ISO & Quality Standards · PPL

ISO 28000 Supply Chain Security Management Internal Auditor

A practitioner-level course developing practical skills for auditing supply chain security management systems, evaluating security controls, identifying gaps, reporting findings, and supporting continual improvement.

  • 3 DaysDuration
  • PPLAccredited
  • 3 LanguagesArabic · English · Hindi
  • ₹7,499.00 Per delegate

This course is accredited by PPL

This is for all ppl accredited courses
2M+ Delegates trained worldwide
15,000+ Corporate clients
490+ Training locations
4.8 ★ Average learner rating
20% OFF Limited-time launch offer
— The journey

Course Outline

What the programme covers, module by module.

Module 1: Introduction to ISO 28000

  • ISO 28000 overview
  • Purpose and scope
  • Supply chain security
  • Security management concepts
  • Management system approach
  • Key terminology

Module 2: Supply Chain Security Management System

  • Management system structure
  • Supply chain environment
  • Security management principles
  • Organisational responsibilities
  • System boundaries
  • Security management lifecycle

Module 3: Organisational Context

  • Internal context
  • External context
  • Interested parties
  • Security requirements
  • Supply chain dependencies
  • Management system scope

Module 4: Leadership & Security Governance

  • Leadership commitment
  • Security policy
  • Roles and responsibilities
  • Accountability
  • Security objectives
  • Security culture

Module 5: Supply Chain Security Risk Management

  • Security risk concepts
  • Threat identification
  • Vulnerability identification
  • Risk analysis
  • Risk evaluation
  • Risk treatment

Module 6: Physical & Facility Security Controls

  • Perimeter protection
  • Facility access
  • Restricted areas
  • Visitor management
  • Physical monitoring
  • Facility protection

Module 7: Personnel & Access Security

  • Personnel security
  • Identity verification
  • Access permissions
  • Privileged access
  • Security awareness
  • Insider threats

Module 8: Cargo & Inventory Security

  • Cargo protection
  • Inventory controls
  • Loading and unloading
  • Storage security
  • Cargo integrity
  • Handling controls

Module 9: Transportation & Logistics Security

  • Transportation risks
  • Vehicle security
  • Shipment monitoring
  • Route considerations
  • Delivery controls
  • Logistics security

Module 10: Supplier & Third-Party Security

  • Supplier security
  • Security requirements
  • Supplier evaluation
  • Contractor controls
  • Third-party risks
  • Partner monitoring

Module 11: Information & Documentation Security

  • Supply chain information
  • Information access
  • Document protection
  • Data integrity
  • Communication security
  • Security records

Module 12: Incident & Emergency Management

  • Security incidents
  • Incident identification
  • Reporting and escalation
  • Emergency preparedness
  • Response activities
  • Recovery considerations

Module 13: Internal Audit Principles

  • Purpose of internal audits
  • Integrity
  • Objectivity
  • Independence
  • Professional conduct
  • Evidence-based auditing

Module 14: Internal Audit Programme

  • Audit programme objectives
  • Audit priorities
  • Audit frequency
  • Audit resources
  • Auditor responsibilities
  • Programme monitoring

Module 15: Audit Objectives, Scope & Criteria

  • Audit objectives
  • Defining scope
  • Audit criteria
  • Organisational boundaries
  • Security processes
  • Audit feasibility

Module 16: Audit Planning & Preparation

  • Audit planning
  • Audit schedules
  • Process selection
  • Reviewing documentation
  • Identifying audit trails
  • Preparing audit activities

Module 17: Developing Audit Checklists

  • Checklist structure
  • Security requirement questions
  • Risk management questions
  • Operational control questions
  • Supplier security questions
  • Incident management questions

Module 18: Conducting Internal Audit Activities

  • Opening meetings
  • Personnel interviews
  • Process observations
  • Document reviews
  • Record reviews
  • Following audit trails

Module 19: Gathering & Evaluating Audit Evidence

  • Objective evidence
  • Evidence sources
  • Audit sampling
  • Evidence reliability
  • Evidence sufficiency
  • Evaluating control effectiveness

Module 20: Audit Findings & Nonconformities

  • Evaluating conformity
  • Identifying gaps
  • Nonconformities
  • Supporting evidence
  • Writing findings
  • Improvement opportunities

Module 21: Audit Reporting & Closing Meeting

  • Audit conclusions
  • Audit report structure
  • Findings summary
  • Closing meetings
  • Communicating results
  • Management feedback

Module 22: Corrective Actions & Audit Follow-Up

  • Immediate corrections
  • Root cause concepts
  • Corrective-action planning
  • Reviewing responses
  • Effectiveness verification
  • Continual improvement
— 01.2 · Is it right for you?

Who it's for & what's included

Pick a delivery method to see exactly who it suits and everything you receive.

Who it's for

Classroom

Best for learners who want face-to-face tuition and to network with peers in person.

What's included

Everything you get

  • Live instructor on-site
  • Printed workbook & materials
  • Group exercises & case studies
Who it's for

Online Instructor-Led

Best for learners who want a live instructor and a fixed schedule, without the travel.

What's included

Everything you get

  • Live instructor via video call
  • Digital workbook & resources
  • Session recordings
Who it's for

Self-Paced

Best for self-motivated learners who need maximum flexibility around work and life.

What's included

Everything you get

  • On-demand video lessons
  • Interactive quizzes
  • 24/7 access on any device
— About this course

Course Overview

The ISO 28000 Supply Chain Security Management Internal Auditor course equips working professionals with practical knowledge for conducting structured internal audits. Learners explore supply chain security requirements, risk management, physical and operational controls, supplier security, incident management, audit planning, evidence gathering, findings, reporting, corrective actions, and follow-up activities.

— What you will master

Course Objectives

01

Understand ISO 28000 requirements and fundamental supply chain security management concepts.

02

Evaluate organisational context, leadership, security policies, responsibilities, and security objectives.

03

Assess supply chain threats, vulnerabilities, risks, treatments, and operational security controls.

04

Evaluate physical, personnel, cargo, transportation, supplier, and information security practices.

05

Plan and prepare structured internal audits using appropriate objectives, scope, criteria, and checklists.

06

Gather and evaluate objective audit evidence through interviews, observations, documents, and records.

07

Identify nonconformities and develop clear, evidence-supported audit findings and reports.

08

Evaluate corrective actions, conduct audit follow-up, and support continual improvement.

— Questions answered

Frequently Asked Questions

Who should attend this course?
The course is suitable for internal auditors, supply chain professionals, logistics personnel, security and risk professionals, and working professionals responsible for reviewing supply chain security management practices.
What prior knowledge is recommended?
Foundational knowledge of ISO 28000, supply chain operations, security risk management, and basic management system principles is recommended.
Does the course cover practical internal auditing?
Yes. Learners explore audit planning, checklists, interviews, observations, evidence collection, findings, reporting, corrective actions, and follow-up.
Does the course cover supply chain security controls?
Yes. The course covers physical security, personnel access, cargo protection, transportation, logistics, supplier security, information protection, and incident management.
Does the course cover risk-based auditing?
Yes. Learners examine security risks, threats, vulnerabilities, operational priorities, and control effectiveness when planning and conducting internal audits.
— Trusted by learners

What our delegates say

★★★★★

"The structure, the practice exams, the instructor — all top tier. Passed first try."

AS
Ranjan PradhanSenior Project Manager
★★★★★

"Best training I have attended. The content is exactly what modern projects need."

JD
James DonovanProgramme Director
★★★★★

"24/7 support actually means 24/7 — got help on my mock exam at 2am. Worth every dollar."

MO
Maya OkaforPMO Lead

★ 4.8 / 5 from 12,000+ verified learner reviews on Trustpilot & Google.

PPL Academy enquiry form

Get the course
that's right for you.

Our advisors respond within one business day.

Full name
Work email
Contact number
Message (optional)
Your details are never shared with third parties.
< 24h Response
Live & online Delivery
Certified Instructors