• Latest
  • Trending
  • All
The Supply Chain Risk Is Hidden in Plain Sight

The Supply Chain Risk Is Hidden in Plain Sight

February 28, 2020
Last Mile Delivery Market Worth Observing Growth | UPS, FedEx, SF Express

Last Mile Delivery Market Worth Observing Growth | UPS, FedEx, SF Express

April 23, 2024
Top 5 Spend Analysis Software ranked in 2024

Top 5 Spend Analysis Software ranked in 2024

March 1, 2024
How Tesla And BMW Are Leading A Supply Chain Renaissance With Blockchain

How Tesla And BMW Are Leading A Supply Chain Renaissance With Blockchain

January 19, 2024
LATAM Cargo strengthens European cargo links

LATAM Cargo strengthens European cargo links

April 14, 2020
Ford making reusable hospital gowns from airbag materials as efforts against coronavirus expand

Ford making reusable hospital gowns from airbag materials as efforts against coronavirus expand

April 14, 2020
Don’t Sweat NBC’s Decision to Cut Back on Television Ad Inventory

Don’t Sweat NBC’s Decision to Cut Back on Television Ad Inventory

April 14, 2020
Software firms sharpen focus on AI, big data as IT spending drops

Software firms sharpen focus on AI, big data as IT spending drops

April 14, 2020
Navigating turbulent times in your supply chain (TL:DR version)

Navigating turbulent times in your supply chain (TL:DR version)

April 14, 2020
Last Mile Delivery by Drones Market is Booming Worldwide

Last Mile Delivery by Drones Market is Booming Worldwide

April 14, 2020
AIR CARGO MARKET SIZE, SHARE, DEMAND, TREND, LATEST INNOVATIONS & APPLICATION ANALYSIS AND INDUSTRY GROWTH FORECAST 2027 – Science In Me

AIR CARGO MARKET SIZE, SHARE, DEMAND, TREND, LATEST INNOVATIONS & APPLICATION ANALYSIS AND INDUSTRY GROWTH FORECAST 2027 – Science In Me

April 14, 2020
Wheat procurement in Patiala: 6,500 coupons issued to farmers – cities

Wheat procurement in Patiala: 6,500 coupons issued to farmers – cities

April 14, 2020
Pandemic, Plastics And The Continuing Quest For Sustainability

Pandemic, Plastics And The Continuing Quest For Sustainability

April 14, 2020
  • Supply Chain
  • Logistics
  • Warehousing
  • Procurement
  • Shipping
  • More
    • Strategic Sourcing
    • Spend Analysis
    • Inventory
    • Contact Us
No Result
View All Result
United States International Supply Chain Commission
United States International Supply Chain Commission
Home Supply Chain

The Supply Chain Risk Is Hidden in Plain Sight

by usiscc
February 28, 2020
in Supply Chain
0
The Supply Chain Risk Is Hidden in Plain Sight
496
SHARES
1.4k
VIEWS
Share on FacebookShare on Twitter

When the National Counterintelligence and Security Center designated April as National Supply Chain Integrity Month, it cited threats that cost the country innovation, jobs and economic advantage. It also mentioned a reduction of U.S. military strength as the need for increased awareness. Now as we approach the one-year anniversary of that designation, threats—especially cybersecurity threats—continue to grow and evolve. These give the military-industrial base new reasons to refocus on the security of contractors, subcontractors and suppliers.

The financial risks are considerable. Counterfeit materials may not fit or perform as expected, requiring replacement with authentic ones that come with additional cost and downtime. Only a small percentage of shipped cargo is examined to see if it is counterfeit, and likely a similarly small amount is checked to see if it has malicious components.

Another problem is that older software/hardware systems in particular have “back doors” that may allow hackers to access partner networks and steal information that has incurred a lot of investment. Some newer systems also have “call home” features that surreptitiously transmit unauthorized data.

And then there are stolen goods. With so much data available, adversaries can create insider threats, targeting and enticing employees to steal products destined for a partner program and to falsify records.

Every company and agency today is an information technology organization with equipment, systems and data that are valuable and vulnerable. This presents an increased target area, and adversaries look for weaknesses in those assets and the interconnected systems of partners. For military-industrial organizations, the implications go beyond financial problems.

For example, computer manufacturers enhance their operations using Internet of Things (IoT) technology to track the location of raw materials, gauge assembly line progress and monitor the placement of finished products. As an inventory management and optimization technology, IoT is relatively new, and like other innovations it may introduce a vulnerability in the supply chain. If security protocols are not in place, then the data it collects can be misdirected, or commands can be issued to delay maintenance and cause downtime.

Another repercussion of a corrupted supply chain is how it affects critical infrastructure, such as power plants. Hackers can gain access through suppliers of raw materials or transportation companies. Or, if they try to disrupt wastewater treatment facilities, their options for entry points could be chemical suppliers or manufacturers of piping, valves and similar equipment. The result could be a public health crisis.

Internet connectivity has become a routine feature for many products. Automobile manufacturers, for example, provide it so users receive Wi-Fi, location information and maintenance notifications. It is conceivable that this data can be accessed by adversaries and used to target individuals.

Makers of 3D printers face a similar supply chain risk. If their system is compromised, the parts may appear to be printed in accordance with the specifications but actually have hidden weaknesses and can fail in critical situations.

Avoiding these scenarios first requires an understanding of potential vulnerabilities and continuous vigilance so adversaries cannot take advantage of them. The Cybersecurity Maturity Model Certification offers a starting point for partners to implement best practices, conduct audits and be informed of risks. The policies and standards associated with certification can provide some assurance to agencies about their vendors, their vendors’ manufacturing processes and the origins of the vendors’ materials so that risk can be minimized.

A second strategy for supply chain security is development of more stringent software code. Sometimes commercial off-the-shelf software provides the right solution because it has been tested by a large quantity of deployments and the time elapsed since its launch. But organizations often need some custom-built applications, and they must have adequate resources to develop, test and deploy them. The recent increase in emphasis on secure coding is welcome news.

A final point to emphasize is to avoid complacency. When operators see anomalies or hear warnings often enough, they may not register them as incidents to investigate. Program managers, software designers and everyone in the supply chain must understand the risks of working with partners. They must claim a role in eliminating vulnerabilities where possible; in cases where risk is unavoidable, they must manage it with access and process controls for manufacturing and distribution.

Maj. Gen. Jennifer Napper, USA (Ret.), is a vice president in Perspecta Inc.’s defense group. She previously served as director of cybersecurity plans and policy for the U.S. Department of Defense Cyber Command, and she led the U.S. Army’s Network Enterprise Technology Command (NETCOM). 

Share198Tweet124
usiscc

usiscc

  • Trending
  • Comments
  • Latest
Escape From Tarkov – How to Rotate Items

Escape From Tarkov – How to Rotate Items

February 5, 2020
Supply chain examination: Planning for vulnerabilities you can’t control

Supply chain examination: Planning for vulnerabilities you can’t control

December 7, 2019
Procurement Project Manager job with Camden London Borough Council

Procurement Project Manager job with Camden London Borough Council

February 17, 2020
Art Battle Wichita Falls III at The Warehouse, 1401 Lamar.

Art Battle Wichita Falls III at The Warehouse, 1401 Lamar.

0
Global Industry Analysis, Size, Share, Growth, Trends, and Forecasts 2016–2024 – ZMR News Reports

Global Industry Analysis, Size, Share, Growth, Trends, and Forecasts 2016–2024 – ZMR News Reports

0
PHOTOS: Ottawa firefighters respond to warehouse fire

PHOTOS: Ottawa firefighters respond to warehouse fire

0
Last Mile Delivery Market Worth Observing Growth | UPS, FedEx, SF Express

Last Mile Delivery Market Worth Observing Growth | UPS, FedEx, SF Express

April 23, 2024
Top 5 Spend Analysis Software ranked in 2024

Top 5 Spend Analysis Software ranked in 2024

March 1, 2024
How Tesla And BMW Are Leading A Supply Chain Renaissance With Blockchain

How Tesla And BMW Are Leading A Supply Chain Renaissance With Blockchain

January 19, 2024
  • Privacy Policy
  • Terms of Use
  • Disclaimer
  • DMCA
  • Contact Us

Copyright © 2024 United States International Supply Chain Commission (usiscc.org)

This website uses cookies to improve your experience. We'll assume you're ok with this, but you can opt-out if you wish. Cookie settingsACCEPT
Privacy & Cookies Policy

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these cookies, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may have an effect on your browsing experience.
Necessary
Always Enabled

Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.

Non-necessary

Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.

SAVE & ACCEPT
No Result
View All Result
  • Supply Chain
  • Logistics
  • Warehousing
  • Procurement
  • Shipping
  • More
    • Strategic Sourcing
    • Spend Analysis
    • Inventory
    • Contact Us

Copyright © 2024 United States International Supply Chain Commission (usiscc.org)