Procurement Standards
- James W.
- 3 days ago
- 1 min read

LinkedIn Post 6: Procurement Standards
When your procurement team selects the next HVAC controller or access system, do they ask about PSTI compliance?
Most FM procurement teams don't. They ask about cost, functionality, and vendor relationships.
They should also ask:
How are default credentials changed during commissioning?
What's the security update mechanism and timeline?
How long will the vendor support this device?
What's the vulnerability disclosure contact?
Build these questions into your RFP template. Score vendors on security alongside functionality and cost. Include security terms in your contracts.
The best time to ensure PSTI compliance is at procurement, not after you've installed a non-compliant device.

Comments