CISA Secure by Demand Guide (opens in a new tab)
Why: CISA buyer guidance that helps organisations demand secure products in procurement — a practical lever for reducing digital risk when acquiring software during change programmes.
Guidance for embedding cyber risk into transformation, procurement and culture — not only technology projects.
5 current resources
Highest starting-point strength resources in this category.
Why: CISA buyer guidance that helps organisations demand secure products in procurement — a practical lever for reducing digital risk when acquiring software during change programmes.
Why: Practical NCSC method for assessing supplier cyber assurance across procurement, legal and security — built for the organisational change needed to manage third-party digital risk.
Why: NCSC guidance for embedding cyber risk into organisational decision-making — essential when programmes, technology choices and risk appetite shift during business change.
Showing 5 resources
Why: CISA buyer guidance that helps organisations demand secure products in procurement — a practical lever for reducing digital risk when acquiring software during change programmes.
Why: Practical NCSC method for assessing supplier cyber assurance across procurement, legal and security — built for the organisational change needed to manage third-party digital risk.
Why: NCSC guidance for embedding cyber risk into organisational decision-making — essential when programmes, technology choices and risk appetite shift during business change.
Why: NCSC principles for designing secure systems and services from the start, helping transformation teams reduce risk when building or changing digital capability.
Why: NCSC principles for building a security-supporting culture — useful when leading behaviour, leadership and process change alongside technical transformation.