A REVIEW OF ITGC STRATEGIES FOR PREVENTING SUPPLY CHAIN ATTACKS

ABSTRACT

This research paper provides a comprehensive examination of Information Technology General Controls (ITGC) strategies in the context of supply chain security. The digitalization and globalization of supply chains have necessitated robust cybersecurity measures to safeguard against evolving threats. The paper delves into key ITGC strategies, including access controls, change management, segregation of duties, system development life cycle (SDLC) controls, and incident response and management. The challenges and limitations in implementing these strategies are explored, highlighting supply chains’ diverse and global nature, the dynamic threat landscape, resource constraints, the complexity of supply chain networks, and regulatory compliance challenges. Despite these challenges, the paper emphasizes the importance of continuous monitoring, industry collaboration, employee training, integration of emerging technologies, and scalable ITGC frameworks in overcoming obstacles and enhancing supply chain security. In conclusion, the research underscores the need for a holistic and adaptive approach to supply chain security. It recommends industry collaboration, investment in employee training, the integration of emerging technologies, and scalable ITGC frameworks to navigate the challenges posed by modern supply chains’ dynamic and interconnected nature. By implementing these recommendations, organizations can bolster their cybersecurity defences, foster resilience, and contribute to the overall security of the digital supply chain ecosystem.

KEYWORDS

Supply Chain Security, ITGC, Cybersecurity, SDLC Controls