Glossary

What is the common structure (Annex SL) of ISO standards?

Annex SL is the common skeleton ISO gives all of its management system standards: clause 4 context of the organisation, 5 leadership, 6 planning, 7 support, 8 operation, 9 performance evaluation, 10 improvement. ISO 45001, 14001, 9001 and 50001 share it; their differences live inside the clauses. The practical consequence: scope, policy, objectives, internal audit and management review sit in the same place in all four, so each can be built once and serve all of them.

The common skeleton

Modern ISO management system standards use the same ten-clause structure:

ClauseWhat it asks
4 — ContextWhat are we operating in, who has an interest, what is the scope?
5 — LeadershipHas top management taken ownership, is there a policy, are roles assigned?
6 — PlanningRisks, opportunities, legal obligations and objectives.
7 — SupportResources, competence, awareness, communication, documented information.
8 — OperationThe work itself: planning, control, emergency preparedness.
9 — Performance evaluationMonitoring and measurement, internal audit, management review.
10 — ImprovementNonconformity, corrective action, continual improvement.

Why it helps you

Because the skeleton is shared, an element built once serves several systems. Scope (4.3), policy (5.2), objectives (6.2), control of documented information (7.5), internal audit (9.2) and management review (9.3) sit in the same place in all four standards. In Optifora's data layer these shared elements are marked as shared document types; the ones specific to a single standard are kept apart.

Where the differences are

The skeleton is shared, the filling is not. ISO 45001 carries 50 clauses against 26 each for ISO 14001, ISO 9001 and ISO 50001. The gap is not arbitrary: the OH&S standard is more specific about worker participation and hazard identification.

A common mistake

Organisations that notice the shared structure sometimes merge four systems into one giant procedure. The result is a document nobody reads. The right move is to write the shared element once and link it to each standard — link, not merge.

Manage this in Optifora

Optifora is not a single program but a compliance platform assembled from modules. The catalogue states which module is ready today and which is on the roadmap.

See what Optifora is