ISO 9001:2015 Exam Questions Guide

0% found this document useful (0 votes)
577 views17 pages
This document contains an examination for an ISO 9001:2015 QMS Lead Auditor Training Course. It consists of three sections. Section 1 contains 5 questions worth 2 marks each about evidence-b…

Uploaded by

bprajhr3226
  • Section 1
  • Section 2
  • Section 3
  • Section 4

Examination Paper-v3.

2c

ISO 9001:2015QMS-Lead Auditor Training Course

Name of Delegate: _Abhijeet A. Kshirsagar________

Date of Examination: _01/08/2022____

Section 1
Five questions, each two marks – maximum 10 marks

a) ISO 19011:2018 Clause 4 provides guidelines on ‘Evidence based approach’.


EXPLAIN in your own words on these guidelines. (2 marks)

Evidence based approach means that the evidence collected during audit should be verifiable and should
be based on samples of information available. This information must be gathered by using appropriate sampling
methods as the audit is conducted during a limited period of time and with limited resources.
__________________________________________________________________________________

___________________________________________________________________________________________________________________________________

___________________________________________________________________________________________________________________________________

b) DESCRIBE in your understanding on Audit Conclusion(2 marks)

_Audit conclusion can be described as outcome of an audit, after consideration of all audit

objectives and audit findings. In other words, it is the result of audit based on audit findings
and
objectives._______________________________________________________________________
____

_________________________________________________________________________________

_________________________________________________________________________________

_________________________________________________________________________________

c) LIST 6 factors that should be addressed in an Audit Plan as given in ISO 19011 > Clause
[Link]. (2 marks)

a) The audit objectives;


b) The audit scope, including identification of the organization and its functions, as well as
processes to be audited;

Page 3 of 16
c) The audit criteria and any reference documented information;
d) The locations (physical and virtual), dates, expected time and duration of audit activities to be
conducted, including meetings with the auditee’s management;
e) The need for the audit team to familiarize themselves with auditee’s facilities and processes
(e.g. by conducting a tour of physical location(s), or reviewing information and communication
technology);
f) The audit methods to be used, including the extent to which audit sampling is needed to obtain
sufficient audit evidence;
__________________________________________________________________________

__________________________________________________________________________

__________________________________________________________________________

__________________________________________________________________________

Page 3 of 16
d) As per ISO 19011 > Clause 4, briefly EXPLAIN your understanding on Risk-based
approach in auditing. (2 marks)

A risk based approach to audits enables the auditors to identify risks correctly and allows management to
put the right internal controls in place for the best performance. This provides us with a better
understanding of the risks and enables us to manage risks in a better
way._______________________________________________________________________________
________________________________________________________________________________
__________________________________________________________________________________

__________________________________________________________________________________

e) ISO9001:2015>Clause 10.2 addresses Corrective action. EXPLAIN your understanding on


corrective action in ISO 9001:2015. (2 marks)

Corrective action is described as action to eliminate the cause of a nonconformity and to prevent its
recurrence. In other words, it is the step taken to correct the process or work activity that was a nonconformity.

 For eg: Redesigning or replacing equipment, installation of alarms, signals etc.


__________________________________________________________________________________

__________________________________________________________________________________

__________________________________________________________________________________

__________________________________________________________________________________

Page 3 of 16
Section 2
Four questions, five marks each – maximum 20 marks

1) ISO 19011 in clause # 6.4.10 outlines the details of Closing Meeting. LIST an Agenda for Closing
Meeting with 8 points(5 marks)

1. Informing the client on the good practices


2. A summary of the review findings
3. A list of problems identified and their descriptions
4. Clarification of any concerns
5. Summarizing and the inclusion points agreed upon
6. The Closing and Record of thanks to all the participants
7. Saving the audit findings as records
8. The method of reporting

2) You are the QMS Lead auditor conducting a 2-day ISO 9001:2015 Certification
audit in a large Food Manufacturing organization; During the Opening Meeting, the
Executive Director presents a new laptop to each of your auditor team conveying
that the laptop contains ISO Standards, and also complete set of Controlled
documentation related to their organization; He also adds that you and your team can
keep the laptop for your use after the audit since it is a matter of goodwill from their
organization.

DESCRIBE how you would respond to this situation. (5 marks)

I will responds to this situation as below:


Thankyou sir for your kind gesture. As per our company’s code of conduct, we are not allowed to accept any
gifts from clients. As I am bound to my company’s policy, I cannot keep this laptop with me after the audit is
over. I can use it during the audit process as it contains the audit related information which will be useful for
me to conduct the audit.
As mentioned above, I will not accept the laptop as a gift and deny it politely.
______________________________________________________________________________

______________________________________________________________________________

______________________________________________________________________________

______________________________________________________________________________

______________________________________________________________________________

______________________________________________________________________________

Page 12 of 16
3) LIST 4 benefits of implementing ISO 9001:2015. (5 marks)

Following are the benefits of implementing ISO 9001:2015:

1) The ability to consistently provide products and services that meet customer and applicable statutory

and regulatory requirements.

2) Facilitating opportunities to enhance customer satisfaction

3) Addressing risks and opportunities associated with its context and objectives

4) The ability to demonstrate conformity to specified quality management system requirements. This

International Standard can be used by internal and external parties.

______________________________________________________________________________

______________________________________________________________________________

______________________________________________________________________________

4) BRIEFLY DESCRIBE your understanding on ISO 9001:2015 > Clause 4.2 on


Interested parties. (5 marks)

The ISO 9001:2015 standard talks about understanding the needs and expectations of interested parties in clause 4.2,
Justification for this is that interested parties will have an impact on the organization’s ability to provide products and
services that consistently meet customer needs and legal requirements. The requirements are to determine
what interested parties are relevant to the QMS, and the requirements of these parties that can affect the QMS.

This information, especially the requirements from interested parties, is used throughout the QMS, so it is important to
gather all the information that is needed.

Examples of interested parties are:

1) Customers
2) Suppliers
3) Employees
4) Shareholders
5) Governments & non-government organizations

Page 12 of 16
Section 3
Three questions worth 10 marks each – maximum 30 marks

3.1 You are carrying out a Certification audit on ISO 9001:2015 in a fully networked
Trading organization having 68 employees. Your next schedule in the audit is to audit
the Top Management on QMS Policy and Management Review.

FURNISH an Audit Checklist, with 6 audit checkpoints. (8 marks)

Audit checklist:

Clause # What to query What to look for (as evidence)


7.2 Has the organization Interviews,
b ensured that people are competence
competent based on mapping, skill
appropriate education matrix, eligibility
training, or experience matrix, training
records, training
needs, education,
job description
7.3 Has the quality policy has Display boards,
a ensured that persons training records,
doing work under the Interviews,
organization’s control are Emails to
aware of the quality policy employees
5.1. Has the top management Risk and
1d ensured the use of process opportunities
approach and risk-based register, Process
thinking? plans with PDCA
cycle
5.1. Has top management Risks and
2b ensured the risks and opportunities
opportunities that can register, Process
affect conformity of plans with PDCA
products and services and cycle, customer
the ability to enhance satisfaction
customer satisfaction are reports
determined and
addressed?
6.1. Has the organization Risk and
1a determined the risks and opportunities
opportunities that need to resister, Quality
be addressed to give objectives review
assurance that the quality records
management system can
achieve its intended results
6.1. Has the organization Risks and
2a planned the actions to opportunities

Page 12 of 16
address the risks and register, Process
opportunities? plans with PDCA
cycle
9.1. Has the organization Monitoring and
3e analyzed and evaluated measurement
appropriate data and records, Risk and
information arising from opportunities
monitoring and register.
measurement to evaluate
the effectiveness of actions
taken to address risks and
opportunities?

Page 12 of 16
3.2 You are the lead auditor responsible to conduct Opening Meeting for a
certification audit next week. PREPARE an Agenda covering 5 factors for
conducting Opening Meeting as per ISO 19011 > Clause 6.4.3. (10 marks)

Agenda for conducting Opening Meeting:

1) Introduction of the Audit team, Auditee’s management and other participants including observers and guides,
interpreters, and an outline of their roles.
2) Confirmation of audit plan and other relevant arrangements with the auditee, such as the date and time for the
closing meeting, any interim meetings between the audit team and the auditee’s management and any changes
needed.
3) Confirmation of the audit objectives, scope and criteria should be considered.
4) Confirmation of the language to be used during the audit.
5) Confirmation of the matters relating to confidentiality and information security.
6) Confirmation of availability of resources and facilities needed by the audit team.
______________________________________________________________________________

______________________________________________________________________________

______________________________________________________________________________

______________________________________________________________________________

______________________________________________________________________________

______________________________________________________________________________

______________________________________________________________________________

______________________________________________________________________________

Page 12 of 16
3.3 For the next Surveillance audit, the auditee management of a major retail chain
has set the Audit Objective as ‘managing risk’ in ISO 9001:2015 in all the process
areas.

You are an auditor of the Certification body.

PREPARE an Audit Checklist, with 5 audit checkpoints. (10 marks)

Audit checklist:

Clause # What to query What to look for (as evidence)


6.1 Check with the relevant auditee whether the
related risk has been
Risks and opportunities
register
identified/determined.

6.1. if the risk has not been identified or if the


organization has no established process for
Risks and opportunities
register
2 ‘action to address risks and
opportunities.

6.1. Check the competence of the personnel


responsible for managing risks that
Risks and opportunities
register
2a completed the risk identification in the area in
which the hazard was found

6.1. Check how long the hazard has been present.


If this is a new hazard
Risks and opportunities
register
2b determine why the hazard was not identified.

Page 12 of 16
Section 4
Three questions worth 10 marks each – maximum 30 marks

DELEGATES TO WRITE EITHER A NONCONFORMITY REPORT OR AUDIT INVESTIGATION

Questions in this section are designed to test your ability to analyse audit situations, evaluate
audit evidence and apply knowledge of the audit criteria correctly.

Delegates are required to either

Complete the nonconformity report template.

Scoring pattern for writing nonconformity:

For correctly identifying the scenario as a nonconformity (2 marks)

For a clear description of the nonconformity (3 marks)

For correctly quoting relevant evidence (3 marks)

For correctly identifying the relevant Clause of Audit Criteria (1 mark)

Overall clarity of the nonconformity report (1 mark)

Note: If the delegate writes a nonconformity report when there is no nonconformity,0(zero) marks
will be awarded.

OR
Complete the audit investigation template, clearly stating:

The reason(s) for considering there is not yet sufficient evidence to report their findings as
nonconformity (2 marks)

How the delegate would investigate to determine conformity or nonconformity, including audit trails
they would follow and specific examples of audit evidence they would seek and for what purpose.
(8 marks)

Note: If the delegate completes the audit investigation template for a situation where there is
evidence that nonconformity exists, a maximum of 7 marks will be awarded as follows:

a) Providing a valid reason why there is insufficient evidence for a nonconformity (2 marks)

b) Providing relevant audit trails as above. (5marks)

Page 12 of 16
4.1 – Audit situation one:

As a QMS auditor of a Certification body auditing a leading textile manufacturing


organization, your next schedule is to audit Recruitment Manager.

To your query on ‘how competence of employees is carried out at the time of recruitment or
transfer of employees or promotion of employees’, HR Manager replies that the related
Process Owner conveys telephonically the requirements to respective HR Executives to
arrange obtaining profiles. HR, then carries out initial screening; Subsequently, the Process
Owner organizes Technical Interviews, and shares his ‘List of selected candidates’ and the
HR Deptt., issues Letter of Offer.

When you seek related records of a sampled Role of ‘Consultant (Functional-MM), HR


Manager provides a Letter of Offer duly accepted by the candidate, and adds that the
Management has instructed that there are no other records considered necessary to be
maintained since the Managing Director approves all recruitments or transfers or promotions.

You observe that the auditee organization has no records on determination of competence.

NONCONFORMITY REPORT-1

1) Description of nonconformity:

____The organization has failed to maintain the records determining the competency of its
employees____________________________________________________________________________

_____________________________________________________________________________________

2) Relevant Evidence: During sampling audit of ‘Consultant (Functional-MM), only the employee
offer letter was provided. Other important documents such as educational certificates,
experience letters, competency skills records were missing.

__________________________________________________________________________________

3) ISO 9001:2015 Clause/requirement: 7.2 (d)


_______________________________________________________________________________

OR

Page 12 of 16
Audit investigation-1:

A. A. Reason for there is no sufficient evidence for non-conformity:

_________________________________________________________________________

__________________________________________________________________________

B. 4 Points of audit investigation (i.e., Audit Trail):(10 marks)

Audit Trail = (Clause # + What to query + What evidence to look for)

__________________________________________________________________________

__________________________________________________________________________

__________________________________________________________________________

______________________________________________________________________________

Page 12 of 16
4.2 – Audit Scenario-2:

As a QMS auditor of ISO 9001:2015 from a certification body auditing an organization


engaged in sea food processing industry, your next schedule in the audit is to audit the Top
Management on Clause # 9.3. The auditee responds that the Management Review normally
involves a Presentation displayed on the projector which includes ‘Timely delivery,
Improvement in Client base, Optimized Process Management, summary of incidents,
regulatory compliance reports, internal audits, 3rd party audit reports, and action taken on
continual improvement’.  

While asking on Continual improvement, the management appointee indicated that he has
been fully empowered by Board of Directors to make any improvement without incurring any
additional cost.

You review the Minutes of Management Review dated ddmmyyyy which reflects poor
financial status of the organization. The Minutes have been approved by the Managing
Director and has related Action Plan as well.

NONCONFORMITY REPORT-2

1) Description of nonconformity:

_____________________________________________________________________________________

_____________________________________________________________________________________

2) Relevant Evidence:

___________________________________________________________________________________

3) ISO 9001:2015 Clause/requirement:


_______________________________________________________________________________

OR
Audit investigation-2:

C. A. Reason for there is no sufficient evidence for non-conformity:

__There is no clear evidence of non conformity as most of the things are not clear
from minutes of management review. If the continual improvemt should take place
without any cost incurred, then still the Financial condition of organization is
poor._____________________________________________________________________
__

__________________________________________________________________________

D. 4 Points of audit investigation (i.e., Audit Trail):(10 marks)

Audit Trail = (Clause # + What to query + What evidence to look for)

As per clause 9.3.1


Top management shall review the organization’s quality management system, at
planned intervals, to ensure
its continuing suitability, adequacy, effectiveness and alignment with the strategic
direction of the
organization.
_______________________________________________________________________

__________________________________________________________________________

__________________________________________________________________________

______________________________________________________________________________
4.3 – Audit Scenario-3:

You are an auditor from a certification body auditing an Engineering company in its Outbound
Logistics division; In Dispatch area, you review the Outbound Delivery Note # 418 for Order
Number AW-523 for 25 numbers of Flanges, about to be dispatched to the customer.

On one of the sampled Flanges, you observe a sticker with a marking: “Inspection cleared”
with the signature of Inspection Supervisor (Employee ID: 21).

When you review the Procedure for Final Release of products (Procedure # F-INSP84), it
indicates that the Final Release Stickers must bear the signature of Manager-Inspection for all
outbound deliveries.

NONCONFORMITY REPORT-3

1) Description of nonconformity: The organization failed to follow the inspection standard


procedure during dispatch
_____________________________________________________________________________________

_____________________________________________________________________________________

2) Relevant Evidence: “Inspection cleared” sticker from Outbound Delivery Note # 418 for
Order Number AW-523 was having the sign of inspection supervisor (Employee ID: 21).
where as the standard dispatch procedure (# F-INSP84) clearly mentions that it should
have a signature of Manager – Inspection.
___________________________________________________________________________________

3) ISO 9001:2015 Clause/requirement: Clause 9.1: Monitoring, measurement, analysis and


evaluation
_______________________________________________________________________________

OR
Audit investigation-3:

E. A. Reason for there is no sufficient evidence for non-conformity:

_________________________________________________________________________

__________________________________________________________________________

F. 4 Points of audit investigation (i.e., Audit Trail):(10 marks)

Audit Trail = (Clause # + What to query + What evidence to look for)

__________________________________________________________________________

__________________________________________________________________________

__________________________________________________________________________

______________________________________________________________________________

END OF ISO 9001:2015 QMS LATC EXAMINATION PAPER v 3.2c

Common questions

Powered by AI

Auditors should adhere to ethical guidelines and decline any gifts that could lead to conflicts of interest, such as in the situation where auditors were offered laptops by a client. The correct response is to thank the client for their gesture but politely refuse to accept the gift after the audit due to company policies prohibiting acceptance of gifts. This maintains the integrity and independence of the audit process, ensuring impartiality and credibility in audit findings .

Five audit checkpoints for assessing risk management are: 1) Verification that the organization has identified pertinent risks and opportunities (Clause 6.1); 2) Checking the process for actions addressing risks and opportunities; 3) Evaluating the competence of personnel responsible for risk management; 4) Investigating how new risks are identified and addressed; 5) Ensuring organizational strategies align with their risk management process to achieve intended results. These checkpoints ensure the organization effectively manages and mitigates risks affecting its operations .

Implementing an ISO 9001:2015 quality management system benefits an organization by ensuring consistent delivery of products and services that meet customer and applicable statutory and regulatory requirements. It also enhances customer satisfaction by addressing risks and opportunities, demonstrating conformity to a recognized quality standard, and improving efficiency and effectiveness across the organization. This implementation can lead to increased market share, customer retention, and improved overall organizational performance .

Interested parties in ISO 9001:2015 play a crucial role because they can affect or be affected by the quality management system. Clause 4.2 emphasizes understanding the needs and expectations of interested parties, such as customers, suppliers, employees, and regulators. Recognizing these influences ensures the organization meets both customer needs and legal requirements effectively. The feedback and requirements from interested parties guide the organization in making informed decisions that improve their processes and quality management system .

An audit plan should include: 1) The audit objectives, which define what the audit intends to achieve; 2) The audit scope, including details about the organization, its functions, and the processes to be audited; 3) Audit criteria and any reference documents; 4) Details of the audit locations, dates, duration, and related meetings; 5) The necessity for the audit team to familiarize themselves with the auditee’s facilities; 6) The audit methods and extent of sampling required to obtain sufficient evidence. These elements ensure the audit is well-organized, thorough, and provides reliable results .

Corrective actions in ISO 9001:2015 Clause 10.2 involve identifying and eliminating the root cause of a nonconformity to prevent its recurrence. Such actions are crucial because they not only address immediate issues but also ensure long-term improvements by redesigning faulty processes or replacing equipment, for instance. By preventing recurrences, organizations can maintain compliance with quality standards and enhance customer satisfaction over time .

The 'evidence-based approach' in ISO 19011:2018 Clause 4 emphasizes that evidence collected during an audit should be verifiable, with information gathered through appropriate sampling methods. This ensures that the audit results are reliable and credible despite the constraints of time and resources. This approach influences the audit process by focusing on the collection of objective evidence to support findings and conclusions, making the process transparent and defendable .

An audit conclusion is derived after considering all audit objectives and findings. It is essentially the result of the audit and is based on the comprehensive assessment of the audit findings against the defined objectives. The audit ensures that all evidence is evaluated and conclusions are drawn impartially and systemically to represent the true status of the auditee's compliance with the audit criteria .

A risk-based approach in auditing is essential because it prioritizes the identification and management of risks that are most likely to affect the organization adversely. This approach allows auditors to correctly identify and evaluate risks, enabling management to implement effective internal controls to enhance performance. By focusing on the most significant risks, the organization can allocate resources more efficiently and improve the overall risk management process, leading to increased chances of achieving the organization’s objectives .

An agenda for an opening meeting should include: 1) Introduction of the audit team and participants to establish roles and communication protocols; 2) Confirmation of the audit plan and arrangements, including meeting schedules; 3) Clarification of the audit objectives, scope, and criteria; 4) Discussion of confidentiality and information security to set appropriate boundaries; 5) Ensure resources and facilities required by the audit team are available. These components foster clarity, mutual understanding, and effective communication between the auditee and auditors, contributing to a smooth audit process .

Page 3 of 16
Examination Paper-v3.2c
ISO 9001:2015QMS-Lead Auditor Training Course
Name of Delegate: _Abhijeet A. Kshirsagar_
Page 3 of 16
c) The audit criteria and any reference documented information;
d) The locations (physical and virtual), dates,
Page 3 of 16
d) As per ISO 19011 > Clause 4, briefly EXPLAIN your understanding on Risk-based 
approach in auditing.
(2 marks
Page 12 of 16
Section 2
Four questions, five marks each – maximum 20 marks
1) ISO 19011 in clause # 6.4.10 outlines the detai
Page 12 of 16
3) LIST 4 benefits of implementing ISO 9001:2015. (5 marks)
Following are the benefits of implementing ISO 9001
Page 12 of 16
Section 3
Three questions worth 10 marks each – maximum 30 marks
3.1 You are carrying out a Certification audit
Page 12 of 16
address the risks and 
opportunities?
register, Process 
plans with PDCA 
cycle
9.1.
3 e
Has the organization
Page 12 of 16
3.2 You are the lead auditor responsible to conduct Opening Meeting for a 
certification audit next week. PREPA
Page 12 of 16
3.3 For the next Surveillance audit, the auditee management of a major retail chain 
has set the Audit Objectiv
Page 12 of 16
Section 4
Three questions worth 10 marks each – maximum 30 marks
DELEGATES TO WRITE EITHER A NONCONFORMITY REPO

You might also like