ISO & Quality Standards · PPL

ISO 28000 Supply Chain Security Management Lead Auditor

Develop advanced auditing skills to assess supply chain security management systems, evaluate controls, identify risks, report findings, and lead effective audits.

  • 4 DaysDuration
  • PPLAccredited
  • 3 LanguagesArabic · English · Hindi
  • ₹19,999.00 Per delegate

This course is accredited by PPL

This is for all ppl accredited courses
2M+ Delegates trained worldwide
15,000+ Corporate clients
490+ Training locations
4.8 ★ Average learner rating
20% OFF Limited-time launch offer
— The journey

Course Outline

What the programme covers, module by module.

Module 1: Introduction to Supply Chain Security

  • Supply chain security concepts
  • Modern supply chain environments
  • Security challenges
  • Organisational responsibilities
  • Security management principles
  • Importance of systematic security management

Module 2: Understanding ISO 28000

  • Purpose of ISO 28000
  • Scope and application
  • Management system approach
  • Key terminology
  • Standard structure
  • Organisational application

Module 3: Context of the Organisation

  • Internal issues
  • External issues
  • Interested parties
  • Stakeholder requirements
  • Management system scope
  • Supply chain dependencies

Module 4: Supply Chain Security Environment

  • Supply chain networks
  • Suppliers and contractors
  • Logistics operations
  • Transportation activities
  • Warehousing
  • International supply chains

Module 5: Leadership and Commitment

  • Leadership responsibilities
  • Security policy
  • Management commitment
  • Roles and responsibilities
  • Organisational accountability
  • Security culture

Module 6: Security Risk Management

  • Risk management principles
  • Security threats
  • Vulnerabilities
  • Risk identification
  • Risk assessment
  • Risk treatment

Module 7: Threat and Vulnerability Assessment

  • Threat identification
  • Vulnerability analysis
  • Exposure assessment
  • Security scenarios
  • Risk prioritisation
  • Assessment documentation

Module 8: Security Objectives and Planning

  • Security objectives
  • Planning requirements
  • Performance targets
  • Responsibilities
  • Resources
  • Monitoring objectives

Module 9: Operational Security Controls

  • Operational planning
  • Process controls
  • Physical security
  • Access controls
  • Personnel considerations
  • Security procedures

Module 10: Supplier and Third-Party Security

  • Supplier risks
  • Contractor security
  • Third-party controls
  • Supplier evaluation
  • Security requirements
  • Ongoing monitoring

Module 11: Transportation and Logistics Security

  • Transportation risks
  • Cargo security
  • Vehicle security
  • Route considerations
  • Handover controls
  • Logistics monitoring

Module 12: Warehouse and Facility Security

  • Facility protection
  • Access management
  • Storage security
  • Restricted areas
  • Visitor management
  • Physical safeguards

Module 13: Security Incident Management

  • Security incidents
  • Incident identification
  • Escalation
  • Response procedures
  • Incident investigation
  • Lessons learned

Module 14: Emergency Preparedness and Response

  • Emergency scenarios
  • Response planning
  • Roles and responsibilities
  • Communication arrangements
  • Response testing
  • Recovery considerations

Module 15: Business Continuity and Resilience

  • Supply chain disruption
  • Continuity planning
  • Critical activities
  • Alternative arrangements
  • Recovery priorities
  • Supply chain resilience

Module 16: Monitoring and Measurement

  • Security performance
  • Monitoring activities
  • Security indicators
  • Performance data
  • Trend analysis
  • Evaluation of results

Module 17: Introduction to Management System Auditing

  • Audit principles
  • Audit objectives
  • Audit scope
  • Audit criteria
  • Audit evidence
  • Auditor responsibilities

Module 18: Lead Auditor Roles and Responsibilities

  • Audit leadership
  • Auditor competence
  • Professional behaviour
  • Audit team responsibilities
  • Communication
  • Managing audit activities

Module 19: Establishing the Audit Programme

  • Audit programme objectives
  • Audit priorities
  • Audit frequency
  • Resources
  • Auditor selection
  • Programme monitoring

Module 20: Audit Planning

  • Audit objectives
  • Audit scope
  • Audit criteria
  • Audit schedule
  • Audit team allocation
  • Audit plan development

Module 21: Preparing Audit Documentation

  • Audit checklists
  • Working documents
  • Process questions
  • Evidence requirements
  • Sampling plans
  • Audit records

Module 22: Conducting Opening Meetings

  • Meeting objectives
  • Introductions
  • Confirming audit scope
  • Audit methodology
  • Communication arrangements
  • Clarifying expectations

Module 23: Gathering Audit Evidence

  • Interviews
  • Observation
  • Document review
  • Record examination
  • Sampling
  • Evidence verification

Module 24: Auditing Supply Chain Security Controls

  • Control implementation
  • Operational effectiveness
  • Risk-based evaluation
  • Supplier controls
  • Physical controls
  • Security performance

Module 25: Identifying Audit Findings

  • Conformity
  • Nonconformity
  • Audit observations
  • Evidence-based findings
  • Finding classification
  • Documenting findings

Module 26: Managing Audit Teams

  • Assigning responsibilities
  • Coordinating auditors
  • Managing audit progress
  • Resolving audit issues
  • Team communication
  • Maintaining audit consistency

Module 27: Conducting Closing Meetings

  • Presenting findings
  • Explaining evidence
  • Discussing conclusions
  • Managing disagreements
  • Confirming next steps
  • Closing communication

Module 28: Audit Reporting

  • Audit report structure
  • Audit findings
  • Audit conclusions
  • Evidence documentation
  • Report accuracy
  • Report communication

Module 29: Corrective Actions and Follow-Up

  • Root cause considerations
  • Corrective action plans
  • Reviewing responses
  • Verification activities
  • Follow-up audits
  • Closing findings

Module 30: Continual Improvement of Supply Chain Security

  • Performance evaluation
  • Audit results
  • Management review
  • Improvement opportunities
  • Strengthening security controls
  • Continuous improvement
— 01.2 · Is it right for you?

Who it's for & what's included

Pick a delivery method to see exactly who it suits and everything you receive.

Who it's for

Classroom

Best for learners who want face-to-face tuition and to network with peers in person.

What's included

Everything you get

  • Live instructor on-site
  • Printed workbook & materials
  • Group exercises & case studies
Who it's for

Online Instructor-Led

Best for learners who want a live instructor and a fixed schedule, without the travel.

What's included

Everything you get

  • Live instructor via video call
  • Digital workbook & resources
  • Session recordings
Who it's for

Self-Paced

Best for self-motivated learners who need maximum flexibility around work and life.

What's included

Everything you get

  • On-demand video lessons
  • Interactive quizzes
  • 24/7 access on any device
— About this course

Course Overview

This course develops the knowledge and practical auditing capabilities required to lead audits of supply chain security management systems based on ISO 28000 principles. Participants explore security risk management, audit planning, evidence collection, interviewing, control evaluation, audit findings, reporting, corrective actions, audit team leadership, and continual improvement across complex supply chains.

— What you will master

Course Objectives

01

Understand the principles and structure of ISO 28000 supply chain security management systems.

02

Evaluate security threats, vulnerabilities, risks, and operational controls across supply chains.

03

Understand the responsibilities and competencies required of a lead auditor.

04

Plan and manage audits using defined objectives, scope, criteria, and evidence requirements.

05

Apply interviewing, observation, sampling, and document review techniques to gather audit evidence.

06

Evaluate conformity and develop clear, evidence-based audit findings.

07

Lead audit teams and communicate audit conclusions effectively.

08

Evaluate corrective actions and support continual improvement of supply chain security management.

— Questions answered

Frequently Asked Questions

Who should attend this course?
This course is suitable for auditors, supply chain professionals, logistics managers, security professionals, risk managers, compliance professionals, and individuals involved in supply chain security management.
What does ISO 28000 focus on?
ISO 28000 focuses on security management within organisations and supply chains, helping organisations systematically identify and manage security-related risks.
Does the course cover audit planning?
Yes. Participants learn how to establish audit objectives, scope, criteria, schedules, resources, documentation, and evidence requirements.
Will I learn how to identify audit findings?
Yes. The course covers evaluating evidence, determining conformity and nonconformity, documenting findings, and communicating audit conclusions.
Does the course cover supply chain security risks?
Yes. Participants explore threats, vulnerabilities, transportation security, facility security, supplier risks, operational controls, incidents, resilience, and risk treatment.
— Trusted by learners

What our delegates say

★★★★★

"The structure, the practice exams, the instructor — all top tier. Passed first try."

AS
Ranjan PradhanSenior Project Manager
★★★★★

"Best training I have attended. The content is exactly what modern projects need."

JD
James DonovanProgramme Director
★★★★★

"24/7 support actually means 24/7 — got help on my mock exam at 2am. Worth every dollar."

MO
Maya OkaforPMO Lead

★ 4.8 / 5 from 12,000+ verified learner reviews on Trustpilot & Google.

PPL Academy enquiry form

Get the course
that's right for you.

Our advisors respond within one business day.

Full name
Work email
Contact number
Message (optional)
Your details are never shared with third parties.
< 24h Response
Live & online Delivery
Certified Instructors