Decision to outsource
What are the security threats to my organisation via our supply chain?
How do I reduce our exposure to those threats?
Supplier selection
How do I conduct due diligence on prospective suppliers?
How do I get assurances from suppliers on their security profile? How do I assess supplier suitability?
Supplier Performance
How do I audit my suppliers?
How do I test suppliers' security measures are effective? How do I create an effective incident management process? How do I horizon scan for changes in threat or vulnerability?