MLchartDataset catalogue

supply chain risk

Term · Cybersecurity · MLC-T-CYB-004137

1. The risk that an adversary may sabotage, maliciously introduce unwanted function, or otherwise subvert the design, integrity, manufacturing, production, distribution, installation, operation, or maintenance of an item of supply or a system so as to surveil, deny, disrupt, or otherwise degrade the function, use, or operation of a system (referenced from The Ike Skelton National Defense Authorization Act for Fiscal Year 2011, Section 806).

2. Risks that arise from the loss of confidentiality, integrity, or availability of information or information systems and reflect the potential adverse impacts to organizational operations (including mission, functions, image, or reputation), organizational assets, individuals, other organizations, and the Nation.

3. The potential for harm or compromise that arises as a result of security risks from suppliers, their supply chains, and their products or services. Supply chain risks include exposures, threats, and vulnerabilities associated with the products and services traversing the supply chain as well as the exposures, threats, and vulnerabilities to the supply chain.

Table 1. Record
IdentifierMLC-T-CYB-004137
FieldCybersecurity
ReferencesCNSSI 4009-2022 from CNSSD No. 505 (adapted); CNSSI 4009-2022 from OMB Circular A-130 (2016); NIST SP 800-18r2 from OMB Circular A-130 (2016); NIST SP 800-37 Rev. 2 from OMB Circular A-130 (2016); NIST SP 800-53 Rev. 5; NIST SP 800-53A Rev. 5; NIST CSRC Glossary
Record as JSON
{
  "id": "MLC-T-CYB-004137",
  "term": "supply chain risk",
  "field": "Cybersecurity",
  "definition": "1. The risk that an adversary may sabotage, maliciously introduce unwanted function, or otherwise subvert the design, integrity, manufacturing, production, distribution, installation, operation, or maintenance of an item of supply or a system so as to surveil, deny, disrupt, or otherwise degrade the function, use, or operation of a system (referenced from The Ike Skelton National Defense Authorization Act for Fiscal Year 2011, Section 806).\n\n2. Risks that arise from the loss of confidentiality, integrity, or availability of information or information systems and reflect the potential adverse impacts to organizational operations (including mission, functions, image, or reputation), organizational assets, individuals, other organizations, and the Nation.\n\n3. The potential for harm or compromise that arises as a result of security risks from suppliers, their supply chains, and their products or services. Supply chain risks include exposures, threats, and vulnerabilities associated with the products and services traversing the supply chain as well as the exposures, threats, and vulnerabilities to the supply chain.",
  "references": [
    "CNSSI 4009-2022 from CNSSD No. 505 (adapted)",
    "CNSSI 4009-2022 from OMB Circular A-130 (2016); NIST SP 800-18r2 from OMB Circular A-130 (2016); NIST SP 800-37 Rev. 2 from OMB Circular A-130 (2016)",
    "NIST SP 800-53 Rev. 5; NIST SP 800-53A Rev. 5",
    "NIST CSRC Glossary"
  ],
  "url": "https://mlchart.com/terminology/cybersecurity/supply-chain-risk/"
}

Record 4,137 of 4,693 in Cybersecurity terminology (MLC-0102). Request the full dataset.