Skip to main content
What are you looking for?

Type a word: we look through the titles and the text of every page.

Quality policy

The commitments that guide our work

The management system of {legalName} is certified to UNI EN ISO 9001:2015 for the design and delivery of training services, and information security follows the ISO 27001 standard. This page says what those certificates mean in everyday work.

Last updated: 18 September 2026

Why a quality policy

A quality policy is not a statement of intent: it is the document in which management sets out what it considers a good result, and what it accepts to be measured on. Without one, a management system becomes a binder of procedures nobody connects to the actual work.

Corporate training has a difficulty of its own: the result shows months after delivery, and in people who did not commission the project. That is why quality here is not settled on the finished product but on the method that gets there.

Our commitments

There are five, and they apply both to training services and to the platforms that deliver them:

  • Start from the need, not from the catalogue. Every project begins with an analysis of the client's context, objectives and constraints: it is the stage that decides whether the rest will make sense.
  • Design in house. Conception, instructional design and development stay with us, from the analysis of the need to publication: it is what allows us to answer for what we deliver.
  • Measure results. Completion, assessment of learning and participant feedback are data, not impressions: we collect them and give them back to the client.
  • Stay after delivery. Support, updates to regulatory content and platform maintenance are part of the service, not a separate one.
  • Improve continuously. Observations, complaints and non-conformities are inputs to the system: they are recorded, analysed and produce an action.

How these commitments become verifiable

Management sets measurable objectives consistent with these commitments each year and reviews whether they were met. The management system undergoes internal audits and periodic audits by the certification body, which verifies its conformity with the standard.

The necessary resources — skills, tools, time — are a commitment of management: a quality objective without the resources to reach it is an objective declared, not pursued.

Information security

The platforms we build process people's data: participant records, learning paths, assessment results. Information security is therefore not a chapter separate from service quality, it is part of it.

The related commitments — access control, continuity, incident management, risk assessment — follow the ISO 27001 standard and apply both to our own systems and to the projects we build for clients.

Communication and review

This policy is communicated to everyone working on behalf of the organisation and is made available to interested parties through this website. It is reviewed at least once a year, and whenever the context, the services offered or the applicable requirements change substantially.

To request a copy of the certificate, to know its scope, or to raise an observation: info@skill-box.com, or 0733 815791.