ISO 28000:2007


Security Management System


ISO 28000:2007

What is ISO 28000:2007?


ISO 28000:2007 specifies the requirements for a security management system, including those aspects critical to security assurance of the supply chain. Security management is linked to many aspects of business management that impact supply chain security.

ISO 28000:2007 is applicable to all sizes of organizations, from small to multinational, in manufacturing, service, storage or transportation at any stage of the production or supply chain.

Organizations that choose third party certification can further demonstrate that they are contributing significantly to supply chain security.


Ready to get certified - Call Us Now


ISO 28000:2007 Security Management System

Key Benefits

“Supply chains are everywhere. From the biggest company in the world to running your household. We all have supply chain experience even if we don’t know it.”




Would you like to do everything in a few clicks?

Harmonize is a cloud-based software solution to manage your ISO implementation and maintenance.


OUR NICHE
  • Our team comprises of certified Lead Auditors, Integrators and Software Architects
  • Combined four decades of continuous product innovation, evolution, testing and elevated customer experience
  • Our secure online backup solutions ensure your data is encrypted and compressed even before it leaves your device
  • We provide regular monitoring, remote maintenance, back up and online support


Book a FREE consultation

Do you have a QUESTION ?


1300 103 203


The Implementation Process

Initial meeting and discussions will help us to understand your business model, reasons for certification and will get to know your stakeholders.

Gap Assessment will be performed to gauge level of compliance. Any gaps identified will have an agreed plan of action.

Investigate opportunities to integrate the requirements of the standard with existing controls to save time and money.

A detailed project plan will cover all aspects of implementation with clear time frames for deliverables and associated costs.

Design and Develop documentation, implement and integrate processes within the business

Plan tasks with business stakeholders towards implementation of the system.

Conduct awareness trainings for key stakeholders within the business with test of understanding.

Plan and conduct internal audits, assist in closing areas of concern or non-conformities with suitable corrective actions.

Plan and execute Management Review and plan certification activities

Certification Body completes the Stage 1 Audit.

Agree plan of actions with internal stakeholders to close areas of concern or non-conformities if any.

Review of actions taken by stakeholders to address the areas of concern or non-conformities

Certification Body completes the Stage 2 Audit and awards certification

Genx to provide ongoing support to maintain certification through Harmonize.

Plan and conduct internal audits and supplier audits.

Ongoing awareness and refresher trainings for existing and new staff.