FAQ

Frequently Asked Questions

Everything you need to know about ISO certification — from timelines and costs to audits and ongoing maintenance.

About ISO Certification

ISO certification is a formal recognition that an organisation complies with specific international standards set by the International Organisation for Standardisation (ISO). It demonstrates adherence to best practices in areas such as quality, security, and environmental management.

Yes, ISO certification is internationally recognised, making it beneficial for organisations that operate globally or want to enhance credibility in international markets.

An ISO certificate is valid for 3 years. However, the certification is subject to:

  • Annual surveillance audits in Year 1 and Year 2, to confirm continued compliance.
  • Recertification audit in Year 3 to renew the certificate for another cycle.
The Certification Process

The timeframe depends on factors such as your organisation's size, complexity, and current readiness. Generally, the process can take anywhere from a few months to over a year.

  1. Understand the relevant ISO standard requirements.
  2. Develop and implement a management system.
  3. Conduct internal audits and management reviews.
  4. Engage an accredited certification body for an external audit.
  5. Address any nonconformities identified.
  6. Receive certification upon successful audit completion.
  • Define your objectives and choose the right standard.
  • Train employees on ISO requirements.
  • Develop and document processes.
  • Conduct internal audits and address gaps.
  • Engage a consultant or accredited certification body for an external audit.

Hiring a consultant is not mandatory, but it can be very helpful. A consultant provides expert guidance, streamlines the process, and ensures compliance with ISO requirements — especially if this is your first time pursuing certification.

Audits & Compliance

Failing an ISO audit does not mean automatic disqualification. Organisations are given an opportunity to address nonconformities through corrective actions. Once issues are resolved, certification can still be achieved.

Yes. An organisation can lose its certification if it:

  • Fails to comply with standard requirements.
  • Does not maintain its management system.
  • Does not pass surveillance audits.
  • Is in breach of the certification body's terms and conditions.

No. The certification body (CB) and its auditors must remain independent and impartial when assessing your management system. Implementation support should come from a separate consultant, not the body conducting your audit.

Choosing a Standard

The best ISO standard depends on your business type and goals. Common options include:

  • ISO 9001 — Quality Management
  • ISO 14001 — Environmental Management
  • ISO 45001 — Occupational Health & Safety
  • ISO 50001 — Energy Management
  • ISO 27001 — Information Security Management
  • ISO 42001 — Artificial Intelligence Management

Consulting with an expert can help determine the most suitable standard for your specific needs.

Working with Havaya

We work alongside you from day one — not just during the audit. Our approach is systematic and hands-on: we help you understand requirements, build your management system, conduct readiness reviews, and prepare your team for external audit day.

Our goal is to make sure the path to certification is clearly understood from the outset, meets your expectations, and delivers real operational value — not just a certificate.

Costs & Timelines

The total cost varies based on several factors, including the scope of your management system, your organisation's size and complexity, and how close you are to meeting requirements when you start.

You should also budget for:

  • Copies of the relevant ISO standard.
  • Any process changes necessary to meet requirements.
  • Employee training, if needed.
  • Consulting fees and certification body fees.

The best way to get an accurate estimate is to get in touch with us directly for a no-obligation quote.

Still have questions? Let's talk.

Book a free 30-minute discovery call and we'll answer any questions specific to your organisation and industry.