
DSPy a system for AI to Write Prompts and Do Fine TuningDSPy a system for AI to Write Prompts and Do Fine Tuning
DSPy a system for AI to Write Prompts and Do Fine TuningLars Bell
 
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxMerck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxLoriGlavin3
 
Moving Beyond Passwords: FIDO Paris Seminar.pdf
Moving Beyond Passwords: FIDO Paris Seminar.pdfMoving Beyond Passwords: FIDO Paris Seminar.pdf
Moving Beyond Passwords: FIDO Paris Seminar.pdfLoriGlavin3
 
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxUse of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxLoriGlavin3
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebUiPathCommunity
 
New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024BookNet Canada
 
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek SchlawackFwdays
 
Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 3652toLead Limited
 
Take control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteTake control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteDianaGray10
 
unit 4 immunoblotting technique complete.pptx
unit 4 immunoblotting technique complete.pptxunit 4 immunoblotting technique complete.pptx
unit 4 immunoblotting technique complete.pptxBkGupta21
 
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024BookNet Canada
 
What is Artificial Intelligence?????????
What is Artificial Intelligence?????????What is Artificial Intelligence?????????
What is Artificial Intelligence?????????blackmambaettijean
 
Advanced Computer Architecture – An Introduction
Advanced Computer Architecture – An IntroductionAdvanced Computer Architecture – An Introduction
Advanced Computer Architecture – An IntroductionDilum Bandara
 
DevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsDevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsSergiu Bodiu
 

Recently uploaded (20)

The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxThe Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
 
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
 
WordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your BrandWordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your Brand
 
From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .
 
A Deep Dive on Passkeys: FIDO Paris Seminar.pptx
A Deep Dive on Passkeys: FIDO Paris Seminar.pptxA Deep Dive on Passkeys: FIDO Paris Seminar.pptx
A Deep Dive on Passkeys: FIDO Paris Seminar.pptx
 
DSPy a system for AI to Write Prompts and Do Fine Tuning
DSPy a system for AI to Write Prompts and Do Fine TuningDSPy a system for AI to Write Prompts and Do Fine Tuning
DSPy a system for AI to Write Prompts and Do Fine Tuning
 
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxMerck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
 
Moving Beyond Passwords: FIDO Paris Seminar.pdf
Moving Beyond Passwords: FIDO Paris Seminar.pdfMoving Beyond Passwords: FIDO Paris Seminar.pdf
Moving Beyond Passwords: FIDO Paris Seminar.pdf
 
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxUse of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio Web
 
New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
 
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
 
Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365
 
Take control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteTake control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test Suite
 
unit 4 immunoblotting technique complete.pptx
unit 4 immunoblotting technique complete.pptxunit 4 immunoblotting technique complete.pptx
unit 4 immunoblotting technique complete.pptx
 
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
 
What is Artificial Intelligence?????????
What is Artificial Intelligence?????????What is Artificial Intelligence?????????
What is Artificial Intelligence?????????
 
Advanced Computer Architecture – An Introduction
Advanced Computer Architecture – An IntroductionAdvanced Computer Architecture – An Introduction
Advanced Computer Architecture – An Introduction
 
DevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsDevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platforms
 

Iso Internal Auditor

  • 1. The British Standards Institution raising standards worldwide TM Issue 1 December, 2008 QMS-030-01-EN-GX © 2008 BSI Management Systems
  • 2. ISO Internal Auditor Compliance Management Prepared & Presented by Yamin K Hajeej
  • 3. 1 5 Introduction to Auditing Auditor Competence and Responsibilities 2 3 6 4 Table of Content The Process Approach and Process Auditing Managing an Audit Program Audit Activities Conclusion
  • 5.
  • 6. Monitor and measure the management system
  • 7.
  • 9.
  • 10. Evidence-based approachNote: reference to ISO 19011:2002 Clause number
  • 11. Benefits of Auditing Verifies conformity to requirements Increases awareness and understanding Provides a measurement of effectiveness of the management system to top management Reduces risk of management system failure Identifies improvement opportunities Continuous improvement if performed regularly
  • 12. Types of Audit Registration / Certification Product Customer contract Gap assessment / Pre-assessment Surveillance Combined audit / joint audit
  • 13. The Process Approach and Process Auditing
  • 14. Process Approach The process approach emphasize the importance of: Understanding and meeting requirements Looking at processes in terms of added value Obtaining results of process performance Continual improvement of process
  • 15.
  • 20.
  • 23.
  • 24. Applies the PDCA cycle to implementing, operating, monitoring, exercising, maintaining and improving the effectiveness of a QMSISO 19011:2002 does not explicitly mention process audits, but is written for application to all management system audits
  • 25. Applying the Process Approach to Auditing Auditors can apply the process approach to auditing by ensuring the auditee: Can define the objectives, inputs, outputs, activities, and resources for its processes Analyzes, monitors, measures, and improves its processes Understands the sequence and interaction of its processes
  • 26. Process Auditing Approaches Individual Process: Input / Output / Value-added Activity Plan-Do-Check-Act Resources Relationship with other processes: Flow / Sequence / Linkage / Combination Interaction / Communication Evidence Customer and supplier contract(s)
  • 27. Process Auditing “Turtle Diagram” With what? Resources With who? Personnel Inputs From Whom/ Where Outputs To Whom/ Where Process (specific value-added activities) What results? Performance indicators How done? Methods/ Documentation
  • 28.
  • 29.
  • 31.
  • 34.
  • 35.
  • 48.
  • 50. Typical Audit Activities 6.1 Initialing the Audit PLAN Conducting Document Review Preparing for On-site Activities Conducting for On-site Activities DO Preparing, Approving, Distributing Audit Report Completing the Audit CHECK Conducting Audit Follow-up ACT
  • 51.
  • 52. Identify the necessary resources and ensure they are provided
  • 53. Organization should develop audit program processes
  • 54. Program should be managed by a member of the organization
  • 55.
  • 56.
  • 57. Defining Audit Objectives, Scope, Criteria 6.2.2 Audit Objectives may include: Determining of the extent of conformity of auditee`s QMS with audit criteria Evaluation of capability of QMS to ensure compliance with statutory, regulatory, and contractual requirements Evaluation of effectiveness of the QMS to meet its objectives Identification of areas of improvement
  • 58. Selecting the Audit Team 6.2.4 For Team size and competence, consider: Audit objectives, scope, criteria, and duration Whether audit is combined or joint Competence of team to meet objectives Statutory, regulatory, contractual and accreditation/certification requirements Independence of the team
  • 59. Auditor Competence and Responsibilities
  • 60.
  • 61. Application of knowledge and skillsCompetence is to be developed, maintained, and improved
  • 62. Personal Attributes Open-minded Decisive Perceptive Ethical Observant Diplomatic Versatile Tenacious Self-reliant Auditor CompetencePersonal Attributes 7.2
  • 63. Auditor CompetenceGeneric Knowledge and skills 7.3.1 Auditor skills and competence could include: Audit principles, procedures, and techniques Management system and reference documents Organizational situations Laws, regulations, and other requirements
  • 64. Auditor CompetenceSpecific Knowledge and skills 7.3.3 Specific knowledge and skills for quality auditors could include: Quality methods and techniques Quality terminology Quality management tools and their application Processes and products/services specific to the sector being audited
  • 65. Auditor Responsibilities Arrive on time Maintain confidentiality Be objective and ethical Support the audit team and team leader Plan and prepare work documents Inform auditees of the audit process Document and support all findings Keep auditee informed Safeguard all documents Prepare the audit report
  • 67. Audit Planning Determine the objective of the audit Identify specified requirements Determine audit duration and resources needed Select the team Contact the auditee – agree the date(s) Draw up audit plan Brief the team Prepare work documents
  • 68. Conducting Document Review 6.3 A review of documentation: Should be conducted prior to on-site audit activities unless deferring review is not detrimental to the effectiveness of the audit May include relevant QMS documents, records, and previous audit reports May include a preliminary site visit
  • 69. Prepare Work Documents Prepare work documents Use as a reference and for recording audit proceedings Include checklists, sampling plans and forms, ISO 9001:2008 standard, etc. Keep checklists flexible to allow changes resulting from information collected during the audit Safeguard any confidential and proprietary information Retain work documents and records
  • 70.
  • 71. Plan what to look for (audit evidence) Prepare checklist
  • 72. Checklists Structure Audit checklist structure:
  • 73. Conduct on-Site Audit Activities 6.5 Conduct opening meeting Communicate during the audit Explain roles and responsibilities of participants Collect and verify information Generate audit findings Prepare audit conclusions Conduct closing meeting
  • 74. Opening Meeting 6.5.1 Hold opening meeting with auditee top management and those responsible for processes audited Meeting may be informal Chaired by team leader Audit team present Purpose is to confirm all prior arrangements
  • 75. Sources of information Audit Conclusions Collect by appropriate sampling & verification Evaluate against audit criteria Review Collecting and Verifying Information
  • 76.
  • 77. interfaces between functions, activities and processesCollect audit evidence by appropriate sampling and verify and record it Be aware on sampling limitations, if acting on the audit conclusion Use only information that is verifiable as audit evidence
  • 78.
  • 79. Also ensure they are responsible for the activity being audited
  • 80.
  • 81. Plans
  • 85. testsReview records for evidence of conformity to documents Review records, statements of fact, or other information which are relevant to the audit criteria and verifiable Audit evidence may be qualitative or quantitative
  • 86. Communication and interpersonal skills Put auditee at ease Ask short questions and listen Reflect right attitude, tone of voice, body language, and facial expressions Smile and show eye contact Avoid interruptions Avoid off-cuff and condescending remarks Give praise when appropriate
  • 87. Communication and interpersonal skills Show interest Be tactful and polite Show patience and understanding Remember to say please and thank you Ask the right person Don`t say you understand when you do not
  • 88.
  • 90.
  • 92. Use by a colleague
  • 93.
  • 95. What was observedNotes may be referenced by subsequent auditor
  • 96.
  • 98.
  • 100. Status
  • 101.
  • 103.
  • 104.
  • 105. Establish the FactsJudgment in the Audit Process Audit focus must be on conformity and effectiveness, NOT on finding nonconformities The auditee must be given the benefit of any doubt where there is insufficient audit evidence
  • 106.
  • 107. Where, what, etc.Establish why a nonconformity or otherwise State who (if relevant) – preferably by job title Obtain agreement with the facts
  • 108. Generate Audit Findings 6.5.5 Evaluate audit evidence against audit criteria to generate audit findings Indicate if findings are conformities, nonconformities or opportunities for improvement Meet (audit team) to review findings Specify (with supporting evidence) or summarize conformity by location, function, or processes, as required by audit plan
  • 109.
  • 111.
  • 112. Quality standard (ISO 9001:2008)
  • 114.
  • 115.
  • 116. A training record not available
  • 117.
  • 118. Nonconformity - Major Examples: No documented procedure for a required documented ISO 9001:2008 process/activity Document changes routinely made without authorization No awareness program for the quality management system No future planned internal audits Insufficient scope Numerous minor nonconformities found in the production process
  • 119.
  • 120.
  • 121. NonconformityPoor Report Examples The nonconformity statements below are inadequate due to the lack of specified requirements and detailed evidence: Steering Group meeting minutes are not adequate The authority level for the Emergency Controller must be documented for clarify purposes
  • 122.
  • 123. Agree on audit conclusionsTo prepare the audit report and recommendations If included in audit plan, to discuss audit follow-up
  • 124. Audit ReportPrepare, Approve & Distribute 6.6.1 Audit reference Client and Auditee details Audit team details List of auditee representatives Objectives, scope, and criteria Audit plan – dates, places, areas audited and timing Summary of audit process Audit Summary Uncertainty due to sampling 6.6.2
  • 125. Audit ReportPrepare, Approve & Distribute 6.6.1 Nonconformity reports Recommendation Obstacles encountered Any areas in audit scope not covered Any unresolved issues between the auditee and team Confirmation that audit objectives accomplished Confidentiality statement Distribution list 6.6.2
  • 126.
  • 127. If delayed, provide reasons and agree on new issue date
  • 128. Report must be dated, reviewed, and approved as per procedures
  • 129. Distribute to recipients designated by audit client
  • 130. Report is property of audit client
  • 131.
  • 132. Maintain or dispose of audit documents based on contractual, regulatory, and audit program procedures
  • 133. Maintain confidentiality of audit documents, information, and report
  • 134.
  • 135. Cover situations encountered during audit that may decrease reliance on audit conclusions
  • 136. Discuss and resolve diverging audit findings and conclusions
  • 137. Keep a record if not resolved
  • 138. Provide recommendations for improvement where specified by audit objectives
  • 139. Keep minutes and attendance records
  • 140.
  • 141. Auditee decides and carries out these actions within agreed timeframe
  • 142. These actions are not part of the audit
  • 143. Audit team number should verify completion and effectiveness of actions taken
  • 144. This verification may be part of a subsequent audit
  • 145.
  • 146. Auditee prepares and approves a corrective action plan
  • 147. Auditee submits the plan to auditors
  • 148. Auditors evaluate and approve the plan
  • 149. Auditee implements the approved corrective action plan
  • 150. Auditor verifies the implementation and effectiveness
  • 151.
  • 152. Typical Audit Activities Initialing the Audit Conducting Document Review Preparing for On-site Activities Conducting for On-site Activities Preparing, Approving, Distributing Audit Report Completing the Audit Conducting Audit Follow-up
  • 154. Thank You! For you attendance and participation! Prepared & Presented by Yamin K Hajeej