HomeFrameworksQuality & ManufacturingISO 9001Explained simply

Plain English  ISO 9001

ISO 9001, explained simply

A customer has asked you for an ISO 9001 certificate and you are not sure what that is. This page answers that, in plain words, before you read anything technical.

Already know the basics? Go to the full ISO 9001 page →

Sponsored
Find
help
Consultants  Assessors  Quotes
Matched3 quotesread by a human
The Shortlist is Yoursfrom this directory
Compare the Modern WayFind the right firm
01
Verified listings first
Unverified ones follow, labeled
02
Published prices where they exist
“Quote only” where we confirmed it, “Not published” where we have not
03
Up to three quotes, one form
Firms don’t see you until you choose
House ad. This slot is open to firms listed for this page. Get help Advertise here

The problem it is meant to solve

Most businesses do good work most of the time. The trouble is the rest of the time. An order goes out wrong, a part fails, a customer is unhappy, and nobody can say exactly why.

Was it the new supplier? The person who was off sick? The change somebody made to how a job is done, that nobody wrote down?

ISO 9001 is a way of running an organisation so that good results happen on purpose instead of by luck, and so that when something does go wrong you can find the reason and stop it happening again.

What it actually asks you to do

Underneath all the formal language, the shape of it is short. Write down how the work is really done. Decide who is responsible for what.

Check whether it is working. Fix what is not working. Then do all of that again next year, and the year after.

That is the whole idea. Everything else is detail about how to write it down and how to prove you did it.

What it is not

It is not a law. No government fines you for not having it. It is voluntary, and plenty of good companies never get it.

It is also not a promise that your product is good. It is about whether you run a consistent, checkable process. A certified company can still ship a bad part.

What it cannot do is ship a bad part and have no idea how that happened.

What it looks like in a real company

Take a metal parts shop with sixty staff. A car parts buyer tells them: we only buy from certified suppliers, send us your ISO 9001 certificate. The shop does not have one.

So they bring in a consultant. They spend a few months writing down what they already do, because almost none of it was written down. They train two people to audit their own work.

An outside firm then visits twice, once to read the paperwork and once to watch the work happen, and issues a certificate that lasts three years with a shorter check-in each year in between.

Nothing about how they cut metal changed. What changed is that it is now written down, checked regularly, and provable to a stranger who has never set foot in the building.

Who deals with it day to day

Usually one person ends up owning it, often called the quality manager. In a smaller company that is someone who already has another full job.

Around them are the people who actually follow the written procedures, the managers who have to sit down once a year and review how the whole thing is going, and the salesperson who gets asked for the certificate every time a big customer runs a tender.

Why a business bothers

Almost always because a customer asked. It turns up as a condition in tenders and in supply chain requirements, and without it you are simply not on the list.

The second reason, which companies tend to notice later, is that they stop making the same mistake repeatedly. That is the part that pays for itself, but it is rarely why anyone starts.

Who writes it and who checks it

Three different organisations are involved, and keeping them apart is the point.

The International Organization for Standardization writes the standard. It does not certify anybody.

A separate company, usually called a certification body or a registrar, audits you and issues the certificate.

And a third organisation checks that the certification body is doing its job properly. That is why a certificate from an accredited body means something, and why one bought cheaply from an unaccredited one does not.

Where it leads next

If you work in aerospace, cars, or medical devices, your industry has built its own standard on top of this one. Those industries expect the sector version rather than the general one.

That is why ISO 9001 is so often described as the first step. Learning how it works teaches you the pattern that most other management standards follow.

Need a hand implementing it?

Find a Consultant Who Does This Work

Tell us what you need done and we will point you to firms that do this work. Your details go to a firm only when you choose it.

From the publisher

Keep Your Written Policies in One Place

Whatever you are working toward, AllyMatter gets your policies approved, keeps every version and records who has read each one.

See how AllyMatter works From $29/mo, 20 editors, unlimited staff

About this data

Pages on this site are compiled with AI from two or more linked sources, rewritten in our words, and reviewed by people in stages. Each record shows its stage and date. Nothing here is legal, audit or tax advice, and policyandcompliance.com accepts no responsibility for errors or for decisions made on it. Read the source, then decide.
How we compile and verify →

Think something is wrong?

[email protected]
Tell us the page and what you found. We check it against the source and fix it.
Corrections log →

Want to advertise here?

[email protected]
A primary ad and a secondary placement, flat fee. Buying one changes nothing else on the page.