DIN ISO 28000-2015 Specification for security management systems for the supply chain (ISO 28000 2007)《供应链用安全管理系统的规范(ISO 28000-2007)》.pdf
《DIN ISO 28000-2015 Specification for security management systems for the supply chain (ISO 28000 2007)《供应链用安全管理系统的规范(ISO 28000-2007)》.pdf》由会员分享,可在线阅读,更多相关《DIN ISO 28000-2015 Specification for security management systems for the supply chain (ISO 28000 2007)《供应链用安全管理系统的规范(ISO 28000-2007)》.pdf(21页珍藏版)》请在麦多课文档分享上搜索。
1、August 2015 Translation by DIN-Sprachendienst.English price group 12No part of this translation may be reproduced without prior permission ofDIN Deutsches Institut fr Normung e. V., Berlin. Beuth Verlag GmbH, 10772 Berlin, Germany,has the exclusive right of sale for German Standards (DIN-Normen).ICS
2、 03.100.10; 47.020.05!%ED“2342933www.din.deDDIN ISO 28000Specification for security management systems for the supply chain(ISO 28000:2007),English translation of DIN ISO 28000:2015-08Spezifikation fr Sicherheitsmanagementsysteme fr die Lieferkette (ISO 28000:2007),Englische bersetzung von DIN ISO 2
3、8000:2015-08Spcifications pour les systmes de management de la sret pour la chanedapprovisionnement (ISO 28000:2007),Traduction anglaise de DIN ISO 28000:2015-08www.beuth.deDocument comprises 21 pagesIn case of doubt, the German-language original shall be considered authoritative.08.15 A comma is us
4、ed as the decimal marker. Contents Page National foreword. 3 Introduction 4 1 Scope . 6 2 Normative references . 6 3 Terms and definitions. 6 4 Security management system elements 8 4.1 General requirements. 8 4.2 Security management policy . 9 4.3 Security risk assessment and planning . 9 4.4 Imple
5、mentation and operation 12 4.5 Checking and corrective action 15 4.6 Management review and continual improvement . 17 Annex A (informative) Correspondence between ISO 28000:2007, ISO 14001:2004 and ISO 9001:2000 18 Bibliography . 21 DIN ISO 28000:2015-08 2 National foreword This document (ISO 28000:
6、2007) has been prepared by Technical Committee ISO/TC 8 Ships and marine technology“ (Secretariat: SAC, China and DIN, Germany) and has been adopted, unchanged, as DIN ISO 28000:2015-08. The responsible German body involved in its preparation was the DIN-Normenstelle Schiffs- und Meerestechnik (DIN
7、Standards Committee Shipbuilding and Marine Technology), Working Committee NA 132 BR-01 SO Internationale Normung (Sp ISO/TC 8). Attention is drawn to the possibility that some of the elements of this document may be the subject of patent rights. DIN and/or DKE shall not be held responsible for iden
8、tifying any or all such patent rights. Users of the German version of this standard should note the following: Compliance with this standard does not confer to an organization immunity from its legal obligations, even if such compliance has been verified by internal or external audit. In the German
9、translation of this standard, “security” has been translated as Sicherheit (which can also mean “safety”). DIN ISO 28000:2015-08 3 Introduction This International Standard has been developed in response to demand from industry for a security management standard. Its ultimate objective is to improve
10、the security of supply chains. It is a high-level management standard that enables an organization to establish an overall supply chain security management system. It requires the organization to assess the security environment in which it operates and to determine if adequate security measures are
11、in place and if other regulatory requirements already exist with which the organization complies. If security needs are identified by this process, the organization should implement mechanisms and processes to meet these needs. Since supply chains are dynamic in nature, some organizations managing m
12、ultiple supply chains may look to their service providers to meet related governmental or ISO supply chain security standards as a condition of being included in that supply chain in order to simplify security management as illustrated in Figure 1. ISO 28000:Securitymanagement systemsfor the supply
13、chainISO20858:MaritimePortFacilitySecurityAssessmentsandSecurityPlanISO28001:BestPracticesCustodyinSupplyChainSecurityOtherspecificexistingstandardsorthosetobedeveloped.Figure 1 Relationship between ISO 28000 and other relevant standards Specification for security management systems for the supply c
14、hain DIN ISO 28000:2015-08 4 This International Standard is intended to apply in cases where an organizations supply chains are required to be managed in a secure manner. A formal approach to security management can contribute directly to the business capability and credibility of the organization.
15、Compliance with an International Standard does not in itself confer immunity from legal obligations. For organizations that so wish, compliance of the security management system with this International Standard may be verified by an external or internal auditing process. This International Standard
16、is based on the ISO format adopted by ISO 14001:2004 because of its risk based approach to management systems. However, organizations that have adopted a process approach to management systems (e.g. ISO 9001:2000) may be able to use their existing management system as a foundation for a security man
17、agement system as prescribed in this International Standard. It is not the intention of this International Standard to duplicate governmental requirements and standards regarding supply chain security management to which the organization has already been certified or verified compliant. Verification
18、 may be by an acceptable first, second, or third party organization. NOTE This International Standard is based on the methodology known as Plan-Do-Check-Act (PDCA). PDCA can be described as follows. Plan: establish the objectives and processes necessary to deliver results in accordance with the orga
19、nizations security policy. Do: implement the processes. Check: monitor and measure processes against security policy, objectives, targets, legal and other requirements, and report results. Act: take actions to continually improve performance of the security management system. DIN ISO 28000:2015-08 5
20、 1 Scope This International Standard specifies the requirements for a security management system, including those aspects critical to security assurance of the supply chain. Security management is linked to many other aspects of business management. Aspects include all activities controlled or influ
21、enced by organizations that impact on supply chain security. These other aspects should be considered directly, where and when they have an impact on security management, including transporting these goods along the supply chain. This International Standard is applicable to all sizes of organization
22、s, from small to multinational, in manufacturing, service, storage or transportation at any stage of the production or supply chain that wishes to: a) establish, implement, maintain and improve a security management system; b) assure conformance with stated security management policy; c) demonstrate
23、 such conformance to others; d) seek certification/registration of its security management system by an Accredited third party Certification Body; or e) make a self-determination and self-declaration of conformance with this International Standard. There are legislative and regulatory codes that add
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- DINISO280002015SPECIFICATIONFORSECURITYMANAGEMENTSYSTEMSFORTHESUPPLYCHAINISO280002007 供应 安全管理 系统 规范 ISO280002007PDF

链接地址:http://www.mydoc123.com/p-684425.html