ISO 28000 — Supply Chain Security Management

ISO 28000 specifies requirements for a security management system covering assessment of security risks across your supply chain — from procurement through transport to delivery.

Why it matters

Supply chains face threats from theft, tampering, smuggling and terrorism. ISO 28000 gives organisations a structured way to assess these risks and implement proportionate security controls across logistics operations.

It is applicable to any organisation in the supply chain — manufacturers, freight forwarders, ports, customs brokers and logistics providers.

Why pursue this

Benefits of ISO 28000 certification

Certification demonstrates a structured approach to security risk across the supply chain, reassuring partners, insurers and regulators alike.

Supporting the UN Sustainable Development Goals

9
SDG 9: Industry, Innovation and Infrastructure
16
SDG 16: Peace, Justice and Strong Institutions
8
SDG 8: Decent Work and Economic Growth
17
SDG 17: Partnerships for the Goals

Reduced security incidents

Proportionate controls lower the risk of theft, tampering and smuggling.

Partner confidence

A credible signal to customers and insurers across your logistics network.

Regulatory alignment

Supports customs and trade-security programme requirements.

Incident readiness

Structured response and recovery planning reduces disruption impact.

"Supply chain security is a chain, one weak link puts every partner at risk."
Faisal Rahman, Lead Security Assessor, RBA Registrars

Organisations that benefit

Freight forwarders
Manufacturers & distributors
Ports & terminal operators
Customs brokers
Warehousing & 3PL providers
Logistics consultancies

Key requirement areas

Security Risk Assessment
Threat identification across the chain
Physical & Access Control
Site and cargo security measures
Incident Management
Response and recovery planning
Partner Assurance
Security vetting of trading partners