Professional Documents
Culture Documents
2 | Lloyd’s Register
What is Annex SL?
Annex SL is the High Level Structure and common text for all ISO standards that have been
launched or revised since 2015.
New and revised standards now have the Organizations that use multiple Management
same ten section structure: Systems Standards will find that each of
the ISO standards now speaks a common
0. Introduction language. This will make it easier to integrate
1. Scope them into a common management system,
as the structure is consistent and compatible,
2. Normative references
creating efficiencies and removing the
3. Terms and definitions confusion found when implementing earlier
4. Context of the organization versions of the standards.
5. Leadership
6. Planning
7. Support
8. Operation
9. Performance evaluation
10. Improvement
While Section 5 outlines This is important because it aligns For organizations where top
the management system with management play an active role
the role of leadership, the overall business strategy and in driving OH&S performance, the
the basis for leadership’s practices, making it relevant across changes will be a formalization of
the entire organization. what is happening now. However,
importance comes in where top management have
Section 4. Section 5 is divided into four effectively devolved responsibility for
sub-clauses: their OHSMS, the impact of the new
standard will be greater.
Here, the context of the 5.1 – Leadership and commitment
organization, stakeholder 5.2 – OH&S policy There is no requirement for a
Management Representative, though
analysis and the scope 5.3 – Organizational roles,
the duties currently assigned to
responsibilities and
and purpose of the authorities
the Management Representative
management system are in OHSAS 18001:2007 must still be
5.4 – Consultation and undertaken.
addressed. participation of workers
Organizations may choose to keep
ISO 45001 introduces requirements or even establish this role, however,
that embed the OHSMS into some of the duties traditionally
routine business operations, assigned to the Management
rather than it operating as an Representative will, in future, need
independent system. For this to be undertaken directly by top
to happen, top management management.
needs to take ownership of the
management system in the same
way that they take ownership of
other elements of their business
system.
4 | Lloyd’s Register
5.1 Leadership and commitment Where the words “promoting”, 5.4 Consultation and
“taking”, or “supporting” participation of workers
ISO 45001 requires top appear, these activities cannot
management to be much be delegated and must be The consultation and
more hands on with their undertaken by top management participation of workers,
OHSMS. themselves. and, where they exist,
workers’ representatives, is
Where the word “ensuring” For organizations that are critical to the effectiveness
is used in sub-clause 5.1, migrating from OHSAS 18001 to and success of the OHSMS.
top management may still ISO 45001, it will be important for
assign this task to others for top management to understand As this is a key feature of
completion. Where the words which OH&S management ISO 45001, we will go into
“promoting”, “taking”, or activities they can delegate and more detail on this below.
“supporting” appear, these which they cannot.
activities cannot be delegated
and must be undertaken by Where ISO 45001 says “top
top management themselves. management shall ensure”, 9.3 Management review
For organizations that are management system auditors
migrating from OHSAS will want to evaluate evidence Clause 9.3 requires top
18001 to ISO 45001, it that demonstrates how top management to review the
will be important for top management are doing this. OHSMS to ascertain whether
management to understand For example, how are top the system is effective in
which OH&S management management ensuring the helping the organization
activities they can delegate integration of the OHSMS to manage and improve its
and which they cannot. requirements into business OH&S performance.
processes? It is likely that top
Where ISO 45001 says “top management will be called The clause lists minimum
management shall ensure”, upon to play a greater part in requirements for the
management system auditors management system audits. types of information
will want to evaluate evidence that must be considered
that demonstrates how top by the management
management are doing this. review process, as well
For example, how are top 5.3 Organizational roles, as mandatory outputs.
management ensuring the responsibilities and authorities Documented information
integration of the OHSMS must be produced to
requirements into business Top management must demonstrate that each
processes? It is likely that top ensure that the necessary review considers the
management will be called responsibilities and authorities required information and
upon to play a greater part in are assigned to individuals to to capture outcomes or
management system audits. carry out OH&S-related activities. decisions made.
Organizational change What are the requirements around Similar emphasis has been placed on
worker participation? ensuring the participation of workers
is never easy. It requires in areas such as determining the
great drive to keep teams ISO 45001 requires organizations to mechanisms for their consultation
ensure the participation and and participation; identifying hazards
motivated to achieve the consultation of workers, and where and assessing risks and opportunities
organization’s goals. they exist, workers’ representatives, (6.1.1, and 6.1.2); determining actions
in all parts of the application of the to eliminate hazards and reduce
A management system that is OHSMS and work-related activities. OH&S risks (6.1.4); determining
aligned with the organization’s There is a requirement for provision competence requirements, training
strategy fosters greater of time, training and resources needs, training and evaluating
transparency with the company’s necessary to allow for consultation training (7.2); determining what
aspirations and progress. and participation of workers. needs to be communicated and how
Understandable and relevant this will be done (7.4); determining
information must also be provided to control measures and their effective
This provides employees and enable worker consultation and implementation and use (8.1, 8.1.3,
stakeholders with more clarity. participation. and 8.2); investigating incidents and
Leadership drives performance by nonconformities and determining
allowing everyone to understand Further emphasis is placed on the corrective actions (10.2).
their role and impact on the consultation of non-managerial
company. Connecting employee workers in requirements such as (but ISO 45001 requires organizations to
actions and contributions to the not limited to) determining the needs determine and remove obstacles or
larger vision is key to a performance and expectations of interested parties barriers to participation, such as a
culture and this is emphasized in (4.2); establishing the OH&S policy failure to respond to suggestions,
the ISO 45001 requirements relating (5.2); assigning organizational roles, language or literacy issues, or any
to worker participation. responsibilities and authorities as practices that discourage or penalize
applicable (5.3); determining how to participation. Where a barrier or
fulfil legal requirements and other obstacle can’t be removed, its impact
requirements (6.1.3); establishing should be minimized.
OH&S objectives and planning to
achieve them (6.2); determining The participation of workers and,
applicable controls for outsourcing, where they exist, their representatives
procurement and contractors (8.1.4); is a key factor in the success of the
determining what needs to be OHSMS, the mechanisms used to
monitored, measured and evaluated achieve this will vary depending on
(9.1); planning, establishing, the size of your organization and the
implementing and maintaining an nature of your business.
audit program(s) (9.2.2) and ensuring
continual improvement (10.3).
6 | Lloyd’s Register
It is in everyone’s interest to work in a If you are an OH&S Manager looking To do this, it is important to assess
safe and healthy environment, where to gain certification to ISO 45001, the attitudes and perceptions of top
people are encouraged to report you know that engaging leadership management towards the standard.
hazards or concerns so that and top management is essential to If top management has not been
preventive action can be taken and having an effective OHSMS. deeply engaged with the
where people buy-in to the OHSMS Whether your organization is big or implementation and certification
because they, or their colleagues or small, it can be a challenge to get process before, there is likely work
representatives, have been involved your leaders to embrace the to be done.
at every key step of the decision- potential of the OHSMS to improve
making process. safety and health for your workers
and other stakeholders.
What does it all mean for my
organization? A first step is to estimate the degree
of change necessary. The new
Leadership revolves around a shared requirements within ISO 45001
vision, values and relationships. need a clearer link to the business
Emphasising leadership in the context strategy and overall operations of a
of business benefits creates a clear business, which is why the role of
direction and the tools for governance top management is outlined in the
across the entire business. Proper common high-level structure of
alignment of the management system Annex SL. Engaging top
with the organization’s objectives management is fundamental to
allows leadership to make the right implementing an effective OHSMS
decisions on complex topics. and achieving certification.
Engaging top ISO 45001 does require top Greater clarity in connecting
management to take greater strategies to results and balancing
management can be responsibility for the OHSMS. needs across the business to make
a challenge. Besides In some organizations, top sure gains in one area are not at the
management is already deeply expense of another are advantages
the obstacle of placing engaged, but in many cases, the of the common High Level Structure
what seems like more role has been delegated to an (Annex SL). Emphasizing what is
responsibility on to their OH&S Manager. Top management to be gained is the way to deepen
engagement goes beyond satisfying top management involvement with
plate, there are other the requirements; it benefits your management systems.
factors to consider. organization, your workers, and all
other stakeholders. Getting the buy-in of leadership
Often, the organizational context and could take the form of a meeting
complete analysis of stakeholders When top management makes a and presentation of the benefits
found in section 4 of ISO 45001, commitment to OH&S through their of an OHSMS and the PDCA (Plan,
go beyond the scope of the OH&S words and actions, it sends a strong Do, Check, Act) process. With
Manager’s role. This can make it signal to workers, subcontractors the demands on the time of top
difficult to build a strong connection and other stakeholders that they are management, introducing ISO 45001
between the OHSMS and the overall valued and important. When aligned and presenting the opportunities
business strategy and objectives. with a quality management system for improved OH&S performance
This can be compounded by complex and environmental management requires a clear, concise and specific
communication. Board rooms system, whose primary stakeholders discussion to illustrate the benefits.
and executives often use different are customers and the wider society
terminology and protocols that can respectively, top management can
make it difficult for those charged demonstrate to all key interested
with the OHSMS to articulate needs parties that they are committed to
in a concise and specific manner. fulfilling their strategic objectives in
a safe and sustainable way.
There is also the challenge of
organizational structure, which can Given the connection between
make it difficult to influence and management systems data and how
guide leaders in positions two or this can be used to communicate
three reporting line levels above. strategic insight and influence the
corporate decision-making process,
the value of the management
systems professional has never
been stronger.
8 | Lloyd’s Register
How can Lloyd’s Register help?
Whether you’re migrating to ISO 45001 or implementing it from scratch, Lloyd’s
Register provides a wide range of services to support your journey to compliance.
Introducing our Get the services Click here for ISO 45001
Self-Assessment Tool
ISO 45001 Self- and support you
Assessment Tool need
Our ISO 45001 Self-Assessment Tool We understand that every client’s
has been designed to help you get situation and requirements are
a deeper understanding of your unique. By utilizing our ISO 45001
organization’s level of compliance. Self-Assessment Tool we can work
Developed by our occupational closely with you to provide the
health and safety (OH&S) experts, solutions you need to address
it is a simple, easy-to-use tool that any areas where improvement
will enable you to make an informed is required.
decision around the level of support
you require to achieve ISO 45001
certification.
Define your
readiness in
21 questions
Featuring 21 questions, across
six separate sections, you could
define your ISO 45001 readiness
in as little as 30 minutes.
Online self-assessment
Training
Assessment
Migration or Certification
Assessment
Follow-up†
Optional services
Additional training
Transfer to LR (remote)
† Applies to 4 nonconformities, for more than 4 nonconformities an additional fee will be applied.
10 | Lloyds Register
Assessment and training services
Through our extensive range of public and on-site training courses,
our client specific assessment tools and our informative and
educational online services, LR offers organizations a tailored path
to successful ISO 45001 certification.
Gap Analysis ISO 45001 Update Workshop CQI and IRCA Certified
ISO 45001:2018 Auditor/Lead
For organizations looking to evaluate Acquire an understanding of the Auditor course
their current OHSMS against extent and nature of the changes
ISO 45001, LR’s Gap Analysis service introduced by ISO 45001, which will This five-day course is designed for
offers you an overview of your OHSMS supersede OHSAS 18001:2007. You people completing their CQI and
certification readiness. You will receive will learn about Annex SL and its IRCA OH&S Management System
a report, analyzing your understanding influence in shaping the future of all Lead Auditor registration for the first
of ISO 45001, including the areas that management systems standards. time. It will support your professional
will require the most attention to development by enabling you to
achieve compliance and certification Preparing for Migration to conduct audits against ISO 45001
to the new standard. ISO 45001 from OHSAS 18001 (OH&S) requirements.
Certification This course will support CQI and IRCA Certified Lead Auditor
organizations in addressing the Migration course
This is typically a two-stage process, new standard requirements and
consisting of a system appraisal and will explain the concepts and This two-day course enables
an initial assessment, the duration of requirements defined in ISO 45001 existing Lead Auditors to update
which is dependent on the size and as well as how they differ from their knowledge and skills based on
nature of your organization. OHSAS 18001:2007. It will also look the new standard and develop an
at what may need to be revised in understanding of how it compares
Training your current OH&S management to OHSAS 18001:2007.
system.
Our ISO 45001 training courses will
prepare and upskill your management ISO 45001 for Internal Auditors
system team and auditors – providing
the skills needed to implement and Add to your existing audit
maintain your system to meet the experience and learn how to adapt
requirements of the new standard. internal health and safety auditing
skills for ISO 45001. You will learn
Our OH&S tutors are chosen for their the key changes introduced in
sector-specific knowledge and ISO 45001 and the requirements
expertise, so you know that whatever concerning process thinking, the
industry you are in, they’ll understand importance of ‘Context of the
the health and safety risks and hazards Organization’, and how to measure
you’re likely to face, as well as the and monitor risk.
opportunities that you can build on.
Get in touch
Please visit www.lr.org/us for more information
or email inquiries-usa@lr.org
Lloyd’s Register
1330 Enclave Parkway, Suite 200
Houston, TX 77077
United States