Course Outline
Introduction
- Comparing the time and cost of cyber risk management against the impact of supply chain disruptions.
Key Cyber Supply Chain Risks
- Vulnerabilities in in-house software and hardware
- Vulnerabilities in third-party hardware and software
- In-house security knowledge and practices
- Third-party security knowledge and practices
Supply Chain Cyber Risk Case Study
- Risk exposure through third-party software
Tools and Techniques for Attacking a Supply Chain
- Malware
- Ransomware
- Adware
Supply Chain Cyber Risk Case Study
- Outsourcing to an external website builder
Cyber Supply Chain Security Principles
- Assume your system will be breached.
- View cybersecurity as a technology + people + process + knowledge challenge.
- Distinctions between physical security and cybersecurity
Supply Chain Cyber Risk Case Study
- Outsourcing data storage to a third-party provider
Assessing Your Organization's Risk Level
- Hardware and software design processes
- Mitigation of known vulnerabilities
- Awareness of emerging vulnerabilities
- Monitoring of production systems and processes
Supply Chain Cyber Risk Case Study
- Cyber attacks by internal team members
Internal Security Threats
- Motivated and less-motivated employees
- Access to login credentials
- Access to IoT devices
Forming Collaborative Partnerships
- Proactive versus punitive approaches to vendor risk
- Achieving common objectives
- Fostering growth
- Mitigating risks
A Model for Implementing Supply Chain Cyber Security
- Vetting suppliers
- Establishing control
- Continuous monitoring and improvement
- Training and education
- Implementing multiple layers of protection
- Creating a cyber-crisis team
Summary and Conclusion
Requirements
- Experience working with supply chains
Audience
- Supply chain managers and stakeholders
Testimonials (3)
The input fm other industries through the trainer.
Lars Schacht - Scandlines Danmark ApS
Course - Advanced Sales and Operations Planning (S&OP) for Demand Forecasting
I liked the most that the trainer was professional, highly skilled in his domain of activity and very friendly towards us. 10/10
Claudiu - ASOCIATIA PENTRU VIITORII PROFESIONISTI IN TEHNOLOGIA INFORMATIEI
Course - SAP Financial Accounting and Controlling (FICO) for Consultants
I found NobleProg very easy to work with, considering the timezone challenges and our difficulty with trainees requiring support in Japanese. Overall, working with you on this training was satisfactory and I would have no hesitation recommending your organisation. If a training need occurs for us in the ASPAC region again, I will be in touch with NobleProg.