Search references for NIST CYBERSECURITY-FRAMEWORK. Phrases containing NIST CYBERSECURITY-FRAMEWORK
See searches and references containing NIST CYBERSECURITY-FRAMEWORK!NIST CYBERSECURITY-FRAMEWORK
U.S. government-sponsored framework of cybersecurity
The NIST Cybersecurity Framework (also known as NIST CSF), is a set of guidelines designed to help organizations assess and improve their preparedness
NIST_Cybersecurity_Framework
Technology standards and techniques
A 2016 US security framework adoption study reported that 70% of the surveyed organizations use the NIST Cybersecurity Framework as the most popular
Information security standards
Information_security_standards
US federal government guideline
execution; Demonstrate how the NIST Cybersecurity Framework can be aligned with the RMF and implemented through established NIST risk management processes;
Risk_Management_Framework
Measurement standards laboratory in the United States
February 2014, NIST published the NIST Cybersecurity Framework that serves as voluntary guidance for organizations to manage and reduce cybersecurity risk. It
National Institute of Standards and Technology
National_Institute_of_Standards_and_Technology
Protection measures for a system
breach. ts jurisdiction also maps to the NIST Cybersecurity Framework. There are a wide range of frameworks and standards looking at internal business
Security_controls
This is a list of cybersecurity information technologies. Cybersecurity concerns all technologies that store, manipulate, or move computer data, such
List of cybersecurity information technologies
List_of_cybersecurity_information_technologies
Assessment framework and assessor certification program
The Cybersecurity Maturity Model Certification (CMMC) is an assessment framework and assessor certification program designed for a variety of standards
Cybersecurity Maturity Model Certification
Cybersecurity_Maturity_Model_Certification
Information security model based on confidentiality, integrity, and availability
guidance, including the ISO/IEC 27000 family of standards and the NIST Cybersecurity Framework. ISO/IEC 27000 defines information security as the preservation
CIA_triad
Protection of computer systems from information disclosure, theft or damage
Improving Critical Infrastructure Cybersecurity was signed, which prompted the creation of the NIST Cybersecurity Framework. The 2018 cyber strategy called
Computer_security
Although it is not a standard, the NIST Cybersecurity Framework (NIST CSF) provides a high-level taxonomy of cybersecurity outcomes and a methodology to assess
Control_system_security
Field of computer security
(2016-11-30). "NIST Risk Management Framework | CSRC | CSRC". CSRC | NIST. Retrieved 2021-07-23. "Understanding the NIST cybersecurity framework". Federal
Security information and event management
Security_information_and_event_management
U.S. government cybersecurity standard
deployment. CSF (Cybersecurity Framework) and 800-53 covered each others weaknesses with CSF having more of a top-down decision-making process and NIST SP 800-53
NIST_SP_800-53
Process of incorporating security controls into an information system
attacks, ransomware, and phishing. The integration of frameworks such as the NIST Cybersecurity Framework allowed for a more comprehensive approach that has
Security_engineering
Organization in the United Kingdom
NIST Cybersecurity Framework. In 2014, Infosecurity Magazine reported that the ISF had mapped its Standard of Good Practice to the NIST Cybersecurity
Information_Security_Forum
American adviser
American cybersecurity and technology policy expert. He is the former Special Assistant to the President and senior director for cybersecurity on the United
Ari_Schwartz
Information assurance (IA) requirements overview
"NIST Releases Version 2.0 of Landmark Cybersecurity Framework". NIST. 26 February 2024. Retrieved 25 October 2025. "The NIST Cybersecurity Framework (CSF)
Cyber-security_regulation
Topics referred to by the same term
policies. Policy framework or specific frameworks may refer to: Sender Policy Framework Security Policy Framework NIST Cybersecurity Framework National Planning
Policy_framework
Debian-based Linux distribution for penetration testing
suite of tools sorted into categories that correspond to the NIST Cybersecurity Framework. Kali NetHunter, an Android-based penetration testing platform
Kali_Linux
Risk assessment
information risk Gordon–Loeb model ISO/IEC 27001 ISO/IEC 27002 NIST Cybersecurity Framework "New Framework to Help Companies Calculate Risk of Cyberattacks". Archived
Cyber_risk_quantification
IT Certification and Training company
credentials. The CompTIA Security Trustmark+ is based on the NIST Cybersecurity Framework and demonstrates compliance with key industry regulations such
CompTIA
Assessment method
2015. "NIST Cybersecurity Framework Sheet". NIST. 12 November 2013. Retrieved 27 February 2015. "Cyber Resilience Review-NIST Cybersecurity Framework Crosswalk"
Cyber_Resilience_Review
Information security standard
ISO 22301. Frameworks that address information security outside the ISO management system model include the NIST Cybersecurity Framework and the IEC
ISO/IEC_27001
Controls an organization requires for IT security
although less prevalent, as the GDPR, EU NIS directive, and NIST Cybersecurity Framework. Certified Information Systems Security Professional Chief information
Information security management
Information_security_management
Device to be used for medical purposes
set of cybersecurity design controls). The medical device design approach employed should be consistent with the NIST Cybersecurity Framework for managing
Medical_device
Intentional or unintentional release of secure information
(NIST) issued a special publication, "Data Confidentiality: Identifying and Protecting Assets Against Data Breaches". The NIST Cybersecurity Framework
Data_breach
Protecting information by mitigating risk
Internet of Things, and radio-based systems respectively. The NIST Cybersecurity Framework (NIST CSF) is a set of guidelines developed by the U.S. National
Information_security
National Cybersecurity Center of Excellence (NCCoE) is a US government organization that builds and publicly shares solutions to cybersecurity problems
National Cybersecurity Center of Excellence
National_Cybersecurity_Center_of_Excellence
Information system used for organizational decision-making and coordination
Galstyan, Aram (July 13, 2021). "A Survey on Bias and Fairness in Machine Learning". ACM Digital Library. "Cybersecurity Framework". NIST. 2013-11-12.
Management_information_system
International professional association focused on IT
Certificate COBIT Design and Implementation Implementing the NIST Cybersecurity Framework Using COBIT 2019 COBIT Foundation COBIT 5 Certificates Information
ISACA
Systems security model
Institute of Standards and Technology (NIST) and National Cybersecurity Center of Excellence (NCCoE) published NIST SP 800-207 – zero trust architecture
Zero_trust_architecture
National Institute of Standards and Technology’s (NIST) published IR 8270, Introduction to Cybersecurity for Commercial Satellite Operations. This report
Cybersecurity_in_space
Nonprofit organization focused on cybersecurity
mappings to other frameworks such as the National Institute of Standards and Technology (NIST) Cybersecurity Framework (CSF), NIST Special Publication
Center_for_Internet_Security
Infrastructure important to national security
or safety, or any combination of those matters." In 2014 the NIST Cybersecurity Framework was published, and quickly became a popular set of guidelines
Critical_infrastructure
Communication between devices
secretary. In May 2014, the committee published the MQTT and NIST Cybersecurity Framework Version 1.0 committee note to provide guidance for organizations
Machine_to_machine
Framework created by ISACA for information technology (IT) management and IT governance
Foundations, COBIT Design & Implementation, and Implementing the NIST Cybersecurity Framework Using COBIT 2019) as well as certification in the previous version
COBIT
expanded export controls on AI technology, and NIST published an updated set of guidances on AI cybersecurity risks. In March 2025, OpenAI made a policy proposal
Regulation of artificial intelligence in the United States
Regulation_of_artificial_intelligence_in_the_United_States
National security institution
program of "Critical Infrastructure Protection". In 2014 the NIST Cybersecurity Framework was published after further presidential directives. The U.S
U.S. critical infrastructure protection
U.S._critical_infrastructure_protection
Continuous Threat Exposure Management (CTEM) is a cybersecurity framework for continuously identifying, assessing, and remediating security weaknesses
Continuous Threat Exposure Management
Continuous_Threat_Exposure_Management
American not-for-profit corporation
Standards and Technology (NIST) for a research center dedicated to cybersecurity. MITRE will support NIST's work "related to cybersecurity solutions composed
Mitre_Corporation
Authorized cyberattack for testing purposes
support risk assessments as outlined in the NIST Risk Management Framework SP 800-53. Several standard frameworks and methodologies exist for conducting penetration
Penetration_test
Information security standard
Security Forum ISO/IEC JTC 1/SC 27 – IT Security techniques NIST Cybersecurity Framework Cyber Risk Quantification "ISO27k timeline". ISO27001security
ISO/IEC_27002
US business award
based at and managed by the National Institute of Standards and Technology (NIST), an agency of the U.S. Department of Commerce. The Baldrige Performance
Malcolm Baldrige National Quality Award
Malcolm_Baldrige_National_Quality_Award
American technology company
Common Security Framework, AICPA Trust Services Criteria, and the National Institute of Standards and Technology (NIST) Cybersecurity Framework. The company
Tebra
Group of reports produced in an audit
Internal Control – Integrated Framework (COSO Framework). In addition, the Trust Services Criteria can be mapped to NIST SP 800 – 53 criteria and to EU
System and organization controls
System_and_organization_controls
Tools used to make software
"Internet of Things Cybersecurity Improvement Act of 2017." US President Joe Biden’s Executive Order 14028 on Improving the Nation’s Cybersecurity of May 12, 2021
Software_supply_chain
Topics referred to by the same term
Fellowship, Protestant organization Curriculum and Standards Framework NIST Cybersecurity Framework CONMEBOL or CSF (Confederación Sudamericana de Fútbol) CSF
CSF
Systems engineering and cybersecurity firm
and cybersecurity. The company's offerings are primarily related to IT security program management, but also include NIST Risk Management Framework and
Sentek_Global
Data that is useful in detecting or predicting cyberattacks
Cyber threat intelligence (CTI) is a part of cybersecurity that focuses on collecting, analyzing, and sharing information about potential or existing
Cyber_threat_intelligence
"Publications". NIST. "TIME100 AI 2023: Elham Tabassi". Time. 2023-09-07. Retrieved 2023-10-09. Trader, Tiffany (2021-08-05). "Careers in Cybersecurity Featured
Elham_Tabassi
Cybersecurity term
In cybersecurity and risk assessment, a threat actor (or threat agents, attackers, or adversaries) is a person, group, organisation, state, or other entity
Threat_actor
Supply Chain". NIST.Gov cybersecurity industry resources. The Open Group. Retrieved 24 September 2015. "Cybersecurity Framework". NIST.Gov. 12 November
Open Trusted Technology Provider Standard
Open_Trusted_Technology_Provider_Standard
Consumer information access Building the cybersecurity workforce Building a secure governmental cybersecurity framework Keeping interconnectivity open, fair
Commission on Enhancing National Cybersecurity
Commission_on_Enhancing_National_Cybersecurity
Any risk related to information technology
(2013-11-12). "Cybersecurity Framework". NIST. Retrieved 2017-10-07. Arnold, Rob. "A 10 Minute Guide to the NIST Cybersecurity Framework". Threat Sketch
IT_risk
Cybersecurity method
Access Management (PAM) is a type of identity management and branch of cybersecurity that focuses on the control, monitoring, and protection of privileged
Privileged_access_management
hygiene tools such as the CIS "20 Critical Security Controls" or NIST's Cybersecurity Framework. Provide resources, training and information-sharing to election
Election_security
United States federal law
federal agency in those branches. This framework is further defined by the standards and guidelines developed by NIST. FISMA requires that agencies have an
Federal Information Security Management Act of 2002
Federal_Information_Security_Management_Act_of_2002
Projected date when quantum computers could break modern encryption
Public-key cryptography NIST Post-Quantum Cryptography Standardization Fortinet (2025). "What Is Q Day? The Quantum Threat To Cybersecurity". Retrieved 15 April
Quantum_Threat
Computer security process
aligns with the National Institute of Standards and Technology (NIST) Risk Management Framework (RMF). DIACAP resulted from an NSA directed shift in underlying
Department of Defense Information Assurance Certification and Accreditation Process
Department_of_Defense_Information_Assurance_Certification_and_Accreditation_Process
Software engineering approach
Standards and Technology (NIST) in the United States promotes SbD through SP 800-160 and SP 800-53 (security controls). The Cybersecurity and Infrastructure
Secure_by_design
Information that identifies a person
foundational framework for organizations to adopt and implement effective measures in safeguarding individuals' personal information. — NIST, NIST Privacy
Personal_data
Cryptography secured against quantum computers
Technology (NIST) released final versions of its first three Post-Quantum Cryptography Standards. Digital infrastructures require robust cybersecurity. Cryptographic
Post-quantum_cryptography
Cyberattack via an industry's supply chain
Improving the nation's cybersecurity, tasked NIST as well as other US government agencies with enhancing the cybersecurity of the United States. On
Supply_chain_attack
Approach to restricting system access to authorized users
2020-09-23. p. 25. doi:10.6028/nist.sp.800-53r5. Retrieved 1 July 2026. Edwards, Jason (2025-03-20). The Cybersecurity Control Playbook: From Fundamentals
Role-based_access_control
Text used for user authentication to prove identity
long been seen as annoying and ineffective by both users and cybersecurity experts. The NIST recommends people use longer phrases as passwords (and advises
Password
Engineering Institute, Carnegie Mellon University. 30 April 2010. NIST Cybersecurity Framework CERT Resilience Management Model SEI Webinar Series; Lessons
External dependencies management assessment
External_dependencies_management_assessment
Concept in information security
Gary C.; Craiger, Philip; Haass, Jon C. (2018). "A Taxonomy Framework for Maritime Cybersecurity: A Demonstration Using the Automatic Identification System"
Parkerian_Hexad
Type of malware
Technology (NIST). Retrieved March 6, 2025. ENISA Threat Landscape for Mobile Malware (Report). European Union Agency for Cybersecurity (ENISA). Retrieved
Trojan_horse_(computing)
American chemist and government official
Service, Robert (September 18, 2017). "Cybersecurity and technology transfer seen as top priorities for NIST director nominee". Science Magazine. Retrieved
Walter_Copan
Israeli Cyber Security (born 1966)
security strategy and its implementation, cybersecurity capacity building, the transformation of cybersecurity into an economic growth engine, and the establishment
Eviatar_Matania
Press release. NIST. January 19, 2011. Retrieved November 10, 2013. "Michael Daniel: Special Assistant to the President and Cybersecurity Coordinator".
National Strategy for Trusted Identities in Cyberspace
National_Strategy_for_Trusted_Identities_in_Cyberspace
Cybersecurity concept
Systems: A Systems Security Engineering Approach" (PDF). NIST Special Publication. 2 – via NIST. Hausken, Kjell (2020-09-01). "Cyber resilience in firms
Cyber_resilience
American technology company
supports the National Institute of Standards and Technology Cybersecurity Framework (NIST CSF), which allows users to better manage content-based risks
Kiteworks
Type of crime based in computer networks
NIST, was the NIST Small Business Cybersecurity Act, which came out in 2018, and provides guidelines to small businesses to ensure that cybersecurity
Cybercrime
Cybercrime prevention method
official bodies, including ENISA and NIST, as part of a comprehensive approach to improving organizational cybersecurity. Such campaigns need to be authorised
Simulated_phishing
Access control document
In cybersecurity, a remote access policy is a document that specifies the security requirements and conditions under which remote (off‑site) connections
Remote_access_policy
Catalog of software weaknesses and vulnerabilities
Bojanova, Irena (2014). "Bugs Framework (BF): Formalizing Software Security Weaknesses and Vulnerabilities". samate.nist.gov. "CWE - CWE-121: Stack-based
Common_Weakness_Enumeration
Computer scientist
at the Naval Postgraduate School, NIST. He has published more than 100 research papers in the area of cybersecurity. He was also part of the team that
Duminda_Wijesekera
Canadian cryptographer (born c. 1970)
Kashyap, Anand. "The State Of Cybersecurity (Part Three): Assessing The Risk". Forbes. Retrieved 2025-04-09. "Cybersecurity in an Era with Quantum Computers:
Michele_Mosca
Explicit study to locate security vulnerabilities
catalogues such as ISO/IEC 27002 and NIST SP 800-53. Assessments sit within the NIST Risk Management Framework alongside control selection, implementation
Information technology security assessment
Information_technology_security_assessment
Process of ensuring reliability and security
"NICE Cybersecurity Workforce Framework". NIST. National Institute of Standards and Technology. November 13, 2019. "Software Assurance". NIST. National
Software_assurance
Bluetooth security vulnerabilities
been assigned a CVE, were discovered and named by researchers at the cybersecurity company PCA Cyber Security (formerly PCAutomotive) and disclosed publicly
PerfektBlue
can refer to a defensive strategy in the military or cybersecurity arena. In the cybersecurity arena, active defense may mean "asymmetric defenses,"
Active_defense
Computer security technique
2008). "Technical Guide to Information Security Testing and Assessment (NIST SP 800-115)" (PDF). National Institute of Standards and Technology. U.S.
Automated_penetration_testing
Autonomous artificial intelligence agent
Robotic process automation Software agent "AI Agent Standards Initiative". NIST. Retrieved May 5, 2026. "What Are AI Agents?". IBM. Retrieved May 5, 2026
AI_agent
Organizational executive role
related to cybersecurity. This includes identifying and prioritizing cybersecurity investments, developing cost-effective strategies for cybersecurity, and
Chief information security officer
Chief_information_security_officer
Set of rules of a computer network website
legal frameworks, including data protection regulations (e.g., the General Data Protection Regulation in the European Union) and national cybersecurity standards
Acceptable_use_policy
American presidential directive
Technology (NIST) to develop a generative artificial intelligence-focused resource to supplement the existing AI Risk Management Framework. The executive
Executive_Order_14110
Category of computer technology
(Report). National Institute of Standards and Technology. doi:10.6028/NIST.SP.800-82r3. NIST SP 800-82 Rev. 3. Langner, Ralph (2011). "Stuxnet: Dissecting a
Operational_technology
Homeland Security US-CERT "The National Initiative for Cybersecurity Education (NICE)". csrc.nist.gov. Retrieved 2017-03-06. "National Centers of Academic
Master of Science in Cyber Security
Master_of_Science_in_Cyber_Security
Identity assurance in IT systems
the National Institute of Standards and Technology (NIST), through the National Cybersecurity Center of Excellence, has published a building block white
Federated_identity
Framework to reduce the risk of cyber threats
ransomware takedown "An Operational Collaboration Framework for Cybersecurity". The Aspen Institute Cybersecurity Group. November 2018. "Cyberspace Solarium
Operational_Collaboration
Application for storing and managing passwords
user's current one. Current National Institute of Standards and Technology (NIST) guidance requires services that verify passwords to permit password managers
Password_manager
Computer security mechanism
(2023-07-31). "What Is a Honeypot in Cybersecurity? Types, Implementation, and Real-World Applications". Cybersecurity Exchange. Retrieved 2023-12-05. Edwards
Honeypot_(computing)
Type of risk an organization is willing to pursue
(Dec 2018). "SP 800-37 Rev. 2: Risk Management Framework for Information Systems and Organizations". NIST Information Technology Laboratory. p. 33. Retrieved
Risk_appetite
American public policy executive
2023-06-11. "NIST Privacy Framework: Preliminary Draft Comments (84 FR 47255)" (PDF). Archived from the original (PDF) on 2020-12-13. "Cybersecurity: Emerging
Heather_Hogsett
Aspect of information systems engineering
privacy engineering given by National Institute of Standards and Technology (NIST) is: Focuses on providing guidance that can be used to decrease privacy risks
Privacy_engineering
ISO/PAS 28000 NIST Trustworthy computing Mayounga, Andre (May 2017). Cyber-Supply Chain Visibility: A Grounded Theory of Cybersecurity with Supply Chain
Digital_supply_chain_security
Artificial intelligence field of study
Institute of Standards and Technology (2021-07-12). "AI Risk Management Framework". NIST. Archived from the original on 2022-11-24. Retrieved 2022-11-24. Richardson
AI_safety
Finding flaws in the security of information systems
detection, vulnerability scanning, and penetration testing on defined schedules. NIST defines security testing requirements for federal information systems. National
Security_testing
Alternative location where an organization can relocate after a disaster
Off-site Data Protection Backup nvlpubs.nist.gov https://web.archive.org/web/20250923174229/https://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-34r1
Backup_site
NIST CYBERSECURITY-FRAMEWORK
NIST CYBERSECURITY-FRAMEWORK
NIST CYBERSECURITY-FRAMEWORK
NIST CYBERSECURITY-FRAMEWORK
NIST CYBERSECURITY-FRAMEWORK
NIST CYBERSECURITY-FRAMEWORK
NIST CYBERSECURITY-FRAMEWORK
NIST CYBERSECURITY-FRAMEWORK
NIST CYBERSECURITY-FRAMEWORK