Organization or an individual that enters into an agreement with the acquirer for the supply of a product or service.
Source(s):
NIST SP 800-160 Vol. 1
from
ISO/IEC/IEEE 15288
Organization or individual that enters into an agreement with the acquirer or integrator for the supply of a product or service. This includes all suppliers in the supply chain, developers or manufacturers of systems, system components, or system services; systems integrators; vendors; product resellers; and third party partners.
Source(s):
NIST SP 800-53 Rev. 5
Organization or individual that enters into an agreement with the acquirer or integrator for the supply of a product or service. This includes all suppliers in the supply chain, developers or manufacturers of systems, system components, or system services; systems integrators; suppliers; product resellers; and third-party partners.
Source(s):
NIST SP 800-161r1
from
ISO/IEC/IEEE 15288:2015 - adapted, NIST SP 800-53 Rev. 5 - adapted from definition of "developer"
Organization or individual that enters into an agreement with the acquirer or integrator for the supply of a product or service. This includes all suppliers in the supply chain.
Source(s):
NISTIR 7622
under Supplier
from
ISO/IEC 15288 - Adapted
Product and service providers used for an organization’s internal purposes (e.g., IT infrastructure) or integrated into the products of services provided to that organization’s Buyers.
Source(s):
NIST Cybersecurity Framework Version 1.1
under Supplier
Organization or individual that enters into an agreement with the acquirer or integrator for the supply of a product or service. This includes all suppliers in the supply chain.
Includes (i) developers or manufacturers of information systems, system components, or information system services; (ii) vendors; and (iii) product resellers.
Source(s):
NIST SP 800-161
[Superseded]
under Supplier
from
ISO/IEC 15288 - Adapted, NIST SP 800-53 Rev. 4 - adapted from “developer”