Guide
ISO 45001 Gap Analysis: A Checklist for Singapore Businesses
What a gap analysis is, the key areas it checks, and a practical checklist to see how ready your safety system is before certification.
6 min readAn ISO 45001 gap analysis is a structured review that compares your current safety practices against the requirements of the standard, so you know exactly what is missing before you commit to certification. It is the smartest first step for any Singapore business heading for ISO 45001. This guide explains what it covers and gives you a practical checklist.
Key takeaways
- A gap analysis shows the difference between what you do now and what ISO 45001 requires.
- It is best done before you start implementation, so you can plan time and budget realistically.
- The main gaps for SMEs are usually documentation, hazard registers and worker consultation.
- The output is a clear action list, not a pass or fail.
- It also helps you avoid surprises at the certification audit.
- A good consultant runs it around your operations and focuses on your real risks, not box-ticking.
What is an ISO 45001 gap analysis?
A gap analysis walks through every clause of ISO 45001 and checks whether your business already meets it, partly meets it, or does not meet it yet. Think of it as a health check for your safety system. It does not result in a certificate and it is not a pass or fail. The output is a list of gaps and the actions needed to close them.
It is different from the certification audit. The gap analysis is yours, done early to plan the work. The certification audit comes at the end, done by a certification body to award the certificate. If you want the full picture of the journey, see our ISO 45001 cost guide.
Why do a gap analysis first?
- Realistic timeline: you know how much work is left before you set a date.
- Accurate budget: no surprise costs halfway through.
- Focus: effort goes to real gaps, not areas you already handle well.
- No audit shocks: issues are found and fixed before the certification body sees them.
The ISO 45001 gap analysis checklist
Run through these areas and mark each as in place, partial, or missing. This mirrors the structure of the standard.
1. Context and leadership
- Have you identified the internal and external issues that affect safety?
- Is there a documented OH&S policy signed by top management?
- Are safety roles and responsibilities clearly assigned?
2. Worker participation
- Is there a way for workers to raise hazards and be consulted on safety?
- Do you have a safety committee or equivalent for your size?
3. Hazard identification and risk
- Do you have a current risk register covering all work activities?
- Are hazards assessed and controls assigned using the hierarchy of control?
- Is there a register of applicable WSH legal requirements?
4. Operation and emergency
- Are safe work procedures documented for high-risk tasks?
- Is there an emergency response plan, and is it tested?
- Are contractors and visitors covered by your controls?
5. Performance and improvement
- Do you record and investigate incidents and near misses?
- Do you run internal audits and a management review?
- Is there a process to track and close corrective actions?
Why bring in a consultant
You can run the checklist above yourself. Where an experienced consultant earns their keep is in how the work is done, and in reading the standard the way an auditor actually will.
What you get from ZES
- We work around your operations. The review is short, focused on-site sessions alongside your team, no shutting down the line or pulling everyone into a meeting room for days.
- Risk-based, not box-ticking. Effort goes where your real high-risk work is, so you build controls that protect people and skip the paperwork that does nothing.
- We read the standard the way an auditor will. That stops you over-building documents you do not need, or missing something that fails the certification audit.
- You own the system, we get you through it. One experienced consultant from start to finish, no sales handovers, no juniors.
What happens after the gap analysis?
Action list. Each gap becomes a task with an owner and a due date.
Build the system. Close the gaps: write the missing procedures, build the risk register, set up worker consultation.
Run it. Operate the system for a period so there are records to audit.
Internal audit and review. Check it works before the certification body arrives.
Certification audit. The certification body audits in two stages and issues the certificate.
With ZES, the gap analysis and everything after it is handled by one experienced consultant working directly with you, around your operations, practical and risk-based, not a binder of paperwork. If you also need quality or environmental standards, ask about an integrated management system so all three are built together.
Frequently asked questions
How long does an ISO 45001 gap analysis take?
For a typical SME, a gap analysis can be completed in a short on-site review plus a written report, often within a week or two. Larger or multi-site operations take longer.
Is a gap analysis the same as the certification audit?
No. The gap analysis is an early, internal review to plan the work. The certification audit is the final assessment by a certification body that leads to the certificate.
Can I do the gap analysis myself?
You can, using a checklist like the one above. The value of an experienced consultant is interpreting the standard correctly and judging what an auditor will actually expect, which avoids over-building or missing things.
Will the gap analysis disrupt our daily operations?
No. It is built around your schedule: a short on-site walkthrough plus a few focused conversations with the people who do the work, then the report is written off-site. Production keeps running. Getting the assessment without losing days of work is a big part of why businesses bring in a consultant rather than stopping to do it themselves.
What are the most common gaps for Singapore SMEs?
Usually documentation (missing safe work procedures), an incomplete or outdated risk register, no formal worker consultation, and no internal audit or management review process.
Does ISO 45001 replace WSH Act compliance?
No. ISO 45001 builds on top of your legal obligations under the WSH Act. Certification shows you go beyond the legal minimum with a structured safety system.
Talk it through with Nachi
Tell us your industry and headcount, and get a quote and a realistic timeline, free, same day.
WhatsApp us: 8901 2255Prefer email? Leave your details and Nachi replies within one working day:
ZES Consulting · 20+ years · 268+ projects · contact page