ISO 28000 Safety and Durability

Secure your supply chain with the ISO 28000 standard. Reduce risks, improve business continuity and strengthen your reputation. Contact our experts now!

STANDARDS FOR CONTINUOUS IMPROVEMENT

What are ISO 28000 Safety Management Systems?


In today’s global economic system, security management is of great importance in all sectors and especially in supply chains. The ISO 28000 Security Management Systems Standard was published by the International Standard Organization (ISO) and made available to organizations. This standard enables to determine the level of risk in supply chain activities, plan for security, assess risks, define requirements and set goals and objectives. ISO 28000 directly addresses all factors that affect security management in the supply chain, including the transportation of goods.

The most current version of the standard published by ISO was published in 2022 as ISO 28000:2022.

The ISO 28000 standard aims for organizations to develop a comprehensive security management system, including supply chain processes. The main purpose of the standard is to reveal the risks and opportunities of companies regarding security issues; to ensure that risks are controlled and opportunities are evaluated. It also aims to comply with legal regulations and international norms regarding the safety of operations. ISO 28000 also supports the creation of a security system in line with other management systems (quality, environment, occupational health and safety, energy, etc.). This standard applies to organizations of all sizes and sectors.

Benefits of the ISO 28000 Standard

Implementation of the ISO 28000 standard brings many benefits to organizations

Secure Your Supply Chain

Contact us for ISO 28000 certification process and expert support.

USB Certification

ISO 28000 Certification Process

ISO 28000 Security and Resilience – After the organizations wishing to obtain the Security Management System Certificate have established the security management system, certification is carried out as follows.

01

Certification Audit:

Completion of the certification audit in two phases;
Stage 1 Audit: General examination of the documentation prepared by the company within the scope of ISO 28000 Safety and Resilience – Safety Management.
Stage 2 Audit: On-site control of the documentation applications prepared by the company within the scope of ISO 28000 Safety and Durability – Safety Management System and identification of appropriate and possible non-conforming issues.

02

Corrective Actions, Follow-up Audit and Certification:

If nonconformity is detected in the Stage 2 Audit, ISO 28000 Safety and Durability – Safety Management System Certificate of Conformity is issued after the nonconformity is closed by the organization applying for certification or by the certification body with a follow-up audit according to the type and size of the nonconformity.

03

Surveillance Audits:

Surveillance audits are audits conducted in the second and third years after the certification audit. In surveillance audits, it is determined that the organization’s processes continue correctly after certification.

If nonconformity is detected in the surveillance audit, it is decided to continue the ISO 28000 Safety and Durability – Safety Management System Certificate of Conformity after the nonconformity is closed by the organization audited or by the certification body with a follow-up audit according to the type and size of the nonconformity.

Periodic surveillance audits are mandatory in order to maintain the validity of the ISO 28000 Safety and Durability – Safety Management System Standard Certificate and to determine that the organization’s management system continues to comply with the standard. These periodic surveillance audits are 1st Surveillance and 2nd Surveillance audits. The first of these surveillance audits must be completed within 12 months after the Stage 2 audit and the second within 24 months after the Stage 2 audit.

04

Recertification Audit:

It is a type of audit conducted in the fourth year after the Stage 2 audit and conducted to organizations that implement the ISO 28000 Safety and Resilience – Safety Management System Standard and have undergone the first certification audit. As in Stage 2, 1st Surveillance and 2nd Surveillance audits, documentation and application control of the organization is carried out by on-site audit.

ADVANTAGES

Key Elements of the ISO 28000 Standard

The ISO 28000 standard includes specific elements for establishing and maintaining a safety management system

  • Safety management system framework
  • Defining security policy and objectives
  • Safety risk assessment and planning
  • Implementation and operational control
  • Monitoring, measurement and corrective actions
  • Management review and continuous improvement

Frequently Asked Questions

ISO 28000 Security and Resilience – Security Management System is a critical standard for ensuring supply chain security. With this standard, businesses can identify and effectively manage risks and threats in the supply chain, increase customer satisfaction and gain competitive advantage. It is also an important tool for companies that want to comply with legal regulations and increase their credibility in international markets. ISO 28000 helps organizations improve safety management, enhance reputation and achieve sustainable growth goals.

To obtain ISO 28000 Security and Resilience – Security Management System Standard Certificate, you must first obtain the standard and then systematize your organization and make it compliant with the ISO 28000 standard.

The documents required in the ISO 28000 certification process may vary according to the size, field of activity, sector and existing system of your company. As legal documents; tax plate, trade registry newspaper, signature circular, certificate of activity, current SSI employee list are requested from the applicant organization.

ISO 28000 certification requirements include meeting all the requirements of the standard and establishing an effective safety management system.

Although obtaining ISO 28000 certification is not a legal obligation, it provides a competitive advantage, especially for organizations that attach importance to supply chain security

ISO 28000 certificate is issued by certification bodies that provide management system certification services.

ISO 28000 certificate is issued for a maximum of three years. However, during this three-year period, a surveillance audit must be carried out at least once a year in order for the organization to maintain its compliance with the ISO 28000 Safety and Resilience – Safety Management System Standard. The certificates of organizations that do not receive surveillance audit services are canceled in accordance with the accreditation rule.
Depending on the working method and internal procedures of the certification body, ISO 28000 Security and Durability – Security Management System Certificate may be issued for one year. In such a case, the organization receiving certification services is sent a Certificate again at the end of the annual surveillance audits.

The cost of ISO 28000 certification varies according to the size, field of activity and existing system of your organization.

You can contact our experts for detailed information and support on fees.