NIST Guide on Cyber Supply Chain Risk

 NIST has released a guide to assist companies with due diligence for cyber supply chain risk management. The guide emphasizes five key areas: supply chain tiers, foreign ownership influence, provenance, stability, and foundational cybersecurity practices. It encourages acquirers to evaluate their suppliers at different levels, track the origin of components, assess financial and operational stability, and ensure robust cybersecurity measures. The public can provide feedback on the guide until December 16, 2024. 

https://www.engage.hoganlovells.com/knowledgeservices/news/security-snippets-nist-publishes-guide-on-due-diligence-for-cyber-supply-chain-risk-management

Comments

Popular posts from this blog

OWASP ASVS 5.0 Released - Key Updates and What You Need to Know

Critical OpenSSH Flaws Enable MITM and DoS Attacks

MITRE ATT&CK v19 Redefines How Defenders Model Modern Threats