ISO/IEC 20000-1

ISO/IEC 20000-1: IT Service Management

We implement your IT Service Management System, align your processes to the standard, document the service management system, and prepare you for certification through our partner (a certification body accredited by an IAF MLA signatory accreditation body). ISO/IEC 20000-1 is the international standard for IT service management and the benchmark for organisations seeking independent certification of disciplined service delivery.

Overview

ISO/IEC 20000-1 is the international standard for an IT Service Management System (SMS). The 20000 is the international standard that specifies requirements for an organisation to plan, establish, implement, operate, monitor, review, maintain, and improve a service management system. Certification demonstrates that your IT services are designed, delivered, and continually improved against defined service requirements, with incident, change, problem, and service-level management disciplines formally in place.

We implement the service management system: defining the scope and service portfolio, aligning and documenting your ITSM processes, establishing the SLA framework, and running the internal audit and management review the ISO 20000-1 standard requires. The result is a governed service operation with the evidence base to support a certification audit by an accredited third-party certification body. Compliance with the standard is what the auditor will assess during both stages of the certification process.

The Stage 1 and Stage 2 audits are conducted by our partner certification body, accredited by an IAF MLA signatory. We prepare you for both stages and support you through any findings before and after the audit. ISO standards like 20000-1 share a common high-level structure with ISO 9001 and ISO 27001, so if you already hold one of those certifications, existing management systems documentation can often be reused.

What’s included

  • SMS scope, service portfolio, and management system policy
  • Service level management and SLA framework
  • Incident, request, change management, and problem management processes
  • Service continuity and capacity management alignment
  • SMS documentation set and records
  • Internal audit and management review
  • Certification through our partner certification body, accredited by an IAF MLA signatory

How we work

  1. 01
    Gap analysis

    We assess your current ITSM practices against ISO/IEC 20000-1 requirements, identify gaps, and define the SMS scope and service portfolio. You know what the work involves before it starts. We specify which processes require new documentation and which existing systems can be adapted to meet the 20000-1 standard.

  2. 02
    Build the SMS

    We align and document the service management processes, establish the SLA framework, and produce the mandatory documented information the standard requires. Continual improvement is a core requirement of the SMS: we build the review cadence and performance metrics into the system from the start, not as an afterthought. Best practice is to treat service management system requirements as operational disciplines, not compliance obligations.

  3. 03
    Internal audit and management review

    We run the internal audit and management review and close findings before the external audit. The auditor from the certification body sees a functioning system. Conformance with the delivery and improvement of services requirements is what the Stage 2 assessment confirms.

  4. 04
    Certification audit

    Our partner certification body, accredited by an IAF MLA signatory, conducts the Stage 1 and Stage 2 audits. We support you throughout and manage corrective actions to closure. The partner certification body issues the ISO/IEC 20000-1 certificate once conformity assessments against the requirements of the standard are satisfied.

What you get

  • SMS scope statement and service portfolio
  • Documented service management processes and SLA framework
  • Complete SMS documentation set
  • Internal audit report and management review records
  • Accredited ISO/IEC 20000-1 certificate (issued by the partner)

Frequently asked questions

Is ISO/IEC 20000-1 the same as ITIL?

No. ITIL is a body of good practice guidance. ISO/IEC 20000-1 is the certifiable international standard for a service management system. Part 1 of the standard specifies requirements; alignment to ITIL best practice puts you in a strong starting position, but alignment to ITIL does not by itself satisfy the ISO 20000-1 standard. Independent certification by an accredited third-party certification body is what confirms compliance.

Does ISO/IEC 20000-1 apply to managed service providers?

Yes, and it is widely used by MSPs, cloud services providers, and internal IT functions as formal evidence of disciplined, measurable service delivery. Enterprise customers and tender panels treat it as a marker of operational maturity. The standard applies to managed services organisations of all sizes, and competitive advantage from ISO 20000 certification is increasingly significant in procurement processes.

How does ISO/IEC 20000-1 relate to ISO 27001?

The two standards complement each other. ISO 27001 governs information security as a management system. ISO/IEC 20000-1 governs IT service delivery as a management system. Many organisations certify to both, and we structure the documentation so the overlap in their common management system elements is not duplicated. ISO standards share an Annex SL high-level structure that makes integrated implementation practical.

What does effective implementation of ISO 20000-1 require?

Effective implementation of ISO/IEC 20000-1 requires that the SMS is operational, not just documented. The standard specifies requirements for service lifecycle management: how services are designed, transitioned, delivered, and improved. The auditor will look for evidence that change management, incident management, and problem management processes are running and producing measurable outcomes, not just written policies on a shelf.

Credentials held by our team

ISO/IEC 27001 Lead Auditor
CISM
CISA
COBIT 2019
CEH
CRTP
eCPPT
CSA
CCNA
ITIL
Free tool · about 3 minutes · instant score

How ready is your security and compliance?

Answer 15 quick questions across the controls auditors actually check, and get an instant readiness score with tailored next steps. No call required.

Start the free assessment

Ready to simplify security and compliance?

Pick a service, book a scope call, or ask a question. Whatever order works.