TPM-05.2—Contract Flow-Down Requirements
Weight: 9
>Control Description
Mechanisms exist to ensure cybersecurity and data protection requirements are included in contracts that flow-down to applicable sub-contractors and suppliers.
>Cross-Framework Mappings
CMMC v2.0
Canada ITSP 10.171
EU DORA
SOC 2 TSC (Detailed)
NIST SP 800-171 Rev 3
NIST SP 800-171A Rev 3
45 CFR 155.260
US Data Privacy Framework
CMMC 2.0 Level 1
HIPAA Simplification 2013
NY DFS 23 NYCRR 500
Virginia CDPA
Ask AI
Configure your API key to use AI features.