How to Mitigate Software Supply Chain Risks on the US Energy Grid

Cyber attacks against the US energy grid can have a devastating impact on both the national economy and the industry itself. The energy sector needs to be cemented against cyber risks to minimize the likelihood and the consequence of these risks from happening. The modern software supply chain introduces many risks due to supply chain complexity and the high dependency on hundreds of open source software components which may be flawed or infected with malicious code.

The purpose of this eBook is to highlight the importance of securing the US energy grid against software supply chain risks and threats and to provide best practices leveraging recommendations from NERC CIP-010-3 R1 and the NIST Cybersecurity Framework.

