Third-Party ISO Certification Body in UK, Europe, UAE, MENA & Globally. (MENA HO: UAE)
SCS KNOWLEDGE CENTRE

ISO 18788 Requirements in UAE | Get Certified with SCS

Learn ISO 18788 requirements in UAE, including SIRA, UAE law, customer and tender requirements, security operations, audit scope and certification.

  1. Home
  2. Knowledge Centre
  3. ISO 18788 Requirements in UAE | Get Certified with SCS

ISO 18788 Certification Requirements in UAE – Get Certified with SCS

ISO 18788 Certification Requirements in UAE – Get Certified with SCS
ISO 18788 requirements in UAE explained for private security companies, security contractors, facility management, Oil & Gas, infrastructure, logistics and other security operations. Learn how ISO 18788 requirements interact with UAE law, Dubai SIRA requirements, customer specifications, tenders, security risks, certification scope, audit evidence, cost and certification preparation.

 

ISO 18788 Certifications Requirements in UAE – Get Certified with SCS

http://www.scscertification.com/contactus.php

ISO 18788 requirements in UAE are relevant to private security companies, security contractors, facility-management organizations, infrastructure projects, logistics operations, industrial businesses and organizations providing contracted security services.

ISO 18788:2015 provides a framework for establishing, implementing, operating, monitoring, reviewing, maintaining and improving a Security Operations Management System (SOMS). The standard is intended for organizations conducting or contracting security operations and focuses on professional security operations, applicable requirements, customer expectations, risk management and responsible security practices.

For UAE organizations, ISO 18788 should be considered alongside applicable UAE legislation, Emirate-level regulatory requirements, security licensing requirements and customer or tender conditions.

This creates three important layers:

  • ISO 18788 management-system requirements
  • UAE legal and regulatory requirements
  • Customer, contract and tender requirements

Understanding the difference between these requirements is essential when preparing an ISO 18788 certification scope.

What Are ISO 18788 Requirements in UAE?

ISO 18788 establishes requirements and guidance for a Security Operations Management System.

The objective is to provide a structured management framework through which security operations can be planned, controlled, monitored and continually improved.

A UAE organization's implementation should reflect its actual:

  • Security services
  • Operating locations
  • Customers
  • Contracts
  • Security personnel
  • Operational risks
  • Legal obligations
  • Regulatory requirements
  • Subcontractors
  • Security activities
  • Performance requirements

A generic security manual does not automatically demonstrate an effective ISO 18788 management system.

The system should operate within the organization's actual security activities.

ISO 18788:2015 and Current Standard Status

The applicable published standard is ISO 18788:2015, Management system for private security operations – Requirements with guidance for use.

ISO also published Amendment 1:2024 concerning climate-action changes.

Organizations implementing or maintaining ISO 18788 should therefore consider the applicable current requirements rather than referring to an incorrectly stated “ISO 18788:2026” edition.

ISO 18788 Requirements vs UAE Legal Requirements

ISO 18788 is an international management-system standard.

UAE legislation establishes legal obligations.

Security regulators establish applicable regulatory requirements.

Customers establish contractual requirements.

Tender documents establish procurement requirements.

These requirements can interact but should not be treated as the same thing.

For example:

ISO 18788 provides the Security Operations Management System framework.

UAE legislation establishes applicable legal obligations.

Emirate-level authorities may establish additional security requirements.

Customers may specify contractual security controls.

Tenders may specify certification, licensing, personnel or operational requirements.

ISO 18788 certification therefore should not be represented as replacing a UAE security licence or government authorization.

ISO 18788 and UAE Private Security Company Requirements

Private security activities in the UAE are subject to applicable federal legislation and regulatory requirements.

Federal Law No. 37 of 2006 concerns private security companies and establishes requirements relevant to regulated private-security activities.

A UAE security organization should identify the legal requirements applicable to its own activities and establish a method for maintaining relevant compliance information.

The important distinction is:

ISO 18788 certification demonstrates conformity of the defined management system with applicable ISO requirements.

A government licence or regulatory approval authorizes regulated activities where such authorization is required.

A company may therefore need both.

ISO 18788 and Dubai SIRA Requirements

Dubai has a specific regulatory environment for the security industry.

Dubai Law No. 12 of 2016 regulates the security industry in the Emirate of Dubai, while SIRA provides regulatory services and requirements applicable to security activities.

Organizations operating security services in Dubai should therefore determine which SIRA and other regulatory requirements apply to their specific activities.

Depending on the business, these may include:

  • Security-company requirements
  • Security personnel requirements
  • Security-system requirements
  • Training requirements
  • Operational requirements
  • Site-specific requirements
  • Regulatory documentation
  • Customer requirements

ISO 18788 should complement these requirements rather than replace them.

ISO 18788 Requirements for Dubai Security Companies

ISO 18788 can be relevant to security organizations operating across:

  • Dubai Mainland
  • Jebel Ali
  • JAFZA
  • Business Bay
  • Al Quoz
  • Dubai South
  • Dubai Silicon Oasis
  • Dubai Internet City
  • Dubai Healthcare City
  • Commercial buildings
  • Residential communities
  • Hotels
  • Industrial facilities
  • Warehouses
  • Construction sites

The certification scope should identify the organization's actual security activities and applicable locations.

ISO 18788 Requirements in Abu Dhabi

Abu Dhabi has substantial demand for security operations across:

  • Oil and Gas
  • Energy
  • Infrastructure
  • Construction
  • Industrial facilities
  • Logistics
  • Warehousing
  • Government-related projects
  • Commercial properties
  • Hospitality

Important business areas can include Abu Dhabi City, Mussafah, ICAD, KEZAD and Al Ain.

Security contractors should identify applicable customer, regulatory and operational requirements before defining their ISO 18788 scope.

ISO 18788 Requirements in Sharjah

Security operations in Sharjah may support:

  • Manufacturing
  • Industrial facilities
  • Warehouses
  • Commercial buildings
  • Education
  • Construction
  • Logistics
  • Hospitality

The SOMS should reflect actual security operations rather than simply the organization's trade licence.

ISO 18788 Requirements in Ajman

Organizations operating in Ajman Mainland, Ajman Free Zone, Al Jurf and industrial areas may require structured security controls for commercial, industrial and logistics operations.

The organization should identify its security risks, personnel responsibilities, customer requirements and applicable legal obligations.

ISO 18788 Requirements in Ras Al Khaimah

Ras Al Khaimah has significant industrial, manufacturing, hospitality, logistics and construction activity.

Security contractors supporting these sectors may encounter customer requirements for:

  • Security risk assessment
  • Security procedures
  • Competence
  • Training
  • Incident management
  • Performance monitoring
  • Management-system certification

ISO 18788 Requirements in Fujairah

Fujairah's port, logistics, industrial, construction and hospitality activities can generate security-management requirements.

Organizations should define their ISO 18788 scope around the security services actually provided.

ISO 18788 Requirements in Umm Al Quwain

Security organizations operating in Umm Al Quwain can consider ISO 18788 where it is relevant to customer contracts, operational risks, security activities or business requirements.

ISO 18788 Customer Requirements in UAE

Customer requirements are one of the strongest commercial drivers for ISO 18788 certification.

A customer may require a security contractor to demonstrate a controlled management system before awarding a contract.

Customer requirements may include:

  • ISO 18788 certification
  • Security policy
  • Risk assessment
  • Security plans
  • Training records
  • Competence records
  • Personnel records
  • Incident reporting
  • Emergency procedures
  • Performance indicators
  • Internal audit
  • Corrective action
  • Legal compliance
  • Contractor controls
  • Management review

The exact requirements depend on the contract.

Therefore, a UAE security company should obtain the customer's specification before finalizing the certification scope.

ISO 18788 Tender Requirements in UAE

Tender requirements should be assessed separately from ISO requirements.

A tender may require:

  • ISO 18788 certificate
  • Current certificate
  • Accredited certification
  • Specific certification scope
  • Minimum experience
  • Security personnel qualifications
  • Training
  • Regulatory approvals
  • Insurance
  • Security procedures
  • Incident management
  • Performance reporting

A company should never assume that any ISO 18788 certificate automatically satisfies every tender.

The organization should compare the tender wording against its proposed certification scope before beginning the certification process.

What Customer Requirements Should Be Checked Before Certification?

Before beginning ISO 18788 implementation, a security company should ask:

  1. Is ISO 18788 specifically required?
  2. Does the customer require accreditation?
  3. What activities must be included?
  4. Which locations must be covered?
  5. Does the certificate need to be issued before contract award?
  6. Is there a specific deadline?
  7. Are subcontractors included?
  8. Are specific personnel qualifications required?
  9. Are separate regulatory licences required?
  10. Does the customer require additional site-security controls?

These questions help prevent a mismatch between the certificate and the customer's commercial requirement.

ISO 18788 Requirements for Private Security Operations

Depending on its scope, a private security organization may provide:

  • Manned guarding
  • Access control
  • Patrol services
  • Security supervision
  • Site protection
  • Security monitoring
  • Asset protection
  • Security escort
  • Incident response
  • Event security
  • Contract security management

The organization should determine how these services are planned, resourced, controlled and monitored.

ISO 18788 Security Risk Management Requirements

Security risks should be assessed according to actual operations.

Examples include:

  • Unauthorized access
  • Theft
  • Violence
  • Intrusion
  • Property damage
  • Personnel misconduct
  • Security-control failure
  • Communication failure
  • Emergency situations
  • Inadequate staffing
  • Contractor risks
  • Client-site risks
  • Operational disruption
  • Regulatory non-compliance

The organization should implement controls appropriate to the identified risks.

ISO 18788 Requirements for Security Personnel

Personnel competence is a key part of effective security operations.

Competence management may consider:

  • Job responsibilities
  • Qualifications
  • Experience
  • Training
  • Role-specific competence
  • Site requirements
  • Customer requirements
  • Regulatory requirements
  • Refresher training
  • Performance evaluation

Where UAE regulations establish specific requirements for security personnel, those requirements should also be addressed.

ISO 18788 Training Requirements

Training should reflect the organization's security operations.

Relevant areas may include:

  • Security procedures
  • Access control
  • Patrol procedures
  • Incident reporting
  • Emergency response
  • Communication
  • Site requirements
  • Customer requirements
  • Security equipment
  • Code of conduct
  • Applicable legal requirements

Training records can become important evidence during customer assessments and ISO certification audits.

ISO 18788 Operational Planning Requirements

Security operations should be planned based on:

  • Customer requirements
  • Security risks
  • Site conditions
  • Personnel
  • Equipment
  • Communication
  • Emergency arrangements
  • Security procedures
  • Reporting requirements
  • Regulatory obligations
  • Performance requirements

The level of planning should reflect the complexity and risk of the operation.

ISO 18788 Incident Management Requirements

Security organizations should establish appropriate processes for handling relevant incidents.

Examples include:

  • Unauthorized entry
  • Theft
  • Violence
  • Security breaches
  • Property damage
  • Missing assets
  • Emergency events
  • Personnel incidents
  • Customer complaints
  • Operational failures

Incident information should be evaluated to identify corrective actions and opportunities for improvement.

ISO 18788 Requirements for Contractors and Suppliers

Security operations may depend on external providers.

Relevant providers can include:

  • Security equipment suppliers
  • Technology providers
  • Security subcontractors
  • Training providers
  • Transport providers
  • Maintenance contractors
  • Specialist security providers

The organization should determine appropriate controls according to the effect of each external provider on security operations.

ISO 18788 for Oil and Gas Security Contractors

Oil and Gas security operations may involve:

  • Restricted facilities
  • High-value assets
  • Remote locations
  • Industrial infrastructure
  • Contractor access
  • Transportation
  • Emergency situations
  • High-consequence security risks

Security contractors may also face detailed prequalification and customer requirements.

ISO 18788 can provide a structured management framework, while project-specific Oil and Gas requirements remain applicable.

ISO 18788 for Infrastructure Projects

Infrastructure projects may involve multiple contractors, large workforces, valuable equipment and changing security conditions.

Security activities may include:

  • Perimeter control
  • Gate management
  • Vehicle access
  • Visitor management
  • Equipment protection
  • Night security
  • Contractor access
  • Incident reporting

The SOMS should be capable of controlling relevant security activities throughout the project.

ISO 18788 for Logistics and Warehousing

Security requirements in logistics may involve:

  • Cargo
  • Warehouses
  • Distribution centres
  • High-value goods
  • Vehicle access
  • Loading areas
  • Restricted areas
  • Visitors
  • Contractors

ISO 18788 can be relevant where security services are provided under contractual arrangements.

Road-traffic safety is a separate management-system subject and should not be confused with ISO 18788 security operations.

ISO 18788 for Event Security

Event-security organizations may manage:

  • Entry control
  • Security personnel
  • Restricted areas
  • VIP areas
  • Incident response
  • Emergency coordination
  • Security reporting

Customer requirements can be particularly detailed for major events, exhibitions, hotels and high-profile functions.

ISO 18788 for Facility Management Security

Facility-management companies may provide security as part of an integrated facilities contract.

Where security is included, the organization should clearly determine which security activities fall within the SOMS.

This can include:

  • Security personnel
  • Access control
  • Patrols
  • Visitor management
  • Security monitoring
  • Incident management

The certification scope should not automatically include unrelated FM services.

What Documents Are Needed for ISO 18788?

Depending on the scope, evidence may include:

  • SOMS scope
  • Security policy
  • Organizational responsibilities
  • Risk assessments
  • Legal and regulatory information
  • Customer requirements
  • Security procedures
  • Operational plans
  • Competence records
  • Training records
  • Communication records
  • Incident records
  • Performance records
  • Supplier records
  • Internal audit records
  • Management review records
  • Corrective-action records

Documentation should reflect actual operations rather than copied templates.

What Is Checked During an ISO 18788 Audit?

An auditor may evaluate:

  • SOMS scope
  • Security policy
  • Organizational responsibilities
  • Risk assessment
  • Legal requirements
  • Customer requirements
  • Operational controls
  • Personnel competence
  • Training
  • Incident management
  • Performance monitoring
  • Internal audit
  • Management review
  • Corrective actions
  • Continual improvement

The assessment should correspond with the organization's defined certification scope.

How to Define an ISO 18788 Certification Scope

The certification scope should accurately describe the security activities being managed and assessed.

It may consider:

  • Security services
  • Locations
  • Operational units
  • Security activities
  • Supporting functions
  • Contracted operations

The scope should not claim activities that are not actually implemented or assessed.

ISO 18788 and Human Rights Responsibilities

ISO 18788 is intended to support responsible security operations and accountability to applicable law and respect for human rights.

This is particularly relevant to organizations working on:

  • Sensitive facilities
  • Major infrastructure
  • International projects
  • High-value assets
  • Public-facing environments
  • High-risk operations

The organization should identify the responsibilities relevant to its security activities and integrate them into the management system.

ISO 18788 Climate-Action Amendment

ISO published Amendment 1:2024 for ISO 18788:2015 concerning climate-action changes.

Organizations maintaining an ISO 18788 management system should consider the applicable amendment when evaluating their organizational context and relevant management-system requirements.

For UAE operations, relevant considerations may include:

  • Extreme heat
  • Outdoor security activities
  • Remote locations
  • Emergency preparedness
  • Operational continuity
  • Infrastructure conditions
  • Resource planning

The relevance of these factors depends on the organization's circumstances.

ISO 18788 vs ISO 9001

ISO 18788 focuses on Security Operations Management.

ISO 9001 focuses on Quality Management.

A security company may use both standards where it needs structured security operations and broader quality management.

They should not be presented as substitutes.

ISO 18788 vs ISO 45001

ISO 45001 focuses on occupational health and safety.

ISO 18788 focuses on security operations.

A security company may require both when it needs to manage security activities and occupational safety risks.

ISO 18788 vs ISO 27001

ISO 27001 focuses on information security.

ISO 18788 focuses on security operations.

A security company may use information systems for CCTV, access control, incident reporting, customer information and personnel records.

Where information-security risks require a dedicated management system, ISO 27001 may complement ISO 18788.

ISO 18788 Certification Cost in UAE

There is no universal ISO 18788 certification price.

Cost can depend on:

  • Employee numbers
  • Security personnel
  • Locations
  • Security services
  • Operational complexity
  • Multi-site arrangements
  • Existing management systems
  • Audit requirements
  • Customer requirements

A quotation should therefore be based on the actual certification scope.

How Long Does ISO 18788 Certification Take?

The timeline depends on:

  • Organizational readiness
  • Number of locations
  • Number of employees
  • Security-service complexity
  • Existing management systems
  • Documentation readiness
  • Internal audit
  • Management review
  • Certification audit scheduling
  • Customer deadlines

A realistic certification schedule should be based on readiness rather than an arbitrary promised number of days.

How to Prepare for an ISO 18788 Customer or Tender Requirement

A UAE security company can use this preparation sequence:

  1. Obtain the customer or tender specification.
  2. Confirm whether ISO 18788 is mandatory.
  3. Check the required certificate scope.
  4. Determine whether accreditation is specified.
  5. Identify operating locations.
  6. Identify security activities.
  7. Identify UAE legal requirements.
  8. Identify applicable Emirate requirements.
  9. Review security personnel requirements.
  10. Conduct a gap assessment.
  11. Establish the SOMS.
  12. Implement operational controls.
  13. Conduct internal audit.
  14. Conduct management review.
  15. Complete the certification assessment.

Is ISO 18788 Mandatory in the UAE?

ISO 18788 should not be described as universally mandatory for every UAE business.

Whether certification is required depends on:

  • Applicable regulations
  • Customer contracts
  • Tender requirements
  • Supplier qualification
  • Security operations
  • Business objectives

A company may pursue ISO 18788 because a customer requires it, a tender specifies it, a contractor requests it, an international customer expects it, or the organization wants a structured security-management system.

Government licensing requirements remain separate where applicable.

Who Can Benefit from ISO 18788 in UAE?

ISO 18788 can be relevant to:

  • Private security companies
  • Security guarding companies
  • Security contractors
  • Facility-management companies
  • Security-service providers
  • Infrastructure security contractors
  • Oil and Gas security contractors
  • Industrial security providers
  • Logistics security providers
  • Warehouse security providers
  • Event-security organizations
  • Asset-protection companies
  • Organizations managing contracted security operations

Applicability should be determined from the actual business and certification scope.

ISO 18788 Requirements Across UAE Business Locations

Relevant markets include:

  • Dubai
  • Abu Dhabi
  • Sharjah
  • Ajman
  • Ras Al Khaimah
  • Fujairah
  • Umm Al Quwain
  • Al Ain
  • Jebel Ali
  • JAFZA
  • Mussafah
  • ICAD
  • KEZAD
  • Dubai South
  • Industrial zones
  • Logistics parks
  • Commercial developments
  • Hospitality locations
  • Infrastructure projects

The location itself does not automatically create an ISO 18788 requirement. Applicable legal, regulatory, customer and operational requirements must be determined for the actual activity.

How to Get ISO 18788 Certification in UAE with SCS

Organizations seeking ISO 18788 certification should first establish their actual requirement.

Useful information for an initial certification discussion includes:

  • Company activity
  • UAE location
  • Number of employees
  • Number of security personnel
  • Number of locations
  • Security services
  • Customer requirement
  • Tender requirement
  • Existing ISO certifications
  • Existing regulatory approvals
  • Required certification timeline

SCS can then discuss the appropriate certification route and scope.

Get Certified with SCS for ISO 18788 in UAE

If your organization has received an ISO 18788 requirement from a customer, main contractor, tender authority or business partner, the certification scope should be aligned with the actual requirement before implementation begins.

Discuss your business activity, security operations, locations, customer requirements and intended certification scope with SCS.

Get certified with SCS for ISO 18788 in UAE.

http://www.scscertification.com/contactus.php

UAE

Saudi Arabia

UK

Canada

India

SCS Certification6th Floor Salaam Bldg, Office 9 Al Marakib St, Al Danah, Zone 1,Abu Dhabi, UAE.

SCS Certification (Partners)7713, King Abdulaziz Street, Al Dawasir, Dammam, 32416Kingdom of Saudi Arabia

SCS CERTIFICATION EUROPE LIMITED Office 6996,58 Peregrine Road, Hainault, Ilford, Essex, United Kingdom IG6 3SZ.

SCS Certification (E) Limited Oaklea Blvd, Brampton, ONL6Y 5A2, Canada.

Chennai: Building bearing No.19/35, V 270,Situated on First Floor, Mount Road, Little Mount, Chennai – 600015, India.

Bangalore: Bangalore, Karnataka, India.

Share this article

Need ISO Certification for Your Business?

Speak with our certification specialists to understand certification requirements, audit process, implementation timelines and accredited certification services.

Frequently Asked Questions

ISO 18788 requirements in UAE involve establishing and maintaining a Security Operations Management System appropriate to the organization's security activities, risks, legal obligations, customer requirements and operational context.
ISO 18788 is not universally mandatory for every UAE security company. It may become a customer, tender, supplier-qualification or contractual requirement depending on the project and business relationship.
No. ISO 18788 certification and government security licensing are different requirements. Organizations must maintain applicable statutory and regulatory approvals separately.
ISO 18788 provides an international Security Operations Management System framework, while UAE laws and regulatory authorities establish legal and regulatory obligations applicable to security activities.
Organizations should not assume that ISO 18788 universally replaces or constitutes a SIRA requirement. Applicable SIRA licensing and regulatory requirements should be checked separately for the organization's specific activity.
ISO 18788 provides the management-system framework for security operations, while SIRA regulates applicable security-industry activities in Dubai. A company may need to address both.
Yes. Dubai security companies can establish a Security Operations Management System and seek certification according to their actual security activities and applicable certification requirements.
Yes. Organizations in Abu Dhabi can implement ISO 18788 according to their security operations, applicable requirements and intended certification scope.
Some customers, contractors and tenders may request ISO 18788 certification as part of supplier qualification, contract requirements or security-management expectations. The actual customer specification should always be checked.
It can support tender eligibility where ISO 18788 is specifically requested or recognized. However, certification alone does not guarantee tender award because other technical, commercial, regulatory and experience requirements may also apply.
It should check the tender's required standard, certificate scope, accreditation expectations, certification deadline, locations, security activities, personnel requirements and other mandatory conditions.
The certification scope should accurately cover the relevant activities for which certification is being claimed. If a customer specifies a particular activity, the proposed scope should be checked against that requirement.
It may support government or government-related security contracts where the tender or contract requires or recognizes the standard. The specific procurement requirements must be reviewed separately.
Relevant sectors can include private security, Oil and Gas, infrastructure, construction, logistics, warehousing, facility management, industrial facilities, hospitality and event security.
Yes. Oil and Gas security contractors may use ISO 18788 to structure security operations, risk management, competence, operational controls and performance evaluation, subject to project-specific requirements.
Yes. It can be relevant where security operations form part of a facility-management service contract and fall within the organization's defined management-system scope.
It can be useful where the organization conducts or manages security operations relating to warehouses, cargo, distribution facilities, restricted areas or contracted security services.
Yes. Security contractors supporting construction and infrastructure projects can use ISO 18788 to structure site-security operations, access control, incident management and related controls.
Evidence can include the SOMS scope, security policy, risk assessments, legal requirements, customer requirements, procedures, competence and training records, incident records, performance information, internal audits and management reviews.
Documents may include security policies, risk assessments, operational procedures, legal registers, customer requirements, competence records, training records, incident procedures, audit records and management-review information.
Effective security operations require systematic consideration of operational risks. The organization should establish an appropriate risk-management process consistent with its scope and applicable ISO 18788 requirements.
Organizations should establish appropriate competence and training arrangements based on job responsibilities, security activities, customer requirements and applicable legal or regulatory conditions.
Incident management is an important part of controlling and improving security operations. Organizations should establish appropriate processes for recording, investigating, responding to and learning from relevant incidents.
Yes. Understanding customer and stakeholder requirements is important when establishing and operating a security-management system.
Yes. If a customer requires particular security activities, locations or services to be included, those requirements should be considered when defining the certification scope.
Yes. A tender may specify certification as a prequalification or eligibility requirement. The tender's exact wording and deadline should be reviewed before certification planning begins.
Multi-location certification may be possible depending on the certification arrangements and the organization's structure, activities and scope.
Potentially, where the organization's certification scope and management system appropriately cover both operations. Applicable regulatory requirements for each Emirate remain separate.
It can be relevant where security operations are conducted or contracted for facilities, warehouses, logistics operations or industrial activities in JAFZA.
It can be relevant to security contractors supporting industrial, logistics, manufacturing and commercial facilities in Mussafah where a structured security-management system is required.
It can be relevant to security providers supporting industrial and logistics operations in KEZAD where customers or contracts require formal security-management controls.
It can be relevant to security operations supporting logistics, aviation-related, commercial and industrial activities where customer or contract requirements call for structured security management.
It can be particularly relevant to organizations managing security operations around critical or high-value infrastructure, subject to the specific project requirements.
ISO describes ISO 18788 as supporting responsible security operations, accountability to law and respect for human rights. Organizations should address the responsibilities relevant to their actual activities.
ISO published Amendment 1:2024 to ISO 18788:2015 concerning climate-action changes. Organizations should consider the applicable amendment when reviewing their current management-system requirements.
No. ISO 18788 focuses on security operations management, while ISO 9001 focuses on quality management.
No. ISO 45001 focuses on occupational health and safety, while ISO 18788 focuses on security operations management.
No. ISO 27001 focuses on information-security management, while ISO 18788 focuses on security operations management.
Yes. Organizations can implement both standards when they need structured security operations management and information-security management.
Yes. Organizations can integrate compatible management-system processes where this improves efficiency and avoids unnecessary duplication.
The cost depends on organization size, employees, security personnel, locations, operational complexity, scope, existing systems, audit requirements and other factors.
Provide the certification provider with your business activity, locations, employee numbers, security services, customer requirements, tender requirements and intended scope to obtain a scope-based quotation.
The timeline depends on the organization's readiness, scope, number of locations, management-system maturity, documentation, internal audit, management review and certification audit scheduling.
The timeline can be planned around a genuine customer deadline, but certification should not be represented as a shortcut that bypasses implementation and assessment requirements.
The first step is to determine why certification is required, obtain the customer or tender specification if applicable and define the security operations that should fall within the certification scope.
Provide your company activity, Emirate, employee count, security personnel count, locations, security services, customer or tender requirements, existing certifications and desired certification timeline.
Eligibility and certification readiness depend on the organization's operational scope, implemented management system, applicable legal requirements and certification body's assessment requirements.
Yes. An existing organization can assess its current security-management arrangements against ISO 18788 requirements and address identified gaps.
A gap assessment compares the organization's existing security-management arrangements with applicable ISO 18788 requirements and identifies areas requiring development or improvement.
SCS provides ISO certification services and has a dedicated ISO 18788 certification service for UAE organizations. The appropriate scope and certification requirements should be discussed based on the organization's activities.
Contact SCS with your organization details, security activities, UAE locations, customer or tender requirements and intended scope so that the certification requirements can be discussed.
ISO 18788 can provide a structured framework for security operations management, risk management, customer requirements, legal compliance processes, competence, performance evaluation and continual improvement.
An independently assessed management system can provide customers with evidence that the organization's security operations are managed through a structured and systematic framework.
Yes. ISO 18788 is an international standard and can provide a recognizable management-system framework for organizations serving international customers, subject to customer-specific acceptance requirements.
Confirm that the certification arrangement, scope, certification body competence, applicable accreditation expectations and certification process meet the actual customer or tender requirement.
You can contact SCS through http://www.scscertification.com/contactus.php to discuss your organization, certification scope, customer requirements and ISO 18788 certification needs.

Final Lead CTA

Get certified with SCS when ISO 18788 is required for your UAE security business, customer contract, tender, supplier qualification or security-management objective.

Discuss your required scope, business location, security services and customer requirements with SCS:

http://www.scscertification.com/contactus.php