Singapore compliance consultancy

Someone asked you for a certificate. Here is what it takes, and what it costs.

BizSAFE, ISO and PDPA/DPO for Singapore businesses. You finish holding the document your client or tender asked for — issued by an independent certifier, carrying a number anyone can look up. We prepare the system, the paperwork and the evidence. Every fee is published before you call, from S$680.

Which one do you actually need?

Most people arrive here because someone else asked for something. Here is what each product is for.

Safety · tenders

BizSAFE

A five-level national workplace-safety programme run by the WSH Council. Level 3 is the one that matters — it is the threshold government and many private tenders look for.

from S$680

BizSAFE detail
Quality · environment · safety

ISO 9001 · 14001 · 45001

The international standards. 9001 for consistent quality, 14001 for environment, 45001 for safety. Bigger clients and pre-qualification packs ask for them by name.

from S$1,880

ISO detail
Data protection · required by law

PDPA & DPO

Appointing a Data Protection Officer is mandatory for every Singapore organisation, with no size exemption. We can be that officer, or get your system right and back your own.

from S$180/month

PDPA & DPO detail
AI training consultancy · the decision before the tools

AI Training Consultancy

Most companies do not stall for lack of a course — they stall because nobody named the route. We ask the questions, pick the AI route with you, and write down what it takes: who needs which AI skill, which course teaches it, what happens first, who owns it. AI only: no courses sold, no training delivered.

route check free

AI Training detail

How we work — and the one thing we will not do

We prepare. We never certify.

No consultancy can issue a certificate, and any that offers a guaranteed pass is telling you something about itself. The certifier decides; our job is to make sure nothing in your folder gives them a reason to say no.

We will not audit our own work.

For BizSAFE this is not a preference, it is a rule — the WSH Council rejects applications where the consultancy and the auditing organisation are the same company. We keep them separate, because a process where one company prepares the file and then signs it off is not a fair one for you.

Every fee on this site is published, and every figure carries the date we checked it. If we cannot evidence a claim, we do not make it — that rule exists because the rest of this industry does not follow it.

Where to start

Someone asked for it

A client, a tender or a purchaser wants a certificate you do not have yet. Tell us who, and we will tell you which one and how long.

You hold data

Almost every business does. If you have never appointed a DPO, that is a live gap, not a future one.

You want tenders

BizSAFE Level 3 or ISO 9001 are frequently the gate. We will say which gate your target actually uses.

You are not sure

That is the most common reason people call. Twenty minutes, free, and we will say plainly if the answer is "not yet".

The plain-English guides

The questions we answer on the phone, written down once so you can read them before you call. No jargon, no “contact us to find out”.

ISO in plain words

What ISO actually is — a recipe book for your company, and the stranger who checks you follow it. Which of the three you need.

ISO 9001 in detail

The scope statement that decides everything, and the seven clauses in kitchen words.

ISO 14001 in detail

What you use, what you throw away, what could spill — and the register the auditor asks to see.

ISO 45001 in detail

Who can get hurt doing your work, contractors included, and what you wrote down about it.

How long it takes

The week-by-week sequence, and the two things that decide whether your date slips.

Documents asked for

The short list, who owns each one, and the register nobody remembers to update.

The audit day

The questions they ask your people, and the seven reasons first audits fail.

Costs & funding

Three bills, not one — ours, the certifier's, and the yearly check-up. How funding is checked at the point of application.

BizSAFE levels 1–5

Each rung in plain words, how long it lasts, and the renewal date that catches people out.

PDPA in plain words

Three duties, nine obligations, the DPO you must name, and the three-day clock.

DPO as a Service

What the named person actually does month by month — and inside versus outside, compared honestly.

The compliance year

The dates that arrive whether or not anyone remembered them, and the 90-day rule.

Every guide is written for the person who has to answer the question, not the person who set the standard. Where a rule comes from an authority, the page says which one and links to it.

Not sure which of these you need?

Tell us who is asking and what for. Twenty minutes, free, and we will tell you honestly whether it is worth doing now.

What you are paying for, in four lines

  • The result: the certificate your client or tender asked for — the BizSAFE level or the ISO certificate number, in your company’s name.
  • How it is checked: an independent certifier, or an MOM-registered Auditing Organisation — never us. The number on the certificate is the receipt, and anyone can look it up.
  • When it lands: the certifier sets the audit date. Our job is to have your folder audit-ready so nothing in it gives them a reason to say no.
  • If it does not: if an audit rejects documentation we prepared, we redo that work free until the auditor accepts it. That seems fair for work you cannot inspect until the audit.