The NIST-CSF: Cybersecurity Framework (CSF) Playbook enables organizations – regardless of size, degree of cybersecurity risk, or cybersecurity sophistication – to apply the principles and best practices of risk management to improving security and resilience.
An organization without an existing cybersecurity program can use the Framework as a reference to establish one.
The NIST CSF Playbook is a risk-based Framework based on International Standards and consists of:
- 5 Functions (Identify, Protect, Detect, Respond, Recover)
- 23 Categories (subdivisions of a Function into groups of cybersecurity outcomes)
- 108 Subcategories (supporting achievement of the outcomes in each Category)
- Informative References:
- NIST SP 800-53
- ISO/IEC 27001:2013
- COBIT 5
- CIS CSC
- ISA 62443