A systematic approach to securing your supply chain — from theft and tampering to cargo crime and terrorism risk.
ISO 28000 specifies requirements for security management systems for organisations involved in the supply chain. It applies to manufacturers, logistics providers, customs brokers, and freight forwarders across all sectors.
Book a Gap AssessmentThe scope of ISO 28000:2007
- Security threat and risk assessmentIdentify and assess the full range of security threats to your supply chain operations — theft, tampering, unauthorised access, terrorism, and cyber threats.
- Security plans and countermeasuresDevelop security plans and physical, procedural, and organisational countermeasures proportionate to the risks your supply chain faces.
- Personnel security and access controlImplement personnel screening, access control, and visitor management systems that prevent unauthorised access to cargo, facilities, and systems.
- Incident management and business continuityBuild the incident response and business continuity plans that allow your supply chain to recover quickly from security incidents.
The business case
Customs authorities and logistics clients increasingly require supply chain security management certification from operators handling sensitive or high-value cargo.
Cargo theft is a multi-billion dollar problem in global supply chains. Systematic security management cuts incident rates and the losses they cause.
ISO 28000 alignment supports qualification for Customs Trade Partnership Against Terrorism (C-TPAT) and Authorised Economic Operator (AEO) programmes.
Organisations that move valuable, sensitive, or regulated cargo expect their logistics partners to demonstrate security management discipline.
The certification journey
Most firms hand you a document pack and leave. We stay with you from gap assessment through certification — and beyond.
We audit your current operations against the standard's requirements and show you exactly where you stand.
We build your management system — policies, procedures, process maps — tailored to how your business actually works.
We work alongside your team on the ground to embed the system into daily operations and train your people to own it.
We run a full internal audit cycle, close any gaps, and make sure you're ready before the certification body arrives.
We support you through the certification audit — and stay available for surveillance prep and continuous improvement after.
Ready to get certified?
Book a gap assessment and we'll show you exactly what it takes.
Book a Gap Assessment