The process of EHS compliance auditing

28th August 2020

Web p26 27 audit warehouse istock 186704014hires cmyk ehs audit warehouse istock 186704014 retouched

Related Topics

Related tags

  • Reporting ,
  • sea ice loss ,
  • Management ,
  • Auditing


Philip Vincent Michael Case

Peter Duncan walks through the process of third-party environmental and health and safety compliance auditing – from pre-audit prep to the final report

Environmental and health and safety (EHS) auditing is not a legal requirement but a proactive management tool for organisations. Let's consider third-party EHS audits, with a focus on compliance audits as opposed to management system audits.


Every EHS audit consists of three phases: pre-audit preparation, on-site audit, and post-audit report and follow-up.

Pre-audit preparation is vital to ensure the on-site audit is completed efficiently and effectively. It should apply to both auditee and auditor; if on-site improvements can be driven by the approaching audit, it has already gone some way to achieving its objective.

Preparation should begin at least six weeks before the audit in order to give site personnel time to prepare any necessary pre-audit information, and to ensure they have adequate notice.

A key element of preparation is the information request detailing the documentation required for the audit. Some of the key information can be forwarded ahead of the audit, but at the least the information should be made readily available at the time of the audit. If information is provided by the site in advance, this must be reviewed by the audit team before the audit.

A pre-audit meeting between auditee(s) and audit team should be arranged by the lead auditor, via teleconference where a face-to-face meeting is not practical. The purposes of the meeting are to make introductions and discuss the proposed audit schedule, process and logistics. On-site hazards will be discussed in order to highlight PPE requirements. The audit opening meeting details can be confirmed in terms of attendees and who will be dialling in on the day; this will help to ensure the audit runs smoothly. The meeting is also an opportunity to obtain background information about the site, its operations and processes, and any EHS programmes that are in place.

On-site audit

The on-site audit can be broken down into opening presentation, site orientation tour, audit, and closing presentation.

On arrival, the induction is a good opportunity to get a further perspective of the organisation – in terms of both EHS culture and any particular EHS hazards that are present. The reception area itself can provide a lot of information, as this area often promotes and highlights the company's history, products, certifications (EMS and health and safety management systems) and EHS policy statements. It is useful to see if the latter documents are in date, for example. The induction process – or lack of one – can be a good indication of EHS commitment and culture.

“Every finding or area of non-compliance must be supported by evidence-based facts“

The opening meeting provides an opportunity for site personnel and the audit team to introduce themselves, and should ideally be attended by senior management and the key personnel who will be participating in the audit process. Many organisations have developed model opening conference presentations that outline the audit process and activities. The meeting also provides a forum for the lead auditor to emphasise that the audit process is to support the organisation in achieving its EHS goals. The lead auditor should emphasise that the audit team should be seen as an extension of organisation's EHS team, helping to support improvement.

The orientation tour provides an opportunity to walk through the site, observing activities and processes. It also gives the auditor an indication of the EHS culture and the extent to which standards are being met. It is helpful to have a plan of the facility that can be used to note any areas you would like to revisit, making sure the orientation tour does not become too in-depth.

The audit process should be driven by a clearly defined scope that includes the standards or requirements on which the audit is predicated. If the focus of the audit is EHS regulatory compliance, it is important both auditor and auditee understand that regulatory compliance is the standard to be achieved. Other standards or requirements may include management systems, company policies or operating procedures, for example.

There are many techniques to securing a good audit and bringing value. The verification process is key; every finding or area of non-compliance must be supported by evidence-based facts derived from sources including verbal, visual and/or documentary evidence. Without such evidence, the auditor's credibility can quickly be undermined. It is the auditor's skills that allow for such evidence to be realised, ensuring areas of greatest risk are given sufficient focus. Audit techniques include the 'five whys' of root cause analysis and the 'who, what, where, when, why' technique for information gathering. Speculation or assumptions should not be made.

Areas of non-compliance must be communicated with the auditee at the time in order to ensure openness within the process; such findings can be further discussed in a daily debrief, to ensure there are no surprises at the end of the audit.

The closing meeting is important, with the results presented to the auditees and wider management team. If the audit has been programmed by corporate head office, they may dial into the meeting. The closing meeting should be scheduled to allow time to discuss the findings. The findings and related information must be well presented, so the auditor must be given sufficient time to compile the presentation. The presentation should include a description of each finding, a regulatory citation against which the finding is determined, and clearly defined supporting evidence. In addition, the organisation may require recommended actions that will address the finding.

Begin the closing meeting by thanking the auditees for their time and cooperation, as appropriate. Highlight good practice and areas of excellence as well as the identified findings – this will provide a more balanced approach. A copy of the closing presentation can be left with the organisation, and the required formal reporting timescale and subsequent follow-up can be confirmed.

Post-audit report

The format of the formal audit report is often determined by the commissioning organisation, as this will readily allow for comparisons across their portfolio of sites. For an EHS compliance audit, a pre-prepared proforma is often preferred, allowing for a concise record of: the regulatory requirement associated with a given finding; a clear description of the finding/non-compliance; the regulatory citation; the level of associated risk; and any other supporting facts based on verified evidence. It is imperative that each finding is written to be clear, concise, closable and standalone. The required reporting style may vary between organisations, but the report's purpose will remain the same: achieving and maintaining EHS regulatory compliance and continuous improvement, and providing value to the commissioning organisation.

Once the report has been issued, a pre-organised call with the auditee allows for any questions or clarifications to be considered before it is finalised.

Peter Duncan is a principal environmental advisor and specialist discipline lead at Stantec.

Picture credit: iStock


Subscribe to IEMA's newsletters to receive timely articles, expert opinions, event announcements, and much more, directly in your inbox.

Transform articles

A social conscience

With a Taskforce on Inequality and Social-related Financial Disclosures in the pipeline, Beth Knight talks to Chris Seekings about increased recognition of social sustainability

6th June 2024

Read more

Disinformation about the impossibility of averting the climate crisis is part of an alarming turn in denialist tactics, writes David Burrows

6th June 2024

Read more

David Symons, FIEMA, director of sustainability at WSP, and IEMA’s Lesley Wilson, tell Chris Seekings why a growing number of organisations are turning to nature-based solutions to meet their climate goals

6th June 2024

Read more

A system-level review is needed to deliver a large-scale programme of retrofit for existing buildings. Failure to do so will risk missing net-zero targets, argues Amanda Williams

31st May 2024

Read more

Chris Seekings reports from a webinar helping sustainability professionals to use standards effectively

31st May 2024

Read more

Although many organisations focus on scope 1 and 2 emissions, it is vital to factor in scope 3 emissions and use their footprint to drive business change

31st May 2024

Read more

IEMA submits response to the Future Homes Standard consultation

31st May 2024

Read more

What is the role for nature in the Climate Change Act? Sophie Mairesse reports

20th May 2024

Read more

Media enquires

Looking for an expert to speak at an event or comment on an item in the news?

Find an expert

IEMA Cookie Notice

Clicking the ‘Accept all’ button means you are accepting analytics and third-party cookies. Our website uses necessary cookies which are required in order to make our website work. In addition to these, we use analytics and third-party cookies to optimise site functionality and give you the best possible experience. To control which cookies are set, click ‘Settings’. To learn more about cookies, how we use them on our website and how to change your cookie settings please view our cookie policy.

Manage cookie settings

Our use of cookies

You can learn more detailed information in our cookie policy.

Some cookies are essential, but non-essential cookies help us to improve the experience on our site by providing insights into how the site is being used. To maintain privacy management, this relies on cookie identifiers. Resetting or deleting your browser cookies will reset these preferences.

Essential cookies

These are cookies that are required for the operation of our website. They include, for example, cookies that enable you to log into secure areas of our website.

Analytics cookies

These cookies allow us to recognise and count the number of visitors to our website and to see how visitors move around our website when they are using it. This helps us to improve the way our website works.

Advertising cookies

These cookies allow us to tailor advertising to you based on your interests. If you do not accept these cookies, you will still see adverts, but these will be more generic.

Save and close