What Clause 6.1.2.2 actually asks for
The methodology and criteria themselves, held as documented information, maintained and retained. Not the results. The method. Almost nobody has it, because the requirement reads like a description of good practice rather than an obligation to produce a document.
A complete, editable hazard identification and risk assessment procedure for ISO 45001:2018 — written as a finished working document, not an outline.
Most organizations produce a register and no statement of how it was made. The register looks complete. The matrix in the spreadsheet header looks like criteria. Neither is what Clause 6.1.2.2 asks for, and the finding arrives from a direction people rarely watch.
This procedure is built so that Section 5.0 and Appendix E together are that document — the methodology and criteria, defined with respect to scope, nature and timing, applied systematically, and held as documented information.
Clause 6.1.2.1 names what hazard identification has to take into account. Alongside machinery, substances and physical conditions it names how work is organized, social factors, workload, work hours, victimization, harassment and bullying, leadership and culture.
None of those can be seen from a walkway. So a register built by walking the plant — which is how nearly every register is built — contains the first list and not the second. That is not carelessness. It is a method producing exactly what the method was designed to find.
They are assessed by asking workers, in a setting where an honest answer carries no cost. Which is why participation is designed before assessment in this document, rather than asserted after it.
United States federal regulation requires employers to assess the workplace for hazards that necessitate personal protective equipment, and separately to verify that assessment through a written certification carrying four specific elements: the workplace evaluated, the person certifying, the date, and identification of the document as a certification.
A job hazard analysis is not that certification and does not carry those elements. An organization can hold a complete, current, conforming ISO 45001 register and still be cited, because the register is not the document the regulation asks for. Nothing inside the management system points at this, which is why it is the gap MSI finds most often in certified United States operations. Appendix F includes the certification as a ready-to-sign form.
| Standard | ISO 45001:2018 |
|---|---|
| Clauses | Clause 6.1.2, with Clauses 5.4, 6.1.3, 6.1.4 and 8.1.2 |
| Length | 50 pages |
| Format | Microsoft Word (.docx), fully editable |
| Delivery | Instant download |
| License | Perpetual, non-exclusive license for your organization to edit, rebrand and adopt across your own sites |
| Regulatory | Appendix F reflects United States federal requirements. Legal requirements differ by jurisdiction — confirm what applies to each of your sites |
EHS and safety managers, operations leaders, and consultants at ISO 45001 certified or certifying organizations, particularly in the United States where the certification obligation applies. Useful anywhere a register covers machinery and chemicals thoroughly and says nothing about workload, hours, or how work is organized.
Written from what repeats. Diana Lynn has attended more than 200 certification and surveillance audits across 28 years, supporting more than 80 certifications and training more than 600 professionals. These templates encode the structural weaknesses that show up again and again, not one organization's approach generalized. Management Systems International is veteran-owned and female-owned. Questions: 760-434-9141.
Prefer to be invoiced? If your organization buys on a purchase order rather than by card, email info@msi-international.com or call 760-434-9141 and we will raise an invoice. Tell us which templates or package you need and we will send payment terms the same working day.
Every variant covers one certification combination, so you buy the one document that matches your certificates rather than assembling it from singles.
This procedure is one document in a wider system. If you are building or rebuilding the whole documentation set rather than filling a single gap, the packages below collect the procedures and guides, and work out considerably cheaper than buying them individually.
Notifications