If the business is going with ISO 27001 External Audit by Certification authority, and the Auditor finds on the first day of Stage 1 audit that all mandatory documents are available with right information, except Internal audit was not performed by the client so no document related to Internal Audit Program, or Record available.
My opinion says it is a failed audit with major non conformity at Stage 1 Audit as mandatory requirement of Internal Audit was not performed. Should the Auditor stop the audit after notifying the client? Could you please suggest your opinion on this? Can the auditor suggest that the client undergo ISMS implementation training?
Your response will be highly appreciated.