💼 SA-12 SUPPLY CHAIN PROTECTION
- ID:
/frameworks/nist-sp-800-53-r4/sa/12
Description​
The organization protects against supply chain threats to the information system, system component, or information system service by employing [Assignment: organization-defined security safeguards] as part of a comprehensive, defense-in-breadth information security strategy.
Similar​
- Internal
- ID:
dec-c-de28a060
- ID:
Similar Sections (Give Policies To)​
Sub Sections​
| Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
|---|---|---|---|---|---|
| 💼 SA-12 (1) ACQUISITION STRATEGIES _ TOOLS _ METHODS | no data | ||||
| 💼 SA-12 (2) SUPPLIER REVIEWS | no data | ||||
| 💼 SA-12 (3) TRUSTED SHIPPING AND WAREHOUSING | no data | ||||
| 💼 SA-12 (4) DIVERSITY OF SUPPLIERS | no data | ||||
| 💼 SA-12 (5) LIMITATION OF HARM | no data | ||||
| 💼 SA-12 (6) MINIMIZING PROCUREMENT TIME | no data | ||||
| 💼 SA-12 (7) ASSESSMENTS PRIOR TO SELECTION _ ACCEPTANCE _ UPDATE | no data | ||||
| 💼 SA-12 (8) USE OF ALL-SOURCE INTELLIGENCE | no data | ||||
| 💼 SA-12 (9) OPERATIONS SECURITY | no data | ||||
| 💼 SA-12 (10) VALIDATE AS GENUINE AND NOT ALTERED | no data | ||||
| 💼 SA-12 (11) PENETRATION TESTING _ ANALYSIS OF ELEMENTS, PROCESSES, AND ACTORS | no data | ||||
| 💼 SA-12 (12) INTER-ORGANIZATIONAL AGREEMENTS | no data | ||||
| 💼 SA-12 (13) CRITICAL INFORMATION SYSTEM COMPONENTS | no data | ||||
| 💼 SA-12 (14) IDENTITY AND TRACEABILITY | no data | ||||
| 💼 SA-12 (15) PROCESSES TO ADDRESS WEAKNESSES OR DEFICIENCIES | no data |