MOD framework defining cyber security controls required at different defence supply chain levels.
The Cyber Security Model (CSM) defines the cyber security controls required for different levels of defence work, based on information sensitivity and threat profile. CSM levels range from baseline (Cyber Essentials Plus) through enhanced requirements for more sensitive work. The model specifies technical controls, governance requirements, and assurance mechanisms. CSM helps organisations understand the gap between current capability and defence contract requirements.
Why It Matters
The DSC Perspective:
CSM tells you what controls defence contracts require. Before bidding, assess your capability against relevant CSM levels. Gap analysis against CSM helps plan security improvements for defence market entry.
