Cyber security: guidance for public sector suppliers
The security of supply chains is increasingly important as we often see cyber incidents affect public sector bodies indirectly through their suppliers. This guidance note promotes the adoption of a consistent approach to supplier cyber security across the Scottish public sector.
Update
An updated version of the Buyer Risk Profile Assessment supporting document was published on 22 October 2025
Contact
Email: cyberresilience@gov.scot