Management review that actually improves the business
Learn how to run an ISO 9001 Clause 9.3 management review that turns evidence into decisions, with the right inputs, actionable outputs, and a cadence that fits your risks.
STANAG 4358
Vehicle manufacturers offering government vehicles for NATO acquisition, and the national test and evaluation authorities that assess them.
STANAG 4358 is the NATO agreement letting member states mutually accept each other's government vehicle test and evaluation results, so testing is not repeated. NATO has not released it publicly; this page describes it from the Czech defence standard that implements it.
NATO has not released this STANAG publicly. It is NATO UNCLASSIFIED, and organisations that need it obtain it through their national standardization authority.
STANAG 4358 is the NATO Standardization Agreement on the mutual acceptance of government vehicle test and evaluation. Edition 1, promulgated in August 1991, under NATO's CNAD, AC/225 NAAG, LCGLE committee. Its purpose is to let one NATO nation accept another nation's official test and evaluation results for a government vehicle offered for acquisition, so states do not repeat testing already done.
NATO has not released STANAG 4358 publicly. This page describes it from a public national implementation, the Czech defence standard ČOS 999901 (2nd edition, amendment 1, 2024), which states that it introduces STANAG 4358 edition 1 into Czech use. A national implementation can add national requirements and reservations, so treat what follows as the Czech implementation's content, not as NATO's own text.
ČOS 999901 sets out the procedures, timeframes and conditions under which the Czech test and evaluation authority must carry out vehicle testing and evaluation on request from another NATO state or organisation. It distinguishes two categories of government vehicle: those where development is starting or under way, and those where development is complete. Its stated purpose is to prevent duplicate testing: participating states will not repeat tests where results from another state's official test programme are already available.
Any vehicle a state offers for acquisition by another NATO state must come with a package of test and evaluation (T+E) data describing the test conditions, measurements, instruments used, results and which requirements were met. For a vehicle still in development, the offering state invites every considering state to join the T+E programme from the outset or as soon as practicable; a state that declines is instead given the T+E information it needs, consistent with the offering state's laws, policy and proprietary rights. For a vehicle whose development is complete, the offering state makes its agreed T+E data available in a suitable form. Where a considering state judges the data insufficient, the two states agree what supplementary tests are needed and how costs, planning and evaluation criteria are apportioned before testing starts. A request for an unplanned test follows the form in the standard's Annex C, and a disagreement over the acceptability of T+E work, or over interpreting or applying the standard, is referred to the National Directors for Test and Evaluation named in Annex B. The Czech implementation also carries the agreement's own directory of national test and evaluation centres and directors across NATO, listing the Vojenský technický ústav at Vyškov as the Czech centre.
ČOS 999901 also sets out how information exchanged under the standard, directly between governments or passed on to industry, must be protected. Classified technical data passes through inter-governmental channels and is marked with a level of protection equivalent to what the supplying government asked for; a recipient will not pass the information to another government or party without the originator's consent, will protect it to the level specified, will respect any intellectual property in it such as patents, publication rights or trade secrets, and will use it only for the purpose it was given for. Information provided in confidence keeps its original marking, or an equivalent one, and participating governments investigate any loss or unauthorised disclosure and report their findings back to the country of origin.
A supplier bound by STANAG 4358 through a contract holds the obtained text through its national authority. In ComplyTrain you record the requirements that apply to you as your own requirements, give each an owner, and keep the evidence that shows you meet them against each one.
Tell us how you need to work with STANAG 4358 and what you need from it. We will come back to you about what ComplyTrain can do.
Thank you. Your list is on its way to your inbox, and we will come back to you on what working with these standards in ComplyTrain involves, usually within one business day.
One system for the whole compliance programme. Start with the module you need most.
Collect information the same way every time, and decide in advance what happens next.
Know whether your controls are operating, not just whether a policy says they exist.
Turn the compliance work you already know about into a plan with owners, dependencies and dates.
Know what you can offer, and hold the evidence behind every configuration you offer it in.
Eight built-in reports across every module, scheduled, delivered, and filed where the evidence lives.
The sector news that matters to your organisation - read and rated by AI, and delivered as a scheduled digest in your own language.
AI reads the tender pack and pulls out the requirements, deadlines and rules - then helps you draft the response from your own approved content, with you reviewing every step.
One current register of the suppliers and partners you depend on - each risk-assessed, re-assessing itself on schedule, and wired straight into your risk register.
See every requirement you face - across every standard, plus your own contracts and policies - traced to the documents, evidence and processes that satisfy it.
Identify, score, treat and review your risks in one place - with AI to help anyone run a proper assessment, and a defensible trail behind every decision.
Assign training, prove it was understood, and hold the competence records an auditor asks for.
Draft compliance documents with AI, keep every version under control, and export them beautifully branded - all in one place.
Audits, corrective actions, processes and approvals in one quality system, organised around ISO 9001.
Learn how to run an ISO 9001 Clause 9.3 management review that turns evidence into decisions, with the right inputs, actionable outputs, and a cadence that fits your risks.
The types of ISO 9001 audit, what Stage 1 and Stage 2 each check, how nonconformities are graded and closed, and how to prepare for your first certification.
The EDF consortium rule is usually quoted as three entities from three Member States. It has a second limb about control that the word independent quietly hides, and two exceptions that disapply it entirely.