GB/T 32921-2016

Active

Information security technology—Security criterion on supplier conduct of information technology products

信息安全技术 信息技术产品供应方行为安全准则

Standard Type
GBT
ICS
35.040
CCS
L80
Status
Active
Issue Date
2016-08-29
Implementation
2017-03-01
Centralized Committee
国家标准委
Issuing Authority
中华人民共和国国家质量监督检验检疫总局、中国国家标准化管理委员会

Application Summary AI generated

This standard specifies security conduct requirements for suppliers of information technology products, covering areas such as product development, delivery, and maintenance to prevent malicious behavior and supply chain risks. It is applied in China to guide and evaluate the security practices of IT product suppliers, particularly in government procurement, critical infrastructure, and enterprise information systems where supply chain security is essential. The standard helps organizations ensure that suppliers adhere to ethical and security obligations, reducing vulnerabilities from compromised or counterfeit components.

Related Standards

Transparency note: The application summary and key sentences on this page were automatically generated by AI from the standard's original text. This content has not been human-verified and should not be used for compliance or regulatory purposes. Always refer to the official standard document from the issuing authority.