Under active development Content is continuously updated and improved

TPM-05Third-Party Contract Requirements

Weight: 10

>Control Description

Mechanisms exist to require contractual requirements for cybersecurity and data protection requirements with third-parties, reflecting the organization's needs to protect its Technology Assets, Applications, Services and/or Data (TAASD).

>Cross-Framework Mappings

NIST SP 800-53 r5

CIS Controls v8

NIST SP 800-171

China Cybersecurity Law

India DPDPA

New Zealand HISF Suppliers

Saudi Arabia IoT Guidelines

Saudi Arabia PDPL

UK DEF STAN 05-138

CIS Controls v8.1 (Detailed)

ISO 42001:2023 (Detailed)

NAIC Model Law 668

NIST SP 800-218 SSDF

Data Privacy Management Principles

CMMC 2.0 Level 1

SEC Cybersecurity Rule

Virginia CDPA

Ask AI

Configure your API key to use AI features.