Course Title: ISO 28000:2007 Supply Chain Security Management Training Course
Executive Summary
This two-week intensive training course on ISO 28000:2007 equips participants with the knowledge and skills to establish, implement, maintain, and improve a supply chain security management system (SCSMS). The course covers key aspects of the ISO standard, including risk assessment, security planning, implementation, monitoring, and continuous improvement. Through interactive workshops, case studies, and practical exercises, attendees learn how to identify and mitigate security threats and vulnerabilities throughout the supply chain. The training culminates in the development of a comprehensive SCSMS action plan tailored to the participant’s organization. This course enables professionals to enhance supply chain resilience, minimize security incidents, and improve overall business performance by adhering to globally recognized security standards.
Introduction
In today’s interconnected global economy, supply chains are increasingly vulnerable to a wide range of security threats, including theft, terrorism, piracy, and counterfeiting. ISO 28000:2007 provides a robust framework for organizations to manage and mitigate these risks effectively. This two-week training course offers a comprehensive understanding of the ISO 28000 standard and its application to various supply chain contexts. Participants will learn how to conduct security risk assessments, develop and implement security plans, monitor the effectiveness of security measures, and continuously improve their supply chain security management system. The course emphasizes practical application through real-world case studies, interactive exercises, and group discussions. It also addresses the importance of collaboration and communication with stakeholders throughout the supply chain to ensure a coordinated and effective security approach. By completing this course, participants will gain the necessary skills and knowledge to protect their organizations’ supply chains from security threats and enhance their competitive advantage.
Course Outcomes
- Understand the requirements of ISO 28000:2007.
- Conduct supply chain security risk assessments.
- Develop and implement supply chain security plans.
- Monitor and measure the effectiveness of security controls.
- Improve supply chain security management systems continuously.
- Understand the importance of supply chain resilience.
- Prepare for ISO 28000 certification audits.
Training Methodologies
- Interactive lectures and presentations.
- Case study analysis and group discussions.
- Practical exercises and workshops.
- Role-playing and simulation scenarios.
- Individual and group assignments.
- Expert guest speakers.
- Q&A sessions and feedback.
Benefits to Participants
- Enhanced knowledge of ISO 28000:2007 requirements.
- Improved ability to assess and mitigate supply chain security risks.
- Increased confidence in developing and implementing security plans.
- Greater understanding of supply chain resilience principles.
- Enhanced career prospects in supply chain security management.
- Networking opportunities with other professionals in the field.
- Certification of completion demonstrating expertise in ISO 28000.
Benefits to Sending Organization
- Reduced risk of supply chain security incidents.
- Improved compliance with regulatory requirements.
- Enhanced reputation and customer trust.
- Increased operational efficiency and cost savings.
- Stronger supply chain resilience and business continuity.
- Improved employee morale and engagement.
- Competitive advantage through enhanced security performance.
Target Participants
- Supply chain managers.
- Security managers.
- Logistics managers.
- Operations managers.
- Risk managers.
- Compliance officers.
- Auditors.
Week 1: Foundations of Supply Chain Security and ISO 28000
Module 1: Introduction to Supply Chain Security
- Overview of supply chain security challenges and threats.
- Impact of security breaches on business operations.
- Importance of a holistic security approach.
- The role of ISO 28000 in supply chain security.
- Key concepts and definitions related to supply chain security.
- Relevant laws, regulations, and standards.
- Case studies of supply chain security incidents.
Module 2: Understanding ISO 28000:2007
- Overview of the ISO 28000 standard.
- Scope and applicability of the standard.
- Key requirements and clauses of ISO 28000.
- Relationship between ISO 28000 and other management systems.
- Benefits of implementing ISO 28000.
- Certification process for ISO 28000.
- Gap analysis exercise.
Module 3: Risk Assessment in Supply Chain Security
- Principles of risk management.
- Identifying supply chain security risks and threats.
- Assessing the likelihood and impact of risks.
- Risk assessment methodologies (e.g., HAZOP, FMEA).
- Developing a risk register.
- Prioritizing risks for mitigation.
- Practical exercise: Conducting a supply chain security risk assessment.
Module 4: Security Planning and Implementation
- Developing a supply chain security plan.
- Defining security objectives and targets.
- Identifying and implementing security controls.
- Types of security controls (physical, technical, administrative).
- Documentation requirements for security controls.
- Resource allocation for security implementation.
- Workshop: Developing a security plan for a specific supply chain scenario.
Module 5: Documentation and Record Keeping
- Importance of documentation in ISO 28000.
- Developing and maintaining documented information.
- Control of documents and records.
- Types of documents required by ISO 28000.
- Document management system.
- Audit trail requirements.
- Exercise: Creating a document control procedure.
Week 2: Implementation, Monitoring, and Continuous Improvement
Module 6: Operational Control
- Implementing security controls in daily operations.
- Establishing operational procedures and work instructions.
- Managing access control and authorization.
- Handling sensitive information.
- Security awareness training for employees.
- Emergency response planning.
- Practical exercise: Developing an emergency response plan.
Module 7: Monitoring and Measurement
- Developing a monitoring and measurement plan.
- Identifying key performance indicators (KPIs).
- Collecting and analyzing data.
- Auditing security controls.
- Reporting security performance.
- Using data for decision-making.
- Exercise: Developing a monitoring and measurement plan.
Module 8: Internal Audit
- Principles of internal auditing.
- Planning and conducting internal audits.
- Developing audit checklists.
- Identifying and documenting audit findings.
- Reporting audit results.
- Following up on audit findings.
- Role-playing: Conducting an internal audit.
Module 9: Management Review
- Purpose and scope of management review.
- Inputs to management review.
- Outputs from management review.
- Decision-making based on management review.
- Documenting management review outcomes.
- Improving the SCSMS through management review.
- Case study: Analyzing a management review report.
Module 10: Continuous Improvement
- The Plan-Do-Check-Act (PDCA) cycle.
- Identifying opportunities for improvement.
- Implementing corrective and preventive actions.
- Evaluating the effectiveness of improvements.
- Learning from incidents and near misses.
- Fostering a culture of continuous improvement.
- Workshop: Developing a continuous improvement plan.
Action Plan for Implementation
- Conduct a gap analysis of the current supply chain security practices against ISO 28000:2007 requirements.
- Develop a project plan for implementing or improving the SCSMS, including timelines, responsibilities, and resource allocation.
- Establish a risk management framework and conduct a comprehensive supply chain security risk assessment.
- Develop and implement a supply chain security plan based on the risk assessment results.
- Implement monitoring and measurement processes to track the effectiveness of security controls.
- Conduct internal audits to verify compliance with ISO 28000:2007 requirements.
- Conduct management reviews to evaluate the performance of the SCSMS and identify opportunities for improvement.
Course Features
- Lecture 0
- Quiz 0
- Skill level All levels
- Students 0
- Certificate No
- Assessments Self





