+31 (0)73 - 220 2000 | info@brandcompliance.com
English
  • Dutch
  • English
  • Français
  • België
  • Dutch
  • English
  • Français
  • België
Brand Compliance
  • Certify
    • ISO 9001
    • ISO 22301 (BCM)
    • ISO 19770-1 (IT-assets)
    • ISO 27001
    • ISO 27017 and ISO 27018
    • BIO
    • ISO 27701 (Privacy)
    • NEN 7510
  • IT Assurance
    • SOC 2
  • Vacancies
  • Knowledge base
  • BC Academy
Talk to an expert
  • Information security
    • ISO 27001
    • NEN 7510
    • ISO 27799
    • ISO 27017 and ISO 27018
    • BIO
    • ISO 19770-1
  • Privacy
    • BC 5701
    • ISO 27701
    • GDPR standard BC 5701:2024 EN
  • IT assurance
    • SOC 2
    • ISAE 3402
    • ISAE 3000
  • Quality & continuity
    • ISO 9001
    • ISO 14001
    • ISO 22301
  • Knowledge & news
    • Knowledge articles
    • News
  • Academy
    • All training courses
    • NIS2 & CyFun
    • ISO 27001
  • About us
    • Accreditations
    • Careers
    • Compliment, complaint or tip
    • Locations
    • Privacy Statement
    • Contact

Certification process

10
  • The ultimate checklist certification
  • Do you have your first audit soon?
  • How long does ISO certification take?
  • What is a certification cycle?
  • The certification process step by step
  • Initial audit Stage 1
  • Initial audit Stage 2
  • Nonconformities within the management system
  • What should you know about certificate suspension or revocation?
  • Transfer of certification

General

10
  • Whitepaper management system audits
  • Quality Management: best practices for success
  • The Traffic Light Protocol (TLP): what does it mean for you?
  • The Brand Compliance glossary
  • What is a management system?
  • Internal or external audit?
  • Find out more about internal audits
  • Tips to describe a proper scope
  • Accreditation versus certification
  • The use of certification logos

Audits information security

2
  • Excelling in information security: best practices
  • Operational Capabilities: The Backbone of Information Security

NEN 7510

4
  • Transition to NEN 7510-1:2024
  • NEN 7510 without healthcare institution?
  • How to expand with NEN 7510
  • The differences between ISO 27001 and NEN 7510

NIS2 Directive

5
  • Transition CyberFundamentals 2023 to 2025
  • ISO 27001 in a NIS2 context in Belgium
  • Self-assessment & CyFun verification: best chance of success
  • NIS2 liability for board members
  • CyberFundamentals Framework in Belgium: what is the relationship with NIS2?

Assurance audits

1
  • ISAE 3402 vs SOC 2: what is the difference?

Audits privacy

8
  • Checklist for your BC 5701 certification
  • Transition to ISO/IEC 27701:2025
  • Whitepaper GDPR Certification Standard and Criteria BC 5701
  • BC 5701 certification: where do you start?
  • Data breach: What is it and how do you prevent it?
  • Your record of processing activities and the GDPR
  • Your Data Protection Officer and the GDPR
View Categories

What is a management system?

1 min read

In the article below, the term ‘management system’ is explained in more detail.

Definition

ISO defines a management system as ‘a set of interrelated or interacting elements of an organization to establish policies and objectives, as well as the processes to achieve those objectives’.

Continuous improvement is central to a management system, the so called PDCA cycle. A management system is therefore a way for the organization to achieve their objectives. Each ISO standard has a different approach.

PDCA: Plan-Do-Check-Act

A management system follows a fixed method. Within an organization plans are devised to achieve objectives. In the ‘do‘ stage the plans are then implemented. The third step in the cycle is checking the actual results, in which it is determined whether the set objectives are being achieved. Finally, action is taken by correcting errors and, where necessary, working methods are adapted so that things go better in the future.

management system

Focus per standard

Quality (QMS)

The focus at ISO 9001 is on customer satisfaction. By implementing the ISO 9001 management system, an organization guarantees that products and services meet customer requirements, while at the same time being in line with the normal course of business within the organization.

Information Security (ISMS)

ISO 27001 and NEN 7510 focus on information security. With this, the organization has specific objectives that are aimed at guaranteeing the availability, integrity and confidentiality of the information provision. The management system then assists the organization achieve those objectives. By following the PDCA cycle, an organization will have to continuously assess whether the system helps to achieve the objectives.

Business continuity (BCMS)

ISO 22301 is a business continuity management system. By focusing on business continuity, an organization looks at implementing, maintaining, and improving a management system to protect against, mitigate, prepare for, respond to, and recover from disruptions when they occur. With the implementation and certification of this standard, the organization demonstrates its ability to meet its business continuity needs and obligations.

Privacy (PIMS)

A standard has also been developed for a management system with a privacy focus, ISO 27701. This standard specifies requirements and provides guidelines for setting up, implementing, maintaining and continuously improving a management system for privacy information. An organization that meets the requirements of this standard generates evidence regarding its handling of the processing of Personally Identifiable Information (PII).

Finally

In the article above we explained what a management system is and that the focus can be placed on different topics. The PDCA cycle is central to all systems. This unified approach allows organizations to implement multiple standards in the same way within the organization.

Our colleagues Bart Versluijs and Jade Reilink are happy to provide you with more information about Brand Compliance’s certification services. You can make an appointment or contact us on telephone number +31 73 220 2030.

Share This Article :

  • Facebook
  • X
  • LinkedIn
Updated on 25 November 2024
The Brand Compliance glossaryInternal or external audit?

Accreditation

RvA C548Brand Compliance B.V. has accreditation (C548) to certify ISO 27001, ISO 27701 NEN 7510 and ISO 9001 technical area 33 information technology and 35 other services.

View our accreditations

Contact

Have a question about certification, verification or assurance?

info@brandcompliance.com
+31 (0)73 220 2000

Prefer local contact details?
View our locations

Our locations

‘s-Hertogenbosch, The Netherlands

Antwerp, Belgium

Ottignies-Louvain-la-Neuve, Belgium

Stockholm, Sweden

Luxembourg, coming soon

Practical information

Privacy statement

Terms and conditions

Company details

Feedback and complaints

 

© Copyright 2026 Brand Compliance