
ISO 6114:2023
ISO 6114:2023 Cybersecurity – Security considerations throughout the product life cycle
CDN $336.00
Description
This document describes security considerations throughout the product life cycle (SCLC), which is a framework that spans the entire information and communications technology (ICT) product life cycle. The aim of the framework is to align the industry and bring greater transparency to customers at every point on the ICT product life cycle.
This document describes the following items for suppliers, end users (consumers), intermediaries of the ICT supply chain, service providers, and regulators:
–¬†¬†¬†¬† definition of phases in the ICT product life cycle from concept to retirement;
–¬†¬†¬†¬† threat vectors possible in each phase of the life cycle;
–¬†¬†¬†¬† potential controls against those threat vectors.
The target audiences of this document are suppliers and consumers of ICT products, including all participants throughout the supply chain such as silicon chip designers, fabricators, product assemblers, logistics providers, service providers, and information security organizations. Clauses 5 to 11 target an organization’s strategic and risk management teams. This document provides an end-to-end view of the threats in each phase to help the organization shape their plans, procedures and policies.
Edition
1
Published Date
2023-10-10
Status
PUBLISHED
Pages
44
Format 
Secure PDF
Secure – PDF details
- Save your file locally or view it via a web viewer
- Viewing permissions are restricted exclusively to the purchaser
- Device limits - 3
- Printing – Enabled only to print (1) copy
See more about our Environmental Commitment
Abstract
This document describes security considerations throughout the product life cycle (SCLC), which is a framework that spans the entire information and communications technology (ICT) product life cycle. The aim of the framework is to align the industry and bring greater transparency to customers at every point on the ICT product life cycle.
This document describes the following items for suppliers, end users (consumers), intermediaries of the ICT supply chain, service providers, and regulators:
-     definition of phases in the ICT product life cycle from concept to retirement;
-     threat vectors possible in each phase of the life cycle;
-     potential controls against those threat vectors.
The target audiences of this document are suppliers and consumers of ICT products, including all participants throughout the supply chain such as silicon chip designers, fabricators, product assemblers, logistics providers, service providers, and information security organizations. Clauses 5 to 11 target an organization’s strategic and risk management teams. This document provides an end-to-end view of the threats in each phase to help the organization shape their plans, procedures and policies.
Previous Editions
Can’t find what you are looking for?
Please contact us at:
Related Documents
-

ISO 27022:2021 Information technology – Guidance on information security management system processes
CDN $336.00 Add to cart -

ISO 27033:2023 Information technology ‚Äì Network security – Part 7: Guidelines for network virtualization security
CDN $251.00 Add to cart -

ISO 21177:2024 Intelligent transport systems – ITS station security services for secure session establishment and authentication between trusted devices
CDN $422.00 Add to cart -

ISO 27007:2020 Information security, cybersecurity and privacy protection – Guidelines for information security management systems auditing
CDN $364.00 Add to cart







