<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic NCSC Vendor Security Assessment vs NIST.IR.8397 in Governance, Risk, Compliance</title>
    <link>https://community.isc2.org/t5/Governance-Risk-Compliance/NCSC-Vendor-Security-Assessment-vs-NIST-IR-8397/m-p/51772#M688</link>
    <description>&lt;P&gt;Hi there, First post into the group and after some guidance with respect to the Security Assessments and Minimum Guidelines for Software and Hardware Vendors. With the two recently introduced, I'll say standards.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Does anyone know if there any commonality between the two systems, does compliance of one provide coverage of the other? Is there a comparison table of requirements between the two systems?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cheers,&lt;/P&gt;&lt;P&gt;Andy&lt;/P&gt;</description>
    <pubDate>Tue, 28 Jun 2022 22:43:51 GMT</pubDate>
    <dc:creator>AndyMather</dc:creator>
    <dc:date>2022-06-28T22:43:51Z</dc:date>
    <item>
      <title>NCSC Vendor Security Assessment vs NIST.IR.8397</title>
      <link>https://community.isc2.org/t5/Governance-Risk-Compliance/NCSC-Vendor-Security-Assessment-vs-NIST-IR-8397/m-p/51772#M688</link>
      <description>&lt;P&gt;Hi there, First post into the group and after some guidance with respect to the Security Assessments and Minimum Guidelines for Software and Hardware Vendors. With the two recently introduced, I'll say standards.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Does anyone know if there any commonality between the two systems, does compliance of one provide coverage of the other? Is there a comparison table of requirements between the two systems?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cheers,&lt;/P&gt;&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jun 2022 22:43:51 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Governance-Risk-Compliance/NCSC-Vendor-Security-Assessment-vs-NIST-IR-8397/m-p/51772#M688</guid>
      <dc:creator>AndyMather</dc:creator>
      <dc:date>2022-06-28T22:43:51Z</dc:date>
    </item>
  </channel>
</rss>

