Organization or an individual that enters into an agreement with the acquirer for the supply of a product or service.
Sources:
NIST SP 800-160v1r1
from
ISO/IEC/IEEE 15288:2015
Organization or individual that enters into an agreement with the acquirer or integrator for the supply of a product or service. This includes all suppliers in the supply chain, developers or manufacturers of systems, system components, or system services; systems integrators; vendors; product resellers; and third party partners.
Sources:
NIST SP 800-53 Rev. 5
Organization or individual that enters into an agreement with the acquirer or integrator for the supply of a product or service. This includes all suppliers in the supply chain, developers or manufacturers of systems, system components, or system services; systems integrators; suppliers; product resellers; and third-party partners.
Sources:
NIST SP 800-161r1
from
ISO/IEC/IEEE 15288:2015 - adapted, NIST SP 800-53 Rev. 5 - adapted from definition of "developer"
Organization or individual that enters into an agreement with the acquirer or integrator for the supply of a product or service. This includes all suppliers in the supply chain.
Sources:
NISTIR 7622
under Supplier
from
ISO/IEC 15288 - Adapted
Product and service providers used for an organization’s internal purposes (e.g., IT infrastructure) or integrated into the products of services provided to that organization’s Buyers.
Sources:
NIST Cybersecurity Framework Version 1.1
under Supplier