• About
  • Subscribe
  • Contact
Thursday, May 8, 2025
    Login
FutureCISO
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
No Result
View All Result
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
No Result
View All Result
FutureCISO
No Result
View All Result
Home Process Compliance and Governance

Security is the number one consideration among supply chain chiefs

FutureCISO Editors by FutureCISO Editors
April 6, 2023

Photo by Tom Fisk from Pexels: https://www.pexels.com/photo/aerial-view-photography-of-container-van-lot-1427107/

Share on FacebookShare on Twitter

Gartner predicts that by 2025, 60% of supply chain organisations will use cybersecurity risk as a significant determinant in conducting third-party transactions and business engagements. As the surface area of digital supply chains expands, enhanced cybersecurity is a key theme that Chief Supply Chain Officers (CSCOs) will look to scale this year. 

“Our survey data has shown an aggressive stance among CSCOs who are looking to invest in growth through multiple new technologies,” said Brian Schultz, senior director analyst in Gartner’s Supply Chain Practice. “However, each new technology introduces new partners, vendors and service providers into the digital supply chain. The implication for cybersecurity risk is an ever-growing number of new pathways to potential attacks from malicious parties.”

Survey says

Gartner surveyed 499 supply chain leaders between October and December of 2022 and identified the top supply chain technology trends for 2023. On average, respondents indicated that 73% of their supply chain IT budgets will be allocated to driving business growth and enhancing performance.

Based on the survey data, Gartner projects that one-third of supply chain organisations will utilize industry cloud platforms by 2026 and predicts rapid growth in the use of composable application architecture, both of which will primarily rely on the use of external vendor support.

Schultz posits that CSCOs are under pressure to reduce costs, mitigate external disruptions and keep up with a rapidly changing technology landscape.

Brian Schultz

“In evaluating new technologies to drive growth and manage costs, a revamped approach to third-party risk assessment will be necessary to inform buying decisions, as a successful cyberattack on the supply chain is almost unique in its position to undo nearly all of the key objectives of CSCOs this year.”

Brian Schultz

CSCOs under scrutiny

CSCOs’ focus on cybersecurity is being driven by more factors than just an increasingly digital supply chain. Concerns about digital supply chain vulnerabilities are coming from C-Suite partners, boards, government regulators and customers. The result is to put CSCO’s cyber-resilience policies under the spotlight like never before.

Related:  Strategic insights for securing Asia’s software supply chains

According to Schultz, CSCOs will need to revamp their third-party risk assessments of outside partners as part of a larger cybersecurity program with clear standards developed in collaboration with risk owners across the C-Suite, including the CIO, CISO and internal audit. The standards in the plan should specifically address:

  • Up-to-date third-party cybersecurity standards
  • Mechanisms for enforcement of these standards in contractual language via executed and amended contracts
  • The development of an audit program to enforce the supply chain cybersecurity plan

According to Schultz, a supply chain cybersecurity program will play a significant role in future buying decisions and third-party risk mitigation.

“In addition, regular audit data from a supply chain cybersecurity program can serve as key performance indicators that can be reported to the board, auditors and business partners,” he concluded.

Tags: Chief Supply Chain OfficerCSCOcybersecurityGartner
FutureCISO Editors

FutureCISO Editors

No Result
View All Result

Recent Posts

  • Reimagining security for the AI Era
  • PodChats for FutureCISO: Articulating the business value of security in 2025
  • New standard for cybersecurity at the storage layer
  • Cybersecurity challenges persist despite improved defenses
  • Weak password reuse crisis remains

Categories

  • Blogs
  • Compliance and Governance
  • Culture and Behaviour
  • Cybersecurity careers
  • Data Protection
  • Endpoint Security
  • Incident Response
  • Network Security
  • People
  • Process
  • Resources
  • Risk Management
  • Technology
  • Training and awarenes
  • Videos
  • Webinars and PodChats
  • White Papers

Strategic Insights for Chief Information Officers

FutureCISO serves the interests of the Chief Information Security Officer (CISO) and the information security profession. Its purpose is to provide relevant and timely industry insights around all things important to security professionals and organisations that recognize and value the importance of protecting the organisation’s data and its customers’ privacy.

Cxociety Media Brands

  • FutureIoT
  • FutureCFO
  • FutureCIO

Categories

  • Privacy Policy
  • Terms of Use
  • Cookie Policy

Copyright © 2024 Cxociety Pte Ltd | Designed by Pixl

Login to your account below

or

Not a member yet? Register here

Forgotten Password?

Fill the forms bellow to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
Login

Copyright © 2024 Cxociety Pte Ltd | Designed by Pixl