Cyber Security

NIST Cybersecurity Framework 2.0 Published : First Major Update Since Created

The newly updated Cybersecurity Framework (CSF 2.0) offers simplified cybersecurity guidance designed for everyone, from small nonprofits to large corporations.

The Cybersecurity Framework (CSF) underwent a significant overhaul, marking its first major update since its launch in 2014.

CSF 2.0 also emphasizes strong governance, meaning organizations must make informed decisions about their cybersecurity strategy. 

This highlights that cybersecurity is a major business risk, alongside financial and reputational risks.

Following a presidential Executive Order, NIST unveiled the Cybersecurity Framework (CSF) in 2014, designed to aid organizations in handling cybersecurity risk. 

The framework encompasses six fundamental functions: Identify, Protect, Detect, Respond, Recover, and, introduced in CSF 2.0, Govern.

“Developed by working closely with stakeholders and reflecting the most recent cybersecurity challenges and management practices, this update aims to make the framework even more relevant to a wider swath of users in the United States and abroad,” according to Kevin Stine, chief of NIST’s Applied Cybersecurity Division. 

The Cybersecurity Framework (CSF) 2.0 provides a user-friendly catalog of informative references that enable organizations to align their current cybersecurity practices with the CSF.

The catalog is searchable, helps in identifying gaps in cybersecurity measures, and creates a roadmap for improving cybersecurity posture.

This catalog serves as a cross-reference tool for organizations to align the CSF’s cybersecurity guidance with over 50 other related documents.

Among these documents is the SP 800-53 Rev. 5, which provides a comprehensive list of cybersecurity controls that can be utilized to achieve specific security outcomes.

The new CSF 2.0 Reference Tool streamlines the process by allowing users to:

  • Browse, search, and export data
  • Map existing practices to the CSF
  • Access broader guidance

“As users customize the CSF, we hope they will share their examples and successes, because that will allow us to amplify their experiences and help others,” he said.

“That will help organizations, sectors and even entire nations better understand and manage their cybersecurity risk.” Said Kevin Stine, chief of NIST’s Applied Cybersecurity Division.

You can block malware, including Trojans, ransomware, spyware, rootkits, worms, and zero-day exploits, with Perimeter81 malware protection. All are extremely harmful, can wreak havoc, and damage your network.

Stay updated on Cybersecurity news, Whitepapers, and Infographics. Follow us on LinkedIn & Twitter.

Guru Baran

Gurubaran KS is a cybersecurity analyst, and Journalist with a strong focus on emerging threats and digital defense strategies. He is the Co-Founder and Editor-in-Chief of Cyber Security News, where he leads editorial coverage on global cybersecurity developments.

Recent Posts

Hackers Target AI Infrastructure With RCE, Prompt Injection and API Key Theft

Hackers are actively probing AI systems, turning exposed gateways and agent tools into routes for…

4 hours ago

Hackers Make Phishing Pages Change Their Code Every Time Someone Opens Them

Hackers are making some phishing pages harder to track by changing the code delivered to…

4 hours ago

Iran-Linked Hackers Reportedly Knock UK Power Plant Offline for Four Days

A cyber incident reportedly forced a British power plant to halt operations for about four…

5 hours ago

Russian Hackers Use New HOOKEDGE Malware to Spy on European Defense and Diplomatic Targets

Russian hackers have used a new backdoor called HOOKEDGE to target defense manufacturers, government bodies,…

5 hours ago

Ransomware Gang Claims AI Can Analyze 700GB of Stolen Data Every Hour

TITAN ransomware is pairing file encryption with an ambitious claim: artificial intelligence that can sort…

5 hours ago

Hackers Compromise Hundreds of WordPress Sites to Deploy Amatera Stealer via ClickFix

A fake student resume is being used to place a remote-access tool on researchers’ Windows…

7 hours ago