Maverick* Research: Living in a World Without Trust: When IT's Supply Chain Integrity and Online Infrastructure Get Pwned

Archived Published: 05 October 2012 ID: G00238476

Analyst(s): |

Not a Gartner Client?

Want more research like this?
Learn the benefits of becoming a Gartner client.

contact us online


Enterprise IT supply chains will be targeted and compromised, forcing changes in the structure of the IT marketplace and how IT will be managed moving forward. (Maverick research deliberately exposes unconventional thinking, and may not agree with Gartner's official positions.)

Table of Contents

  • Analysis
    • *Maverick Research
    • Supply Chain Integrity Is Increasingly Relevant to Enterprise IT
    • Supply Chain Integrity Is Not New, but Problems Are Increasing
    • Why IT Supply Chain Integrity Is Becoming a Critical Issue Now: Motivational Changes
    • Why IT Supply Chain Integrity Is Becoming a Critical Issue Now: Technical Changes
    • The Result: Unmanageable Complexity, Unmanageable Risk
    • Insights and Recommendations From Recent IT Supply Chain Issues
      • Incident No. 1: Counterfeit Cisco Routers in the Supply Chain
      • Incident No. 2: Huawei Banned From Western Government Deals
      • Incident No. 3: Stuxnet Cyberwarfare Attack on Iranian Nuclear Infrastructure
      • Incident No. 4: Flame Disclosed as Reconnaissance Element of Stuxnet
      • Incident No. 5: ZTE Phone Backdoor
      • Incident No. 6: 2012 Backdoor in Chinese-Manufactured FPGAs
    • Other Examples of Potential IT Supply Chain Integrity Compromises
      • Recommendations
    • Absolute Trust in IT Supply Chains Is Naive: Adopt Mistrust as a Guiding Principle
    • Rebuilding Trust in the IT Supply Chain: Maverick Implications
    • Changes in Mindset for Enterprise IT
    • Trust Resiliency
    • Bottom Line
  • Recommended Reading
© 2012 Gartner, Inc. and/or its Affiliates. All Rights Reserved. Reproduction and distribution of this publication in any form without prior written permission is forbidden. The information contained herein has been obtained from sources believed to be reliable. Gartner disclaims all warranties as to the accuracy, completeness or adequacy of such information. Although Gartners research may discuss legal issues related to the information technology business, Gartner does not provide legal advice or services and its research should not be construed or used as such. Gartner shall have no liability for errors, omissions or inadequacies in the information contained herein or for interpretations thereof. The opinions expressed herein are subject to change without notice.

Free Research

Discover what 12,000 CIOs and Senior IT leaders already know.

Free Access

Why Gartner

Gartner delivers the technology-related insight you need to make the right decisions, every day.

Find out more

Call +1 855-515-4486 or contact us

to become a Gartner client.