top of page

Management System Certification

Байгууллагын менежментийн тогтолцоог олон улсын болон үндэсний стандартын шаардлагад нийцүүлэн үнэлж, баталгаажуулах үйлчилгээ юм. ISO, IEC болон бусад холбогдох стандартын дагуу байгууллагын менежментийн тогтолцооны үр ашиг, нийцлийг хараат бус байдлаар үнэлнэ.

Хамрах хүрээ:

  • ISO 9001 – Чанарын менежментийн тогтолцоо

  • ISO 14001 – Байгаль орчны менежментийн тогтолцоо

  • ISO 45001 – Хөдөлмөрийн эрүүл мэнд, аюулгүй байдлын менежментийн тогтолцоо

  • ISO 27001 – Мэдээллийн аюулгүй байдлын менежментийн тогтолцоо

  • Бусад салбарын менежментийн тогтолцооны стандартууд

Үйлчилгээний давуу тал:

  • Олон улсын түвшинд хүлээн зөвшөөрөгдөх баталгаажуулалт

  • Үйл ажиллагааны үр ашиг, эрсдэлийн удирдлагыг сайжруулах

  • Зах зээл, тендер, харилцагчийн итгэлийг нэмэгдүүлэх

  • Дотоод процесс, баримт бичгийн тогтолцоог сайжруулах

Management System Certification

Image by Georgie Cobbs

1

ISO 27001 ISMS

ISO/IEC 27001 is an international standard designed to establish, implement, monitor, and improve a management system that protects and manages an organization’s information in a systematic, risk‑based manner.

2

ISO 45001 ХЭМАБ

ISO 45001:2018 is an international

standard aimed at protecting

occupational health and safety, reducing workplace risks for employees, and establishing a stable and safe working environment.

3

ISO 9001 ЧМТ

ISO 9001:2015 is an international

standard aimed at ensuring consistent quality of products and services, increasing customer satisfaction, and improving the efficiency of an organization’s internal operations.

4

ISO 22000 ХАБМТ

ISO 22000:2018 is an international

Food Safety Management System

(FSMS) standard intended to

ensure food safety at any stage of the

food chain.

5

ISO 27701 ХМНМТ

ISO/IEC 27701:2019 is an international standard for a Privacy Information Management System aimed at protecting personal data, ensuring confidentiality, and complying with legal requirements related to information privacy.

6

ISO 14001 БОМТ

ISO 14001:2015 is an international Environmental Management System standard aimed at identifying, managing, and reducing the environmental impacts arising from an organization’s activities, and ensuring sustainability.

7

ISO 22301 БТБМТ

ISO 22301:2019 is an international Business Continuity Management System standard aimed at enabling an organization to continue its critical operations during disruptions, interruptions, or disasters.

8

ISO 37001 АЭМТ

ISO 37001:2025 is an international Anti‑Bribery Management System standard aimed at reducing, preventing, detecting, and responding to bribery risks at all levels of an organization.

9

ISO 21001 ББМТ

ISO 21001:2018 нь боловсролын байгууллагын сургалтын үйлчилгээний чанарыг сайжруулах, суралцагч төвтэй хандлагыг хэрэгжүүлэх, бүх оролцогч талуудын хэрэгцээ, хүлээлтийг хангах зорилготой олон улсын стандарт юм. 

Certification Steps

1 / Өргөдлийн маягт бөглөх

Өргөдлийн маягтын хамт байгууллагын гэрчилгээ, зөвшөөрөл, тусгай зөвшөөрлийн хуулбар ирүүлнэ. Стандартын дагуу бичиг баримтаа боловсруулсан, дотоод аудит, удирдлагын дүн шинжилгээний хурал хийсэн байна. 

2 / Өргөдлийн маягтын мэдээлэлд үндэслэн баталгаажуулалтын үнийн санал хүргүүлэх

Үнийн саналыг Монгол болон Олон улсын баталгаажуулалтын хүсэлтэд үндэслэн хувилбартай хүргүүлж болно. 

3 / Баталгаажуулалтын гэрээ байгуулах, баталгаажуулалтыг хийж гүйцэтгэх

Баталгаажуулалтын гэрээний нөхцөлийн дагуу анхдагч, магадлан, давтан баталгаажуулалтыг гүйцэтгэнэ. Шаардлагатай тохиолдолд үл тохирлыг залруулах үйл ажиллагааг үнэлнэ.  

4 / Баталгаажуулалтын гэрчилгээ олгох

Баталгаажуулалтын гэрчилгээг гардуулан өгнө. 

Certification Scheme

ABS Certification Audit Diagram.png

SECTOR

LAW ON CYBERSECURITY

 

Organizations with Critical Information Infrastructure

19.1. The following types of organizations are classified as operators of critical information infrastructure:

- Organizations with energy production, transmission, distribution, and control systems  
- Organizations with clean water, wastewater, heating supply, centralized distribution, and control systems  
- Secondary and tertiary level healthcare institutions  
- Laboratories studying highly dangerous infectious diseases affecting humans or animals  
- Manufacturers of pharmaceuticals, chemical toxic substances, or hazardous materials  
- Banks and financial institutions operating integrated electronic payment, settlement, and transaction systems  
- Telecommunications and IT service providers with natural monopoly or dominant market positions  
- Organizations responsible for air, railway, waterway, and road transport regulation and control systems  
- Fuel and petroleum importers, producers, and distributors  
- Producers, storage operators, and distributors of strategic food supplies  
- Emergency communication and command centers  
- National public radio and television  
- Organizations responsible for core and supporting information systems and national foundational databases  
- Data centers, including branch and backup data center operators  
- Organizations responsible for border checkpoint control systems  
- Operators of strategically important mineral deposits  
- Organizations responsible for integrated systems for registration, monitoring, and information management of passengers and vehicles crossing the state border  

19.2. Organizations with critical information infrastructure shall have the following obligations:

- Implement standards related to ensuring information security  
- Establish a unit or designate an official responsible for cybersecurity activities  
- Conduct cybersecurity risk assessments annually, or partially whenever changes occur in information systems or networks, or upon request of the competent authority, and take appropriate measures based on the findings, recommendations, and requirements  
- Undergo an information security audit every two years  

19.3. If an organization has undergone an information security audit in accordance with international standards within the timeframe specified in this law, the audit report shall be considered as fulfilling the requirement under Article 19.2.6 to conduct an information security audit every two years.

Contact

Thank you for submitting your request.

Contact

MNAS logo.png
IAS_Vert_2021.jpg

Address: Sukhbaatar District, 1st Khoroo, Chandman Center, Ulaanbaatar City, 14240

Phone: 976-91108388

Email: info@abscert.mn

Contact

  • Facebook
  • Twitter

© 2033 by ABS Certification LLC. All rights reserved.

bottom of page