Expert Advice Community

Guest

About the risk-based approach

  Quote
Guest
Guest user Created:   Jan 15, 2018 Last commented:   Jan 15, 2018

About the risk-based approach

"I'm assisting the executives within an organisation who is transitioning to ISO 9001:2015. I’m confused as to whether a ‘risk’ is a broad term encapsulating corporate risks (changing legislation, building damaged, competitors, digital innovation/automation, etc – that are mitigated by a DRP and the purposes of some of the departments such as compliance, HR and IT), or is 9001 about identifying and acting upon specific identified risks (an actual known specific legislation change, not having a DRP at all, a forced specific system enhancement that may negatively impact sales, etc). I’m assuming the latter, as a strategic plan would address the former? Please confirm”
0 0

Assign topic to the user

ISO 9001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

ISO 9001 DOCUMENTATION TOOLKIT

Step-by-step implementation for smaller companies.

Expert
Carlos Pereira da Cruz Jan 15, 2018

Answer:

Please, consider first ISO 9000:2015 definition of risk: “effect of uncertainty on an expected result”. Because from this definition I always start by the expected results of an organization, and they can be at a general level (for example, the organization’s budget for this year – what can contribute to not achieving it?) or at departmental or process lev el (for example, launching of new products this first semester - what can contribute to not achieving it?). I would work with both approaches that you mention, but considering that a more mature management system should have already built in several mechanisms to handle your second approach, that means that more emphasis could be made on the first one.

The following material will provide you information about the risk-based approach:

ISO 9001 – How to address risks and opportunities in ISO 9001 - https://advisera.com/9001academy/blog/2016/06/21/how-to-address-risks-and-opportunities-in-iso-9001/
Risk-based thinking replacing preventive action in ISO 9001:2015 – The benefits - https://advisera.com/9001academy/knowledgebase/risk-based-thinking-replacing-preventive-action-in-iso-90012015-the-benefits/
ISO 9001:2015 Risk Management Toolkit - https://advisera.com/9001academy/iso-90012015-risk-management-toolkit/
free online training ISO 9001:2015 Foundations Course – https://advisera.com/training/iso-9001-foundations-course/
book - Discover ISO 9001:2015 Through Practical Examples - https://advisera.com/books/discover-iso-9001-2015-through-practical-examples/

Quote
0 0

Comment as guest or Sign in

HTML tags are not allowed

Jan 15, 2018

Jan 15, 2018

Suggested Topics

Guest user Created:   Dec 31, 2019 ISO 9001
Replies: 1
0 0

Risk & Opportunity Management

Guest user Created:   Dec 13, 2019 ISO 9001
Replies: 1
0 0

Risk and opportunities in QMS

Guest user Created:   Nov 20, 2019 ISO 9001
Replies: 1
0 0

Customer complaint as a non-conformity