Assessing the severity and likelihood of C-SCRM risks
Assessing the severity and likelihood of cybersecurity supply chain risks is critical to C-SCRM. This process helps determine a cybersecurity event’s potential impact on an organization from its supply chain and the probability of such an event. The severity and likelihood are two primary factors that prioritize which risks require the most attention and resources. Let us understand these factors in detail:
- Understanding the supply chain context: Before assessing the severity and likelihood of risks, it’s important to have a comprehensive understanding of the supply chain, including its components and operation. This understanding includes knowing the number of suppliers, their geographical locations, their interdependencies, and the nature of the goods or services they provide.
- Determining the severity of risks: The severity of risks refers to the potential impact they could have on the organization. This...