Process

Supply Chain Risk Management

Cybersecurity Supply Chain Risk Management

Definition

C-SCRM (Cybersecurity Supply Chain Risk Management) is the process of identifying, assessing, and mitigating risks associated with the supply chain for IT and OT products and services. NIST SP 800-161 provides guidance. Federal agencies must establish C-SCRM programs per EO 14028. Contractors may need to demonstrate supply chain security practices including component provenance and vendor vetting.

Related Terms

Find Supply Chain Risk Management-related opportunities

Search active federal contracts and solicitations related to Supply Chain Risk Management on Bureauify.

100M+ government records · 300+ gov/news sources · Updated hourly