FAQs

Is your site secure?

Yes. International Associates takes digital security extremely seriously. Our website is protected by industry-standard SSL (Secure Sockets Layer) encryption, ensuring that all interactions and data transmissions between your browser and our site remain private and secure.

Yes. International Associates (IA) is registered with the Information Commissioner’s Office (ICO) and is committed to maintaining your personal data with the highest level of security. We process and store all organisational and personal data in strict compliance with applicable data protection laws, including GDPR. Furthermore, all client data is strictly governed by our Terms and Conditions and the Rules of Certification. For further details, please refer to our Privacy Policy and Data Protection pages.

Our audit process follows a structured, transparent three-stage approach:
• Stage 1 (Document Review & Readiness): We evaluate your management system documentation, policies, and operational framework to confirm your readiness for the formal audit.
• Stage 2 (Operational Audit): Our qualified auditors conduct on-site or remote assessments, interviewing key staff and gathering evidence to evaluate compliance with relevant standards.
• Reporting & Certification: Upon completion, you receive a detailed audit report. If all requirements are satisfied, our independent certification decision body awards your certificate.

The duration depends on several key factors, including the size and headcount of your organisation, the complexity of your operations, the number of sites, and the specific standard being audited. IA calculates audit duration strictly according to international accreditation guidelines to ensure a fair and accurate assessment. We provide a precise timeframe during your initial quote.

Requirements vary depending on the scope and standard of the audit.
Generally, you will need to provide:
• Core management system documentation (policies, standard operating procedures, and process maps).
• Evidence of internal governance (e.g., internal audit records, management review minutes, and risk assessments).
• Operational records demonstrating policy execution (e.g., training logs, incident reports, and maintenance records).

Prior to your audit, your assigned auditor will provide a pre-audit checklist tailored to your specific standard.

Finding non-conformities is a natural part of the audit process and serves as an opportunity for continuous improvement:
Minor Non-Conformities: You will be requested to provide a Root Cause Analysis (RCA) and a Corrective Action Plan (CAP) within a defined timeframe. Once reviewed and accepted by the auditor, certification can proceed.
Major Non-Conformities: Certification cannot be issued immediately. You will need to implement corrective actions, followed by a desktop review or targeted follow-up audit to verify resolution.

The validity period depends on the specific standard, scheme, or audit type undertaken. Standard management system certifications typically operate on a multi-year cycle supported by periodic surveillance assessments, while other compliance schemes may require more frequent updates. The exact validity period and renewal schedule for your organisation will be clearly detailed in your formal proposal and certificate scope.

To maintain your certification throughout the cycle, your organisation must:
• Complete annual Surveillance Audits (conducted at Month 12 and Month 24) to confirm ongoing compliance.
• Inform IA of any major changes to your management system, site locations, or organizational scope.
• Undergo a formal Re-certification Audit before the end of the third year to initiate the next three-year cycle.