💼 GV.SC-03: Cybersecurity supply chain risk management is integrated into cybersecurity and enterprise risk management, risk assessment, and improvement processes
- ID:
/frameworks/nist-csf-v2.0/gv-sc/03
Stats
not available
Description
- Identify areas of alignment and overlap with cybersecurity and enterprise risk management
- Establish integrated control sets for cybersecurity risk management and cybersecurity supply chain risk management
- Integrate cybersecurity supply chain risk management into improvement processes
- Escalate material cybersecurity risks in supply chains to senior management, and address them at the enterprise risk management level
Similar
- Sections
/frameworks/nist-csf-v1.1/id-sc/02/frameworks/nist-sp-800-53-r5/ac/01/frameworks/nist-sp-800-53-r5/at/01/frameworks/nist-sp-800-53-r5/au/01/frameworks/nist-sp-800-53-r5/ca/01/frameworks/nist-sp-800-53-r5/cm/01/frameworks/nist-sp-800-53-r5/cp/01/frameworks/nist-sp-800-53-r5/ia/01/frameworks/nist-sp-800-53-r5/ir/01/frameworks/nist-sp-800-53-r5/ma/01/frameworks/nist-sp-800-53-r5/mp/01/frameworks/nist-sp-800-53-r5/pe/01/frameworks/nist-sp-800-53-r5/pl/01/frameworks/nist-sp-800-53-r5/pm/01/frameworks/nist-sp-800-53-r5/ps/01/frameworks/nist-sp-800-53-r5/pt/01/frameworks/nist-sp-800-53-r5/ra/01/frameworks/nist-sp-800-53-r5/sa/01/frameworks/nist-sp-800-53-r5/sc/01/frameworks/nist-sp-800-53-r5/si/01/frameworks/nist-sp-800-53-r5/sr/01/frameworks/nist-sp-800-53-r5/pm/09/frameworks/nist-sp-800-53-r5/pm/18/frameworks/nist-sp-800-53-r5/pm/30/frameworks/nist-sp-800-53-r5/pm/31/frameworks/nist-sp-800-53-r5/sr/02/frameworks/nist-sp-800-53-r5/sr/03/frameworks/nist-sp-800-53-r5/ra/03/frameworks/nist-sp-800-53-r5/ra/07
Similar Sections (Take Policies From)
Sub Sections
| Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
|---|