Skip to main content
Back

EVS-ISO 28003:2009

Security management systems for the supply chain - Requirements for bodies providing audit and certification of supply chain security management systems

General information

Valid from 05.02.2009
Base Documents
ISO 28003:2007
Directives or regulations
None

Standard history

Status
Date
Type
Name
05.02.2009
Main
This International Standard contains principles and requirements for bodies providing the audit and certification of supply chain security management systems according to management system specifications and standards such as ISO 28000. It defines the minimum requirements of a certification body and its associated auditors, recognizing the unique need for confidentiality when auditing and certifying/registering a client organization. Requirements for supply chain security management systems can originate from a number of sources, and this International Standard has been developed to assist in the certification of supply chain security management systems that fulfil the requirements of ISO 28000, Specification for security management systems for the supply chain, and other supply chain security management system International Standards. The contents of this International Standard may also be used to support certification of supply chain security management systems that are based on other specified supply chain security management system requirements. This International Standard provides harmonized guidance for the accreditation of certification bodies applying for ISO 28000 (or other specified supply chain security management system requirements) certification/registration; defines the rules applicable for the audit and certification of a supply chain security management system complying with the supply chain security management system standard’s requirements (or other sets of specified supply chain security management system requirements); provides the customers with the necessary information and confidence about the way certification of their suppliers has been granted. NOTE 1 Certification of a supply chain security management system is sometimes also called registration, and certification bodies are sometimes called registrars.  NOTE 2  A certification body can be nongovernmental or governmental (with or without regulatory authority).  NOTE 3  This International Standard can be used as a criteria document for accreditation or peer assessment or other audit processes.

Required fields are indicated with *

*
*
*
PDF
27.28 € incl tax
Paper
27.28 € incl tax
Browse standard from 2.48 € incl tax
Standard monitoring

Customers who bought this item also bought

Main

EVS-ISO 28004-1:2009

Security management systems for the supply chain – Guidelines for the implementation of ISO 28000 – Part 1: General principles
Newest version Valid from 05.02.2009
Main

ISO/TR 13028:2010 et

Information and documentation - Implementation guidelines for digitization of records
Newest version Valid from 02.01.2018
Main

EVS-ISO/IEC 20000-2:2023

Information technology - Service management - Part 2: Guidance on the application of service management systems (ISO/IEC 20000-2:2019, identical + ISO/IEC 20000-2:2019/Amd 1:2020, identical)
Newest version Valid from 01.12.2023
Main

EVS-ISO/IEC 20000-3:2024

Information technology - Service management - Part 3: Guidance on scope definition and applicability of ISO/IEC 20000-1(ISO/IEC 20000-3:2019, identical)
Newest version Valid from 01.02.2024