ISO 28000 is a security standard for all organizations that are part of a supply chain; starting with production, warehousing, distribution (to include the entire chain of transport by road, rail, sea, or air), all the way through to the recipient. With the implementation of a security management system according to ISO 28000, an organization improves reliability and security throughout the entire chain of supply. High-value merchandise or hazardous goods can be transported around the globe and stored more safely.
The standard is designed for organizations wanting to improve their safety processes in regards to prevention, implementation, traceability, and documentation. Furthermore, a security management system contributes significantly to increasing security awareness on all levels of the organization. Safety standards that have already been implemented (AEO, C-TPAT, TAPA, etc.) can be bundled into one comprehensive system according to ISO 28000. Internationally active organizations thus achieve faster, more cost-effective, and better documented processing of their day-to-day business.
- Reduction of theft, vandalism, criminal acts, etc.
- Implementation of appropriate security measures, after an analysis of risk
- Increased security for value-generating processes (e.g. storage processes)
- Bundling of various international security initiatives (ISPS, AEO, TAPA, etc)
- Improved customer confidence and less risk of liability
Benefits of ISO 28001
- Initial Information
- Offer and Contract
- Stage 1 audit
- Stage 2 audit
- System Evaluation
- Surveillance audits
The process starts with the client’s needs and expectations. DQS wants to learn about the client’s organization, its management system, size and types of operation. Together both parties will define objectives for the assessment and/or certification, including applicable standards and specifications.
Offer and Contract
DQS will provide a detailed offer for assessment and certification services, tailored to individual client needs, based on the information provided initially. A written contract will specify all relevant deliverables as well as applicable assessment and certification criteria.
A pre-audit can serve as initial performance or gap analysis, identifying strengths and areas for improvement. For larger assessment and certification projects a project planning meeting provides a valuable opportunity for the client to meet the lead assessor and develop a customized assessment plan for all functions and locations involved. Both services are optional.
Stage 1 audit
The assessment procedure itself begins with review and evaluation of system documentation, goals, results of management review and internal audits. During this process, it will be determined whether the client’s management system is sufficiently developed and ready for certification. The assessor will explain findings and coordinate any required activities to prepare for the on-site system assessment.
Stage 2 audit
The assigned auditor team will audit the client’s management system at the place of production or service delivery. Applying defined management system standards and specifications, the assessment team will evaluate the effectiveness of all functional areas as well as all management system processes, based upon observations, inspections, interviews, review of pertinent records, and other assessment techniques. The audit result, including all findings will be presented to the client during the closing meeting. Required action plans will be agreed upon as necessary.
The independent certification function of DQS will evaluate the audit process and its results, and decide independently about issuance of the certificate. The client receives an audit report, documenting the audit results. When all applicable requirements are fulfilled the client also receives the certificate.
Either semi-annually or at least once per year, there will be an on-site audit of the critical components of the management system. Improvement potential will be identified, with a focus on continual improvement and sustained effectiveness.
A management system certificate is valid for a limited period of time, frequently for a maximum of three years. At the end of this cycle, a re-audit will be carried out to ensure the ongoing fulfillment of all applicable requirements. Subject to this fulfillment, a new certificate will be issued.
Truly Global Brand
Expert Auditors with High Emotional Intelligence
Local Capabilities & Delivery
Customized, Comprehensive & Actionable Insights
Pioneering Innovative Solutions
Passion for Quality & Excellence
Integrity & Trust