Cyber Supply Chain Risk Management: Designing, Deploying, and Maintaining Secure Supply Chain Programs

Cyber Supply Chain Risk Management: Designing, Deploying, and Maintaining Secure Supply Chain Programs

49mIntermediate2025-04-07

Authors

Mani Keerthi Nagothu

Mani Keerthi Nagothu

Course details

This course explores the essential elements needed to build a cyber supply chain risk management program. Take a streamlined approach from a people, process, and technology perspective to create cyber supply chain controls with your organization. Understand the cyber supply chain risks within an organization and make use of the supply chain frameworks and standards to implement a cyber supply risk management program for your organization.

Learning objectives
Analyze organizational supply chain risks and vulnerabilities within the context of cybersecurity threats and business impact.
Design a comprehensive cyber supply chain risk management program incorporating people, process, and technology controls.
Evaluate existing supply chain security frameworks and standards to determine their applicability to specific organizational needs.
Implement supply chain security controls based on industry standards and organizational requirements.
Assess the effectiveness of supply chain risk management controls and propose improvements based on industry best practices.

Skills covered

Supply Chain ManagementVulnerability ManagementCybersecurityBusiness Analysis and StrategyOne-Off

Concepts

Introduction

  • Importance of a cyber supply chain risk management program

Cyber Supply Chain Overview

  • What is cyber supply chain risk management (CSCRM)
  • Decoding cyber supply chain risks

Foundations for CSCRM

  • Cyber supply chain ecosystem
  • Roles and responsibilities for a CSCRM program

Understanding Your Current Environment

  • Understanding your current environment - Gap assessment
  • Understanding your current environment - Software
  • Resources and requirements for building CSCRM

Essential Elements to Build CSCRM

  • Drafting processes throughout the CSCRM lifecycle
  • Conducting risk assessments, part 1
  • Conducting risk assessments, part 2
  • Using tools for CSCRM
  • CSCRM culture and awareness training

Cyber Supply Risk Mitigation Measures

  • Leveraging ISO 27001 to design controls
  • Mapping to NIST CSF to design controls

Conclusion

  • Next steps
40,000 Toman