Supply Chain Risk Management (ISO 27036-1) 🔗
Tier 1 → Tier 2 → Your Org → Customer → End Customer
Your security depends on EVERYONE in chain.
A breach at Tier 2 supplier = breach at YOU.
Key principle: Trust but VERIFY. Vendors, their vendors, everyone.
Third-party risk is real. Manage it!