Information security supply chain risk management: Goods and services

Details

Category
Goods and services
Document type
Framework
Stage of procurement
2. Plan the purchase, 1. Getting started
Audience
For buyers
Author
Department of Government Services
Date published
1 June 2020

About

This framework sets out foundational responsibilities to manage information security supply chain risks for goods and services. There are two related tools that support this one. 

Use the Information security checklist contract development to ensure appropriate security related clauses are included in contracts:

Information security contract development - checklist: Goods and services

Information security audit provides an example to use for a supplier security audit.

Information security audit: Goods and services

Updated