How concerned are you about effects of an attack on your supply chain?
Very concerned40%
Somewhat concerned49%
Not concerned10%
791 PARTICIPANTS
Sort by:
CISO in Software4 years ago
Started looking at StepSecurity. https://github.com/apps/step-security
There’s been a substantial rise in supply chain attacks recently, especially through compromise of third party vendors (which inevitably lead to data exfiltration, encryption or extortion)
It’s imperative that you assess and validate every vendor in your chain, and understand all of the data processing (and storage) of each vendor in the pipeline.
If possible, look to minimise the risk by minimising vendors!