Managing security and risk across the IT supply chain: A practical approach
Best practices for IT supply chain security


Provided by
IT supply chain security is undergoing closer scrutiny as state and local government IT leaders grapple with ransomware, discover new vulnerabilities, and confront the possibility of another SolarWinds type of attack.
In the SolarWinds attack, an update in software created a backdoor for cybercriminals to enter systems and silently wreak havoc in many private sector firms as well as federal, state and local agencies. The massive attack is still under investigation, and recent reports indicate the perpetrators may have also turned cloud platforms and other vendors’ products into potential attack vectors.
This whitepaper highlights practices that can help organisations strengthen the integrity, security, and resilience of their IT supply chain.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
ITPro is a global business technology website providing the latest news, analysis, and business insight for IT decision-makers. Whether it's cyber security, cloud computing, IT infrastructure, or business strategy, we aim to equip leaders with the data they need to make informed IT investments.
For regular updates delivered to your inbox and social feeds, be sure to sign up to our daily newsletter and follow on us LinkedIn and Twitter.
-
Why are many men in tech blind to the gender divide?
In-depth From bias to better recognition, male allies in tech must challenge the status quo to advance gender equality
By Keri Allan
-
BenQ PD3226G monitor review
Reviews This 32-inch monitor aims to provide the best of all possible worlds – 4K resolution, 144Hz refresh rate and pro-class color accuracy – and it mostly succeeds
By Sasha Muller
-
Using APIs to rewire supply chains in 2023
In-depth Supply chains are on the mend after breaking down recently, and APIs are helping stakeholders get a better handle on data
By Rich McEachran
-
Uber says compromised third-party to blame for data breach
News Vulnerable third-party vendor Teqtivity sparks second major incident for Uber in the space of three months
By Ross Kelly
-
SolarWinds hackers strike again with a new “MagicWeb” authentication exploit
News Microsoft warns MagicWeb can abuse admin credentials to hijack AD FS enterprise identity system
By Praharsha Anand
-
Former Apple worker alleged to have defrauded company out of $10 million
News The man faces five federal charges after he is said to have exploited his position in Apple's Global Service Supply Chain
By Connor Jones
-
KP Snacks supply chain shut down by Conti ransomware attack
News Crippled IT systems are unable to process new orders "safely" and could be down until late-March
By Bobby Hellard
-
Spar stores forced to close following supply chain attack
News The UK supermarket chain is working with the NCSC to investigate the incident
By Connor Jones
-
Majority of UK's top business leaders are failing to manage supply chain security risks
News New findings from a DCMS review have sparked concern in government which could see new laws introduced to protect Britain's digital supply chains
By Connor Jones
-
Supply chain breaches impacted 97% of firms in the past year
News New BlueVoyand research finds that supply chain security breaches are increasing
By Rene Millman