Summary
The Third-Party and Supplier Audits Training Course is designed for organisations that require structured oversight of suppliers, vendors, contractors, service providers, and external business partners. Modern organisations increasingly depend on third parties for manufacturing, technology, logistics, facilities management, professional services, procurement, and operational support. This dependency creates exposure to quality failures, regulatory breaches, operational disruption, information security weaknesses, financial risks, and reputational damage.
Effective third-party and supplier audits provide organisations with a systematic approach to evaluating external parties against contractual, regulatory, operational, quality, health and safety, environmental, and governance requirements. The course focuses on corporate audit practices that help organisations establish consistent supplier assurance processes, identify control weaknesses, document objective evidence, and support informed supplier management decisions.
The programme delivered by Geneva Institute of Business Management addresses the practical requirements of supplier assurance and external-party governance. It examines how audit teams can plan supplier audits, establish audit criteria, assess evidence, conduct interviews, evaluate controls, document findings, and communicate corrective actions to relevant stakeholders.
The course also covers vendor compliance checks, enabling organisations to verify whether suppliers are meeting agreed contractual and regulatory obligations. Participants examine the relationship between supplier governance and broader supply chain audit activities, with emphasis on risk-based approaches that prioritise critical suppliers and high-impact processes.
A significant component of the programme focuses on contractor risk assessment. Organisations often engage contractors for activities that directly affect workplace safety, service continuity, quality, security, and regulatory compliance. A structured assessment process enables management teams to identify weaknesses before they become operational incidents.
The course is aligned with the professional requirements of the Review and Audit Training Courses category and supports organisations seeking stronger supplier governance, audit consistency, compliance visibility, and supply chain resilience.
Objectives
The Third-Party and Supplier Audits Training Course aims to strengthen organisational capability in planning, conducting, documenting, and managing audits involving external suppliers and business partners.
Establish a Risk-Based Supplier Audit Framework
Participants will develop a structured understanding of how supplier audit programmes can be established around organisational risk. The focus is on categorising suppliers according to business criticality, regulatory exposure, financial significance, operational dependency, and potential impact on customers or stakeholders.
A risk-based approach allows organisations to allocate audit resources where they can generate the greatest assurance value rather than applying identical audit procedures to every supplier.
Strengthen Vendor Compliance Checks
The programme provides a structured approach to vendor compliance checks covering contractual requirements, internal policies, regulatory obligations, service-level expectations, quality requirements, and operational controls.
Participants will examine how compliance requirements can be converted into practical audit criteria and how evidence can be assessed consistently across different suppliers and business functions.
Improve Supply Chain Audit Practices
The course develops an understanding of supply chain audit processes and their role in identifying weaknesses across procurement and supplier relationships. Participants will consider supplier onboarding, qualification, performance monitoring, contractual controls, delivery performance, quality assurance, and corrective action management.
The objective is to establish audit practices that provide management with meaningful visibility across the supplier network.
Develop Effective Contractor Risk Assessment
Participants will examine methods for conducting contractor risk assessment before and during supplier engagements. This includes assessing operational risks, competency requirements, compliance obligations, health and safety considerations, security requirements, and contractor performance.
The approach supports organisations in determining whether external parties have suitable controls and capabilities for the activities they undertake.
Improve Audit Planning and Execution
The course addresses audit planning techniques covering audit scope, objectives, criteria, evidence requirements, sampling, schedules, responsibilities, and reporting arrangements.
Participants will understand how a well-designed audit plan can improve consistency and reduce unnecessary disruption to supplier operations.
Strengthen Audit Evidence and Findings
A central objective is to improve the quality of audit evidence and findings. Participants will examine how to distinguish factual evidence from assumptions, document non-conformities, identify control gaps, and communicate findings in a clear and defensible manner.
Support Corrective Action and Follow-Up
The programme also focuses on post-audit activities. Participants will examine corrective action planning, root cause analysis, action ownership, deadlines, verification, and follow-up audits.
This enables organisations to move beyond identifying supplier problems and establish mechanisms for confirming that corrective measures have been effectively implemented.
Target Audience
The Third-Party and Supplier Audits Training Course is intended for professionals responsible for supplier governance, procurement assurance, external-party risk, compliance, quality, auditing, operational controls, and supply chain performance.
Internal Auditors
Internal auditors can use the programme to strengthen their approach to auditing external parties and supplier-related controls. The course supports auditors who need to evaluate supplier governance as part of wider organisational assurance activities.
Supplier Quality Professionals
Supplier quality managers and quality assurance professionals can apply the principles to supplier qualification, performance reviews, quality audits, non-conformity management, and corrective action verification.
Procurement and Sourcing Managers
Procurement professionals can benefit from a stronger understanding of supplier risk, compliance verification, contractual requirements, supplier performance, and audit-based assurance.
Compliance and Risk Professionals
Compliance and risk teams can use third-party audit processes to evaluate external-party exposure and establish evidence-based controls around suppliers, vendors, and contractors.
Supply Chain Managers
Supply chain professionals can apply the course principles to supplier monitoring, supply chain audit programmes, operational resilience, and supplier performance management.
Contractor and Vendor Managers
Professionals responsible for managing contractors and vendors can strengthen their approach to risk assessment, compliance monitoring, performance evaluation, and corrective action.
Quality and Operations Managers
Operations and quality managers can use supplier audits to identify weaknesses that could affect production, service delivery, customer satisfaction, regulatory compliance, or business continuity.
HSE and Governance Professionals
HSE and governance teams can apply audit principles when evaluating external parties against organisational requirements, workplace controls, environmental obligations, and governance expectations.
Modules
Module 1: Principles of Third-Party and Supplier Audits
This module establishes the corporate framework for third-party and supplier audits. It examines why organisations audit external parties, how supplier assurance supports governance, and how audit activities contribute to quality, compliance, operational resilience, and risk management.
The module also considers the responsibilities of procurement, operations, compliance, quality, risk, and internal audit teams within a supplier assurance framework.
Module 2: Supplier Risk Classification and Audit Prioritisation
This module focuses on identifying supplier risk and determining audit priorities. Participants examine factors such as business criticality, spend, regulatory exposure, operational dependency, data access, customer impact, geographic considerations, and historical performance.
Supplier segmentation techniques are considered to help organisations determine audit frequency and appropriate levels of assurance.
Module 3: Supplier Audit Planning
Effective audit planning is essential for obtaining reliable results. This module covers audit objectives, scope, criteria, schedules, audit teams, documentation requirements, sampling approaches, evidence expectations, and communication with suppliers.
Participants examine how audit plans can be aligned with contractual requirements and organisational risk.
Module 4: Vendor Compliance Checks
This module examines structured vendor compliance checks across supplier relationships. Key areas include contractual obligations, service requirements, policies, regulatory expectations, documentation, certifications, performance standards, and control effectiveness.
Participants consider how compliance requirements can be converted into practical audit questions and evidence requirements.
Module 5: Supply Chain Audit Methodologies
The module explores the role of supply chain audit activities in supplier governance. It covers procurement controls, supplier selection, onboarding, qualification, purchasing processes, delivery performance, quality management, inventory dependencies, logistics, and supplier monitoring.
The emphasis is on identifying control weaknesses that may affect supply continuity or organisational performance.
Module 6: Contractor Risk Assessment
This module provides a structured approach to contractor risk assessment. Participants examine contractor competence, operational exposure, regulatory obligations, workplace requirements, security considerations, performance history, and control maturity.
The module also considers how contractor risks can be assessed before engagement and monitored throughout the contractual relationship.
Module 7: Audit Evidence and Sampling
This module focuses on obtaining reliable and sufficient audit evidence. Participants examine document reviews, interviews, observations, records, performance data, sampling, and verification techniques.
The module addresses how auditors can evaluate evidence objectively and avoid conclusions that are unsupported by documented facts.
Module 8: Conducting Supplier Audit Interviews
Supplier audits often involve discussions with procurement personnel, operational teams, quality representatives, management, contractors, and other stakeholders. This module examines professional interview techniques for obtaining relevant information while maintaining audit independence.
Participants consider how to ask effective questions, verify responses, identify inconsistencies, and document relevant evidence.
Module 9: Identifying Supplier Non-Conformities and Control Gaps
This module focuses on identifying and classifying audit findings. Participants examine non-conformities, control weaknesses, documentation deficiencies, process failures, compliance gaps, and performance deviations.
The focus is on writing findings that are factual, precise, traceable, and relevant to the agreed audit criteria.
Module 10: Supplier Performance and Corrective Actions
Audit results should contribute to measurable supplier improvement. This module covers corrective action planning, root cause analysis, action ownership, implementation deadlines, effectiveness verification, and follow-up audits.
Participants examine how organisations can distinguish immediate corrective measures from sustainable improvements.
Module 11: Audit Reporting and Management Communication
This module examines the structure of professional supplier audit reports. Topics include executive summaries, audit scope, methodology, evidence, findings, risk significance, corrective actions, and management recommendations.
The focus is on producing reports that provide decision-makers with clear information about supplier performance and residual risk.
Module 12: Supplier Governance and Continuous Assurance
The final module integrates supplier auditing with broader governance and assurance activities. It examines supplier monitoring, recurring audits, performance indicators, compliance reviews, risk reassessment, escalation processes, and continuous improvement.
Participants consider how organisations can establish an ongoing assurance cycle rather than treating supplier audits as isolated activities.
FAQs
What is covered in the Third-Party and Supplier Audits Training Course?
The course covers supplier audit planning, risk classification, vendor compliance checks, supply chain audit practices, contractor risk assessment, audit evidence, interviews, findings, corrective actions, reporting, and supplier governance.
Who should attend supplier audit training?
The programme is suitable for internal auditors, procurement professionals, supplier quality managers, compliance specialists, risk professionals, supply chain managers, contractor managers, operations managers, and professionals involved in supplier governance.
How do vendor compliance checks support supplier management?
Vendor compliance checks help organisations verify whether suppliers are meeting contractual, regulatory, operational, quality, and internal requirements. They provide documented evidence that can support supplier performance decisions and corrective action processes.
Why is contractor risk assessment important?
Contractor risk assessment helps organisations identify potential operational, compliance, safety, security, and performance risks associated with external contractors. It supports informed decisions before and during contractor engagements.
How does a supply chain audit support organisational risk management?
A supply chain audit provides structured visibility into supplier and procurement controls. It can help organisations identify weaknesses affecting quality, compliance, continuity, delivery performance, and supplier reliability, allowing management to prioritise appropriate corrective actions.
