Course overview
Modern supply chains stretch across dozens of jurisdictions, carriers, freight forwarders and contract manufacturers, and each handoff between them is a point where cargo can be stolen, tampered with, delayed or diverted. Security in this setting is not a single control at the warehouse gate; it is a chain of assurance that runs from the supplier's loading dock through ports, transshipment hubs and last-mile delivery, and it now has to account for the digital systems that move the data as much as the assets that move the goods. This course treats supply-chain security as an operational discipline, grounded in recognized frameworks such as ISO 28000, the U.S. Customs-Trade Partnership Against Terrorism (C-TPAT) and the EU's Authorized Economic Operator (AEO) scheme.
Across five units the course connects physical cargo protection, third-party and vendor risk, and the cybersecurity of logistics platforms into one coherent view of exposure and continuity. Participants examine how vulnerability mapping surfaces weak links, how port and warehouse controls are audited against real standards, and how organizations recover when a node fails. Because so much risk today sits with outsourced partners, the material also addresses supply chain cybersecurity and third-party risk as a thread running through every stage, from vendor onboarding to incident response.
Why this matters now
The last several years have made supply-chain fragility a boardroom concern. Cargo theft has climbed sharply across North America and Europe, with organized groups exploiting fictitious pickups and identity fraud against brokers; port congestion and canal disruptions have shown how a single chokepoint reshapes global flows; and software compromises reaching from a single vendor into thousands of downstream organizations have proven that a supplier's weakest system can become everyone's breach. Regulators and large buyers have responded by pushing security requirements down the chain, so that AEO status, C-TPAT membership and evidence of vendor due diligence increasingly decide who gets to trade at speed.
For professionals responsible for logistics and procurement, this means security can no longer be delegated wholly to a guard force or an IT team. It requires people who can read a risk assessment, question a carrier's controls, map where a shipment is most exposed, and align physical, contractual and digital safeguards into one defensible posture that keeps goods moving and customers supplied.
Course objectives
After working through the material, you will be able to:
- Map supply-chain vulnerabilities from suppliers to customs.
- Apply ISO 28000, C-TPAT and AEO frameworks against cargo theft.
- Score supplier criticality using risk registers.
- Rank concentration risk across sourcing regions and lanes.
- Diagnose insider-threat exposure across facility staff.
- Benchmark security performance against C-TPAT criteria.
- Structure IT and physical access controls under ISO 27001.
- Trace cyber incidents across shipping and logistics networks.
- Design supplier redundancy for critical nodes.
- Mobilize authorities and customers during security incidents.
Course outline
Unit 1: Introduction to Supply Chain Security
- Vulnerabilities and visibility gaps at handoffs.
- Cargo theft, counterfeiting and sanctions exposure.
- World Customs Organization SAFE and C-TPAT frameworks.
- Documented disruptions such as cargo-theft rings.
Unit 2: Risk Assessment and Vulnerability Mapping
- Assessment tools including likelihood-and-impact matrices.
- Identifying single points of failure and concentration risk.
- Scenario planning and impact analysis for border closures.
- Vulnerability mapping of goods and data flows.
Unit 3: Physical and Operational Security
- Warehouses, ports and high-security seals under ISO 28000.
- Protecting transit cargo with tamper-evident packaging.
- Insider-threat prevention via background screening.
- Audits using chain-of-custody records and C-TPAT criteria.
Unit 4: Cybersecurity and Digital Supply Chains
- Ransomware and fraud against supply-chain platforms.
- Securing EDI and shared data under ISO 27001.
- Integrating IT security with operational technology.
- Documented cyber-related disruptions and third-party risk.
Unit 5: Crisis Response and Building Resilience
- Crisis communication across suppliers and carriers.
- Business continuity planning with alternate sourcing.
- Resilient networks via diversification and redundancy.
- Emerging technologies such as blockchain and IoT sensing.
How the course is delivered
The learning approach pairs facilitator-led briefings with close study of documented disruptions and the countermeasures organizations put in place. Groups examine vulnerability maps and continuity plans taken from published cases and debate what would hold in their own networks. Content here is educational; it does not certify supply-chain security or constitute customs or legal advice.
Who should attend
Ideal for supply chain, logistics and procurement professionals who carry responsibility for security, compliance and continuity, this course suits those who coordinate with carriers, manage vendors, or oversee facilities and the systems that run them. It is equally relevant to security and risk specialists who need a supply-chain view of exposure.
- Supply chain and logistics managers responsible for cargo integrity and continuity.
- Procurement and vendor managers overseeing third-party and supplier risk.
- Warehouse, port and transport operations leads.
- Security, risk and compliance officers supporting trade and logistics.
- Business continuity and resilience planners.
About EuroQuest International Training
Since opening in 2015, the organization has built a reputation for practitioner-focused learning across industries. It is based in Bratislava, Slovakia, and runs sessions from locations in Istanbul, Dubai, London, Geneva, Vienna, Barcelona, and Paris. The wider library holds more than 1,000 titles, and participation has passed 15,000 professionals.
Frequently asked questions
Is this course relevant to organizations that outsource logistics to third parties?
Yes. Outsourcing is one of the central themes, because much of today's exposure sits with carriers, freight forwarders, contract warehouses and logistics platforms you do not directly control. The course covers vendor due diligence, contractual security requirements, monitoring and the frameworks such as C-TPAT and AEO that extend assurance across partners.
Do participants need a technical cybersecurity background?
No. The digital security material is framed for logistics and procurement professionals, focusing on where platforms and data create exposure and how physical and cyber controls fit together, without assuming prior information-security training.
How does this course relate to standards like ISO 28000 and C-TPAT?
These recognized frameworks run throughout the material as reference points for good practice. Participants learn what the standards expect and how to apply their principles, though the course itself leads to a certificate of completion and is not a certification body.
Related courses
Participants strengthening their supply-chain security knowledge often continue with these related courses:
- Cargo Security Management & Operational Risk Reduction
- Managing Third-Party and Vendor Risks
- Risk Assessment & Contingency Planning in Global Supply Chains
- Maritime and Port Security Strategies
Register for this course
Protect what your supply chain depends on. Contact EuroQuest International Training to see available dates and hubs, and register your interest today.
All Course Dates & Locations
30 dates · 15 cities · Oct 2026 – Jun 2027