Discussion Board: The NIST Cybersecurity Framework

From your readings of pages 1 – 21 of the NIST Cybersecurity Framework Links to an external site., what benefit can organizations gain from using this framework, and how would you use it at your future workplace?

Response:

The NIST framework has a fair amount of aspects that could be used in organizations and future use at personal workspaces. One key benefit is improved risk management. This helps assess and manage cybersecurity risks more effectively. The framework also consists of key points of enhanced communication by providing common languages and structure that is free of use to anyone whether it is board members, management, or on-the-floor employees. The final key point is that it is continuously growing its improving every day with new cybersecurity tactics. In future tense, using this at workspaces would be key and ideal as it has a great common ground on options you can bring to the table at organizations. This framework is so far a great piece of work to indulge in and learn from.

Other students responses:

  1. The NIST Cybersecurity Framework offers organizations a critical response in preventing any cybersecurity breakthroughs. It helps organizations secure their infrastructure and enables a long term risk management. Not only does the framework help set up a secure network but it also helps them be able to respond to cybersecurity threats and incidents in an effective manner. The framework covers all basis from preventative measures to post recover measures in response to cybersecurity incidents, this is able to help organizations have a guideline of how to handle incidents and how to prevent any in the first place.  If going into a cybersecurity field, the NIST framework can be a crucial way to me and other employees to keep our systems and organization safe. To use this framework comes a lot of planning and knowing specifically what your organization and workplace would need. It would greatly be useful to know exactly what the organization you work for needs to improve on and what they need to secure their specific infrastructure. It is a risk management tool and in my future workplace that is how I would use it. To know exactly what is best needed and needs to be done in order to secure the organizations cybersecurity network. 
  2. After reading NIST Cybersecurity Framework, I learned the many benefits that organizations can gain by using it. One of those main benefits being that any organization can benefit from using this framework structure no matter what the organization is, the size of the organization or the level of cybersecurity threats-it is a necessity! The framework is intended to be customized to the organization’s specific needs and to be used in addition to what the already have implemented. The good thing about it is that the framework can be modified at any time and serves as a guide of potential risks, systematic processes, resources and resolutions on cybersecurity threats. I would use this framework at my future workplace because having a game plan on cybersecurity is a necessity, as stated before. We never know what could happen and when it could happen but I can have a framework that prepares me and in the case where I don’t feel this framework is serving its purpose I can modify it and prioritize what is important and keep making those necessary changes each time so that it is beneficial. I think this is critical for every organization and having a clear understanding. As referenced in the article, an organization can use its current process and compare it to the framework to determine what gaps there are with their current cybersecurity approach and make improvements from that.