Start a new topic and get direct answers from the Expert Advice Community.
CREATE NEW TOPIC +Guest
... ISO 9001 vs IATF 16949 What is the difference: https://advisera.com/16949academy/blog/2019/11/19/iso-9001-vs-iatf-16949-what-is-the-difference/
Please consider the following materials that may help:
I recommend the IATF 16949 Documentation Toolkit: https://advisera.com/16949academy/iatf-16949-2016-documentation-toolkit/
Checklist of IATF 16949:2016 implementation steps: https://advisera.com/16949academy/knowledgebase/checklist-of-iatf-16949-2016-implementation-steps/
List of mandatory documents required by IATF 16949:2016 https://advisera.com/16949academy/knowledgebase/list-of-mandatory-documents-required-by-iatf-16949-2016/
How to structure IATF 16949:2016 documentation https://advisera.com/16949academy/knowledgebase/how-to-structure-iatf-16949-2016-documentation/
... base/how-to-define-the-isms-scope/
- Defining the ISMS scope if the servers are in the cloud https://advisera.com/27001academy/blog/2017/05/22/defining-the-isms-scope-if-the-servers-are-in-the-cloud/
- Disaster recovery vs Business continuity https://advisera.com/27001academy/blog/2010/11/04/disaster-recovery-vs-business-continuity/
I am assuming that you are referring to ISO 9001 certification. Congratulation on certification!
There is no restriction prior to IATF certification, just make sure you are aligned with all its requirements.
For more information, take a look at our article: ISO 9001 vs IATF 16949 what is the difference: https://advisera.com/16949academy/blog/2019/11/19/iso-9001-vs-iatf-16949-what-is-the-difference/
Article Checklist of IATF 16949:2016 implementation steps, also, may help:
https://advisera.com/16949academy/knowledgebase/checklist-of-iatf-16949-2016-implementation-steps/
I consider applying for ISO9001-2015, the information is overwhelmed
as there are too many agents here with different saying
some said agents can't directly issue ISO9001-2015 certification
but some said they can directly issue ISO9001-2015 accredited by IAF.
... t to sign DPAs with us. Is this ok? Are couriers processors?
... >... 7001 and ISO 27799 complement each other in health organizations https://advisera.com/27001academy/blog/2016/06/13/how-iso-27001-and-iso-27799-complement-each-other-in-health-organizations/Â
... ssessment vs. business impact analysis https://advisera.com/27001academy/knowledgebase/risk-assessment-vs-business-impact-analysis/
... ontroller vs. processor – What are the differences? (https://advisera.com/eugdpracademy/knowledgebase/eu-gdpr-controller-vs-processor-what-are-the-differences/)
3. Do I need to register somewhere if I process personal data?
The registration to local Supervisory Authorities is not required under the GDPR however, this can be regulated by local legislation. I would advise you to check the website of the Supervisory Authority where your company is registered.
4. Are there any specific requirements for handling data of children?
There are some specifics that involve the permission of the parents or legal guardians. However, since you are acting as a processor as long as you process the data on the instructions of the controllers you should not be concerned.
5. During the events sometimes my crew takes pictures and posts it on social media. Are there any restrictions?
I would advise blurring the faces of the children when posting pictures on social media. Alternatively, you could obtain consent from the parents of the children in the photo.
6. How much time do I need to keep the lists whit the children`s names and age?
I would delete the data right after using it during the show. You do not need it afterwards and keeping it would expose you to unnecessary risks.
If you want to find out more about the EU GDPR check out this EU GDPR Foundation Course (https://advisera.com/training/eu-gdpr-foundations-course//)
... ce visits vs. certification audits https://advisera.com/27001academy/knowledgebase/surveillance-visits-vs-certification-audits/
2. How long does it take to complete the surveillance audit with regard to the initial certification audit duration?
The total days to complete a surveillance audit will depend on the defined ISMS scope (e.g., number of locations, number of employees, etc.), so without detailed information, we cannot provide a precise answer for your case.
As a general example, we can say that if the certification audit took 5 days to be performed, the surveillance audits will take between 2 to 3 days.