2012
DOI: 10.6028/nist.ir.7622
|View full text |Cite
|
Sign up to set email alerts
|

Notional Supply Chain Risk Management Practices for Federal Information Systems

Abstract: The Information Technology Laboratory (ITL) at the National Institute of Standards and Technology (NIST) promotes the U.S. economy and public welfare by providing technical leadership for the Nation's measurement and standards infrastructure. ITL develops tests, test methods, reference data, proof of concept implementations, and technical analyses to advance the development and productive use of information technology. ITL's responsibilities include the development of management, administrative, technical, and… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
2
1

Citation Types

0
7
0

Year Published

2013
2013
2024
2024

Publication Types

Select...
5
3
1

Relationship

0
9

Authors

Journals

citations
Cited by 24 publications
(7 citation statements)
references
References 0 publications
0
7
0
Order By: Relevance
“…And the integrator aggregates lower-level components into a single entity, which will be passed up to a higher-level in the supply chain. All of these communities of practice require a defined process to properly execute their task [7] [8].…”
Section: A a Process For Secure Acquisitionmentioning
confidence: 99%
See 1 more Smart Citation
“…And the integrator aggregates lower-level components into a single entity, which will be passed up to a higher-level in the supply chain. All of these communities of practice require a defined process to properly execute their task [7] [8].…”
Section: A a Process For Secure Acquisitionmentioning
confidence: 99%
“…As shown in Figure 1, suppliers source work from lower-level organizations, integrate that work into a single product and then supply it to a customer at the next level up in the hierarchy [9]. There are ten principles that regulate the performance of the communities of practice in a supply chain, which underwrite a competent and capable supply chain lifecycle process [7]. The ten principles are:…”
Section: A a Process For Secure Acquisitionmentioning
confidence: 99%
“…The latest revision (4) provides new additional guidance on applying security control measures to mitigate supply chain risk [6]. It establishes a security control baseline that lists supply chain protections SA-12 (1)(2)(3)(4)(5)(6)(7)(8)(9)(10)(11)(12)(13)(14)(15). The report states that a significant challenge is to determine the most cost-effective, appropriate set of security controls, which if implemented and determined to be effective, would mitigate risk.…”
Section: Current Approachesmentioning
confidence: 99%
“…A supply chain (SC) is a collection of different organizations that align their business processes, goals, objectives and some components of their systems to third party organizations, suppliers, consumers and partners (Boyens et al , 2015). A SC consists of all activities from the point of origin to the point of consumption, which are related to the flow and movement of goods, services and related information (Murphy and Wood, 2008).…”
Section: Introductionmentioning
confidence: 99%