About

A team specialised in EcoVadis consultancy, ISO standards implementation, GDPR services, and Business Continuity testing.

We provide fast, clear, and compliant solutions, tailored to the needs of each client.

We offer
SPEED
ASSISTANCE IN THE CERTIFICATION PROCESS
AFFORDABLE PRICE
CONSULTANCY AND SPECIALTY SERVICES
TRUSTWORTHY PARTNERSHIP
CONFORMITY
ECOVADIS Consultancy

Today, sustainability should be a strategic direction for any organisation. Ignoring environmental, social, and governance (ESG) issues is associated with:

  • Higher risks;
  • Lower competitive advantage;
  • Fewer business opportunities.
Starting from 1 January 2025, EcoVadis Medals are awarded according to the following scheme:
  • Platinum – Top 1% (scoring higher than 99% of evaluated companies);
  • Gold – Top 5% (scoring higher than 95% of evaluated companies);
  • Silver – Top 15% (scoring higher than 85% of evaluated companies);
  • Bronze – Top 35% (scoring higher than 65% of evaluated companies).
EcoVadis is a provider of services for assessing a company’s level of sustainability. We offer consultancy and prepare the documentation required for the EcoVadis assessment process. We ensure that the documents are aligned with the EcoVadis questionnaire requirements and with the operational practices of the assessed organisation.

ISO 9001, ISO 14001, ISO 45001, ISO 50001, ISO/IEC 27001, ISO 22301, and ISO 37001 include requirements that an organisation must meet in order to have a management system that can be certified.

We can implement management systems in public institutions (such as municipalities, universities, agencies, hospitals, and public utilities) and in private sector companies (in fields such as construction, IT, trade and services, manufacturing, design, or healthcare). ISO management systems can be implemented and certified by an accredited certification body, either individually or integrated with other management systems.

By collaborating with EQC, you obtain certificates issued by accredited certification bodies, as well as preferential certification rates. Our consultants are highly experienced in implementation and capable of supporting certification within a short timeframe. The certificates obtained are valid for three years and are subject to annual surveillance audits.

The process may include, with the client’s agreement, contacting the accredited certification body, negotiating the price, agreeing the audit plan, representing the client during the audit process, and obtaining the certificate.

ISO represents a set of international standards that define requirements for management systems applicable to a wide range of organisational areas, including quality, security, environment, energy, business continuity, information security, occupational health and safety, as well as other governance and organisational performance processes.
Sustainability and carbon footprint assessment includes requirements and methodologies through which an organisation measures, manages, and reduces its environmental impact, in line with internationally recognised standards and frameworks (e.g. GHG Protocol, ISO 14064, ISO 14067).

The process may include, with the client’s agreement, the collection and analysis of activity data, calculation of the carbon footprint, preparation of the sustainability report, and recommendations for emissions reduction.

By working with us, you benefit from accurate assessment reports at optimal costs. Our consultants have solid experience in evaluating Scope 1, 2, and 3 emissions and in defining emission reduction and offsetting plans.

This assessment considers both direct and indirect emissions (Scope 1, 2, and 3) and aims to identify environmental impacts and define measures for emissions reduction and offsetting.

Carbon footprint assessment represents the process of analysing greenhouse gas emissions generated by a company’s activities.

The service includes a set of policies and procedures to ensure the protection of personal data and compliance with the requirements of Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data.

The service also includes dedicated training sessions for individuals who process or use personal data, as well as for staff involved in related processes, to ensure an understanding of legal obligations and the correct application of data protection measures.

We can implement the compliance documentation either on its own or together with the information security management system, as the implementation of ISO/IEC 27001 and ISO/IEC 27701 adds value to the organisation and reduces implementation and compliance costs.

GDPR establishes the legal requirements for the protection of personal data and the confidentiality of information. GDPR implementation involves analysing data flows, defining technical and organisational measures, preparing the mandatory documentation, and aligning internal processes so that the organisation complies with legal requirements and reduces compliance risks.

The activity involves identifying essential processes and operations, assessing the potential impact of disruptions, defining response and recovery measures (development of BCP and DRP), integrating these into organisational processes, and testing business continuity and disaster recovery plans through live exercises or scenario-based simulations.

The activity is carried out in accordance with the requirements of ISO 22301, by providing the necessary support for the design, implementation, and operationalisation of a business continuity management system, including training for the involved personnel and the integration of requirements into existing organisational processes.

BUSINESS CONTINUITY represents an organisation’s ability to maintain or restore the operation of critical processes in the event of incidents or disruptive situations.
Our Clients
NEWS
FAQ
What is EcoVadis and how does the EcoVadis assessment work?
EcoVadis is a platform that assesses companies’ sustainability performance. The assessment is based on a questionnaire and supporting documents reviewed by independent evaluators.
Clients use EcoVadis to assess risks within their supply chain. The score shows whether a supplier manages environmental, social, ethical and procurement aspects responsibly.
EcoVadis is mainly requested by companies working with corporations, international groups, or participating in tenders where sustainability is a selection criterion.
Required documents include policies, procedures, reports, performance indicators, implementation evidence and internal documents that demonstrate how the company actually operates.
After submitting the questionnaire, the assessment usually takes 4–6 weeks. Preparing the documentation can take between two and six weeks, depending on the situation.
EcoVadis consultancy fully takes over this responsibility. Documents are created from scratch, exactly aligned with the assessment requirements, so the company does not need to worry about what to write or upload.
Yes. ISO documents are accepted if they are relevant, up to date and applicable. They must be clearly linked to the questions in the EcoVadis questionnaire.
Common mistakes include generic or combined documents, lack of implementation evidence, irrelevant files or documents uploaded in the wrong sections.

Yes. The EcoVadis score can be improved at the next assessment once missing documents are added, previously identified weaknesses are corrected and clearer, more relevant evidence reflecting improvements is uploaded.

An EcoVadis score is valid for 12 months. After this period, the company must undergo a new assessment.

EcoVadis is not a certification. It is a sustainability assessment used by clients to compare suppliers

At the first assessment, EcoVadis consultancy helps the company avoid confusion and common mistakes. Documents are created and structured correctly from the start, and employees are trained on sustainability principles and applicable requirements, so the assessment reflects the real way the company operates.

EcoVadis consultancy supports the company in a structured preparation for the annual re-assessment. Documents are reviewed and updated, organisational changes are correctly reflected, and progress compared to the previous assessment is clearly demonstrated to maintain or improve the score.

Yes, significantly. Accredited ISO certifications (listed on the IAF CertSearch portal) are recognised as strong evidence in the EcoVadis assessment. They support the company’s policies and real performance. Examples include ISO 14001 for environment, ISO 45001 for health and safety, ISO/IEC 27001 and ISO/IEC 27701 for data protection, ISO 37001 for anti-bribery ethics, ISO 22301 for business continuity and ISO 50001 for energy management.

ISO maintenance means updating documents, monitoring processes through internal audits and correcting non-conformities to keep the system functional and ready for external audits.

ISO certification is not legally mandatory, but it may be required by clients, partners or within public and private tenders.

Implementing an ISO system involves organising internal processes, defining responsibilities and documenting working methods to ensure control, consistency and continuous improvement.

The carbon footprint represents the total greenhouse gas emissions generated by a company’s activities, including energy consumption, fuel use and other resources.

Data such as electricity consumption, fuels, transport, utilities and, in some cases, supplier activities or employee travel is required.

GDPR compliance means that personal data is collected, used and stored in a controlled manner. The company has clear rules, proper notices and applied measures to prevent unauthorised access, loss or misuse of data.

GDPR applies to all data that can directly or indirectly identify a person. This includes names, addresses, phone numbers and email addresses, as well as personal identification numbers, location data, IP addresses or medical data.

GDPR consultancy helps companies avoid sanctions, implement correct documentation and manage personal data in a controlled and secure manner, in line with applicable requirements.

GDPR consultancy includes analysing how personal data is managed, creating the required documents, training employees and establishing control measures. The goal is to ensure data is used correctly, securely and without the risk of penalties.

EcoVadis, ISO and GDPR consultancy services are available to companies operating in Romania and across other European Union member states. Support is also provided to organisations working within the European market or collaborating with EU-based clients and partners, regardless of their country of registration.

Professional consultancy removes uncertainty and saves time. Documentation is created and aligned with real requirements, employees receive clear guidance, and the entire process is managed end to end. This reduces internal workload, avoids costly mistakes and increases the chances of strong results in audits, assessments and client evaluations.