- FR
- EN
Occupational health and safety management systems - Requirements
ISO 45001
...with guidance for its use, to enable organizations to provide safe and healthy workplaces by preventing work-related injury and ill health, as well as by proactively improving their OH&S performance.
ISO 45001 is applicable to any organization that wishes to establish, implement and maintain an OH&S management system to improve occupational health and safety, eliminate hazards and minimize OH&S risks (including system deficiencies), take advantage of OH&S opportunities, and address OH&S management system nonconformities associated with its activities.
ISO 45001 helps an organization achieve the intended outcomes of its OH&S management system. Consistent with the organization's OH&S policy, the intended outcomes of an OH&S management system include:
- a) continual improvement of OH&S performance;
- b) fulfilment of legal requirements and other requirements;
- c) achievement of OH&S objectives.
ISO 45001 is applicable to any organization regardless of its size, type and activities. It is applicable to the OH&S risks under the organization's control, taking into account factors such as the context in which the organization operates and the needs and expectations of its workers and other interested parties.
ISO 45001 does not state specific criteria for OH&S performance, nor is it prescriptive about the design of an OH&S management system.
ISO 45001 enables an organization, through its OH&S management system, to integrate other aspects of health and safety, such as worker wellness and wellbeing.
ISO 45001 does not address issues such as product safety, property damage or environmental impacts, beyond the risks to workers and other relevant interested parties.
ISO 45001 can be used in whole or in part to systematically improve occupational health and safety management. However, claims of conformity to this document are not acceptable unless all its requirements are incorporated into an organization's OH&S management system and fulfilled without exclusion.
Key features
Risk management
ISO 27001 Annex A controls management
CyFun requirements management
Technical and organizational measures management
Incident / nonconformity management
CyFun self-assessment 2023 / 2025
Internal and external audit management
Action management
Objectives and indicators management
Process management
Processor and supplier management
Alert management
Risk management
The software lets you create assessment criteria for each standard (ISO or GDPR)
A validation cycle is defined.
A status history helps you follow the various exchanges between the people involved.
ISO 27001 Annex A controls management
CyFun requirements management
CCB framework.
Technical and organizational measures management
Technical and organizational measures are managed by area (ISO/GDPR). The person responsible for each measure and its completion date, actual or planned, are identified and managed.
A measures management screen gives an overall view for tracking measures, deadlines and owners by area.
Incident / nonconformity management
Incident and nonconformity management tool
Email notifications are sent to the assigned owner.
CyFun self-assessment 2023 / 2025
Internal and external audit management
Plan your internal and external audits. Write your audit reports directly in the software.
Action management
Tool to manage all actions.
Email notifications are sent to the assigned owner.
Objectives and indicators management
Process management
Identification of processes and sub-processes by entity
Identification of process owners
Processor and supplier management
This feature lets you manage contract compliance and assess your critical suppliers based on assessment criteria.
Alert management
Alerts on deadlines (actions, data subject requests, breaches, ...) and gaps (contracts, justifications, ...) are automatically identified by the software. A register of all alerts is generated so that the person in charge can manage them.