The full model is on the left tab: the Provider is responsible for security and reliant on its suppliers, across four phases from scoping to resilience. Click any action to see where it sits in the regulatory framework and to record your own position against it.
Tier 1 operators cascade their Telecommunications (Security) Act requirements to suppliers one by one, so smaller suppliers face the prospect of multiple, inconsistent interpretations of what they must do to keep supplying.[5] The right tab turns your position into a single, sourced attestation, scaled to your size and role, that any Tier 1 can accept.
Model structure: Business Secure, third-party supplier shared responsibility model (supplied by member). Actions reproduced as given; framework mapping and citations added.
This sets which actions apply, scales the model on the other tab, and frames the attestation.