Capability domain
Assurance, Audit & Evidence
Evaluate whether governance and controls work in practice through monitoring, evidence, and review
Overview
The Halderstone Capability Framework defines six core capabilities required to design, operate, and improve management systems.
Overview
The Halderstone Capability Framework defines six core capabilities required to design, operate, and improve management systems.
This capability domain focuses on evaluating whether governance structures and operational controls function as intended.
It covers the mechanisms used to generate evidence, assess system effectiveness, and provide structured oversight through monitoring, audits, and management reviews. Topics include audit practices, monitoring and measurement methods, evidence design, and evaluation techniques that support credible assurance.
The goal is to provide decision-makers with reliable insight into whether systems operate effectively and where improvement or intervention is required.
Halderstone Advisory
Advisory services in assurance
Halderstone Advisory
Advisory services in assurance
Halderstone Academy
Training modules on assurance
Halderstone Academy
Training modules on assurance
HAM-AG-C-08
Objectives & Performance Management
Define and govern management system objectives and KPIs with clarity and consistency
Live virtual
7 hours
CHF
550
View module
HAM-AG-C-13
Monitoring & Measurement
Design and run monitoring activities and measurement methods to generate reliable performance data for evaluation and improvement
Live virtual
7 hours
CHF
550
View module
HAM-AG-C-15
Internal Auditing
Plan, perform and use internal audits effectively to support governance and improvement
Live virtual
7 hours
CHF
550
View module
HAM-AG-C-16
Management Review
Conduct effective management reviews with structured inputs, clear decisions and audit-ready evidence
Live virtual
7 hours
CHF
550
View module
HAM-AG-C-17
Improvement Management
Build disciplined corrective action and continual improvement through root cause analysis, action planning, implementation and effectiveness verification
Live virtual
7 hours
CHF
550
View module
HAM-AG-AC-01
Audit Principles
Apply evidence-based audit reasoning, materiality-focused prioritisation and structured audit test planning
Live virtual
7 hours
CHF
550
View module
HAM-AG-AC-02
Audit Communication & Interviewing
Plan and conduct effective audit interviews, use structured questioning, and guide conversations to obtain reliable audit evidence
Live virtual
7 hours
CHF
550
View module
HAM-AG-AC-03
Audit Reporting & Follow-up
Formulate evidence-based audit findings, structure clear audit reports, and verify the effective closure of agreed actions
Live virtual
7 hours
CHF
550
View module
HAM-AG-AC-04
Audit Programme Management
Design and govern risk-informed audit programmes across standards, group structures and programme-level reporting
Live virtual
7 hours
CHF
550
View module
HAM-AG-AC-05
Supplier Auditing
Plan and conduct supplier audits using contract-based criteria, defined evidence targets and disciplined audit documentation
Live virtual
7 hours
CHF
550
View module
HAM-AG-AC-06
Third-Party Auditing
Navigate accreditation, the certification ecosystem, the audit lifecycle, impartiality boundaries and certification decision interfaces
Live virtual
7 hours
CHF
550
View module
HAM-QM-S-02
Product Design & Development Control
Control product design and development, produce the required evidence, and manage design changes effectively
Live virtual
7 hours
CHF
550
View module
HAM-QM-S-03
Service Design & Development Control
Control service design and development, produce required evidence, and manage changes in line with ISO 9001 Clause 8.3
Live virtual
7 hours
CHF
550
View module
HAM-BC-S-03
Business Continuity Preparedness & Response
Structure continuity plans, define response roles and communications, and design exercises aligned with continuity requirements
Live virtual
7 hours
CHF
550
View module
HAM-EM-S-03
Environmental Emergency Preparedness & Response
Establish effective arrangements for environmental emergencies through defined response plans, drills and post-incident learning
Live virtual
7 hours
CHF
550
View module
HAM-AG-A-01
Auditing Context & Scope
Assess whether organisational context, interested parties, scope and system boundaries credibly reflect how the organisation operates
Live virtual
7 hours
CHF
550
View module
HAM-AG-A-02
Auditing Leadership & Governance
Assess whether leadership commitment, policy direction and governance structures credibly steer the management system
Live virtual
7 hours
CHF
550
View module
HAM-AG-A-03
Auditing Risk & Opportunity Management
Assess whether risk and opportunity management credibly informs organisational decisions and priorities
Live virtual
7 hours
CHF
550
View module
HAM-AG-A-04
Auditing Documented Information
Assess whether documented information is fit for use, internally consistent and credible as audit evidence
Live virtual
7 hours
CHF
550
View module
HAM-AG-A-05
Auditing Objectives & Performance Evaluation
Assess whether objectives and KPIs credibly measure and steer organisational performance
Live virtual
7 hours
CHF
550
View module
HAM-AG-A-06
Auditing Operational Control
Assess whether operational controls and process interactions work reliably in day-to-day practice
Live virtual
7 hours
CHF
550
View module
HAM-AG-A-07
Auditing Supplier & Outsourcing Management
Assess whether supplier and outsourced process controls manage risk effectively and achieve intended outcomes across organisational boundaries
Live virtual
7 hours
CHF
550
View module
HAM-AG-A-08
Auditing Internal Audit & Assurance
Assess whether internal audit and related assurance mechanisms cover risk credibly and provide meaningful assurance
Live virtual
7 hours
CHF
550
View module
HAM-AG-A-09
Auditing Management Review
Assess whether management review credibly steers organisational priorities, risks and improvement
Live virtual
7 hours
CHF
550
View module
HAM-AG-A-10
Auditing Improvement Management
Assess whether corrective action addresses nonconformities effectively and whether continual improvement strengthens performance beyond nonconformity response
Live virtual
7 hours
CHF
550
View module
HAM-QM-A-01
Auditing Customer Requirements & Communication Management
Evaluate whether customer requirements are defined, agreed, controlled and traceable from commitment through delivery in an ISO 9001 QMS
Live virtual
7 hours
CHF
550
View module
HAM-QM-A-02
Auditing Product & Service Development
Assess controls, validation and effectiveness in product and service design and development against ISO 9001 requirements
Live virtual
7 hours
CHF
550
View module
HAM-QM-A-03
Auditing Production & Service Provision
Assess whether production and service provision are controlled, monitored and capable of delivering consistent outcomes in an ISO 9001 QMS
Live virtual
7 hours
CHF
550
View module
HAM-IS-A-01
Auditing Information Security Risk Management
Evaluate asset-threat-vulnerability logic, risk treatment decisions, and traceability to controls and the Statement of Applicability
Live virtual
7 hours
CHF
550
View module
HAM-IS-A-02
Auditing Information Security Controls
Evaluate control applicability, implementation evidence and common failure patterns across ISO/IEC 27001 Annex A control themes
Live virtual
7 hours
CHF
550
View module
HAM-AI-A-01
Auditing AI Risk & Impact Management
Evaluate harm, impact and risk reasoning, intended use alignment, and decision traceability in ISO/IEC 42001
Live virtual
7 hours
CHF
550
View module
HAM-AI-A-02
Auditing AI Lifecycle & Data Governance Controls
Evaluate lifecycle and data governance controls across data sourcing, training, validation, deployment, monitoring, and change in ISO/IEC 42001
Live virtual
7 hours
CHF
550
View module
HAM-EM-A-01
Auditing Environmental Aspects & Impacts Assessment
Assess whether environmental aspects are identified, significance is judged credibly, and lifecycle perspective is applied in an ISO 14001 EMS
Live virtual
7 hours
CHF
550
View module
HAM-EM-A-02
Auditing Environmental Operational Control
Assess whether environmental operational controls and emergency preparedness work effectively within an ISO 14001 management system
Live virtual
7 hours
CHF
550
View module
HAM-BC-A-01
Auditing Business Impact Analysis
Assess whether business impact analyses produce credible recovery priorities and recovery objectives in an ISO 22301 BCMS
Live virtual
7 hours
CHF
550
View module
HAM-BC-A-02
Auditing Business Continuity Implementation & Readiness
Evaluate whether continuity strategies, operational readiness and exercising provide credible recovery capability in an ISO 22301 BCMS
Live virtual
7 hours
CHF
550
View module
HAM-DP-A-01
Auditing Privacy Risk & Impact Assessment
Evaluate whether privacy risk assessments and DPIAs produce credible risk understanding and prioritisation in an ISO/IEC 27701 PIMS
Live virtual
7 hours
CHF
550
View module
HAM-DP-A-02
Auditing Operational Privacy Controls
Evaluate whether privacy controls are implemented effectively and applied consistently across personal data processing activities
Live virtual
7 hours
CHF
550
View module
HAM-AG-C-08
Objectives & Performance Management
Define and govern management system objectives and KPIs with clarity and consistency
Live virtual
7 hours
CHF
550
View module
HAM-AG-C-13
Monitoring & Measurement
Design and run monitoring activities and measurement methods to generate reliable performance data for evaluation and improvement
Live virtual
7 hours
CHF
550
View module
HAM-AG-C-15
Internal Auditing
Plan, perform and use internal audits effectively to support governance and improvement
Live virtual
7 hours
CHF
550
View module
HAM-AG-C-16
Management Review
Conduct effective management reviews with structured inputs, clear decisions and audit-ready evidence
Live virtual
7 hours
CHF
550
View module
HAM-AG-C-17
Improvement Management
Build disciplined corrective action and continual improvement through root cause analysis, action planning, implementation and effectiveness verification
Live virtual
7 hours
CHF
550
View module
HAM-AG-AC-01
Audit Principles
Apply evidence-based audit reasoning, materiality-focused prioritisation and structured audit test planning
Live virtual
7 hours
CHF
550
View module
HAM-AG-AC-02
Audit Communication & Interviewing
Plan and conduct effective audit interviews, use structured questioning, and guide conversations to obtain reliable audit evidence
Live virtual
7 hours
CHF
550
View module
HAM-AG-AC-03
Audit Reporting & Follow-up
Formulate evidence-based audit findings, structure clear audit reports, and verify the effective closure of agreed actions
Live virtual
7 hours
CHF
550
View module
HAM-AG-AC-04
Audit Programme Management
Design and govern risk-informed audit programmes across standards, group structures and programme-level reporting
Live virtual
7 hours
CHF
550
View module
HAM-AG-AC-05
Supplier Auditing
Plan and conduct supplier audits using contract-based criteria, defined evidence targets and disciplined audit documentation
Live virtual
7 hours
CHF
550
View module
HAM-AG-AC-06
Third-Party Auditing
Navigate accreditation, the certification ecosystem, the audit lifecycle, impartiality boundaries and certification decision interfaces
Live virtual
7 hours
CHF
550
View module
HAM-QM-S-02
Product Design & Development Control
Control product design and development, produce the required evidence, and manage design changes effectively
Live virtual
7 hours
CHF
550
View module
HAM-QM-S-03
Service Design & Development Control
Control service design and development, produce required evidence, and manage changes in line with ISO 9001 Clause 8.3
Live virtual
7 hours
CHF
550
View module
HAM-BC-S-03
Business Continuity Preparedness & Response
Structure continuity plans, define response roles and communications, and design exercises aligned with continuity requirements
Live virtual
7 hours
CHF
550
View module
HAM-EM-S-03
Environmental Emergency Preparedness & Response
Establish effective arrangements for environmental emergencies through defined response plans, drills and post-incident learning
Live virtual
7 hours
CHF
550
View module
HAM-AG-A-01
Auditing Context & Scope
Assess whether organisational context, interested parties, scope and system boundaries credibly reflect how the organisation operates
Live virtual
7 hours
CHF
550
View module
HAM-AG-A-02
Auditing Leadership & Governance
Assess whether leadership commitment, policy direction and governance structures credibly steer the management system
Live virtual
7 hours
CHF
550
View module
HAM-AG-A-03
Auditing Risk & Opportunity Management
Assess whether risk and opportunity management credibly informs organisational decisions and priorities
Live virtual
7 hours
CHF
550
View module
HAM-AG-A-04
Auditing Documented Information
Assess whether documented information is fit for use, internally consistent and credible as audit evidence
Live virtual
7 hours
CHF
550
View module
HAM-AG-A-05
Auditing Objectives & Performance Evaluation
Assess whether objectives and KPIs credibly measure and steer organisational performance
Live virtual
7 hours
CHF
550
View module
HAM-AG-A-06
Auditing Operational Control
Assess whether operational controls and process interactions work reliably in day-to-day practice
Live virtual
7 hours
CHF
550
View module
HAM-AG-A-07
Auditing Supplier & Outsourcing Management
Assess whether supplier and outsourced process controls manage risk effectively and achieve intended outcomes across organisational boundaries
Live virtual
7 hours
CHF
550
View module
HAM-AG-A-08
Auditing Internal Audit & Assurance
Assess whether internal audit and related assurance mechanisms cover risk credibly and provide meaningful assurance
Live virtual
7 hours
CHF
550
View module
HAM-AG-A-09
Auditing Management Review
Assess whether management review credibly steers organisational priorities, risks and improvement
Live virtual
7 hours
CHF
550
View module
HAM-AG-A-10
Auditing Improvement Management
Assess whether corrective action addresses nonconformities effectively and whether continual improvement strengthens performance beyond nonconformity response
Live virtual
7 hours
CHF
550
View module
HAM-QM-A-01
Auditing Customer Requirements & Communication Management
Evaluate whether customer requirements are defined, agreed, controlled and traceable from commitment through delivery in an ISO 9001 QMS
Live virtual
7 hours
CHF
550
View module
HAM-QM-A-02
Auditing Product & Service Development
Assess controls, validation and effectiveness in product and service design and development against ISO 9001 requirements
Live virtual
7 hours
CHF
550
View module
HAM-QM-A-03
Auditing Production & Service Provision
Assess whether production and service provision are controlled, monitored and capable of delivering consistent outcomes in an ISO 9001 QMS
Live virtual
7 hours
CHF
550
View module
HAM-IS-A-01
Auditing Information Security Risk Management
Evaluate asset-threat-vulnerability logic, risk treatment decisions, and traceability to controls and the Statement of Applicability
Live virtual
7 hours
CHF
550
View module
HAM-IS-A-02
Auditing Information Security Controls
Evaluate control applicability, implementation evidence and common failure patterns across ISO/IEC 27001 Annex A control themes
Live virtual
7 hours
CHF
550
View module
HAM-AI-A-01
Auditing AI Risk & Impact Management
Evaluate harm, impact and risk reasoning, intended use alignment, and decision traceability in ISO/IEC 42001
Live virtual
7 hours
CHF
550
View module
HAM-AI-A-02
Auditing AI Lifecycle & Data Governance Controls
Evaluate lifecycle and data governance controls across data sourcing, training, validation, deployment, monitoring, and change in ISO/IEC 42001
Live virtual
7 hours
CHF
550
View module
HAM-EM-A-01
Auditing Environmental Aspects & Impacts Assessment
Assess whether environmental aspects are identified, significance is judged credibly, and lifecycle perspective is applied in an ISO 14001 EMS
Live virtual
7 hours
CHF
550
View module
HAM-EM-A-02
Auditing Environmental Operational Control
Assess whether environmental operational controls and emergency preparedness work effectively within an ISO 14001 management system
Live virtual
7 hours
CHF
550
View module
HAM-BC-A-01
Auditing Business Impact Analysis
Assess whether business impact analyses produce credible recovery priorities and recovery objectives in an ISO 22301 BCMS
Live virtual
7 hours
CHF
550
View module
HAM-BC-A-02
Auditing Business Continuity Implementation & Readiness
Evaluate whether continuity strategies, operational readiness and exercising provide credible recovery capability in an ISO 22301 BCMS
Live virtual
7 hours
CHF
550
View module
HAM-DP-A-01
Auditing Privacy Risk & Impact Assessment
Evaluate whether privacy risk assessments and DPIAs produce credible risk understanding and prioritisation in an ISO/IEC 27701 PIMS
Live virtual
7 hours
CHF
550
View module
HAM-DP-A-02
Auditing Operational Privacy Controls
Evaluate whether privacy controls are implemented effectively and applied consistently across personal data processing activities
Live virtual
7 hours
CHF
550
View module
HAM-AG-C-08
Objectives & Performance Management
Define and govern management system objectives and KPIs with clarity and consistency
Live virtual
CHF
550
7 hours
View module
HAM-AG-C-13
Monitoring & Measurement
Design and run monitoring activities and measurement methods to generate reliable performance data for evaluation and improvement
Live virtual
CHF
550
7 hours
View module
HAM-AG-C-15
Internal Auditing
Plan, perform and use internal audits effectively to support governance and improvement
Live virtual
CHF
550
7 hours
View module
HAM-AG-C-16
Management Review
Conduct effective management reviews with structured inputs, clear decisions and audit-ready evidence
Live virtual
CHF
550
7 hours
View module
HAM-AG-C-17
Improvement Management
Build disciplined corrective action and continual improvement through root cause analysis, action planning, implementation and effectiveness verification
Live virtual
CHF
550
7 hours
View module
HAM-AG-AC-01
Audit Principles
Apply evidence-based audit reasoning, materiality-focused prioritisation and structured audit test planning
Live virtual
CHF
550
7 hours
View module
HAM-AG-AC-02
Audit Communication & Interviewing
Plan and conduct effective audit interviews, use structured questioning, and guide conversations to obtain reliable audit evidence
Live virtual
CHF
550
7 hours
View module
HAM-AG-AC-03
Audit Reporting & Follow-up
Formulate evidence-based audit findings, structure clear audit reports, and verify the effective closure of agreed actions
Live virtual
CHF
550
7 hours
View module
HAM-AG-AC-04
Audit Programme Management
Design and govern risk-informed audit programmes across standards, group structures and programme-level reporting
Live virtual
CHF
550
7 hours
View module
HAM-AG-AC-05
Supplier Auditing
Plan and conduct supplier audits using contract-based criteria, defined evidence targets and disciplined audit documentation
Live virtual
CHF
550
7 hours
View module
HAM-AG-AC-06
Third-Party Auditing
Navigate accreditation, the certification ecosystem, the audit lifecycle, impartiality boundaries and certification decision interfaces
Live virtual
CHF
550
7 hours
View module
HAM-QM-S-02
Product Design & Development Control
Control product design and development, produce the required evidence, and manage design changes effectively
Live virtual
CHF
550
7 hours
View module
HAM-QM-S-03
Service Design & Development Control
Control service design and development, produce required evidence, and manage changes in line with ISO 9001 Clause 8.3
Live virtual
CHF
550
7 hours
View module
HAM-BC-S-03
Business Continuity Preparedness & Response
Structure continuity plans, define response roles and communications, and design exercises aligned with continuity requirements
Live virtual
CHF
550
7 hours
View module
HAM-EM-S-03
Environmental Emergency Preparedness & Response
Establish effective arrangements for environmental emergencies through defined response plans, drills and post-incident learning
Live virtual
CHF
550
7 hours
View module
HAM-AG-A-01
Auditing Context & Scope
Assess whether organisational context, interested parties, scope and system boundaries credibly reflect how the organisation operates
Live virtual
CHF
550
7 hours
View module
HAM-AG-A-02
Auditing Leadership & Governance
Assess whether leadership commitment, policy direction and governance structures credibly steer the management system
Live virtual
CHF
550
7 hours
View module
HAM-AG-A-03
Auditing Risk & Opportunity Management
Assess whether risk and opportunity management credibly informs organisational decisions and priorities
Live virtual
CHF
550
7 hours
View module
HAM-AG-A-04
Auditing Documented Information
Assess whether documented information is fit for use, internally consistent and credible as audit evidence
Live virtual
CHF
550
7 hours
View module
HAM-AG-A-05
Auditing Objectives & Performance Evaluation
Assess whether objectives and KPIs credibly measure and steer organisational performance
Live virtual
CHF
550
7 hours
View module
HAM-AG-A-06
Auditing Operational Control
Assess whether operational controls and process interactions work reliably in day-to-day practice
Live virtual
CHF
550
7 hours
View module
HAM-AG-A-07
Auditing Supplier & Outsourcing Management
Assess whether supplier and outsourced process controls manage risk effectively and achieve intended outcomes across organisational boundaries
Live virtual
CHF
550
7 hours
View module
HAM-AG-A-08
Auditing Internal Audit & Assurance
Assess whether internal audit and related assurance mechanisms cover risk credibly and provide meaningful assurance
Live virtual
CHF
550
7 hours
View module
HAM-AG-A-09
Auditing Management Review
Assess whether management review credibly steers organisational priorities, risks and improvement
Live virtual
CHF
550
7 hours
View module
HAM-AG-A-10
Auditing Improvement Management
Assess whether corrective action addresses nonconformities effectively and whether continual improvement strengthens performance beyond nonconformity response
Live virtual
CHF
550
7 hours
View module
HAM-QM-A-01
Auditing Customer Requirements & Communication Management
Evaluate whether customer requirements are defined, agreed, controlled and traceable from commitment through delivery in an ISO 9001 QMS
Live virtual
CHF
550
7 hours
View module
HAM-QM-A-02
Auditing Product & Service Development
Assess controls, validation and effectiveness in product and service design and development against ISO 9001 requirements
Live virtual
CHF
550
7 hours
View module
HAM-QM-A-03
Auditing Production & Service Provision
Assess whether production and service provision are controlled, monitored and capable of delivering consistent outcomes in an ISO 9001 QMS
Live virtual
CHF
550
7 hours
View module
HAM-IS-A-01
Auditing Information Security Risk Management
Evaluate asset-threat-vulnerability logic, risk treatment decisions, and traceability to controls and the Statement of Applicability
Live virtual
CHF
550
7 hours
View module
HAM-IS-A-02
Auditing Information Security Controls
Evaluate control applicability, implementation evidence and common failure patterns across ISO/IEC 27001 Annex A control themes
Live virtual
CHF
550
7 hours
View module
HAM-AI-A-01
Auditing AI Risk & Impact Management
Evaluate harm, impact and risk reasoning, intended use alignment, and decision traceability in ISO/IEC 42001
Live virtual
CHF
550
7 hours
View module
HAM-AI-A-02
Auditing AI Lifecycle & Data Governance Controls
Evaluate lifecycle and data governance controls across data sourcing, training, validation, deployment, monitoring, and change in ISO/IEC 42001
Live virtual
CHF
550
7 hours
View module
HAM-EM-A-01
Auditing Environmental Aspects & Impacts Assessment
Assess whether environmental aspects are identified, significance is judged credibly, and lifecycle perspective is applied in an ISO 14001 EMS
Live virtual
CHF
550
7 hours
View module
HAM-EM-A-02
Auditing Environmental Operational Control
Assess whether environmental operational controls and emergency preparedness work effectively within an ISO 14001 management system
Live virtual
CHF
550
7 hours
View module
HAM-BC-A-01
Auditing Business Impact Analysis
Assess whether business impact analyses produce credible recovery priorities and recovery objectives in an ISO 22301 BCMS
Live virtual
CHF
550
7 hours
View module
HAM-BC-A-02
Auditing Business Continuity Implementation & Readiness
Evaluate whether continuity strategies, operational readiness and exercising provide credible recovery capability in an ISO 22301 BCMS
Live virtual
CHF
550
7 hours
View module
HAM-DP-A-01
Auditing Privacy Risk & Impact Assessment
Evaluate whether privacy risk assessments and DPIAs produce credible risk understanding and prioritisation in an ISO/IEC 27701 PIMS
Live virtual
CHF
550
7 hours
View module
HAM-DP-A-02
Auditing Operational Privacy Controls
Evaluate whether privacy controls are implemented effectively and applied consistently across personal data processing activities
Live virtual
CHF
550
7 hours
View module

Ready to improve your management systems?
We support continuous improvement by embedding ISO requirements into everyday practice and daily operations.

Ready to improve your management systems?
We support continuous improvement by embedding ISO requirements into everyday practice and daily operations.

Ready to improve your management systems?
We support continuous improvement by embedding ISO requirements into everyday practice and daily operations.

