> ## Documentation Index
> Fetch the complete documentation index at: https://docs.matproof.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Getting Started with ISO 9001

> A practical guide to building a quality management system aligned to ISO 9001:2015 using Matproof.

# Getting Started with ISO 9001

ISO 9001:2015 is the international standard for **Quality Management Systems (QMS)**. It is the most widely adopted management system standard in the world, with over one million organizations certified across 170 countries. ISO 9001 applies to any organization regardless of size, sector, or industry.

The standard focuses on consistently meeting customer requirements, enhancing customer satisfaction, and driving continual improvement. It follows the ISO Harmonized Structure, making it straightforward to integrate with ISO 27001, ISO 42001, and other management system standards.

Matproof maps ISO 9001 requirements to controls, policies, and evidence workflows so you can build your QMS and prepare for certification.

<Note>
  Activate ISO 9001 under **Settings - Frameworks - ISO 9001**. Controls are pre-populated based on the standard's clauses.
</Note>

***

## ISO 9001 Structure

| Clause | Topic                                                                                  | Matproof Module          |
| ------ | -------------------------------------------------------------------------------------- | ------------------------ |
| 4      | Context of the organization (interested parties, scope, QMS processes)                 | Policies, Controls       |
| 5      | Leadership (commitment, policy, roles and responsibilities)                            | Policies, People         |
| 6      | Planning (risks and opportunities, quality objectives, change planning)                | Risk Management          |
| 7      | Support (resources, competence, awareness, communication, documented information)      | People, Evidence         |
| 8      | Operation (planning, requirements, design, production, release, nonconforming outputs) | Controls                 |
| 9      | Performance evaluation (monitoring, analysis, internal audit, management review)       | Audit Programs, Controls |
| 10     | Improvement (nonconformity, corrective action, continual improvement)                  | Corrective Actions       |

***

## The Seven Quality Management Principles

ISO 9001 is built on seven principles:

<CardGroup cols={2}>
  <Card title="Customer Focus" icon="users">
    Understand and meet customer requirements. Enhance customer satisfaction.
  </Card>

  <Card title="Leadership" icon="user-tie">
    Establish unity of purpose and direction. Create conditions for people to achieve quality objectives.
  </Card>

  <Card title="Engagement of People" icon="people-group">
    Competent, empowered people at all levels are essential.
  </Card>

  <Card title="Process Approach" icon="diagram-project">
    Manage activities as interrelated processes that function as a coherent system.
  </Card>

  <Card title="Improvement" icon="chart-line">
    Successful organizations focus on continual improvement.
  </Card>

  <Card title="Evidence-Based Decision Making" icon="magnifying-glass-chart">
    Decisions based on analysis and evaluation of data and information.
  </Card>

  <Card title="Relationship Management" icon="handshake">
    Manage relationships with interested parties (suppliers, partners) to optimize performance.
  </Card>
</CardGroup>

***

## Recommended Implementation Plan

<Steps>
  ### Step 1 - Define QMS scope and context

  1. Identify internal and external factors relevant to your organization's purpose and strategic direction
  2. Document interested parties and their requirements (customers, regulators, employees, suppliers)
  3. Determine the scope of your QMS - which products, services, and locations are covered
  4. Map your key processes and their interactions

  ### Step 2 - Establish quality policy and objectives

  1. Go to **Policies - Generate** and create your Quality Policy
  2. Ensure the policy includes a commitment to meeting requirements and continual improvement
  3. Define measurable quality objectives at relevant functions, levels, and processes
  4. Document how you plan to achieve each objective (actions, resources, responsibilities, timelines)

  ### Step 3 - Risk-based thinking

  ISO 9001:2015 integrates risk-based thinking throughout the standard:

  1. Go to **Risk Management - New Risk Assessment**
  2. Identify risks and opportunities that could affect QMS outcomes
  3. Plan actions to address risks and opportunities
  4. Integrate these actions into your QMS processes
  5. Evaluate the effectiveness of your risk treatments

  <Tip>
    ISO 9001 does not require a formal risk management methodology. A simple risk register with likelihood, impact, and treatment plans is sufficient for most organizations.
  </Tip>

  ### Step 4 - Process documentation and controls

  Work through the controls in **Controls - ISO 9001**:

  * Document key processes (inputs, outputs, responsibilities, resources, criteria)
  * Establish operational controls for product and service delivery
  * Define requirements for design and development (if applicable)
  * Set up controls for externally provided processes, products, and services
  * Document your release criteria and handling of nonconforming outputs

  ### Step 5 - Competence and training

  1. Determine the competence needed for personnel affecting QMS performance
  2. Go to **People** and document training records, education, and experience for relevant roles
  3. Where gaps exist, provide training and verify its effectiveness
  4. Retain documented information as evidence of competence

  ### Step 6 - Monitoring, measurement, and analysis

  1. Determine what needs to be monitored and measured
  2. Define methods for monitoring, measurement, analysis, and evaluation
  3. Track customer satisfaction through surveys, feedback, and complaint analysis
  4. Analyze data trends to identify improvement opportunities

  ### Step 7 - Internal audit

  1. Go to **Audit Programs - New Audit - ISO 9001**
  2. Plan audits covering all clauses and processes at planned intervals
  3. Select auditors who are objective and impartial (auditors should not audit their own work)
  4. Document findings as Corrective Actions
  5. Verify corrective action effectiveness

  ### Step 8 - Management review and certification

  1. Conduct a management review covering: audit results, customer feedback, process performance, risk assessment results, and improvement opportunities
  2. Document decisions and actions from the review
  3. When ready, engage an accredited certification body
  4. Stage 1 audit reviews documentation; Stage 2 audit verifies implementation
</Steps>

***

## Required Documented Information

ISO 9001 requires you to maintain (policies/procedures) and retain (records/evidence) specific documented information:

| Type         | Examples                                                                                                                                                         |
| ------------ | ---------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| **Maintain** | Quality Policy, quality objectives, QMS scope, process descriptions                                                                                              |
| **Retain**   | Monitoring and measurement results, internal audit results, management review outputs, records of nonconformities and corrective actions, evidence of competence |

<Note>
  ISO 9001:2015 uses the term "documented information" rather than "documents" and "records." You have flexibility in how you organize and store this information - Matproof handles both policies (maintained) and evidence (retained) in the appropriate modules.
</Note>

***

## Next Steps

* [Policy Management](/features/policy-management) - generating your Quality Policy and process documentation
* [Risk Management](/features/risk-management) - risk-based thinking and opportunity assessment
* [Corrective Actions](/features/corrective-actions) - managing nonconformities and driving improvement
* [Audit Programs](/features/audit-programs) - planning internal audits and certification
