Cyber resilience
Contents |
[edit] Introduction
The Single Procurement Document (Scotland) - also referred to as SPD (Scotland) contains questions used at the selection stage for post-Brexit procurement exercises in Scotland to identify suitably qualified and experienced bidders.
The Supplier Journey portion of the Scottish Government’s procurement guidance website offers an overview of the different types of procurement procedures that are available under SPD (Scotland). This includes an explanation of the cyber resilience of suppliers - as it relates to the Scottish public sector.
[edit] Concerns over security
As defined by the Supplier Journey Glossary, cyber resilience is the ability to prepare for, withstand, rapidly recover and learn from deliberate attacks or accidental events in the online world.
Cyber resilience measures can help organisations:
- Prepare by protecting them from cyber risks.
- Withstand an attack by defending against and limiting the severity attacks.
- Recover and learn by ensuring that operations continue despite an attack.
The number of cyber attacks targeting suppliers to the public sector has grown. Attacks can (intentionally or otherwise) disrupt and damage both suppliers’ services and public services.
[edit] Ensuring security
Against this background, the Scottish public sector has taken measures to ensure its suppliers have appropriate cyber security in place.
The Scottish Government sees this as an opportunity to build relationships with suppliers that have invested in cyber security within their organisations.
The Scottish Government has offered resources to assist suppliers that have expressed an interest in adopting a more consistent approach to cyber resilience. These tools are included in a Guidance Note which has been developed to help public sector bodies embed cyber resilience into the supply chain process.
These resources include:
- CSPST guidance for buyers.
- CSPST guidance for public sector suppliers.
- Cyber resilience: example tender and contract wording.
- Cyber resilience: cyber implementation plan and example.
- Cyber Security Procurement Support Tool (CSPST).
Completing the CSPST questionnaire can be a time consuming process; suppliers are advised to allocate a sufficient amount of time in advance of deadlines in order to participate in the procurement process.
There is additional guidance for public sector buyers and suppliers on how to use CSPST in procurement processes.
[edit] Related articles on Designing Buildings
- Cyber security.
- Cyber-security and phishing.
- Mitigating online risk with Cyber Essentials security.
- Single Procurement Document (Scotland).
- Supply chain.
- Technology helps quash conflict in the supply chain.
- UK organisations encouraged to review cyber security in response to situation in and around Ukraine.
[edit] External resources
- Scottish Government, Cyber Security Procurement Support Tool: supporting guidance for public bodies.
- Scottish Government, Supplier Journey.
- Scottish Government, Supplier Journey Glossary.
Featured articles and news
Twas the site before Christmas...
A rhyme for the industry and a thankyou to our supporters.
Plumbing and heating systems in schools
New apprentice pay rates coming into effect in the new year
Addressing the impact of recent national minimum wage changes.
EBSSA support for the new industry competence structure
The Engineering and Building Services Skills Authority, in working group 2.
Notes from BSRIA Sustainable Futures briefing
From carbon down to the all important customer: Redefining Retrofit for Net Zero Living.
Principal Designer: A New Opportunity for Architects
ACA launches a Principal Designer Register for architects.
A new government plan for housing and nature recovery
Exploring a new housing and infrastructure nature recovery framework.
Leveraging technology to enhance prospects for students
A case study on the significance of the Autodesk Revit certification.
Fundamental Review of Building Regulations Guidance
Announced during commons debate on the Grenfell Inquiry Phase 2 report.
CIAT responds to the updated National Planning Policy Framework
With key changes in the revised NPPF outlined.
Councils and communities highlighted for delivery of common-sense housing in planning overhaul
As government follows up with mandatory housing targets.
CIOB photographic competition final images revealed
Art of Building produces stunning images for another year.
HSE prosecutes company for putting workers at risk
Roofing company fined and its director sentenced.
Strategic restructure to transform industry competence
EBSSA becomes part of a new industry competence structure.
Major overhaul of planning committees proposed by government
Planning decisions set to be fast-tracked to tackle the housing crisis.
Industry Competence Steering Group restructure
ICSG transitions to the Industry Competence Committee (ICC) under the Building Safety Regulator (BSR).
Principal Contractor Competency Certification Scheme
CIOB PCCCS competence framework for Principal Contractors.
The CIAT Principal Designer register
Issues explained via a series of FAQs.