ISO 9001 and ISO 27001: Recertification successfully completed
EXCON has successfully completed the current recertification audit of its Quality Management System (QMS) in accordance with DIN EN ISO 9001:2015 and its Information Security Management System (ISMS) in accordance with DIN EN ISO/IEC 27001:2024. Both certifications have been renewed.
As part of the audit, the existing management systems, processes and documented evidence were reviewed by the independent certification body. The assessment examined whether the requirements of the respective standards continue to be met and whether the defined processes are being implemented accordingly throughout the company.
Quality management has been an integral part of the company since 2004
The quality management certification was conducted on the basis of the ISO 9001:2015 standard. The associated requirements formed part of the recertification audit, which takes place on a three-year cycle following two surveillance audits. The successful recertification confirms compliance with the standard through 2029. Compliance will also be reviewed during surveillance audits in each of the following two years.
Among other aspects, the Quality Management System defines binding procedures, responsibilities and control mechanisms within the company. Its purpose is to ensure that processes are transparent and traceable, regularly reviewed and adjusted where necessary.
ISO 27001:2024 certification renewed
The certification of the Information Security Management System in accordance with ISO 27001:2024 has also been renewed.
The ISMS governs EXCON’s systematic approach to information security at EXCON. This includes the assessment and treatment of information security risks, clearly defined responsibilities, and organisational and technical measures designed to protect information.
The recertification audit assessed whether the established processes and measures continue to comply with the requirements of the relevant clauses of the standard and are effectively applied throughout the company.
Increasing requirements due to revised standards
In recent years, the requirements associated with both audits have changed significantly as a result of revisions to the underlying standards. Consequently, implementation requirements and audit criteria have become more detailed and complex in many areas.
Benno Harbauer, Head of Internal Audit at EXCON, comments on the result:
“Particularly in the area of information security management, audits have become considerably more detailed and complex in recent years as a result of changes to the standards. Nevertheless, during the recertification process we were able to demonstrate that EXCON successfully completed both certifications with very strong results. At the same time, the findings of our internal audits were confirmed by the external assessment.”
Regular independent assessment
ISO certifications are not a one-time assessment. The management systems are regularly reviewed by external auditors. In addition to compliance with the requirements of the respective standards, the audits also focus on practical implementation and the continuous improvement of the systems.
With the successful completion of the current recertification audit, EXCON’s certifications for quality management and information security remain valid and continue to provide essential evidence of the effectiveness and integrity of its internal processes. Further information about our certifications is available on our Compliance and Certifications page.