Does auditor have conflict of interest? Should we ask for different auditor?

A

Audit Consultant

#1
Question:
Do we ask for different auditor due to potential conflict of interest?

Situation:
Small, relatively new company with new technology that is growing in demand has a scheduled certification audit. We were planning on discussing some very confidential items. Auditor who is scheduled has been at the company once before for audit. I never met him. I am very new to working with the company in a permanent quality and regulatory role but have over 20 years in the business and never had this situation, to my knowledge.

Two situations - Should we ask for a different auditor due to potential conflict of interest?

1. Upon speaking to the auditor on Friday he mentioned wife works in quality for a medical device company in same town. There are two highly competitive similar companies in town. It seems to me the auditor should be asked what company his wife works for and if one of the competitors, ask for a different auditor. What is your opinion?

2. Researched same auditor background and found a website he has that lists he has one of our serious competitors as a client. The information does not state when or how long. If current, the answer is clear. If not current or recent, what is your opinion?

Thanks.
 
Elsmar Forum Sponsor

Jen Kirley

Quality and Auditing Expert
Staff member
Admin
#2
Welcome to The Cove! :bigwave:

I have a couple of questions. You say "Auditor who is scheduled has been at the company once before for audit." Does this mean the auditor was employed by the company, or was contracted to audit there? How long ago?

Auditors should be able to assure confidentiality is maintained. However, if it was up to me I would ask the client how they feel about these relationships. I'd like to see what other Covers say.
 
A

Audit Consultant

#3
Thank you for your reply.

Auditor is a member of the Registrar. He was in last for a SA a year ago. I accepted a job five weeks ago with the company being audited and am representing them as VP Quality and Regulatory, along with the VP of R&D.
 
B

Benjamin28

#4
I would say you have a valid reason to be uncomfortable with the auditor. I don't believe there's any reason to be timid about requesting someone more suitable, certainly when you're working with a new technology and closely held proprietary information/processes. Further, even a small amount of distrust in the auditor/auditee relationship will inhibit a productive audit, so you need to either establish a firm trust in the auditor's commitment to maintain confidentiality, or have them replaced with someone you do trust. There's nothing wrong with being aggressive when it comes to protecting your company's confidential information. Perhaps the best course of action would be to sit down with the auditor and lay out your concerns for discussion.
 
D

Dean Frederickson

#5
I think if you are uncomfortable with the auditor, you have every right to request a different auditor. You shouldn't be subjected to worry over what amounts to be a conflict of interest. Just my:2cents:
 
K

Kevin H

#6
If I understand correctly, the auditor in question has been in once before for a surveillance audit by your registrar. He's now scheduled back for a certification audit (is this a recertification?) This same auditor consults and has a competitor of yours as a client (this would imply that he is knowledgeable in your field of business). His wife also works in the medical field, and happens to work for one of your competitors. (Note, I don't see this as a conflict of interest.)

Auditors are supposed to be bound by professional ethics, that they do not discuss details of their clients business outside of the business operations - I have not experienced that provides names and details of confidential information of client companies. I have experienced them use a broad brush and say something along the lines of " I've seen this problem/issue addressed in this way." Of course, my personal experience is just that, and saying that an auditor is not supposed to discuss confidential details doesn't mean that it hasn't occurred.

On the other hand, as he has already done a surveillance audit of your organization, I'd suspect that if he was going to discuss details of your business with competitors he's already gained all the information he would need to do so.
 
A

Audit Consultant

#7
Thank you. It is a Re-Cert. While I am thrilled he has the appropriate background experience to audit, the items he will see for this audit will be dramatically different than the prior one in the area of technology and other items, hence the question. I would say I agree about the wife scenario assuming it is not one of the serious competitors. The fun part of all this is I was just advised of the client list/background portion last evening and the audit begins in 2 hours. I wrote here for a sanity check and am receiving it. While I have been a certified auditor, I didn't take assignments for conflicting companies. However, in this day of rapidly changing technology and mergers, sometimes an auditor or consultant may not realize there could be a conflict of interest. Thank you so much.
 

Wes Bucey

Quite Involved in Discussions
#8
I guess I am an old fogey. I believe in laying all cards on the table when all the betting is done to see who holds what cards.

Seems to me it is time to talk frankly to auditor and his superior about your concerns and clear the air rather than unfairly tarring the auditor with a brush he may not deserve. They will either voluntarily withdraw the auditor or give you assurances confidentiality will be maintained.
 

Randy

Super Moderator
#9
Confidentiality, objectivity and impartiality always come into play and should not be overlooked. Can the auditor meet these requirements?

Conflict of interest? Confidentiality? Where do they start?

Last year I conducted 3 onsite audit training courses at the headquarters locations of some our Registration/Certifcation competitors. Was this a COI? They asked me nothing, I have not stated and I have not been asked anything. That's what confidentiality is about.

As suggested discuss it and if you feel uncomfortable ask for another auditor. You're the customer.
 
A

Audit Consultant

#10
Well, I'm happy to report that all went well today. I asked the auditor about his client list on the website and let him know that a least one of the clients is a major competitor and it turns out he did not do consulting for them but audited them under the registrar about a 18 months ago. We talked a bit more about his consulting practice and background and all checked out fine.

Thank you to all for responding. I have read the blogs from time to time and really enjoyed them. For my first time interacting with this blog I have had such a great expereince. Now to process some overnight ECN's.
 
Thread starter Similar threads Forum Replies Date
N Does 13485 auditor have a right to inspect non-CE products? ISO 13485:2016 - Medical Device Quality Management Systems 5
Q Who does a QC (Quality Control) Auditor report to? General Auditing Discussions 11
S ISO 14001 Clause 4.1 Organization and its context - What does an Auditor expect? ISO 14001:2015 Specific Discussions 12
S Does anyone have any pointers on TS 16949 Internal Auditor Training IATF 16949 - Automotive Quality Systems Standard 4
T What does an auditor review when auditing a AS9102 FAIR? AS9100, IAQG, NADCAP and Aerospace related Standards and Requirements 5
K How does an Internal Auditor document non-ethical or illegal practices Internal Auditing 10
D NADCAP Audit - No work in house - How does a NADCAP auditor audit the process? AS9100, IAQG, NADCAP and Aerospace related Standards and Requirements 8
K What does an AS9100 RABQSA auditor get paid? Career and Occupation Discussions 12
G Does BSI do ISO 9001/TS 16949 Lead Auditor training? Training - Internal, External, Online and Distance Learning 5
eternal_atlas Does the age of the lead auditor matter in QMS audits ? General Auditing Discussions 32
J Does a Lead Auditor need to be present at an audit? IATF 16949 - Automotive Quality Systems Standard 8
Sidney Vianna Does your Registrar have a high Auditor Turnover Rate? Registrars and Notified Bodies 15
K Lead Internal Auditor Training - Does the lead auditor require additional training? Internal Auditing 6
M Does anyone know how to become a 2nd party auditor? General Auditing Discussions 0
I Internal Auditor Training - Does TS 16949 Require Formal Training or Certification? Internal Auditing 19
T Does your auditor give you a "schedule" (what times/who will be audited?) IATF 16949 - Automotive Quality Systems Standard 6
M Internal Quality Auditor vs. QMS Lead Auditor - How much $ does each make? Career and Occupation Discussions 6
lanley liao Does all of the suppliers need to integrated into the supplier list qualified of the company? Oil and Gas Industry Standards and Regulations 2
0 To which part of 13485 does this refer? ISO 13485:2016 - Medical Device Quality Management Systems 3
A Medical Device Contract Manufacturer - Does the CM need to register with FDA? 21 CFR Part 820 - US FDA Quality System Regulations (QSR) 3
J Records Control - Does each individual record need to be numbered? Records and Data - Quality, Legal and Other Evidence 2
lanley liao Does the customer`s trademark belong to customer-supplied property? Oil and Gas Industry Standards and Regulations 2
H How does a gas turbine work on diesel fuel? Oil and Gas Industry Standards and Regulations 12
G What does performance specification include? US Food and Drug Administration (FDA) 1
W Where does a coatings and paint company fall in IATF? IATF 16949 - Automotive Quality Systems Standard 5
A How much does a complete biocompatibility test package cost? Other ISO and International Standards and European Regulations 1
B Does anybody know how to get older versions of Minitab to work in Windows 10? Quality Tools, Improvement and Analysis 9
M Does the ISO 9001:2015 standard require a disaster recovery plan or emergency response plan ISO 9000, ISO 9001, and ISO 9004 Quality Management Systems Standards 16
C Does an accessory need an IFU if it use is discussed in the Parent device IFU? 21 CFR Part 820 - US FDA Quality System Regulations (QSR) 5
S How long does it take to register a product with MHRA? UK Medical Device Regulations 3
M Quality Manual - Where does Revision History Section go? Document Control Systems, Procedures, Forms and Templates 8
U Does *anyone* know a lab that will test to EN 455-4 Medical Gloves shelf life determination? EU Medical Device Regulations 1
A Brexit When does the UK responsible person need to be in place? UK Medical Device Regulations 10
M How does IEC-60601-1 apply to a non-medical device in the patient vicinity? IEC 60601 - Medical Electrical Equipment Safety Standards Series 1
N Does anyone have experience of GB/T 34986-2017? China Medical Device Regulations 1
Z Does anyone have experience with EN ISO 17664 ? IEC 62366 - Medical Device Usability Engineering 9
F Does anyone have an ESD quality/cooler talk to share? Training - Internal, External, Online and Distance Learning 4
A What does this line from MDCG 2020-3 (MDR art. 120 substantial change) mean to you? EU Medical Device Regulations 4
D Change Approval Requirements - Does every change need formal customer approval? Design and Development of Products and Processes 17
T What does AS9100 mean when it says you must establish a process to do X? AS9100, IAQG, NADCAP and Aerospace related Standards and Requirements 24
L Does a backdate form format can be changed if wrong revision is used? Document Control Systems, Procedures, Forms and Templates 8
B General Motors and Honda Alliance - What does this mean to suppliers? IATF 16949 - Automotive Quality Systems Standard 3
C ISO 13485 :2016 - CAPA - Does every CAPA need to be checked by regulations? ISO 13485:2016 - Medical Device Quality Management Systems 9
A Does ISO 9001:2015 cover all the requirements of ISO 10012:2003? ISO 9000, ISO 9001, and ISO 9004 Quality Management Systems Standards 6
N FDA UDI - Label vs. Labeling - Does the insert need to include UDI? Other US Medical Device Regulations 1
A Does anyone have a checklist of API Spec 650 13th Edition? Oil and Gas Industry Standards and Regulations 0
D Does Manufacture can submit CE mark application under MDD with NB for his New product after May 2020? EU Medical Device Regulations 3
A What does this sentence "this symbol shall be used in the orientation shown" mean in ISO 780:2015? Other Medical Device Related Standards 4
L Turkish Requirements - Does the Software need to be translated? CE Marking (Conformité Européene) / CB Scheme 2
R Where does IATF 16949 address Process mapping? IATF 16949 - Automotive Quality Systems Standard 3

Similar threads

Top Bottom