产品中心
Home > Services > ISO45001 > ISO 45001 changes

ISO 45001 changes

ISO 45001 changes

    ISO 45001 changes

    ISO 45001 changes are important for organizations that maintain an Occupational Health and Safety Management System (OHSMS) and want to remain compliant with current requirements. Businesses should regularly review updates to the ISO 45001 standard, applicable legal requirements, certification rules, and audit practices that may affect their management system. Professional ISO 45001 consulting can help organizations identify relevant changes, assess their impact, update policies and procedures, revise risk assessments, and implement corrective actions. Regular internal audits, employee trainin...
  • Share:
  • Contact us Inquiry

It sets forth relevant requirements for occupational health and safety management, aiming to enable an organization to control occupational health and safety risks and improve its performance. It serves as another passport for various organizations to enter the market, especially helping to enhance the social image of the organization.


ISO45001 is a new occupational health and safety management system standard developed by the ISO International Organization for Standardization to replace OHSAS18001. This new standard aims to assist organizations worldwide in ensuring the health and safety of their workers, with the ultimate goal of enhancing existing occupational health and safety performance.


ISO45001 will be easier to integrate with other ISO management system standards such as ISO9001:2015 and ISO14001:2015.

ISO 45001 Changes: What Organizations Need to Know and How GAIA Can Help


ISO 45001 changes.jpg


ISO 45001 changes are not just a matter of updating a certificate or changing a few documents. For companies that take occupational health and safety seriously, the real task is to understand what has changed, how those changes affect daily management, and how to turn the standard into something people can actually use.

At GAIA Standard Technical Service Co., Ltd. (GAIA), we work with organizations that need practical certification, audit, and verification support. Since our establishment in 2021, we have focused on management systems, supply chain quality, social responsibility, environmental protection, green and low-carbon development, ESG, and occupational health and safety. Our goal is simple: help a management system work in the real world, not just look good in an audit file.

ISO 45001:2018 remains the current published edition, while ISO 45001:2018/Amd 1:2024 introduced climate action changes. A new ISO/DIS 45001 is also under development, so organizations should avoid treating today's requirements as something that will never move again. Source for standard status: International Organization for Standardization (ISO), ISO 45001:2018 and ISO 45001:2018/Amd 1:2024.


1. What Are the ISO 45001 Changes, and Why Do They Matter?


When I talk with companies about ISO 45001, one question comes up again and again: “Is this just the new version of OHSAS 18001?” The short answer is no.

ISO 45001 replaced OHSAS 18001 and brought occupational health and safety management into the same modern management-system structure used by standards such as ISO 9001 and ISO 14001. That makes it easier for a company to build one connected management framework instead of running several separate systems.

The biggest practical change is the way an organization looks at safety. A traditional safety system can sometimes become a collection of rules, inspection forms, training records, and accident reports. ISO 45001 asks us to go further. We need to understand the organization's context, identify hazards, assess OH&S risks and opportunities, involve workers, consider legal requirements, prepare for emergencies, evaluate performance, and continually improve.

There is also an important 2024 amendment. The amendment adds climate-change considerations to the management-system context requirements. In simple terms, a company should consider whether climate change is a relevant issue that can affect the intended results of its occupational health and safety management system. It also makes clear that relevant interested parties can have requirements related to climate change.

This does not mean every company suddenly needs to build a huge climate program. It means we need to ask a sensible question: Can climate-related conditions create or change occupational health and safety risks for our workers or operations?

For a manufacturing company, the answer may involve extreme heat, flooding, storms, power interruptions, changes in working conditions, emergency response, or supply-chain disruption. For a construction company, outdoor heat and severe weather may be especially important. For a warehouse, logistics company, or agricultural business, the risks may look different.

That is why I recommend treating the ISO 45001 changes as a management question rather than a paperwork question.

The main areas I review with an organization

  • Organizational context and internal and external issues

  • Needs and expectations of workers and other interested parties

  • Hazard identification and OH&S risk assessment

  • Worker consultation and participation

  • Leadership involvement and accountability

  • Legal and regulatory compliance

  • Operational controls and contractor management

  • Emergency preparedness and response

  • Performance monitoring and internal audit

  • Management review and continual improvement

  • Relevant climate-change considerations introduced by the 2024 amendment

The point is not to make the system complicated. The point is to make sure the system reflects what is really happening inside the organization.

Table 1. ISO 45001 and OHSAS 18001: Practical Management Differences
AreaOHSAS 18001 ApproachISO 45001 ApproachPractical Meaning
StructureProcedure-focused management systemHigh-level ISO management-system structureEasier integration with other ISO systems
LeadershipManagement responsibilityStronger emphasis on leadership and accountabilitySafety becomes a management issue, not only an EHS department issue
ContextLess emphasisOrganization context and interested parties are consideredSafety planning connects with the business environment
RiskPrimarily hazard and OH&S risk focusedRisk and opportunities considered within the management systemMore forward-looking planning
Worker participationConsultation requirementsGreater emphasis on consultation and participationWorkers have a more active role in the system
Data basis: ISO 45001:2018 and ISO material describing the transition from OHSAS 18001 to ISO 45001.

2. The 2024 Climate Change Amendment: What Actually Changed?


The phrase “climate change amendment” can sound bigger than it really is. In practice, the 2024 amendment is concise, but its management impact can be meaningful.

For ISO 45001, the key point is connected to Clause 4.1, understanding the organization and its context. Organizations are now expected to determine whether climate change is a relevant issue. Clause 4.2 also makes clear that relevant interested parties may have climate-change-related requirements.

From my perspective, this is a useful change because occupational health and safety does not exist in a vacuum.

Imagine a factory located in a region where summer temperatures are becoming harder to manage. If workers perform physically demanding tasks in a hot production area, heat stress may become a greater OH&S concern. If a factory experiences severe rainfall, flooding may affect evacuation routes, electrical systems, chemical storage, transportation, or emergency response. If a company relies heavily on external suppliers, climate-related disruption may also affect the organization's ability to maintain safe operations.

We should not automatically label every weather event a “climate risk.” The better approach is to identify whether climate-related issues are relevant to the organization's OH&S management system and then decide what action is appropriate.

A simple way to assess the issue

  1. Identify the issue. Consider heat, flooding, storms, drought, changing weather patterns, or other relevant conditions.

  2. Check relevance. Ask whether the issue can affect workers, workplaces, processes, equipment, contractors, or emergency response.

  3. Assess risk. Determine how likely the event is and how serious the potential consequence could be.

  4. Review controls. Check whether current controls are enough.

  5. Take action. Improve emergency plans, work schedules, ventilation, protective measures, training, facilities, or other controls where necessary.

  6. Monitor the result. Do not stop after writing a risk assessment. Check whether the control works.

This is where good ISO 45001 implementation differs from “document preparation.” A document can say that heat stress is controlled. The real question is whether workers have reasonable working conditions when the temperature rises.

The amendment therefore gives companies another reason to connect their management system with actual operating conditions.

Table 2. Examples of Climate-Related OH&S Considerations
SituationPossible OH&S ImpactPossible ControlPerformance Check
Extreme heatHeat stress, fatigue, reduced concentrationVentilation, hydration, rest arrangements, work schedulingHeat-related incidents and worker feedback
FloodingSlips, electrical hazards, blocked evacuation routesDrainage, emergency procedures, electrical protectionEmergency drill results and inspection findings
Severe stormsFalling objects, transport hazards, operational disruptionWeather monitoring, shutdown criteria, emergency responseDrill performance and incident records
Power disruptionLoss of critical safety systems or unsafe process conditionsBackup power, safe shutdown proceduresEquipment testing and emergency drill results
Data basis: practical examples developed from ISO 45001:2018/Amd 1:2024 climate-change considerations; examples are illustrative rather than prescribed controls.

3. How the ISO 45001 Changes Affect Risk Control in Manufacturing


In manufacturing, occupational health and safety is closely tied to production. A machine guard, chemical storage area, maintenance procedure, lifting operation, warehouse route, or contractor activity can create a safety risk within seconds.

That is why I do not recommend building an ISO 45001 system around a thick safety manual. The better system starts with the work itself.

First, we identify the activities. Then we identify hazards. After that, we assess the risk and establish controls. Finally, we verify whether those controls are working.

For example, consider a metal-processing plant. The organization may have risks involving moving machinery, sharp materials, noise, heat, electrical energy, welding fumes, lifting equipment, forklifts, maintenance activities, and contractors.

A weak system might simply list these hazards in a risk assessment spreadsheet. A stronger system asks what actually prevents harm.

For a machine, is there physical guarding? Can the guard be bypassed? Is lockout/tagout properly controlled during maintenance? Do operators understand the safe operating procedure? Are inspections completed? What happens when a worker reports a problem?

For forklifts, do we separate pedestrians from vehicles? Are routes clearly marked? Are drivers trained and authorized? Are speed controls and inspections effective? Do we review near misses rather than waiting for an accident?

This is the practical side of ISO 45001 risk assessment.

The hierarchy of controls matters

When controlling hazards, I encourage organizations to think beyond personal protective equipment. PPE is important, but it should not become the automatic answer to every problem.

If a dangerous substance can be eliminated, elimination is usually stronger than simply giving workers gloves. If a process can be redesigned to reduce exposure, that may be better than relying only on worker behavior. Engineering controls can often provide more stable protection than instructions alone.

A practical control sequence is:

  • Eliminate the hazard where reasonably possible.

  • Substitute a safer material, process, or method where possible.

  • Use engineering controls to isolate people from hazards.

  • Use administrative controls such as procedures, training, scheduling, and supervision.

  • Use appropriate personal protective equipment as the final layer of protection.

ISO 45001 is not asking an organization to make every workplace risk disappear. That is not realistic. It asks the organization to establish a systematic method for controlling OH&S risks and improving performance.

That difference is important for managers. A mature safety system is not one where nobody reports a problem. It is one where people feel comfortable reporting problems early, management responds, and the organization learns from what happened.


4. ISO 45001 certification Can Support Cost Control and Business Efficiency


Some companies see occupational health and safety certification as a compliance expense. I understand why. There are audit fees, training costs, system-development work, corrective actions, and time spent by employees.

But looking only at certification cost misses the bigger picture.

A workplace incident can create direct and indirect costs. Medical expenses may be only one part of the problem. There can also be equipment damage, production downtime, investigation time, replacement labor, overtime, delayed delivery, customer concerns, legal exposure, insurance impacts, and damage to employee confidence.

A well-designed OH&S management system can reduce the chance of these problems by identifying weak points before they become serious incidents.

For example, preventive maintenance may cost money. But an uncontrolled equipment failure can cost much more. A proper contractor evaluation process requires time. But bringing an unsafe contractor into a high-risk work area can create a much bigger problem. Worker training takes time. Repeated accidents caused by poor training take even more time.

This is why I prefer to describe ISO 45001 as a management tool rather than simply a certificate.

Where I look for efficiency improvements

  • Duplicate procedures: Can one integrated procedure support ISO 9001, ISO 14001, and ISO 45001 requirements?

  • Repeated inspections: Can safety, environmental, and production inspections be coordinated?

  • Training: Can required training be organized according to actual risk instead of creating unnecessary courses?

  • Corrective actions: Are we solving root causes, or simply closing paperwork?

  • Supplier and contractor controls: Are high-risk suppliers receiving the right level of attention?

  • Data: Are incident, near-miss, inspection, and audit results used to make decisions?

  • Management review: Does senior management receive useful information instead of a long list of numbers?

Good standardization should make work clearer, not harder. When a system is designed well, employees know what is expected, managers can see where risks are increasing, and auditors can verify evidence without wasting everyone's time.

For companies with multiple ISO systems, integration can be particularly useful. ISO 9001, ISO 14001, and ISO 45001 share a common high-level structure, which can make combined planning, internal audits, document control, corrective action, and management review more efficient.


5. Building a More Standardized Enterprise, Not Just Passing an Audit


There is a big difference between preparing for an audit and building a management system.

If a company only prepares for an audit, employees may spend weeks collecting records, updating documents, and trying to make everything look perfect. After the auditor leaves, the system slowly returns to normal.

That approach creates unnecessary pressure.

I prefer a different method: build the system around normal business activities from the beginning.

Step 1: Understand the organization

We first look at the business, its locations, processes, workforce, contractors, legal requirements, customer expectations, and key OH&S risks. This gives the management system a real foundation.

Step 2: Map the major hazards

We identify routine and non-routine activities, emergency situations, contractors, visitors, maintenance, procurement, and other relevant sources of risk.

Step 3: Define responsibilities

Safety should not belong only to the EHS manager. Senior leadership, supervisors, workers, maintenance staff, HR, procurement, production, and contractors may all have specific responsibilities.

Step 4: Establish operational controls

Controls need to be practical. A procedure that workers cannot understand or follow is not a strong control. The language should be clear, responsibilities should be obvious, and records should provide useful evidence.

Step 5: Measure performance

We need more than accident statistics. Useful indicators can include inspections completed, corrective actions, near-miss reporting, training effectiveness, emergency drills, equipment checks, worker participation, and compliance performance.

Step 6: Audit and improve

Internal audits should be used to find weaknesses before an external audit finds them. The purpose is not to blame departments. The purpose is to understand whether the system is working.

Step 7: Review at management level

Top management should receive meaningful information and make decisions based on it. If the same issue appears repeatedly, the organization should ask why it has not been solved.

This is how ISO 45001 can support enterprise standardization. Instead of having safety knowledge stored in the heads of a few experienced employees, the organization creates repeatable processes that can continue even when people change roles.

For growing manufacturers, this can be particularly valuable. A company may open another factory, add a new production line, introduce new equipment, work with international customers, or expand its supplier network. A standardized OH&S system gives the organization a framework for handling that growth.


6. Why I Recommend GAIA for ISO 45001 audit and Certification Support


Choosing an ISO certification service provider is not simply about finding the lowest price. In my view, the more important question is whether the provider understands management systems, industry operations, audit evidence, and the business pressure behind certification.

GAIA Standard Technical Service Co., Ltd. was established in 2021 and is positioned as a third-party auditing organization serving organizations in Asia and beyond. According to our company credentials, GAIA has CNCA approval under approval number CNCA-R-2022-1132, International Accreditation Service accreditation under MSCB-3712, and HIGG/FEM verification qualification under ID186793. We are also a member of the Social & Labor Convergence Program (SLCP).

Our work covers certification, audit and certification services, and innovative services, with a focus on international ISO management systems, corporate social responsibility, environmental protection, green and low-carbon development, sustainable development, supply chain quality, social responsibility, safety, and ESG.

For ISO 45001, this wider perspective matters because occupational health and safety is increasingly connected with supply chains, customer requirements, ESG expectations, worker welfare, and business continuity.

Our service philosophy

At GAIA, we follow four basic principles: fairness, impartiality, value transmission, efficient service, and integrity. We also work around four service ideas: professionalism, standardization, thoughtfulness, and flexibility.

That sounds formal, but the practical meaning is quite simple.

We want our audit and certification work to be professional without being unnecessarily complicated. We want standards to be understood rather than memorized. We want evidence to reflect actual operations. And we want organizations to understand where they can improve instead of receiving a list of findings that nobody knows how to fix.

Our team brings together professionals with experience in auditing, certification, verification, management, and different industry environments. This allows us to look at both the standard and the business process behind it.

We also maintain management-system certifications and qualifications covering areas such as ISO 9001, ISO 14001, ISO 45001, HSE, GB/T 27922, GB/T 31950, and GB/T 39604, according to our company credentials.

For an organization preparing for ISO 45001 certification, our role is to help make the process organized and understandable. Depending on the organization's needs and applicable certification arrangements, this can include readiness assessment, audit preparation support, management-system review, compliance gap identification, and certification-related audit services.

Most importantly, we understand that every organization is different. A small warehouse does not need the same OH&S system as a large chemical plant. A garment factory does not have the same hazards as a construction company. A global supplier may also face customer and supply-chain requirements that a local business does not.

A useful ISO 45001 system should fit the organization's real risk profile.


7. ISO 45001 Changes FAQ


What is the latest ISO 45001 version?

ISO 45001:2018 remains the current published standard, with ISO 45001:2018/Amd 1:2024 providing a climate action amendment. A new ISO/DIS 45001 is under development, so organizations should monitor future official updates rather than assuming the 2018 edition will remain unchanged indefinitely.

What changed in ISO 45001 in 2024?

The key 2024 change for ISO 45001 is the addition of climate-change considerations. Organizations need to determine whether climate change is a relevant issue for their OH&S management system. They should also consider whether relevant interested parties have requirements related to climate change.

Does the 2024 amendment require every company to create a climate management system?

No. The amendment does not mean every organization needs a separate climate-management program. The organization needs to consider whether climate change is relevant to its management-system objectives and intended outcomes. Where it is relevant, the organization should address the related risks or requirements appropriately.

Is ISO 45001 still valid if a company was certified before the 2024 amendment?

Organizations should work with their certification body and applicable certification arrangements to understand how the amendment is incorporated into their audit and certification process. The important point is to review the organization's context and interested-party analysis and make sure relevant climate considerations have been addressed.

What is the difference between ISO 45001 and OHSAS 18001?

ISO 45001 replaced OHSAS 18001 and uses a more modern management-system structure. It places stronger emphasis on leadership, organizational context, worker participation, risk and opportunity, and integration with other ISO management systems. It is also designed to focus more clearly on improving OH&S performance rather than simply maintaining procedures.

Can ISO 45001 be integrated with ISO 9001 and ISO 14001?

Yes. ISO 45001 is structured to make integration with other ISO management-system standards practical. Organizations can often integrate areas such as document control, internal audit, corrective action, management review, competence, organizational context, and risk-based planning.

Who needs ISO 45001 certification?

ISO 45001 can be used by organizations of different sizes, industries, and locations. It can be particularly valuable for organizations with significant workplace hazards, including manufacturing, construction, mining, oil and gas, logistics, agriculture, and other higher-risk operations. Customer or supply-chain requirements may also make certification commercially important.

How long does ISO 45001 certification take?

There is no single timeline that fits every company. The time required depends on organization size, number of locations, process complexity, risk level, existing management systems, workforce size, and the maturity of current OH&S controls. A company with a mature integrated management system may move faster than an organization starting from zero.

What documents are normally important for ISO 45001?

The exact documented information depends on the organization. Typical evidence can include the OH&S policy, organizational context information, risk and opportunity assessments, hazard identification, legal requirements, objectives and plans, competence records, operational controls, emergency preparedness records, monitoring results, internal audit results, corrective actions, and management review records. The focus should be on useful evidence, not creating documents simply to increase the size of the system.

What does an ISO 45001 auditor look for?

An auditor normally looks for evidence that the OH&S management system is implemented and effective. That can include interviews with workers, workplace observations, document and record review, risk controls, legal compliance, emergency arrangements, leadership involvement, worker participation, incident management, internal audits, and continual improvement.

Can GAIA help with ISO 45001 certification?

GAIA provides third-party audit, certification, verification, and related technical services within its applicable accreditation and approval scope. Organizations considering ISO 45001 can contact GAIA to discuss their business scope, locations, existing management system, certification needs, and applicable audit arrangements.


Conclusion: Treat ISO 45001 Changes as an Opportunity to Improve the Way Work Is Done


When people hear “ISO 45001 changes,” they may immediately think about new documents, new audit questions, and more work. I understand that reaction. But I believe the better way to look at ISO 45001 is to ask a more useful question: Are our safety controls strong enough for the way our business operates today?

The 2024 climate action amendment is a good example. It does not simply add another box to tick. It encourages organizations to think about whether changing environmental conditions can affect occupational health and safety and whether interested parties have relevant expectations.

The wider ISO 45001 framework also encourages organizations to move beyond accident response. Good OH&S management means identifying hazards early, controlling risks, involving workers, strengthening leadership, preparing for emergencies, checking performance, and improving the system over time.

For manufacturers and international suppliers, this can create value well beyond certification. A clearer safety system can support more stable production, better worker confidence, stronger customer trust, more consistent operations, and better control of business risks.

At GAIA, we believe certification should transmit value to the organization. Our role is not simply to look at whether a company has a certificate on the wall. We look at the management system behind that certificate and help organizations understand how standards can support sustainable business development.

If your organization is preparing for ISO 45001 certification, transitioning from OHSAS 18001, reviewing the ISO 45001 2024 amendment, integrating ISO 45001 with ISO 9001 or ISO 14001, or strengthening its occupational health and safety management system, the first step is to understand where you are today.

From there, the work becomes much easier: identify the gaps, prioritize the risks, improve the controls, establish reliable evidence, involve the right people, and keep improving.

That is how I see ISO 45001—not as paperwork for an audit, but as a practical management framework for building safer, more standardized, and more resilient organizations.

ONLINE MESSAGE

Please fill in a valid email address
Captcha Can not be empty

RELATED SERVICES

Follow the GAIA

Scan QR code

GAIA

Business consultation

Contact Information
  • +86 510-85218007
  • service@gaiasts.com
  • 2-2-716, 717 Xiangjiang Road, Xinwu District, Wuxi City, Jiangsu Province
Follow Us
  • Facebook
    Facebook
  • LinkedIn
    LinkedIn
  •  Youtube
    Youtube
  • Twitter
    Twitter
  •  Google+
    Google+
Sitemap

Copyright @ GAIA Standard Technical Service Co., Ltd.  All rights reserved 

Technical Support: Wuxi website construction 

This website uses cookies to ensure you get the best experience on our website.

Accept Reject