ISO 45001 Gap Analysis: A Practical Guide for Singapore Workplaces

ISO 45001 Gap Analysis: A Practical Guide for Singapore Workplaces

Why an ISO 45001 Gap Analysis Matters for Singapore Organisations

Singapore’s workplace safety and health (WSH) environment has never been more demanding. The Workplace Safety and Health Act (Cap. 354A), enforced by the Ministry of Manpower (MOM) and supported by the WSH Council, places a clear legal duty on employers to eliminate or reduce risks so far as is reasonably practicable. Yet for many organisations — particularly those responding to client tenders, entering regulated supply chains, or operating in higher-risk sectors such as construction, marine, and manufacturing — meeting the legal minimum is no longer sufficient.

ISO 45001:2018 has become the internationally recognised benchmark for occupational health and safety (OHS) management systems, and Singapore businesses are increasingly expected to demonstrate conformance. Before pursuing certification, however, you need an honest, evidence-based assessment of where your current system stands. That is the purpose of an ISO 45001 gap analysis: a structured review that identifies conforming elements, partial conformities, and outright gaps, giving management the clarity needed to build a realistic implementation roadmap.

In the Singapore context, this exercise is especially valuable because the WSH (Risk Management) Regulations 2006 already require formal risk assessments and documented controls. A thorough gap analysis maps your existing WSH documentation directly against ISO 45001 clauses, revealing where local compliance already satisfies the standard and where new processes must be developed. Organisations holding or pursuing bizSAFE Star certification will find considerable structural overlap, making the gap analysis a natural bridge between regulatory compliance and international recognition.

Need a Legal Register for Your ISO Certification?

Stop maintaining spreadsheets. Our Legal Register platform covers 100+ Singapore legislation across 7 ISO standards — auto-updated, audit-ready.

Start Free Trial → See How It Works

Step-by-Step: Conducting Your ISO 45001 Gap Analysis

ISO 45001:2018 follows the High-Level Structure (HLS) shared by all modern ISO management system standards. Work through each clause systematically, rating every element as Conforming, Partial, or Non-Conforming, and record objective evidence for each rating. The checklist below highlights the most common gaps found in Singapore workplaces.

Clause 4 — Context of the Organisation

Confirm that you have documented the internal and external issues relevant to your OHS objectives, identified all interested parties (including MOM inspectors, contractors, workers’ representatives, and neighbouring occupiers), and formally defined the scope of your OHS management system. Many Singapore companies capture some of this through their bizSAFE risk management plans, but ISO 45001 requires a more explicit stakeholder analysis and a written scope statement. This is one of the most commonly underestimated gaps at the outset.

Clause 5 — Leadership and Worker Participation

Check whether top management has formally assigned OHS roles and accountabilities in writing, and whether documented mechanisms exist for workers — including non-managerial staff, foreign workers, and contractors — to participate in hazard identification and incident investigation. The WSH Act’s duties on employers and occupiers align broadly with this clause, but ISO 45001 demands demonstrable consultation, not merely notification. Safety committee minutes, toolbox talk records, and signed participation logs all serve as useful evidence.

Clause 6 — Planning

Assess whether your existing risk assessments under the WSH (Risk Management) Regulations cover all activities, including non-routine tasks, emergency scenarios, and contractor operations. ISO 45001 additionally requires the organisation to determine applicable legal and other requirements, set measurable OHS objectives with targets and timelines, and plan specific actions to address identified risks and opportunities. Cross-reference your current risk register against these requirements and note any activities that have not been formally assessed.

Clause 7 — Support

Review competency records, training matrices, and internal communication procedures. Verify that safety training records satisfy both MOM mandatory course requirements and the standard’s broader competency framework. Check that your documented information controls — version control, retention periods, access rights — meet ISO 45001’s requirements for maintaining and retaining documented information. Gaps here are common and straightforward to close with a document control procedure.

Clause 8 — Operation

Confirm that operational controls are in place for all significant hazards identified in your risk register, including management of change procedures for new equipment, processes, or contractors. Procurement controls — ensuring that suppliers and contractors meet your OHS requirements — are frequently underdeveloped in Singapore SMEs and represent a common audit finding.

Clauses 9 and 10 — Performance Evaluation and Improvement

Evaluate whether you have a functioning internal audit programme, a management review process with documented outputs, and a systematic approach to investigating incidents and near-misses. ISO 45001 requires corrective actions to address root causes, not just immediate symptoms. If your current incident investigation process stops at remedial action without root-cause analysis, this will be flagged as a gap.

Translating Gap Analysis Findings into an Implementation Roadmap

Once your gap analysis is complete, prioritise findings by risk and effort. A practical approach is to group gaps into three categories:

  • Quick wins — documentation updates, procedure formalisation, and training record consolidation that can be completed within weeks.
  • Medium-term actions — process redesign, worker participation mechanisms, and management review frameworks typically requiring one to three months.
  • Longer-term structural changes — cultural shifts, competency development programmes, and supply chain OHS integration that require sustained leadership commitment.

Assign clear owners, deadlines, and success criteria to each action. Revisit the gap analysis findings at each management review to track closure progress and update your implementation timeline accordingly.

It is also worth noting that a gap analysis conducted by an experienced external consultant often surfaces issues that internal teams — too close to day-to-day operations — may overlook. An objective third-party review adds credibility to your findings and can significantly shorten the path to certification readiness.

From Gap Analysis to Certification: What Comes Next

A completed gap analysis is the foundation, not the finish line. Once gaps are closed and your OHS management system is operating effectively, you will need to engage an accredited certification body for a Stage 1 documentation review followed by a Stage 2 on-site audit. Maintaining certification requires annual surveillance audits and a three-year recertification cycle.

Understanding the full certification journey — costs, timelines, accreditation body selection, and how ISO 45001 interacts with Singapore’s WSH regulatory framework — is essential before committing resources. For a comprehensive overview of the process, requirements, and what to look for in a certification partner, see our guide to ISO certification in Singapore.

Ready to find out exactly where your OHS management system stands? Speak to a Sage Shield consultant about an ISO 45001 gap analysis tailored to your Singapore workplace.



Free
Consultation
Call Now WhatsApp
☍ Legal Register Platform — AI-Powered Compliance for 15 APAC Countries Try Free →