Insights
Regulation, read properly
Analysis of the rules driving supply chain risk and corporate due diligence requirements, written by the analysts doing the work. Roughly monthly. Genuinely about the regulation rather than about us.
Nothing published here yet
The first pieces are written and in review. They are regulatory explainers — what NIST SP 800-161 actually asks of a defense supplier, why supply chain risk and third-party risk are not the same discipline, and how FOCI mitigation works in practice.
They publish when an analyst has confirmed every claim in them is current, and not before. That is slower than it could be and it is the whole point of the exercise. Subscribe below and you will get them.
Stay current
SCRM Insights
Monthly analysis of supply chain risk regulation and analytic practice. Useful intelligence about rules you have to comply with — not company news.