Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Projects

Showing 2 matching records.
Cybersecurity Supply Chain Risk Management C-SCRM
C-SCRM News | C-SCRM Resources Cybersecurity Supply Chain Risk Management (C-SCRM) involves identifying, assessing, and mitigating the risks associated with the distributed and interconnected nature of Information Communications Technology and Operational Technology (ICT/OT)  product and service supply chains throughout the entire life cycle of a system (including design, development, distribution, deployment, acquisition, maintenance, and destruction). Examples of risks include insertion of...
NIST Risk Management Framework RMF
Recent Updates June 30, 2026: NIST SP 800-18r2 (Revision 2), Developing Security, Privacy, and Cybersecurity Supply Chain Risk Management Plans for Systems, has been finalized and is now available. This revision broadens the scope of system planning, aligns plan development with the RMF steps and tasks, and emphasizes the use of machine-readable data formats for automated data collection to support risk management decisions throughout the system life cycle. August 27, 2025: In response...