Answer: The internal audit checklist is based on the clauses of the standard, but you are free to include additional questions (e.g., questions that would cover controls not listed on ISO 27001 Annex A), or change the existing ones if you understand another text will make the checklist cover the requirements of the company own documentation.
Answer:
The AS9100 Rev D standard follows the PDCA cycle very well, and has been written in this order. Plan is covered by Sections 4(context), 5(leadership) & 6(planning). Do is covered by Sections 7(support) & 8(operation). Check is covered in section 9 (Performance evaluation). Act is covered in section 10 (improvement)
For more on how this works see this article: https://advisera.com/9100academy/knowledgebase/pdca-cycle-in-as9100-rev-d/
Can you certify to AS9102?
Answer:
Unlike AS9100, you cannot be certified against AS9102. AS9102 is a support standard that gives you the best practice for First Article Inspection, but is not required for AS9100 certification, nor is it designed to be certified against.
If you want to know more about the support standards for AS9100 see this article: https://advisera.com/9100academy/blog/2017/10/23/how-does-as9101-as9102-as9103-relate-to-as9100-rev-d/
Certification and compliance
Answer:
Each country has its own legislative and regulatory framework. Normally, in Europe there is no requirement for certification. About chemical compounds to introduce in the European Union you should check Regulation (EC) No 1907/2006.
Certification scope
Answer:
I understand that you are asking if your organization should certify the remaining 8 branches that are not yet certified. The scope of implementation it is not a technical decision, it is a business decision based on your business objectives:
- If the certificate is required by some of your customers, then those customer probably defined what should be the scope
- Sometimes it is not possible to exclude some of the departments/locations/organizational units outside of the scope because they are too crucial part of the process
- Sometimes it is desirable to exclude some of the departments/locations/organizational units because they are not important for e.g. QMS.
Once your organization decide this, then you can go and make an arrangement with the certification body about the scope of certification. The main concern of the certification body is t he avoidance of misleading information.
Continuous improvement, or Kaizen, is a method for identifying opportunities for streamlining work and reducing waste. The practice was formalized by the popularity of Lean / Agile / Kaizen in manufacturing and business, and it is now being used by thousands of companies all over the world to identify savings opportunities.
Continuous Improvement is an evolutionary process. But extraordinary threats and opportunities require a revolutionary, targeted response. When an organization needs to act quickly to ramp up production, reduce costs, or meet other extraordinary changes or goals is where the step change improvement comes to action.Step change improvement is a significant change in policy or attitude, especially one that results in an improvement or increase.
How to become GDPR expert
Sure, our DPO course will include the certification exam.