Define a Supply Chain Risk Management strategy to drive the development and implementation of policies and procedures for:a. How supply chain risks are to be managed across the agency;b. How monitoring of external providers compliance with defined cybersecurity and supply chain requirements;c. How counterfeit components are prevented from entering the DNFSB supply chain.
On September 20, 2023, the agency provided the following response:
Supply Chain Risk will be addressed in an upcoming
Supply Chain Risk Management Program Operating
Procedure. The estimated completion is Q4 FY 2023.
The OIG will verify if corrective actions have been taken by the DNFSB to address this recommendation during its FY25 Federal Information Security Modernization Act of 2014 (FISMA) audit. Status: Open: Resolved.
Supply Chain Risk will be addressed in an upcoming Supply Chain Risk Management Program Operating Procedure. The estimated completion is Q4 FY 2023.