ISO 45001 Checklist
Implementing an occupational health and safety management system (OHSMS) that meets ISO 45001 requires careful planning and a structured approach. Without a clear roadmap, organisations risk missing critical requirements or failing to address workplace hazards effectively. This ISO 45001 checklist walks you through the essential steps to achieve and maintain compliance, from initial gap analysis through to external certification. If you are new to the standard, our guide on what is ISO 45001 covers the fundamentals, and our ISO 45001 CQI and IRCA auditor courses can support your team throughout implementation.
This article covers the requirements you need to understand, how to prepare, and 13 steps to stay compliant.
Contents
Understanding ISO 45001 Requirements to Stay Compliant
ISO 45001 sets out the requirements for establishing, implementing, maintaining, and continually improving an OHSMS. The standard follows the high-level structure shared across ISO management system standards, with core clauses covering context of the organisation (Clause 4), leadership and worker participation (Clause 5), planning (Clause 6), support (Clause 7), operation (Clause 8), performance evaluation (Clause 9), and improvement (Clause 10). A key distinction from other management system standards is the emphasis on worker consultation and participation at all levels. Using an ISO 45001 requirements checklist ensures you address each clause methodically. For a full breakdown, see our guide to ISO 45001 requirements.
Preparing for ISO 45001 Implementation
Before working through your ISO 45001 checklist, take time to lay the groundwork. Key preparation steps include:
- Secure top management commitment – Leadership must demonstrate accountability for the OHSMS and allocate adequate resources for implementation
- Define the scope – Determine which activities, locations, and workers (including contractors) are covered by the OHSMS
- Understand your context – Identify internal and external issues affecting OH&S performance, along with the needs and expectations of workers and other interested parties
- Obtain the standard – Acquire a copy of BS EN ISO 45001:2023+A1:2024 to reference throughout implementation
13 Steps to Stay Compliant in ISO 45001
The following ISO 45001 checklist outlines the key steps to implement and maintain your OHSMS effectively.
- Conduct a Gap Analysis – Compare your current health and safety arrangements against the requirements of ISO 45001. Identify where your existing processes meet the standard and where gaps need to be addressed.
- Define your Health and Safety Management System (OHSMS) – Document the scope, boundaries, and applicability of your OHSMS. Clearly state which locations, activities, workers, and interested parties are included.
- Form an OHSMS Team and Assign Responsibilities – Appoint an OHSMS lead and assign roles for risk assessment, policy development, worker consultation, training, and audit activities. Ensure responsibilities are clearly communicated.
- Carry out Comprehensive Risk Assessment – Identify hazards, assess OH&S risks and opportunities, and determine controls. Consider routine and non-routine activities, emergency situations, and the needs of all workers including contractors and visitors.
- Create and Maintain a Risk Register – Record all identified hazards, associated risks, current controls, and risk owners. Keep the register updated as conditions change or new hazards are identified.
- Prepare and Document a Risk Treatment Plan – For each unacceptable risk, determine treatment actions using the hierarchy of controls: elimination, substitution, engineering controls, administrative controls, and personal protective equipment (PPE).
- Complete the Statement of Applicability (SoA) – Document which requirements and controls apply to your OHSMS, with justification for any exclusions. This provides a clear reference for auditors and internal teams.
- Implement OHSMS Policies – Develop and implement your OH&S policy, ensuring it includes commitments to providing safe working conditions, eliminating hazards, reducing risks, consulting workers, and meeting legal and other requirements.
- Establish Ongoing Employee Training – Ensure all workers are aware of the OH&S policy, relevant hazards, their roles within the OHSMS, and the consequences of not conforming. Provide role-specific competency training where required.
- Conduct Internal Audits – Plan and carry out internal audits at planned intervals, working through an ISO 45001 audit checklist to verify your OHSMS conforms to the standard’s requirements and your organisation’s own policies. Use audit findings to drive corrective actions and improvements.
- Perform Periodic Reviews of the OHSMS – Top management must review the OHSMS at planned intervals to confirm its continuing suitability, adequacy, and effectiveness. Record the outcomes and any actions arising from each review.
- Compile and Maintain Records – Maintain documented information as evidence of OHSMS activities, including risk assessments, incident investigations, training records, audit results, management review minutes, and monitoring data.
- Complete an External Certification Audit for ISO 45001 Compliance – Engage an accredited certification body to conduct your Stage 1 (documentation review) and Stage 2 (implementation audit). Address any nonconformities raised to achieve certification.
Enrol in an ISO 45001 Training Course
Working through an ISO 45001 checklist is more effective when your team has the right training. SEQM Training offers CQI and IRCA certified courses to support every stage of your OHSMS journey, including the ISO 45001 Lead Auditor Course, the ISO 45001 Auditor Conversion Course, and the ISO 45001 Internal Auditor Course.
Frequently Asked Questions
An ISO 45001 checklist is a structured guide that helps organisations work through the requirements of the standard step by step. It covers gap analysis, risk assessment, policy implementation, training, internal audits, management reviews, and preparation for external certification.
The main elements of ISO 45001 are organised across Clauses 4 to 10: context of the organisation, leadership and worker participation, planning for hazard identification and risk control, support and competence, operational planning and control, performance evaluation, and improvement.
ISO 45001 does not prescribe six specific mandatory procedures. Instead, it requires organisations to maintain documented information for several processes, including hazard identification and risk assessment, legal and other requirements, OH&S objectives, competence and training, internal audits, and management reviews.
To comply with ISO 45001, implement an OHSMS that meets all requirements of the standard, including defining your scope, conducting risk assessments, implementing controls, training workers, performing internal audits, and undergoing external certification audits by an accredited body.


