Under active development Content is continuously updated and improved

RSK-09Supply Chain Risk Management (SCRM) Plan

Weight: 10

>Control Description

Mechanisms exist to develop a plan for Supply Chain Risk Management (SCRM) associated with the development, acquisition, maintenance and disposal of Technology Assets, Applications and/or Services (TAAS), including documenting selected mitigating actions and monitoring performance against those plans.

>Cross-Framework Mappings

CIS Controls v8

FedRAMP Rev 5

NIST AI RMF

EU AI Act (Detailed)

UK DEF STAN 05-138

CIS Controls v8.1 (Detailed)

IMO Maritime Cyber Risk

ISO 27002:2022

ISO 42001:2023 (Detailed)

Data Privacy Management Principles

DoD Zero Trust Roadmap

DoD ZTA Reference Architecture

SEC Cybersecurity Rule

Ask AI

Configure your API key to use AI features.