Supply-Chain Relationship Management
摘要
Detailed IT security specifications as well as agreements between the parties involved are necessary throughout the supply chain, supply tree or supplier network. Otherwise, security gaps are likely and the IT components from different sources will hardly form an integrated, secure whole. This chapter presents a systematic approach helping to ensure that appropriate arrangements about IT security are elaborated and agreed. Such agreements require to exactly define the scope of the delivery item and its security features and services. The methods presented go well with all types of delivery items, both technical components and activities and practices in all stages of the life cycle.