QMS ISO 9001:2015 Lead Auditor Exam Questions and Answers
You are conducting an audit at an organisation seeking certification to ISO 9001 for the first time. The organisation offers health and safety training to customers. Training courses are offered either as open courses, delivered at a public venue, or online, or as courses that are tailored to meet specific requirements. The business operates from a single office and those who deliver the training are either full-time employees or subcontractors.
You have gathered audit evidence as outlined below. Match the ISO 9001 Clause 8 extract to the audit evidence.
You are conducting a third-party Stage 1 audit at ABC Ltd, a single-site organisation that manufactures wooden furniture. You interview the Technical Director to learn more about the organisation. The Technical Director explains that they have had a successful year and that obtaining ISO 9001 certification will support the further growth of the business. You ask for an overview of the organisation's structure and its interrelationships with external interested parties.
The Technical Director shows you a document detailing all business processes and interrelationships. You notice in this document that another organisation called Teak Ltd manufactures wooden furniture on behalf of ABC Ltd. The Technical Director confirms this capability has been accounted for in the scope of the quality management system. You learn that the furniture manufactured by Teak Ltd has accounted for 40% of the sales revenue over the previous 12 months.
Which two of the following options best describe how you would plan the audit of the interrelationship with Teak Ltd during the Stage 2 audit at ABC Ltd?
Match each of the following statements into the table below to show whether they apply to first-party audits, second-party audits or third-party audits:
You work for organisation A. You are asked to lead an internal audit of A's quality management system. It has a head office in Plant A1 and a second Plant A2 nearby. Due to the COVID-19 pandemic, production in A2 was discontinued and it was rented to a logistics organisation B, not related to A. There are no A employees working in A2. Organisation A expects to reassume production in A2 as soon as possible.
Which of the following actions would you consider appropriate when planning the internal audit of A's quality management system?
According to ISO 19011, what two activities take place during the conduct of a audit follow-up?
Whistlekleen is a national dry cleaning and laundry company with 50 shops. You are conducting a surveillance audit of the Head Office and are sampling customer complaints. 80% of complaints originate from five shops in the same region. Most of these complaints
relate to customer laundry not being cleaned as customers require. The Quality Manager tells you that these are the oldest shops in the company. The cleaning equipment needs replacing but the company cannot afford it now. You learn that the shop managers were
told to dismiss most of the complaints because of the poor quality of the laundered materials.
On raising the matter with senior management, you are told that there are plans to replace the equipment in these shops over the next five years.
You raised a nonconformity against clause 8.5.1 of ISO 9001.
Based on the scenario, select the three options which best describe the evidence for raising such a nonconformity.
A Health Trust has contracted with Servitup, a catering services organisation which has been certified to ISO 9001 for 1 year. It provides services to ten, small rural
hospitals in remote locations involving purchase and storage of dry goods and fresh produce, preparing meals and loading heated trolleys for ward service by hospital
staff. An auditor is conducting the first sole surveillance audit at one site with the Deputy Catering Manager (DCM).
At the closing meeting attended solely by the DCM, the auditor informs him that he has found numerous gaps in the QMS processes which lead him to consider
recommending suspension of the organisation's certification. He is particularly concerned with the evidence that patient health is being adversely affected by produce
stored beyond its safe consumption date, poor kitchen hygiene and undercooked meals. The DCM says that he cannot make any decisions about these issues in the
absence of the Catering Manager due to illness but will write everything down and report to the Catering Manager.
Which two actions should you take in the context of the audit?
In the context of a second-party audit, match the activity with the party responsible for conducting it.
Which two of the following statements related to Stage 1 of an initial certification audit against ISO 9001:2015 are true?
You are conducting an audit at a single-site organisation seeking certification to ISO 9001 for the first time. The organisation manufactures cosmetics for major retailers and the name of the retailer supplied appears on the product packaging. Sales turnover has increased significantly over the past five years
You are interviewing the new Product Development Manager. You note that a software application called SWIFT is used to help control the product development process.
You have gathered audit evidence as outlined in the table. Match the ISO 9001 clause 8.3 extracts to the audit evidence.
During a third-party audit of a pharmaceutical organisation (CD9000) site of seven COVID-19 testing laboratories in various terminals at
a major international airport, you interview the CD 9000's General Manager (GM), who was accompanied by Jack, the legal compliance
expert. Jack is acting as the guide in the absence of the Technical Manager due to him contracting COVID-19.
You: "What external and internal issues have been identified that could affect CD9000 and its quality management system?"
GM: "Jack guided us on this. We identified issues like probable competition of another laboratory organisation in the airport, legal
requirements on COVID-19 continuously changing, the shortage of competent laboratory analysists, the epidemic declining soon,
shortage of chemicals for the analysis. It was quite a good experience."
You: "Did you document these issues?"
GM: "No. Jack said that ISO 9001 does not require us to document these issues."
You: "How did you determine the risks associated with the issues and did you plan actions to address them?"
GM: "I am not sure. The Technical Manager is responsible for this process. Jack may be able to answer this question in his absence."
Select two options for how you would respond to the General Manager's suggestion:
An audit team leader arrives at a printing organisation to carry out a Stage 2 audit for a certification body. At a meeting with the Quality Manager, she is told that they have won their biggest contract from a computer
manufacturer to print and compile computer documentation packages. They have leased the unit next door for space reasons but have never worked in this sector before. The Quality Manager wants the ISO 9001
certificate to cover the new contract.
Which one of the options is the correct response by the auditor?
You will lead a third-party audit next Monday on ABC, an organisation that provides services for cleaning windows from the outside of tall buildings. They work on demand, and usually have 4-5 orders per week. All documented information on these activities is kept at the central office.
On Friday evening, before the audit, you are informed by mail that customers cancelled all orders for the next week; therefore, the auditors will not have the chance to see them working at the customer's premises, but the field supervisors will be available at the ABC offices.
You have prepared the audit plan and the checklist. Choose the best action you would take:
You work as an external quality consultant for an organisation, 'A', which provides packaged food to the public. You are asked to lead a team (you as the leader and two other auditors) to audit a supplier, 'B', to ISO 9001 which provides packaging materials to your organisation. It is 4 pm and the audit is close to an end; you are having an internal meeting with the team to decide what will be presented to the auditee during the Closing meeting. The Closing meeting was scheduled at 5 pm.
You, as Audit Team Leader, audited top management. You explain to the audit team that you identified two nonconformities:
a. There is no documented information on Top Management Reviews, as required in clause 9.3 of ISO 9001:2015.
b. There is no evidence of Top Management Commitment as required in clause 5.1 of ISO 9001:2015. (e.g., not ensuring the availability of resources
to operate the QMS, not ensuring the establishment of objectives, no promotion of improvement, no promotion of the process approach).
All agreed to present these two nonconformities. They went to meet the Top Management of 'B' and noticed that the General Manager and three other managers (Production, Human Resources, and Sales) were present in the meeting room.
Considering the seriousness of the two nonconformities to Top Management, as audit team leader, from the following select the best option:
Match the process descriptions below to the process names:
You are conducting a Stage 1 audit at an organisation that services refrigeration equipment for a large customer base.
The scope of certification is "Provision of refrigeration equipment maintenance and repair services". You are interviewing
the Managing Director to learn more about the organisation and to explore how the requirements for policy, objectives,
and risks and opportunities in ISO 9001 are addressed.
The Managing Director explains that they only use sub-contract refrigeration engineers and do not have any full-time
refrigeration engineers, which helps to optimise overhead costs. The full-time staff employed are essentially a small team
of office staff who process customer enquiries, schedule jobs and process invoices.
The Managing Director adds that the ISO 9001 requirements for competence of personnel extends to both sub-contract
and full-time staff. He also states that the full-time staff are aware of the Quality Policy, objectives and plans to address
risk and opportunities.
You ask if the sub-contract engineers have been informed of the Quality Policy, objectives and plans to address risks and
opportunities, to which the Managing Director replies that this is not applicable as they only use sub-contractors who
operate ISO 9001 certificated quality management systems. The documented information provided to the auditor
confirms this.
Which clause in ISO 9001 is most likely not to have been fulfilled in this instance?
Select which one of the following statements is true.
Noitol is an organisation specialising in the design and production of e-learning training materials for the insurance market. During an ISO 9001 audit of the development department, the auditor asks the Head of Development about the process used for validation of the final course design. She states that they usually ask customers to validate the product with volunteers. She says that the feedback received often leads to key improvements.
The auditor samples the design records for a recently completed course for the 247 Insurance organisation. Design verification was carried out but there was no validation report. The Head of Development advises that this customer required the product on an urgent basis, so the validation stage was omitted. When asked, the Head estimates that this occurs about 50% of the time. She confirms that they always ask for feedback and often make changes. There is no record of feedback in the design file for the course.
The auditor decides to review the training course design process in more depth.
Select three options that provide a meaningful audit trail for this process.
ABC is a service organisation that cleans and irons bed and table linen for four large hospitals in the city centre. It claims to meet ISO 9001:2015 requirements. During an internal audit, an auditor observes that
machine No. 4 is being operated with the three variables outside the limits established in the applicable documented procedure SP-701. The auditor has decided to raise a nonconformity.
Which six elements should be included in the nonconformity report?
You are carrying out an audit at a single-site organisation seeking certification to ISO 9001 for the first time. The
organisation manufactures cosmetics for major retailers and the name of the retailer supplied appears on the product
packaging. Sales turnover has increased significantly over the past five years. The organisation uses a software programme called SWIFT, which is used to record sales, plan production, purchase supplies, print despatch notes, track new product development, perform traceability exercises, carry out mass balance checks, raise invoices, create budgets, and support financial control.
You are nearing the end of the audit and you are reviewing your audit notes. You notice a recurring trend concerning the SWIFT database as shown below:
You ask the Quality Manager to explain how the SWIFT database is controlled. You learn that the Operations Director is
responsible for determining and progressing SWIFT software updates. You decide to meet the Operations Director (OD).
You: "Good afternoon."
OD: "Good afternoon."
You: "What responsibility do you have concerning the SWIFT database?"
OD: "I maintain it. If anyone wishes to propose an update to the database, they send me an email with
details of their proposal. I then either process the database update myself, or I send the request to the
consultant who designed the database 20 years ago. The necessary software changes are made, and the
amended software is immediately released to users."
You: "Would you explain how the software amendments are controlled?"
OD: "Of course. I personally update every computer myself."
You: "Do you inform the database users of the changes?"
OD: "No I don't. They find out for themselves by using the software, or they come to see me if they have
any questions."
You: "How do you ensure that the database users use the latest version?"
OD: "That's easy, I update every computer myself."
You: "During the audit, I noted there were several versions of SWIFT in use (you refer to your audit
notes)."
OD: "I know. That's because some versions work better than others, and depending on user needs and
experiences, we allow users to revert to using an earlier version if they find it works better for them."
Based on the scenario, which two of the following statements are true? There is evidence of
nonconformity with a requirement defined in ...
Which two of the following auditors would not participate in a first-party audit?
In the context of a third-party audit, match the event with the responsibility for conducting it.
Select one of the options that best describes the purpose of conducting a document review:
Select the two statements that are true.
An audit team leader arrives at a printing organisation to carry out a Stage 2 audit for a certification body. At a meeting with the Quality Manager, she is told that they have won their biggest contract from a computer manufacturer to print and compile computer documentation packages. They have leased the unit next door for space reasons but have never worked in this sector before. The Quality Manager wants the ISO 9001 certificate to cover the new contract.
During the audit, a team member finds that a number of print jobs have been rejected by several clients over a number of months due to spelling errors in the print run. The Print Manager blames the new employees they had to take on because of a big contract. The auditor raises a nonconformance against clause 10.2.1.b of ISO 9001.
Which one of the evidence statements would support this finding?
XYZ Corporation is an organisation that employs 100 people. As audit team leader, you are conducting a
certification audit at Stage 1. When reviewing the quality management system (QMS) documentation, you
find that quality objectives have been set for every employee in the organisation except top management.
The Quality Manager complains that this has created a lot of resistance to the QMS, and the Chief Executive
is asking questions about how much it will cost. He asks for your opinion on whether this is the correct
method of setting objectives.
Three months after Stage 1, you return to XYZ Corporation to conduct a Stage 2 certification audit as Audit
Team Leader with one other auditor. You find that the Quality Manager has cancelled the previous quality
objectives for all employees and replaced them with a single objective for himself. This states that "The
Quality Manager will drive multiple improvements in the QMS in the next year". The Quality Manager indicates
that this gives him the authority to issue instructions to department managers when quality improvement is
needed. He says that this approach has the full backing of senior management. He shows you the latest
Quality Improvement Request that was included in the last management review.
After further auditing, the issues below were found. Select three statements that apply to the term 'audit trail'
Which one of the following is not an ISO 9000:2015 quality management principle?
Which one of the following options is the definition of the context of an organisation?
You are carrying out an audit at a single-site organisation seeking certification to ISO 9001 for the first time. The organization manufactures cosmetics for major retailers and the name of the retailer supplied appears on the product packaging. Sales turnover has increased significantly over the past five years.
You are interviewing the new Product Development Manager. You note that a software application called SWIFT is used to help control the product development process.
You have gathered audit evidence as outlined in the table. Match the ISO 9001 clause 8.3 extracts to the audit evidence.
You are an auditor from a construction organisation who is conducting a second party audit to ISO 9001 at a steel rolling mill producing
structural steelwork. When auditing the rolling process, you find that the operator who is unloading the furnace does not use the
adjacent infrared pyrometer to measure the appropriate product temperature in readiness for the next production stage.
You: "How do you tell when the billet is ready for the rolling stage?"
Operator: "I've done this job for 20 years. I can tell by the bright red colour."
You: "What happens if the colour is wrong?"
Operator: "The billet goes back into the furnace."
You: "Is the pyrometer ever used?"
Operator: "Only in borderline cases."
You continue to interview the operator and find that around 25% of the billets are sent back to the furnace. This includes 80% of the borderline cases.
Select three options that would provide evidence of conformance with clause 9.1.1 of ISO 9001.
Which two of the following roles do not contribute to the audit outcomes?
An audit team of three people is conducting a Stage 2 audit to ISO 9001 of an engineering organisation that manufactures sacrificial anodes for the oll and gas industry in marine environments. These are aluminium products designed to prevent corrosion of submerged
steel structures. You, as one of the auditors, find that the organisation has shipped anodes for Project DK in the Gulf of Mexico before the galvanic efficiency test results for the anodes have been fully analysed and reported as required by the customer. The Quality
Manager explains that the Managing Director authorised release of the anodes to avoid late delivery as penalties would be imposed. The customer was not informed since the tests very rarely fall below the required efficiency. You raise a nonconformity against clause 8.6 of ISO 9001.
Which of the following options for the best description of the nonconformity?
During a second-party audit, the auditor examines the records that are available for the external provider, ABC Forgings, to whom manufacturing has recently been outsourced.
There are standard external provider checklists for three competitors for the contract and there are inspection records from the trial manufacturing batches produced by ABC Forgings. There is no documented evidence of the criteria used to confirm the appointment of ABC Forgings, and no contract or terms and conditions. Ongoing monitoring indicates that external provider performance is satisfactory, but no documented information has been retained.
Select two options for the evidence which demonstrates a nonconformity with clause 8.4 of ISO 9001.
An audit team of three people is conducting a Stage 2 audit to ISO 9001 of an engineering organisation which manufactures sacrificial anodes for the
oil and gas industry in marine environments. These are aluminium products designed to prevent corrosion of submerged steel structures. As one of
the auditors, you find that the organisation has shipped anodes for Project DK in the Gulf of Mexico before the galvanic efficiency test results for the
anodes have been fully analysed and reported as required by the customer. The Quality Manager explains that the Managing Director authorised the
release of the anodes to avoid late delivery as penalties would be imposed. The customer was not informed since the tests rarely fall below the
required efficiency. You raise a nonconformity against clause 8.6 of ISO 9001.
During the audit team meeting in preparation for the Closing meeting, the second auditor disagreed with the clause of ISO 9001 selected for the
above nonconformity. He thinks it should be clause 9.1.1.
Choose three options for how the audit team leader should best respond to the situation:
You, as auditor, are in dialogue with the quality lead and managing director of a small business that supplies specialist
laboratory equipment and furniture.
You: "I'd like to look at how you manage change in the organisation. What changes have you made as a business, say,
over the last 12 months?"
Auditee: "We have made some strategic changes, the main one being that we no longer manufacture our own products
in house."
You: "That sounds like quite a significant change. What has been the impact of that?"
Auditee: "We now mainly sell other manufacturers' products, under their brand names, and have outsourced
manufacture of our own brand products to one of our suppliers. Unfortunately, we had to make six members of our staff
redundant. This represents about 20% of our workforce, so this has been quite a challenging time."
This scenario presents a number of audit trails to different ISO 9001 requirements.
Which three of the following requirements would be relevant audit trails for this scenario?
You are carrying out an audit to ISO 9001 at an organisation which offers regulatory consultancy services to manufacturers of cosmetics.
You are interviewing the Technical Director (TD), who manages a team of regulatory experts responsible for providing regulatory services to customers.
You: "How do you ensure your regulatory team's competence concerning regulatory requirements is maintained?"
TD: "The two Regulatory Experts we employ full-time have years of experience of working in the cosmetics industry."
You: "How is their regulatory competence maintained?"
TD: "They are dedicated individuals with lots of contacts in the sector."
You: "How does the business enable them to maintain their understanding of current regulatory requirements?"
TD: "We leave that up to them."
An audit team leader arrives at a printing company to carry out a Stage 2 audit for a certification body. At a meeting with the Quality Manager, she is told that they have won their biggest contract from a computer manufacturer to print and compile computer documentation packages. The Quality Manager wants the ISO 9001 certificate to cover the new contract.
During the audit, a team member found that some print jobs had been rejected by several clients over some months due to spelling errors in the print run. The Print Manager blames the new employees they had to take on because of a big contract.
The auditor finds that the responsibility for checking spelling errors is placed on the printer that sets up the print run.
In line with the policy of the certification body, the audit team raise improvement opportunities in the audit report. Which
three of the following options would represent acceptable opportunities for improvement in the report?
Select the phrase that best describes the purpose of a quality management system to ISO 9001 in relation to the performance of an organization.