Guidance
How to assess and gain confidence in your supply chain cyber security
Practical steps to help medium to large organisations gain assurance about the cyber security of their organisation's supply chain.
Our advice & guidance covers a broad range of topics
Resources for individuals and organisations in the UK who have experienced an online scam or cyber attack.
Find a range of products & services from NCSC and certified 3rd party suppliers
Working with industry, government and academia to support the next generation of researchers, students and cyber security professionals
All the latest information to help you keep track of what's happening
Page 10 of 29
To do this, it’s useful to consider the resources each supplier has access to. For example:
You can also consider the effects of a possible breach:
You can use these criteria to define a set of supplier security profiles, and to tier them from low to high (see Stage 2b. Create key components for your approach). The criteria you use will vary depending on the nature of your sector or organisation.
The NCSC's Board Toolkit provides additional guidance on Establishing your baseline and identifying what you care about most.


