CISA Link to Log4j Affected Products –

Critical Manufacturing (CM) Sector Partners, We are please to inform you that CISA and its partners have created a GitHub Repository for its sector partners to immediately identify, mitigate, and update affected products using Log4j to the latest version; and to inform your end users of products that contain these vulnerabilities and strongly urge them … Read more

CISA Releases Two ICT Supply Chain Resources to Improve Information Sharing and Assist Small and Medium-sized Businesses –

Cybersecurity Colleagues and Partners, Today, the Cybersecurity and Infrastructure Security Agency (CISA) (http://www.cisa.gov/) released two new products developed by the Information and Communications Technology (ICT) Supply Chain Risk Management (SCRM) Task Force to address liability challenges on sharing supply chain threat information and assist Small and Medium-sized Businesses (SMBs) with mitigating ICT supply chain risks. … Read more

Q&A on Cyber Security Vulnerabilities in the Supply Chain –

ISCPO association partner Daniel Argandona, CEO of Capital Security and Risk Group (CSRG) shares his recent Q&A discussion about cyber security vulnerabilities within the supply chain with Matt Barnett, Chief Strategist and Cofounder of SEVN-X, a firm specializing in cyber security incidents and breach response.  What is my role in the supply chains I participate … Read more