Ask Me Anything with Josh Harrop | Competence is more than training
SnSD Ask Me Anything · Session 02
Trained is not competent — building assurance that holds under pressure
Josh Harrop, Partner at SnSD Consultants, answers five questions submitted by our audience — on why competence assurance is not window dressing, what organisations most often get wrong, how to define and test competence without drowning in detail, what verification really costs at scale, and why audits and investigations so often stop one step short.

Josh Harrop
Partner
SnSD Consultants
The short version
Five things worth your time
Question 01Submitted by the audience
High-hazard businesses already have training, systems, monitoring and audits. Is a new focus on competence just window dressing?
Short answer
No — Texas City is the clearest example of why. The company had the infrastructure, the hardware and the systems. What was missing was the experience and awareness to act on them in the moment. Audits check whether a system exists and is being followed; competence assurance checks whether the people behind it know what to do when things go sideways.
It certainly can be window dressing if you don’t do it right. But no, it isn’t — and if we look at Texas City, there is a great example of why it matters.
In that instance the site and the company had all the infrastructure in place — all the hardware, all the systems. However, there are some key things that come out of the whole competency space from that tragic incident.
If we step back and look at what actually happened, there were examples on the day of the disaster of operators arriving late, leaving early, family emergencies, that sort of thing. It became a juggling act to have the right people on site while a very important process was underway — and also when things went sideways on that very important process.
The systems existed — on paper at least. What was really missing was the experience and the awareness to act on them in the moment.
Josh Harrop — on Texas City
You don’t have all the time in the world when things are unravelling like that. It wasn’t the only factor at Texas City by any means — others will argue there were much more important things — but it is one of the backbone things. We like to think of these things and barriers in terms of dominoes, and it is one of the dominoes that fell and allowed the next ones to fall also.
That’s the gap we try to close with a good, robust competence assurance process. And we then have to check on it regularly — you can’t just put it in place and sit and forget. But then we really know we have that barrier in place, and the steps, and the people who know what to do when things go wrong.
Question 02Submitted by the audience
What gets misunderstood or mishandled most about competence management?
Short answer
Three recurring mistakes: assuming trained and competent are the same thing; ending up as slaves to the system instead of shaping it to serve the organisation; and over-complicating the framework until it produces fatigue rather than insight.
It is tempting to break these things down into one big thing, but quite frequently they are more complex than that. I see three recurring mistakes:
- —People mix up training and competence. Training is important, but it is not the same thing.
- —Organisations end up feeding the system. They set up competence management and then spend all of their effort, focus and concern on making sure the system has been fed the necessary information.
- —The tendency to over-complicate. Gathering more detail does offer more precise insight, but it also leads to fatigue — and we don’t win when people lose interest.
On the second point: the system should work for the people. Of course you have to set it up, but the end goal is that it helps keep you safe, not that you keep it up and running.
On the third: depending on the sector, the site and the culture, competency management can be sliced and diced in so many different ways, and it is tempting to try to capture everything. There is a lot of stakeholder management and a lot of opinions on the table. It is very easy to put them all into the system — and much harder to then deliver good, robust assessments if people have to go through something like 2,000 checks before they finish.
Follow-up
Can you come back to the training point? Where does the line actually sit?
There is a well-known idea called the 70‑20‑10 model, where only that last fraction is what formal training gives us. We get the other 70 and 20 per cent from real on-the-job practice, coaching and mentoring.
So it is best not to overplay the role of training — and just as important not to confuse it. That training certificate is only part of the journey.
Real competence is the ability to perform reliably under real conditions, including when things go wrong. It is knowledge and skill, but it is also judgement — which takes much longer to build and is much harder to check.
Question 03Submitted by the audience
So what do we actually mean by “competent” — and how do we test it?
Short answer
Start by getting the requirements right, on four principles: keep it relevant, keep it manageable, build in options, and be clear. And wherever possible, favour tests built on hands-on experience rather than questions that can be answered academically.
I would break it into four areas or principles.
One — make sure the system is relevant. Depending on the context you will be changing it, but always stay focused on relevance. There will be lots of people who want their concerns or experience brought into the framing for a company. That has to be listened to, but keep bringing it back to what matters in terms of the critical roles — and be a little bit ruthless about cutting out the nice-to-haves. For HSE, tie the criteria back to actual risk.
Two — keep it manageable. We don’t want to get it down to the last detail. You can define competence in one or two tests, or you can define it in twenty against a given area. Be very wary of making it overly complicated.
Three — build in options. Don’t force everyone to pass identical tests. Everyone brings their own thing to a job, even if it looks the same on paper, even if they are meeting the same job description. Ensure there is the flexibility to recognise that there is strength in diversity — so person one and person two can meet the same test with quite different experience, without getting too broad.
Four — be clear. Optionality and diversity like that don’t mean everyone passes. It has to be an honest system, and we need to keep reinforcing the idea that not passing is actually an opportunity. It has helped you and the organisation figure out where your development goals are, and where you can get someone looking over your shoulder for a while as you achieve them. If a task needs to have been done, we need to be certain it has been.
And the final thing I would say: favour tests that look at hands-on experience. Don’t be tempted to go for things that can all be answered academically. That gets us back to the 70‑20 — that’s where people are really prepared when the moment comes to act.
Not passing is actually an opportunity. It helps you and the organisation figure out where your development goals are.
Josh Harrop — on building an honest system
Question 04Submitted by the audience
How do you actually verify competence in practice?
Short answer
It is a bigger job than people expect — 300 staff across 10 competency groupings at 20 tests each is already 60,000 assessments. That takes real resourcing and many assessors, which brings bias and variability. Both are managed by building a common understanding and accrediting assessors before they start.
I touched on this numerical challenge before. Say you have identified 300 people on a big site and you’ve cut it down to ten competency groupings — those will change depending on the context. And you’ve decided that for a given competence there might be twenty tests for each band: awareness, knowledge, skill, mastery, for example.
That’s potentially 60,000 tests already. That’s a lot of time crafting those competencies, a lot to maintain, and a lot to actually execute — as a manager, and as a person being assessed. So don’t underestimate the resource.
That resource also has to be consistent. You’re going to need more than one person, so how do you ensure consistency between them? We would tend to favour assessors who are line managers, because they can spot when someone is overstating their experience. But there are two key things to manage:
- —Bias. They may have a conflict of interest — they want that person back out on the floor, and lean towards a pass.
- —Variability. One manager’s interpretation of “competent” can be very different to the next.
We manage these by creating a common understanding — making sure the assessor, the organisation and the person being assessed all understand the process in the same way, and the goals of the process. You have to make people feel comfortable; otherwise it does feel a bit like testing.
An assessor who is just receiving a bunch of results with no briefing, who doesn’t know what other people were doing and doesn’t know what good looks like, is going to apply their own judgement. That’s human nature. We need to deal with it and bring everyone to the same level.
Follow-up
What does “accrediting assessors” mean in practice?
By accrediting I mean not just an awareness session, a briefing or a sit-down, but actually taking them through a structured information and feedback session — after which, for a certain amount of time, those people are part of your assessor pool and you can rely on them.
Brief them on the system, and on what a pass and a fail actually look like, before they are let loose. Don’t just send it out there and say “hey, score them on this”.
And of course you need to come back and look at how that’s going in practice as well — for the same reason that training is only part of the process.
The point is that it is not a tick-box exercise with people knowing the right answers to say, but not really knowing how to live it and demonstrate the experience.
Question 05Submitted by the audience
Do audits and incident investigations use the competence angle enough?
Short answer
Usually not. Many investigations stop at the technical or the human failure and never reach the systemic level — and when they do reach competence, the fix is often just “retrain”. Audits have the same problem: finding the same deviation repeatedly is a signal about competence, not discipline.
Part of my role at SnSD is key support on incident management and improving the systems for following up incidents — and I think that question hits on something real. Many organisations really struggle with incident follow-up in every sense.
With competence we’re talking about systemic support to an organisation, and that gets down to a level we tend to call root causes. Many incidents will stop at the technical failure. They might stop at the human failure. But now we get down to the systems and cultures that sit behind repeat incidents.
Without a doubt, many incidents and many organisations stop short of the ideal — short of these systemic issues. And then they resort to retraining or reissuing a procedure, and are surprised when it happens again.
You’re surprised when it happens again — because you’re hitting it with the same hammer.
Josh Harrop — on “retrain and reissue”
Incidents certainly suffer from that, and can benefit from things like root cause analysis that drives the thinking down to the systemic level — down to competencies, down to culture.
Audits need to capture this sort of thing too. They need to move away from “we found this wrong, we found that wrong, you didn’t follow this”, and ideally step back and do system audits — which is something we don’t always see on a site basis. Where people have all this stuff in place, now go in and check: is it effective? Is it even implemented six months or a year later?
If an auditor keeps finding the same deviation across a workforce, that isn’t necessarily a discipline problem — competence may need a look. Another thing SnSD promotes here is tiered levels of assurance, where the second tier tends to lift things more into that systemic space.
Follow-up
HSE management asks which controls we rely on. Are you saying we also need to ask who we rely on?
Exactly. HSE management asks which controls we rely on, and we need to know that they’re in place. So we also need to ask who we rely on — extending that beyond the hardware concept, and asking whether those people are not only there, but competent.
It is useful in these cases to think in terms of barrier thinking. Humans are a barrier, and we need to make sure that barrier is not rusty or deficient. That’s why we have competence, and other things like cultural programmes.
If you take it through a process safety lens, you define your barrier — it could be a hardware barrier. Then you ask what you need to do to make sure that barrier is working: some maintenance, some lube oil, certain activities. And then you ask who is going to do that. Those are your critical people behind the barrier.
So you can see it from both perspectives: we are barriers ourselves, and we are also critical for carrying out the activities that maintain other barriers. From executing an incident investigation to maintaining a piece of critical equipment, they’re highly dependent on the person applying them.
Not just “have we got the right measures in place”, but “do we have the right people behind them”.
Josh Harrop — on barrier thinking
Closing
It is not rocket science — it is balance
The thread running through this session is that competence goes wrong at both extremes: overlooked and treated as a training problem, or over-engineered until the organisation is busy feeding the system rather than being served by it. The value sits in the middle — and in keeping sight of what the system is for.
In Josh’s closing words: “It’s not rocket science. It’s about finding the right balance and keeping our eye on the goal of it — which is that we want the right people in place at any given point in time, before or after something might be escalating, so that we know our controls are all going to work as planned and keep people safe.”

Josh Harrop
Partner, SnSD Consultants
Josh is a Partner at SnSD Consultants, working across HSE management systems, auditing, competence assurance and incident management — the work that sits behind the front line and supports people in their efforts to perform safely across high-hazard energy operations.


