ISO 17021-1 Consultant
If your organization audits and certifies management systems, accreditation to ISO/IEC 17021-1 is how you demonstrate competence, impartiality, and consistency to the market. Qualitcert is an independent consultancy that supports certification bodies through the preparation stages of that journey — from initial gap analysis and documentation through to internal audit and accreditation readiness.
We provide consultancy and implementation support only. We do not perform certification or accreditation activities, and accreditation decisions are made exclusively by the accreditation body you apply to, through its own independent assessment process.
ISO/IEC 17021-1:2015 is the international standard that sets out requirements for the competence, consistency, and impartiality of bodies providing audit and certification of management systems. It is the reference standard used by accreditation bodies when assessing certification bodies that issue certificates against management system standards such as ISO 9001, ISO 14001, ISO 45001, ISO/IEC 27001, ISO 22000, ISO 50001, and ISO 13485.
The standard is organized around a set of certification principles — impartiality, competence, responsibility, openness, confidentiality, and responsiveness to complaints — and expands these into requirement areas covering:
- General requirements — legal and contractual matters, management of impartiality, liability and financing
- Structural requirements — organizational structure, top management, and safeguards for impartiality
- Resource requirements — competence of personnel, auditor and technical expert qualification, use of external auditors and outsourcing
- Information requirements — publicly available information, certification documents, use of marks, confidentiality, and information exchange with clients
- Process requirements — application review, audit programme, initial audit stages, certification decisions, surveillance, recertification, special audits, changes to certification status, appeals, complaints, and records
- Management system requirements — either the standard’s own management system option, or a management system established in accordance with ISO 9001
ISO/IEC 17021-1 is supported by scheme-specific competence standards, including ISO/IEC 17021-2 (environmental management systems), ISO/IEC 17021-3 (quality management systems), ISO/IEC TS 17021-10 (occupational health and safety management systems), and ISO/IEC 27006 (information security management systems). Accreditation bodies additionally apply mandatory documents published by the International Accreditation Forum (IAF).
ISO and IEC standards are copyrighted publications. The summary above is our own plain-language description of the standard’s subject matter and does not reproduce its text. Licensed copies should be obtained from ISO or an authorized national standards body. Standards are periodically revised — always work from the current edition.
Preparing a certification body for accreditation is a different exercise from implementing a management system inside an ordinary organization. It requires you to design a demonstrably impartial certification process, define competence criteria for every scheme and technical area within your intended scope, determine audit duration on a defensible basis, and evidence that certification decisions are reached independently and consistently.
In our experience, certification bodies most often need support in the same areas: producing a credible analysis of threats to impartiality, establishing a functioning impartiality committee, building competence matrices that hold up under review, justifying audit time, and preparing audit teams for witness assessments, where an assessor observes a live client audit.
Independent consultancy support helps you approach these areas methodically, identify weaknesses in your own system before you submit an application, and present a complete, internally consistent management system to the accreditation body. The assessment outcome, however, always rests with the accreditation body alone.
Our ISO 17021-1 Consultancy Services
Gap Analysis
A structured review of your existing certification processes, organizational structure, personnel competence, and documentation against the requirements of ISO/IEC 17021-1 and the applicable IAF mandatory documents, delivered as a clause-by-clause gap report with a prioritized action plan.
Documentation Development
Development of a complete, customized documentation set — management system framework, impartiality policy and threat analysis, certification procedures, audit programme procedures, competence criteria, forms, checklists, and records — drafted around your own scopes and operating model rather than adapted from generic templates.
ISO 17021-1 Implementation
Practical support to put the system into operation: establishing the impartiality committee and its terms of reference, defining certification decision authority, building the audit programme, establishing a documented basis for audit duration, and operationalizing appeals and complaints handling.
Auditor Competence and Scheme Development
Definition of competence criteria for auditors, technical experts, application reviewers, and certification decision makers by scheme and technical area, together with evaluation methods, monitoring and witnessing arrangements, and the supporting competence records.
Impartiality and Risk Management
Identification and analysis of threats to impartiality — including self-interest, self-review, familiarity, intimidation, and relationship-based threats — with documented safeguards, ongoing monitoring, and a periodic review mechanism.
Internal Auditor Training
Training that builds in-house capability to audit your own certification body against ISO/IEC 17021-1, alongside auditor training aligned to the competence standards relevant to your certification schemes.
Internal Audit
Conducting or co-conducting the internal audit of your certification body’s own management system, covering the requirements of the standard across your active certification schemes and locations.
Accreditation Readiness Review
An internal readiness exercise — a documentation review together with a simulated witness audit — designed and run by Qualitcert to help you identify and close gaps before you submit an application. This is our own preparatory methodology and is not a replication of any accreditation body’s assessment.
Accreditation Preparation Support
Assistance in compiling your accreditation application and supporting documentation, preparing your team for the assessment, and developing root cause analysis and corrective action responses to any findings raised during the assessment process.
International Recognition
Accreditation granted by a body that is a signatory to the IAF Multilateral Recognition Arrangement supports international recognition of the certificates you issue.
Enhanced Client Confidence
Clients, regulators, and supply chain partners can place greater reliance on your certificates when your competence and impartiality have been independently assessed.
Credible and Consistent Certification Decisions
A defined competence framework and a documented decision process support consistent outcomes from comparable evidence, regardless of which auditor or reviewer is involved.
Stronger Impartiality and Risk Management
Documented threat analysis and safeguards protect the credibility of your certificates and reduce exposure to challenges, appeals, and reputational damage.
Increased Operational Efficiency
Standardized audit planning, duration setting, reporting, and record keeping reduce rework and administrative cost across the certification cycle.
Regulatory and Scheme Access
Accreditation is a prerequisite for participation in many regulatory, government, and industry certification schemes, and for a range of public tenders.
Market Differentiation
Accredited status distinguishes you from unaccredited certification providers and supports access to markets that accept only accredited certificates.
Continual Improvement
Surveillance assessments, internal audits, management reviews, and complaint analysis together create a structured improvement cycle within your certification operations.
We support certification bodies preparing for accreditation across management system schemes including:
- ISO 9001 — Quality Management Systems
- ISO 14001 — Environmental Management Systems
- ISO 45001 — Occupational Health and Safety Management Systems
- ISO/IEC 27001 — Information Security Management Systems
- ISO 22000 and FSSC 22000 — Food Safety Management Systems
- ISO 13485 — Medical Devices Quality Management Systems
- ISO 50001 — Energy Management Systems
- ISO 22301 — Business Continuity Management Systems
- ISO/IEC 20000-1 — IT Service Management Systems
- ISO 37001 — Anti-Bribery Management Systems
- ISO 55001 — Asset Management Systems
- ISO/IEC 42001 — Artificial Intelligence Management Systems
- ISO 21001, ISO 41001, and other emerging management system schemes
We work with new certification bodies preparing for first-time accreditation, established certification bodies extending their scope to additional schemes, and bodies changing accreditation body or responding to adverse findings.
Scheme availability differs from one accreditation body to another. Confirm the schemes covered by your chosen accreditation body directly with that body before planning your scope.
Choosing an Accreditation Body
Accreditation is granted by accreditation bodies that operate independently of the certification bodies they assess. Many are signatories to the IAF Multilateral Recognition Arrangement, which supports cross-border recognition of accredited certificates. Examples of IAF MLA signatories include ANAB (United States), NABCB (India), UKAS (United Kingdom), JAS-ANZ (Australia and New Zealand), and the International Accreditation Service (IAS).
When advising clients on which accreditation body to approach, we look at practical factors rather than promoting any particular one:
- Whether the schemes you intend to certify fall within that body’s published accreditation programs
- The geographic markets and sectors in which your clients need their certificates to be recognized
- Recognition arrangements the body participates in, such as the IAF MLA and relevant regional cooperations
- The published criteria and fee structures that body makes available to applicants
- Assessment timelines and resourcing implications for your organization
Each accreditation body publishes its own criteria documents, which are applied alongside ISO/IEC 17021-1 and the relevant IAF mandatory documents. One publicly available example is AC477, a criteria document published by IAS for management system certification bodies. We reference such documents only to help clients understand what they will need to prepare; we do not reproduce their content, and applicants should obtain them directly from the publishing body.
IAS independently evaluates all applications and makes accreditation decisions solely through its own assessment process. Requirements may change over time. Applicants should always refer to the latest official IAS publications, or to the current publications of whichever accreditation body they choose.
Our ISO 17021-1 Implementation Process
- Initial Consultation — understanding your intended scopes, target markets, existing resources, and timeline.
- Gap Assessment — clause-by-clause evaluation against ISO/IEC 17021-1, the applicable competence standards, and IAF mandatory documents.
- Implementation Planning — an agreed project plan setting out responsibilities, deliverables, and milestones.
- Documentation Development — management system framework, procedures, competence criteria, forms, and records tailored to your schemes.
- System Deployment — establishing the impartiality committee, decision-making structure, audit programme, and operational controls.
- Competence and Staff Training — qualifying auditors, technical experts, reviewers, and decision makers against your defined criteria.
- Internal Audit — a full internal audit of the certification body against the standard, including witnessing of your own auditors.
- Management Review — structured review of performance, impartiality, complaints, appeals, and improvement actions.
- Accreditation Preparation — support in compiling your application and supporting documentation for the accreditation body of your choice, plus internal readiness reviews.
- Ongoing Support — continued assistance with surveillance cycles, scope extensions, and continual improvement.
Why Choose Our ISO 17021-1 Consultancy?
Experienced Consultancy Team
Consultants with substantial practical experience supporting certification bodies through ISO/IEC 17021-1 implementation and accreditation preparation.
Customized Documentation
Documentation written around your schemes, structure, and scopes — built to reflect the standard’s requirements and to be workable in daily operation.
End-to-End Support
Continuous support from the first gap analysis through to post-accreditation surveillance and scope extension.
Practical Implementation
Workable processes for audit planning, audit duration, competence management, and certification decision making that your team can operate without external dependence.
Independent and Impartial
We act solely as consultants. We do not certify, audit for certification purposes, or accredit, and we have no role in any accreditation body’s decision making.
Frequently Asked Questions (FAQs)
What is ISO 17021-1?
ISO/IEC 17021-1 is an international standard specifying requirements for the competence, consistency, and impartiality of bodies providing audit and certification of management systems. It is the principal reference standard used when certification bodies are accredited.
Who needs ISO 17021-1 accreditation?
Organizations that audit and certify management systems — such as ISO 9001, ISO 14001, ISO 45001, or ISO/IEC 27001 — and want their certificates to carry international recognition.
How long does ISO 17021-1 implementation take?
Implementation timelines vary considerably. Many certification bodies complete the preparation phase within approximately 6 to 12 months, depending on the number of schemes, availability of competent personnel, and the assessment schedule of the accreditation body. These are indicative ranges only and no timeline can be guaranteed.
What is the difference between ISO 17021-1 and ISO 9001?
ISO 9001 sets requirements for an organization’s own quality management system. ISO/IEC 17021-1 sets requirements for bodies that audit and certify other organizations’ management systems. A certification body may base its own management system on ISO 9001 while being accredited against ISO/IEC 17021-1.
What is a witness audit?
A witness audit is an activity in which an accreditation body assessor observes a certification body’s audit team conducting a real client audit, to verify that documented processes and auditor competence operate in practice. Witness activity forms part of accreditation assessment programmes.
Do we need separate accreditation for each management system scheme?
Accreditation is granted scope by scope. Each scheme you certify must fall within your accreditation scope, and each carries its own competence requirements — for example ISO/IEC 17021-3 for quality management systems and ISO/IEC 27006 for information security management systems.
Which accreditation bodies can accredit us?
Accreditation is granted by independent accreditation bodies, many of which are signatories to the IAF MLA. Examples include ANAB, NABCB, UKAS, JAS-ANZ, and IAS. We help you compare published criteria, scheme coverage, and market recognition so you can select the body best suited to your markets. IAS independently evaluates all applications and makes accreditation decisions solely through its own assessment process, as does every other accreditation body.
Can Qualitcert also audit or certify us?
No. Qualitcert provides consultancy and implementation support only. We do not perform certification or accreditation activities, and the accreditation decision rests solely with the accreditation body.
Can you guarantee that we will be accredited?
No. No consultancy can guarantee an accreditation outcome. Accreditation bodies reach their decisions independently, based on their own assessment of your organization. Our role is to help you prepare thoroughly.
Start Your ISO 17021-1 Accreditation Journey
Looking for an experienced, independent ISO 17021-1 consultant to support your certification body through the preparation process? Qualitcert provides complete ISO/IEC 17021-1 consultancy — gap analysis, documentation, implementation, training, internal audit, and accreditation readiness support — so that you approach your chosen accreditation body well prepared.
Contact Qualitcert today for a consultation and a tailored ISO/IEC 17021-1 implementation roadmap.