Understanding and Auditing SCS 9001 Measurements

Understanding and Auditing SCS 9001 Measurements
Course Duration: 1 Day - 8 Hours/day
This one-day seminar covers the measurement requirements as defined in Annex B of the Supply Chain Security standard, SCS 9001. The SCS 9001 handbook documents Supply Chain Security Management System requirements, controls, and measurements specifically for suppliers of ICT products: hardware, software, and services based on ISO 9001:2015 for the Information and Communications Technology (ICT) industry.
This class fulfills one of three course requirements for a certification body auditor to be qualified to SCS 9001.
Note: must be QMS qualified as a prerequisite for this class.
• Understanding SCS 9001 Requirements
• Understanding and Auditing SCS 9001 Measurements (this class)
• Auditing SCS 9001
Learning Objectives
· Gain a full understanding of the measurements mandatorily required in the SCS 9001 system to be reported to the TIA QuEST Forum.
· Be able to apply the required measurements internally for process improvement, continual improvement, and for benchmarking the organization compared to the best-in-class, and worst-in-class organizations currently certified.
Seminar Agenda
· Course Introductions
· Chapter 1: Measurement Usage and Responsibilities
o Competency 1: Principles of using Security Measurements
o Competency 2: Security Measurement Responsibilities
· Chapter 2: General Measurement Requirements
o Competency 3: Measurement Reporting
o Competency 4: Understanding Security Measurements
o Breakout Exercise 1: Determining and Counting:
§ Vulnerability Control (VC)
§ Update Timeliness (UT)
o Breakout Exercise 2: Determining and Counting:
§ Supplier Security Compliance (SSC)
§ Supplier Reverification (SR)
§ Phishing Attack Success (PAS)
§ Unauthorized Entry Rate (UER)
§ Unauthorized Access (UA)
· Chapter 3: Integrating Measurements, Setting Targets and Evaluating Performance
o Competency 5: Auditing Measurements
· Final Exam
· Course Introductions
· Chapter 1: Measurement Usage and Responsibilities
o Competency 1: Principles of using Security Measurements
o Competency 2: Security Measurement Responsibilities
· Chapter 2: General Measurement Requirements
o Competency 3: Measurement Reporting
o Competency 4: Understanding Security Measurements
o Breakout Exercise 1: Vulnerability Control
o Breakout Exercise 2: Create Unauthorized Entry Rate Test & Data
· Chapter 3: Integrating Measurements, Setting Targets and Evaluating Performance
o Competency 5: Auditing Measurements
o Breakout Exercise 3: Verification and Validation of Measurements Data
· Final Exam
Who Should Attend
This course is designed for Certification Body auditors, Accreditation Body Assessors, Organization stakeholders implementing SCS 9001.
Each participant will receive a seminar manual including breakout exercises.
Participants must be experienced with ISO 9001 or an ISO 9001-based QMS standard.