The International Ship and Port Facility (ISPS) Code is of utmost importance for the safety and security of India’s maritime sector, as it safeguards international trade relations and this, in turn, ensures the growth of the Indian economy.  The ISPS Code incorporates different levels of security, obligations of government, the responsibility of ports, the shipping industry, and other stakeholders.  This two-part article will demonstrate the implementation of salient features of the ISPS Code in India through the Merchant Shipping Act, 1958, as amended in 2004, and DGS circulars.  In the first part, it will demonstrate the administration of the ISPS Code in India and the major obligation of Indian government to set up security levels.  Part-II will explain the ship and port security of India in compliance with ISPS Code. It will also examine whether the implementation of ISPS Code in India has fulfilled the core principles of the Code and will also evaluate whether any gaps remain to be filled.

This article has been written to provide fundamental baseline information about the ‘International Ship and Port Facility Code’ (ISPS Code) to the lay public, including academia.  As such, while it has not been written for professionals within the shipping sector, it nevertheless seeks to provide a useful framework for the further and more-detailed research.

The ISPS Code was introduced as part of Chapter XI-2 (as amended from time to time) of the International Convention on Safety of Life at Sea 1974 (SOLAS),[1] in 2002, by the International Maritime Organization (IMO), and came into force in the year 2004.  SOLAS Chapter XI-2 has been periodically amended to include special measures designed to enhance maritime security on board vessels, within ports and particularly when a port-ship interface takes place.  These regulations are supported by the ISPS Code, so as to establish an international framework for maritime security measures designed to enhance the security of ships and port facilities.[2]  Part A of the ISPS Code[3] specifies a list of mandatory requirements, while Part B[4] provides recommendations on how best to accomplish the obligations set out in Part A.

The objectives of the ISPS Code are:

“…establishment of an international framework that fosters cooperation between Contracting Governments, Government agencies, local administrations and the shipping and port industries, in assessing and detecting potential security threats to ships or port facilities used for international trade, so as to implement preventive security measures against such threats;

determining the respective roles and responsibilities of all parties concerned with safeguarding maritime security in ports and on board ships, at the national, regional and international levels;

to ensure that there is early and efficient collation and exchange of maritime security-related information, at national, regional and international levels;

to provide a methodology for ship and port security assessments, which facilitates the development of ship, company and port facility security plans and procedures, which must be utilised to respond to ships’ or ports’ varying security levels; and

to ensure that adequate and proportionate maritime security measures are in place on board ships and ports.[5]

The ISPS Code currently applies to 167 States that are contracting parties to SOLAS.[6]  India, being a signatory to the IMO Convention, has ratified the ISPS Code and implemented its provisions through the Merchant Shipping Act 1958 as amended in 2004 (MS Act).[7]  By the stipulations of this Act, for the ‘maritime security of India’,[8] the Indian Government must set ‘security levels’[9] and provide relevant information to port facilities within India, as also to every ship entering an Indian port.  The Indian government must carry out port-facility assessments.  Every ‘company,’[10] ship or ‘port facility’[11] must comply with the relevant requirements under the MS Act,[12] in compliance with SOLAS and the ISPS Code.  The MS Act grants the Indian government the power to make rules for the carrying-out of such activities.[13]

Administration of the ISPS Code in India

To facilitate the implementation of the ISPS Code, the Indian government, as also port authorities and shipping companies within India are required to appoint suitable security officers and staff on each ship, port facility and shipping company. These officers, include a ‘Port Facility Security Officer’ (PFSO), a ‘Ship Security Officer’ (SSO), and a ‘Company Security Officer’ (CSO).  They are assigned with the duties of evaluating, organising and implementing effective security plans that are prepared to handle every probable security threat. [14]

The Indian government is required to nominate a “Designated Authority”[15] and a “Recognized Security Organization” (RSO)[16] to implement the ship and port facility security plans designed under ISPS Code.  The Directorate General of Shipping (DGS) has been nominated as the ‘designated authority’, while the Indian Register of Shipping (IRS) has been nominated as the RSO.[17]

DGS deals with the approval of ship-security plans, and is responsible for the verification of prerequisites of plans, and also for issuing a standardised ‘International Ship Security Certificate’ (ISSC),[18] and a ‘Continuous Synopsis Record’ (CSR).[19]  Whenever necessary, DGS issues circulars with the aim of providing guidance to the maritime sector on the application of the MS Act, 1958 (amended in 2004) and the ISPS Code. The DGS is vested with statutory powers under Section 7 of the MS Act, 1958.

Security Levels

Part A of the ISPS code contains detailed, mandatory requirements of ship security,[20] port-facility security,[21] and specifies the responsibilities of the Indian government.[22]  Part B, which is advisory in nature rather than being mandatory, provides guidelines and recommendations on how to meet requirements in Part A.  However, the Indian government is required to give these recommendations due consideration.  A major responsibility of the Indian government, as stipulated in Part A, is the setting of security levels; and Indian-flag ships as well as Indian port facilities must act upon these security levels set by the Indian government.[23]  Apart from setting these security levels, the Indian government has also to provide guidance for protection from security incidents, and is required to approve port facility assessments and port facility security plans.[24]

At ‘Security Level 1’, basic preventive security measures must be carried out.[25]  Security Level 2 provides for appropriate additional protective security measures to be maintained, usually for a longer period of time, due to the increased risk of a security incident.[26]  Security Level 3 invokes further specific security measures to be maintained for a limited period of time when a security incident is probable and imminent,  even though it may not always be possible to identify the possible target.[27]  At Security Levels 1 and 2, additional measures must be put in place with the approved security plans.  In addition, at Security Level 3, the Indian government may issue security instructions to which the ship and port facility must respond, and which they must implement.[28]  Ships must acknowledge instructions on the various security levels in force.[29]

‘Part B’, which is, as has already been mentioned, recommendatory in nature, stipulates more detailed regulations in respect of ‘Part A’.  In particular, ‘Part B’ stipulates the precise security measures of ship and port facilities under Security Levels 1, 2 and 3, respectively.[30]  In the case of India, some portions of ‘Part B’ have been made mandatory through the circulars issued by DGS.  For instance, the security levels of some major ports such as Mumbai Port Trust, Kolkata Port Trust, Jawaharlal Nehru Port Trust, Deendayal Port Trust, and some other non-major ports, are retained at ‘Level 2’, in preparation for possible terrorist attacks.[31]

Prior to the promulgation of the ISPS Code, there was no consensus within the international community on how exactly to cooperate on issues of maritime security.  The provisions of ISPS Code, on the other hand, now direct the Indian government and all stakeholders of the maritime sector on how exactly to enhance their security measures.  If the ISPS Code is not implemented, it will be difficult for Indian-flagged ships to secure entry in the ports of other maritime nations, and also for foreign-flag merchant ships to call at Indian ports.  Consequently, the MS Act was amended in 2004 so as to incorporate the provisions of ISPS Code relating to security measures to be adopted by ships and port facilities.  These measures in connection with ship security and port facility will be explained in the second part of this article.

About the Author:

Bhanu Krishna Kiran Ravella is an independent researcher in public international maritime law and security.  He earned an MSc in Strategic Studies from the S Rajarathnam School of International Studies, Nanayang Technological University, Singapore; an MPhil in international law and a PhD in international maritime law from the Jawaharlal Nehru University, New Delhi; he holds a diploma in Ocean laws and Policy from the Rhodes Academy, Greece; and is a Master of Law from Sri Venkateswara University, Tirupathi.  He may be contacted at


