Certification · Last verified
SCS 9001
SCS 9001 is TIA's certifiable cyber and supply chain security standard for the ICT industry, with optional benchmarking across supply chains. A single accreditation body, ANAB, accredits the certification bodies that audit against it, and a certified organization holds the certificate for three years with annual surveillance audits.
- Class
- Certification
- Owner
- Telecommunications Industry Association (TIA)
- Last verified
What it is
TIA describes SCS 9001 as "the first cyber and supply chain security standard developed for the specific needs of the ICT industry. SCS 9001 is a certifiable, process-based standard with optional benchmarking to improve network security and especially security across ICT supply chains." The current version is Release 2 (R2).
The owner's registration page states that a new registration record "is private and visible only to TIA, the certifying organization, it's selected CB, and the AB that accredited the CB. The record becomes publicly viewable upon successful completion of the subsequent audit and award of the SCS 9001 certificate."
TIA states the standard applies to "anyone participating in the ICT industry" — including telecom and cable operators, cloud platforms, data centers, satellite and IoT.
Who owns it
SCS 9001 is owned by the Telecommunications Industry Association (TIA), through its QuEST Forum arm.
Who assesses it
Accredited certification bodies audit against the standard. The owner's page names ANAB (ANSI-ASQ National Accreditation Board) as the accreditation body, and lists DNV, DQS, NQA, Schullman and TuV AM as certification bodies.
Validity
3 years, with annual surveillance audits
Sources
- TIA — SCS 9001 (scheme owner) ↗ — accessed
- TIA — SCS 9001 registration ↗ — accessed
Last verified:
This page is for information only; it does not accredit, certify or endorse any organisation. Requirements and programs change — always confirm against the primary source linked above.