This page lists publications on cyber supply chain risk management.
A Shared Vision of Software Bill of Materials (SBOM) for Cybersecurity
This joint guidance informs organizations about the advantages of integrating an SBOM. Adoption of an SBOM enables greater visibility across an organization’s software supply chain and enterprise system by documenting software dependencies.
Cyber supply chain risk management
All organisations should consider cyber supply chain risk management. If a supplier, manufacturer, distributor or retailer (i.e. businesses that constitute a cyber supply chain) are involved in products or services used by an organisation, there will be a cyber supply chain risk originating from those businesses. Likewise, an organisation will transfer any cyber supply chain risk they hold to their customers.
Choosing secure and verifiable technologies
The Australian Signals Directorate’s Australian Cyber Security Centre (ASD’s ACSC) and international partners have provided recommendations in this guide as a roadmap for choosing secure and verifiable technologies.
Identifying cyber supply chain risks
This guidance has been developed to assist organisations in identifying risks associated with their use of suppliers, manufacturers, distributors and retailers (i.e. businesses that constitute their cyber supply chain).