background

Supplier Performance Risk System (SPRS)

The Supplier Performance Risk System (SPRS) is the Department of Defense's (DoD) official database for collecting and managing supplier performance and risk data.

  • glossaryangle-right
  • What is the Supplier Performance Risk System (SPRS)?

What is the Supplier Performance Risk System (SPRS)?

The Supplier Performance Risk System (SPRS) is the Department of Defense's (DoD) official database for collecting and managing supplier performance and risk data. It contains critical information, including:

  • Supplier risk assessments and scores
  • Supplier performance data, including on-time delivery scores
  • Cyber reports, including CMMC and NIST SP 800-171 self-assessment results

Organizations seeking CMMC Level 1 and non-critical Level 2 compliance must submit their CMMC self-assessment scores and an affirmation of continuous compliance to the SPRS as part of the certification process. The system helps the DoD evaluate contractors' cybersecurity readiness before awarding contracts that involve Controlled Unclassified Information (CUI).