Start a new topic and get direct answers from the Expert Advice Community.
CREATE NEW TOPIC +Guest
ISO 17025 implementation applies to the overall activities of the laboratory, including for example personnel training or procurement. The “test-by-test” basis you refer to is applicable to the laboratory’s Scope of Work, for which accreditation is applied for. So you state what is being calibrated (including method and range); or what is being tested (analyte or group of analytes), in what matrix and using what method or instrument. An example is Heavy Metals in Soil by ICP-MS. For each method, yes you need to show technical competence to produce reliable, valid results. If your laboratory may is not involved with sampling, then you state in your documentation that sampling not the responsibility of the laboratory.
For more detail on what is required for ISO 17025, read the whitepaper Clause-by-clause explanation of ISO 17025:2017 available for download from https://advisera.com/17025academy/free-downloads/ and preview the ISO 17025 Academy toolkit at https://advisera.com/17025academy/iso-17025-documentation-toolkit/
Each organization is a different case. Each organization has different motivations, different amounts of staff, different starting points in its survey of the initial environmental situation. The implementation phase requires a project manager almost full time, often this does not happen. Some companies may start from a base where they have to make major investments to meet compliance obligations. Some companies may find it difficult to provide time for training in good environmental practices.
Please check this information below about implementation:
ISO 27001 does not prescribe how to define information labeling, so your proposed scheme is acceptable by the standard (i.e., keep “Internal use” information unlabeled, and label public information as public).
These articles will provide you a further explanation about information classification:
These materials will also help you regarding information classification:
I’m assuming you are asking for tools and approaches for asset inventory and risk analysis.
Considering that, it is our policy not making recommendations about tools or technologies.
Regarding the approach for risk analysis, the most common approach used for information security based on ISO 27001 is the asset-threat-vulnerability approach.
For more information, see:
To see a template of risk assessment compliant with ISO 27001, see this link:
As for asset inventory, ISO 27001 does not prescribe an approach for asset inventory. Actually, the inventory of assets is not needed, especially when companies are implementing the standard for the first time - it is enough to develop a list of assets for the Risk assessment, and once this is done this list is simply copied to Inventory of assets.
To see a template of inventory of assets compliant with ISO 27001, see this link:
This article will provide you a further explanation about the inventory of assets:
These materials will also help you with these activities:
You can find a set of guidelines for controlling external documents in this article - What does “external documents control” mean in ISO 9001? - https://advisera.com/9001academy/blog/2019/02/04/what-does-external-documents-control-mean-in-iso-9001/
You can find more information below:
First is important to note that major/minor nonconformities are normally used only for certification/surveillance audits of certified ISO management systems. Internal audits in general use the ratings you mentioned.
Considering that, major nonconformities would compare to high rating, while minor nonconformities could be compared to low or medium rating, depending on criteria used by the organization.
As for Opportunities For Improvement (OFIs), they should be rated considering criteria adopted by the organization to evaluate their potential benefits (i.e., they could be rated low, medium, or high).
These materials will also help you regarding NC and OFI ratings:
Please note that since the year 2000 ISO 9001 is no longer about quality assurance, but about quality management.
An organization with a quality management system should have a quality policy. A quality policy is a set of intentions and directions for an organization as determined by top management.
You will not see this in ISO 9001:2015, this is my practice. When I work with an organization’s top management in developing their quality policy I recommend thinking about some questions:
After discussing the questions and answers and after arriving at some consensus, I invite the organization to write a text with the following structure:
The following material will provide you more information about the quality policy:
Change control is very important in ISO 17025, as with any management system. In ISO 17025 it is typically managed at the activity level, for example Data, Information, Document and Record management; or ensuring validity of results. The scope of ISO 17025 is the competence, impartiality, and consistent operation of laboratories. To achieve stability and consistent operation, risks and opportunities must be managed. This means that any changes for management and technical activities must be planned, controlled, and coordinated. For example, changing a supplier of a critical chemical reagent could invalidate a method if the risk is not considered and the impact of the new chemical supply not evaluated.
For more detail on what is required for ISO 17025, read the whitepaper Clause-by-clause explanation of ISO 17025:2017 available for download from https://advisera.com/17025academy/free-downloads/ and preview the toolkit at https://advisera.com/17025academy/iso-17025-documentation-toolkit/
La implementación de ISO 14001:2015 en una empresa minera es igual que en otro tipo de sectores, teniendo en cuenta que en el caso del sector de la minería se emplean muchos recursos naturales y por lo tanto hay número de aspectos ambientales e impactos significativos para los cuales se tendrán que implantar los consecuentes controles operacionales.
También es importante destacar la necesidad de estar al día en cuanto a los requisitos de cumplimiento, especialmente regulatorios, que son bastante numerosos en el sector de la minería, pero también aquellos relacionados con los requisitos contractuales
En primer lugar es muy importante contar con el apoyo lo de la alta dirección, que va a facilitar los recursos tanto de personal como económicos para poder llevar a cabo el proyecto de implementación.
Más adelante puede llevar a cabo un análisis de brecha (o GAP, por sus siglas en inglés) que le ayudará a identificar aquellos requisitos con los que la organización aún no cumple. Esto le va a facilitar la implementación ya que reducirá significativamente el tiempo de implementación. Aquí puede llevar a cabo el análisis de forma gratuita - Herramienta de análisis de brecha en ISO 14001: https://advisera.com/14001academy/es/herramienta-gap-analysis-iso-140012015/
También le recomiendo que defina un plan de proyecto, donde determine las responsabilidades, hitos durante la implementación, plazos, etc. Aquí puede descargar de forma gratuita un plan de proyecto - Project Plan for ISO 14001:2015 implementation: https://info.advisera.com/14001academy/free-download/project-plan-for-iso-140012015-implementation-ms-powerpoint
Más tarde ya podrían empezar con lo que es la implementación en sí de la norma, definiendo el alcance del Sistema de Gestión Ambiental, para lo cual le recomiendo que primeramente de las cuestiones internas y externas del contexto de la organización, ya que le puede ser de gran ayuda a la hora de saber cuáles van a ser los límites de su SGA. A continuación, puede determinar tanto la política de su SGA así como los objetivos del SGA. Aquí puede obtener más información de cómo definir el alcance de su SGA - How to determine the scope of the EMS according to ISO 14001:2015: https://advisera.com/14001academy/blog/2016/02/01/how-to-determine-the-scope-of-the-ems-according-to-iso-140012015/
Más adentante, deberá de establecer todos los procesos relacionados con el sistema e implentarlos para finalmente realizar la auditoría interna y finalmente llevar a cabo la revisión por la dirección.
Estos materiales pueden ayudarle a saber cuáles son los pasos en la implementación de ISO 14001:2015:
- Why mining companies should obtain ISO 14001 certification: https://advisera.com/14001academy/blog/2018/04/17/why-mining-companies-should-obtain-iso-14001-certification/
- Artículo: Lista de pasos para la implementación de la ISO 14001: https://advisera.com/14001academy/es/knowledgebase/lista-de-pasos-para-la-implementacion-de-la-iso-14001/
- Curso gratuito - Fundamentos de ISO 14001:2015: https://advisera.com/training/es/course/curso-fundamentos-iso-14001/
- Libro - The ISO 14001:2015 companion: https://advisera.com/books/the-iso-14001-2015-companion/
You asked
....what all documents would we need in term of testing for the said methods? for example, do I need to validate/ verify these methods?
Yes, you do need to validate all test methods that are going to be on your scope of accreditation. You need to meet requirements of ISO 17025 clauses 7.2 and 7.6 for this activity
You would need to include at least all mandatory procedures and records.
See the Whitepaper Checklist of mandatory documents required by ISO 17025:2017
For more detail on what is requires, read the whitepaper Clause-by-clause explanation of ISO 17025:2017
Both are available for download from https://advisera.com/17025academy/free-downloads/
You asked How?
The ISO 17025 toolkit includes the procedure for validation and verification of methods, named Test and Calibration Method Procedure, along with two supporting documents Test Method Development, Verification and Validation Register and Test Method Development, Verification and Validation Record. The procedure is also available separately at https://advisera.com/17025academy/documentation/test-and-calibration-method-procedure/
The overall techniques for method validation are listed as well as the required records. It is the responsibility of the laboratory to choose the suitable technique and performance parameters, plan experiments and use suitable calculations. This is not in the scope of the toolkit. It is important to reference sector specific guidelines and meet specific regulatory and accreditation body requirements.