home/glossary/Cyber Supply Chain Risk Management Plan

Cyber Supply Chain Risk Management Plan

nounid 2156·updated May 9, 2026
verified

A plan that includes confidentiality, integrity, and availability controls for mitigating the risks associated with the distributed and interconnected nature of IT/OT product and service supply chains. It covers the entire life cycle of a system (including design, development, distribution, deployment, acquisition, maintenance, and destruction) as supply chain threats and vulnerabilities may intentionally or unintentionally compromise an IT/OT product or service at any stage.

MWE

Attested in

No recorded attestations. They are written when an MWE tagging stage is completed, stamped with the pack version and the document’s digest.

Classifications

Entity Type

Process85%llm-generatedllm:claude-haiku-4-5

Sensitivity

Internal70%llm-generatedllm:claude-haiku-4-5

Information Class

60%llm-generatedllm:claude-haiku-4-5

Variants

plural
Cyber Supply Chain Risk Management Plans
possessive
Cyber Supply Chain Risk Management Plan's
pluralpossessive
Cyber Supply Chain Risk Management Plans'

Framework definitions

NIST Cybersecurity Framework1 senseview framework →
§1
A plan that includes confidentiality, integrity, and availability controls for mitigating the risks associated with the distributed and interconnected nature of IT/OT product and service supply chains. It covers the entire life cycle of a system (including design, development, distribution, deployment, acquisition, maintenance, and destruction) as supply chain threats and vulnerabilities may intentionally or unintentionally compromise an IT/OT product or service at any stage.
Legacy lexicon import1 senseview framework →
§1 · legacy_primary
A plan that includes confidentiality, integrity, and availability controls for mitigating the risks associated with the distributed and interconnected nature of IT/OT product and service supply chains. It covers the entire life cycle of a system (including design, development, distribution, deployment, acquisition, maintenance, and destruction) as supply chain threats and vulnerabilities may intentionally or unintentionally compromise an IT/OT product or service at any stage.
DR-088 backfill from the noun definition column

Outgoing relationships

No outgoing triples
This term is not the subject of any RDF-style relationship yet.

Incoming relationships

No incoming triples
No other term currently asserts a relationship to this one.