TPM-02—Third-Party Criticality Assessments
Weight: 9
>Control Description
Mechanisms exist to identify, prioritize and assess suppliers and partners of critical Technology Assets, Applications and/or Services (TAAS) using a supply chain risk assessment process relative to their importance in supporting the delivery of high-value services.
>Cross-Framework Mappings
NIST CSF 2.0
Canada ITSP 10.171
EU DORA
SOC 2 TSC (Detailed)
NIST SP 800-171 Rev 3
FCA CRM
GLBA (16 CFR 314)
HIPAA Simplification 2013
SEC Cybersecurity Rule
NY DFS 23 NYCRR 500
Ask AI
Configure your API key to use AI features.