Supply Chain Toolbox Resources

You can use the filter menu below using the relevant criteria.

Filter

FS.31 GSMA Baseline Security Controls

Documents

Friday 1 Sep 2023 | Build | Decommissioning | Design and Development | Operational |

Mobile Network Operators provide the backbone for mobile telecommunication technologies.  At enterprise level the industry offers a wide array of services, diversifying from traditional connectivity into content and managed ...

FS.37 GTP-U Security

Document

Friday 6 Mar 2020 | Design and Development | Operational |

GPRS Tunnelling Protocol (GTP) is a group of IP-based communication protocols used to carry packet data ...

FS.33 Network Function Virtualisation (NFV) Threats Analysis

Document

Friday 6 Mar 2020 | Deployment | Design and Development | Operational |

This document aims to provide a comprehensive overview of the threats related to NFV and the underlying infrastructure and platforms hosting the NFV. The virtualization of network functions can be realized in several different ways and ...

COBIT 2019

Data

Friday 1 Nov 2019 | Deployment | Design and Development | Operational |

An umbrella framework for governance and management of enterprise information and technology, including audit & assurance, risk management, information security, regulatory and compliance, and governance of enterprise ...

Network Equipment Security Assurance Scheme (NESAS)

Data

Friday 1 Nov 2019 | Build | Design and Development | NESAS | Procurement |

The Network Equipment Security Assurance Scheme (NESAS), jointly defined by 3GPP and GSMA, provides an industry-wide security assurance framework to facilitate improvements in security levels across the mobile industry. NESAS ...

Remote SIM Provisioning

Data

Tuesday 17 Sep 2019 | Build | Concept | Deployment | Design and Development | Operational |

Recognising the need to demonstrate product compliance to technical specifications in a common accessible way, GSMA has developed a compliance framework for eSIM capable Devices, eUICCs and Subscription Management servers. The ...

GSMA Coordinated Vulnerability Disclosure (CVD)

Data

Wednesday 29 May 2019 | Build | Concept | Deployment | Design and Development | Operational |

The GSMA Coordinated Vulnerability Disclosure (CVD) Programme provides a formal structure for security researchers and similar parties to disclose details of security vulnerabilities affecting the mobile industry, and allow the mobile ...

European Electronic Communications Code (EECC)

Data

Tuesday 11 Dec 2018 | Build | Concept | Deployment | Design and Development |

The European Electronic Communications Code Directive (EECC) updates the regulatory framework to reflect evolving technologies and developments in the way people communicate. The EECC introduces a renewed focus on increasing regulatory ...

NCSC Supply chain security guidance

Data

Friday 16 Nov 2018 | Build | Decommissioning | Delivery | Deployment | Design and Development | Operational | Procurement |

This guidance outlines a series of 12 principles designed to help establish effective control and oversight of a supply chain. It recognises that most organisations are reliant upon suppliers to deliver products, systems and services ...

GSMA IoT Security Assessment Checklist

Data

Sunday 30 Sep 2018 | Build | Concept | Decommissioning | Delivery | Deployment | Design and Development | Operational | Procurement |

Without security, the Internet of Things will cease to exist. To enable a secure market, companies have to take responsibility to embed security from the beginning and at every stage of the IoT value chain. The GSMA, together with ...

IMEI Security Technical Design Principles

Document

Monday 1 Aug 2016 | Build | Design and Development | Operational |

This document helps device manufacturers develop a comprehensive security architecture that facilitates the deployment of a range of solutions to protect the platform on which the IMEI mechanism is stored. Audience:  ...