IT service providers are unhappy with proposed changes to procurement rules that would require them to allow government agencies full access to their systems in the event of a security incident.
The proposed rules include reporting incidents within eight hours, maintaining a software bill of materials, and providing full access to IT systems and personnel after an incident.