Secure by Design: A Guide for Manufacturers (CISA)
Recommendations for customers: secure by demand – Secure by Design: A Guide for Manufacturers (CISA)

Secure by Design: A Guide for Manufacturers (CISA) CR-1: Hold suppliers accountable through purchasing criteria

Executives should make secure by design and default a buying priority, require IT to assess a product's security before it is bought, back IT in setting and enforcing purchasing criteria built on these practices, and ensure any acceptance of a product's risk is written down, signed off at senior business level and reported to the board on a regular cycle.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Other controls in Recommendations for customers: secure by demand – Secure by Design: A Guide for Manufacturers (CISA)

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.