NIST Guide on Cyber Supply Chain Risk

 NIST has released a guide to assist companies with due diligence for cyber supply chain risk management. The guide emphasizes five key areas: supply chain tiers, foreign ownership influence, provenance, stability, and foundational cybersecurity practices. It encourages acquirers to evaluate their suppliers at different levels, track the origin of components, assess financial and operational stability, and ensure robust cybersecurity measures. The public can provide feedback on the guide until December 16, 2024. 

https://www.engage.hoganlovells.com/knowledgeservices/news/security-snippets-nist-publishes-guide-on-due-diligence-for-cyber-supply-chain-risk-management

Comments

Popular posts from this blog

Endor Labs Announces Integrated SAST Offerings

The Hidden Cost of DevSecOps: Time and Financial Burden of Security on Developers

OWASP Releases Enhanced Dependency-Check Tool with Advanced Tagging and Policy Management Features