top of page

NIST Cybersecurity Professional®
NCSP® 800-161 Awareness Certificate

 
Build Awareness of NIST SP 800‑161: Cybersecurity Supply Chain Risk Management

NCSP 800-161 Awareness Certificate Digital Badge

NIST Cybersecurity Professional®

NCSP® 800-161 Awareness Certificate

Course Description

NIST Special Publication 800‑161, Cybersecurity Supply Chain Risk Management Practices for Systems and Organizations, provides comprehensive guidance for identifying, assessing, and managing cybersecurity risks throughout the supply chain. It supports organisations in protecting systems, components, and services acquired from external providers.

The NCSP® 800‑161 Awareness Certificate is a half‑day, instructor‑led course offering a concise introduction to the purpose, structure, and strategic value of NIST SP 800‑161. Designed for executives, managers, procurement teams, and stakeholders, this course explains how supply‑chain cybersecurity risks emerge, how they impact organisational resilience, and how 800‑161 provides a structured approach to managing them, without requiring technical or assessor‑level expertise.

Participants gain a high‑level understanding of C‑SCRM concepts, organisational roles, risk processes, and how 800‑161 integrates with CSF 2.0, RMF (800‑37), 800‑53, and broader digital trust frameworks.

 

What You Will Learn
 

Participants gain essential awareness‑level knowledge of NIST SP 800‑161. You will learn:

  • The purpose, scope, and evolution of NIST SP 800‑161.

  • How cybersecurity supply‑chain risks emerge and propagate.

  • Key C‑SCRM concepts, including suppliers, integrators, developers, and service providers.

  • The structure of the 800‑161 controls and organisational practices.

  • Roles and responsibilities across procurement, security, and governance.

  • How 800‑161 aligns with CSF 2.0, RMF, 800‑53, and federal supply‑chain requirements.

Course Agenda

Module 1: Introduction to NIST SP 800‑161 & Cybersecurity Supply Chain Risk Management

  • A high‑level overview of NIST SP 800‑161, its purpose, and its role in managing cybersecurity risks across the supply chain. Introduces key C‑SCRM concepts, risk sources, and the importance of supply‑chain assurance.

Module 2: Structure of the 800‑161 Controls & C‑SCRM Practices

  • An awareness‑level introduction to the organisation of the 800‑161 controls and practices, including:

    • C‑SCRM control families

    • Integration with NIST SP 800‑53 controls

    • Organisational, operational, and technical practices

  • Explains how organisations use these elements to build a resilient supply‑chain security programme.

Module 3: Roles, Responsibilities & Governance for Supply‑Chain Security

  • A concise overview of key roles involved in C‑SCRM, including procurement teams, system owners, security managers, risk executives, and suppliers. Covers governance structures that support accountability, due diligence, contract requirements, and continuous monitoring.

Module 4: Applying NIST 800‑161 in Practice - Alignment, Use Cases & Continuous Improvement

  • An introduction to how organisations apply 800‑161 in real‑world environments. Covers alignment with CSF 2.0, RMF (800‑37), 800‑53 controls, federal acquisition requirements, and sector‑specific supply‑chain mandates.

Learning Outcomes

Participants will be able to:

  • Describe the purpose and structure of NIST SP 800‑161.

  • Explain key C‑SCRM concepts and why supply‑chain security matters.

  • Understand the structure of 800‑161 controls and practices at an awareness level.

  • Recognise key roles and responsibilities in supply‑chain cybersecurity.

  • Identify how 800‑161 aligns with CSF 2.0, RMF, 800‑53, and federal requirements.

  • Communicate the strategic value of supply‑chain risk management to stakeholders and teams.

Who Should Attend?

This course is designed for professionals who need a foundational understanding of cybersecurity supply‑chain risk, including:

  • Executives & Senior Leaders

  • Procurement & Vendor Management Teams

  • Business & System Owners

  • Governance, Risk & Compliance (GRC) Stakeholders

  • Programme & Project Managers

  • Security & Privacy Managers

  • Anyone seeking an introduction to C‑SCRM principles

Prerequisites

 

There are no prerequisites for this Awareness‑level course. No technical background is required.

 

Participants are provided with:

  • NIST Cybersecurity Professional® (NCSP®) 800-161 Awareness Certificate courseware including links to further reading and resources.

  • NIST Cybersecurity Professional® (NCSP®) 800-161 Awareness Certificate, Certificate of Completion.

  • NIST Cybersecurity Professional® (NCSP®) 800-161 Awareness Certificate digital badge.

​Enrol Today

This NCSP 800‑161 Awareness course provides students with an essential understanding of cybersecurity supply‑chain risks and the C‑SCRM practices defined in NIST SP 800‑161.

NCSP 800-161 Awareness Certificate Digital Badge
Further Reading

NIST 800-161 Rev 1 - Cybersecurity Supply Chain Risk Management Practices for Systems and Organizations

https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-161r1-upd1.pdf

NIST Cybersecurity Professional® 

NCSP®, NIST Cybersecurity Professional® and NIST Cyber Security Professional® are registered trademarks of CySec Professionals Ltd. All frameworks, models, and course materials are proprietary intellectual property protected across the UK, EU, US, Canada, and Australia. The Digital Trust Institute® (DTI®) is a trading name of CySec Professionals Ltd.

NCSP® is a governed, trademarked credential ecosystem aligned to NIST CSF 2.0 and key NIST Special Publications, stewarded by CySec Professionals Ltd and The Digital Trust Institute® (DTI®).

NIST content is republished courtesy of the National Institute of Standards and Technology. CySec Professionals Ltd is an independent organisation and is not affiliated with or endorsed by NIST.

Part of the NCSP® Credential Ecosystem - https://digitaltrust.institute

© 2017 - 2026 CySec Professionals Ltd. All rights reserved.

Terms & Conditions

UK Cyber Security Council Membership
Federation of Small Business Member
Greater Manchester Chamber of Commerce Member
bottom of page