unified
UC-TPRM-06 — Manage secure termination and disposal at relationship end
Include termination and post-relationship provisions in supplier agreements and supply-chain risk plans: return or verified destruction of data, revocation of access and credentials, service transition, and retention of required evidence. Dispose of data, documentation, tools, and system components securely at end of life or end of relationship using defined techniques, and record each disposal.
Record JSON · Open in map · Data retrieval guide
Catalog revision: 24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028. A connection does not establish full coverage.
Attributes
- domain
- Third-Party / Supply-Chain Risk
- type
- preventive
- category
- administrative
Details
- unified_id
- UC-TPRM-06
- title
- Manage secure termination and disposal at relationship end
- statement
- Include termination and post-relationship provisions in supplier agreements and supply-chain risk plans: return or verified destruction of data, revocation of access and credentials, service transition, and retention of required evidence. Dispose of data, documentation, tools, and system components securely at end of life or end of relationship using defined techniques, and record each disposal.
- domain
- Third-Party / Supply-Chain Risk
- control_type
- preventive
- control_category
- administrative
- members
- framework
- nist-800-53
- control_id
- SR-12
- coverage
- full
- relationship
- superset_of
- framework
- nist-csf-2
- control_id
- GV.SC-10
- coverage
- full
- relationship
- superset_of
- guidance
Source
No record-specific source URL is provided.
Connections
- Third-Party ICT Vendor Regulatory Assurance oversees UC-TPRM-06 — Manage secure termination and disposal at relationship end
- UC-TPRM-06 — Manage secure termination and disposal at relationship end mitigates Weak supplier security requirements and monitoring
- strength
- related
- rationale
- Access revocation and verified data return at termination reduce the residual-access breach vector but supply neither the security requirements nor the ongoing monitoring the risk describes, so the effect is contributory.
- UC-TPRM-06 — Manage secure termination and disposal at relationship end maps_to GV.SC-10 — Cybersecurity Supply Chain Risk Management: Cybersecurity supply chain risk management plans include provisions for activities that occur after the conclusion of a partnership or service agreement
- framework
- nist-csf-2
- control_id
- GV.SC-10
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- 2.0
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- UC-TPRM-06 — Manage secure termination and disposal at relationship end mitigates Critical vendor failure, insolvency or concentration
- strength
- related
- rationale
- Data return, access revocation, and service-transition provisions enable clean exit and recovery when a critical vendor fails or exits.
- UC-TPRM-06 — Manage secure termination and disposal at relationship end mitigates Vendor/outsourcing service non-performance and disputes
- strength
- related
- rationale
- Service-transition provisions at termination reduce the switching impact when moving off a non-performing vendor.
- UC-TPRM-06 — Manage secure termination and disposal at relationship end maps_to SR-12 — Component Disposal
- framework
- nist-800-53
- control_id
- SR-12
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- Rev. 5
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- Vendor Offboarding & Secure Termination operates UC-TPRM-06 — Manage secure termination and disposal at relationship end
- Third-Party Vendor Risk Lifecycle oversees UC-TPRM-06 — Manage secure termination and disposal at relationship end