What is ISO 9001?
ISO 9001 is the international standard for quality management. It does not certify that a product is good or that a service is fast. It certifies that your organization runs a working quality management system (QMS): a defined way of understanding what customers and regulators require, designing processes that deliver it, measuring whether they did, and fixing what fell short, over and over.
That distinction matters more than it sounds. An auditor is not judging your product. They are asking whether you can show them the system you use to get it right consistently, and the evidence that the system runs. ISO 9001 is also, by a wide margin, the most widely held management-system certificate in the world, which is why it turns up in tenders and supplier questionnaires across every industry, not just manufacturing.
The current edition is ISO 9001:2015. It was confirmed unchanged in 2021, and Amendment 1:2024 added a requirement to consider whether climate change is a relevant issue for the organization and its interested parties, the same amendment ISO applied to ISO 27001 and its other management-system standards.
ISO 9001 vs ISO 27001
ISO 9001 and ISO 27001 share the same harmonized clause structure, but they manage different things. ISO 9001 is about the quality of what you deliver to customers; ISO 27001 is about the security of the information you handle. Each is certified on its own, but because clauses 4 to 10 line up almost word for word, many organizations run the two as one integrated management system, with one context analysis, one audit programme, one management review and one set of corrective actions.