Information SecurityUnited States
NIST SP 800-161
Cybersecurity Supply Chain Risk Management Practices.
How NIST SP 800-161 maps to other frameworks
All 34 controls, each one mapped to the equivalent requirement in other standards, with the evidence that carries across and the mappings that were judged and rejected shown alongside. No account needed to look.
See the control mappings →Domains
Programme Measurement
Resilience
Incident and Response
Components and Services
Supplier Management
Compare NIST SP 800-161
NIST SP 800-161 by Industry
NIST SP 800-161 by Role
Frequently Asked Questions
What is NIST SP 800-161?
Cybersecurity Supply Chain Risk Management Practices.
How many controls does NIST SP 800-161 have?
NIST SP 800-161 contains 34 controls organized across 14 domains.
Where does NIST SP 800-161 apply?
NIST SP 800-161 is applicable in United States. Organizations operating in or serving customers in this jurisdiction should evaluate its requirements.
What frameworks does NIST SP 800-161 map to?
NIST SP 800-161 has control-to-control mappings with 1 other compliance frameworks in our database. Use our compliance platform to explore these mappings interactively.
How do I get started with NIST SP 800-161 compliance?
Start by understanding the framework's key controls and domains. Our compliance platform provides AI-powered gap analysis and mapping tools to help you assess your current posture and build a remediation plan.
How ready are you for NIST SP 800-161?
Answer 25 questions and get a professional readiness report with gap analysis, maturity scores, and prioritised action items. Results in 5 minutes.