ISO Audit
We prepare firms for the ISO certification audit. We are not a certification body — we prepare; the final audit is done by Certind / TÜV / SRAC.
- Home
- ISO Audit
The 30+ years of audit experience belong to the firm's founder, now channeled through Sigma Archive Data SRL — founded 2022. Sigma is not a certification body; we prepare clients for the certification audit alongside Certind, TÜV or SRAC.
Four standards. Preparation, implementation, audit, surveillance.
An integrated management system built on documentation that serves the operation, not one that holds it back.
- /01Initial GAP analysis in the firm's context
- /02Implementation with documentation on real processes
- /03Internal audit before the external audit
- /04Team preparation for the certification audit
- /05Annual surveillance (year 2 + year 3)
- /06Recertification every 3 years
Four standards. One register.
These are not four separate projects — they are four chapters of the same integrated management system. Documentation that serves the operation, not one that holds it back.
Quality
Quality management — processes, non-conformities, corrective actions. The foundation on which the other three standards rest.
For firms that want structure, predictability, and access to public tenders.
INITIAL AUDIT · SURVEILLANCE · RECERTIFICATIONEnvironment
Environmental aspects management — waste, emissions, consumption. Legal compliance + continuous improvement.
For firms with environmental impact — manufacturing, construction, waste.
INITIAL AUDIT · SURVEILLANCE · RECERTIFICATIONOH&S
Occupational health and safety — risk assessment, training, incident reporting. Increasingly required in public tenders.
For firms with occupational health and safety obligations.
INITIAL AUDIT · SURVEILLANCE · RECERTIFICATIONInformation security
Information security management — technical + organisational controls + policies. Essential for any firm handling client data.
For firms that process sensitive data or work with the public sector.
INITIAL AUDIT · SURVEILLANCE · RECERTIFICATIONFive stages to certification and beyond.
From GAP analysis to recertification, in three years.
- 01Month 1-3
PREPARATION
GAP analysis, process mapping, management system design.
- 02Month 4
INTERNAL AUDIT
We run a full internal audit, identify non-conformities, correct them.
- 03Month 5-6
CERTIFICATION AUDIT
We assist at the audit with Certind / TÜV / SRAC. Response to non-conformities.
- 04Year 2
SURVEILLANCE 1
Annual surveillance audit with an external auditor.
- 05Year 3
RECERTIFICATION
Full recertification audit, the cycle begins again.


