Annex A 5.21 - Managing Information Security in the ICT Supply Chain
Processes and procedures shall be defined and implemented to manage the information security risks associated with the ICT products and services supply chain.
PreviousAnnex A 5.20 - Addressing Information Security Within Supplier AgreementsNextAnnex A 5.22 - Monitoring, Review and Change Management of Supplier Services
Last updated