The NIST Framework offers a general understanding/guidelines to follow for all Businesses, Companies, and the Government. These guidelines can be customized to be exactly what jobs need to effectively defend and set strict measures to not allow for any hackers to get through. Jobs using this framework are minimizing the amount of cyber attacks that are messing with their work. Organizations gain the importance of supply risk management by using strategies to manage extreme and everyday risks on a day to day basis. This framework also allows us to understand that there are vulnerabilities and everyone trying to access the different data in the organization has a responsibility to take the precautions needed. Lastly it establishes the ways of detecting, responding, and recovering. Detecting in a timely manner of an cyber crime event and identifying exactly what it is that is happening. Responding by taking the next step after detecting and taking action with the right response that is effective. Finally, recovering post-intrusion, restore any services that were messed with and planning for better improvements that don’t allow for a further attack down the road of the same manner.
At a future workplace, I would use these exact guidelines to make sure things go as planned even when sometimes they might not. For example, we might have all of the previsions set in place but a hacking event might still arise and the wrong response might be used. This is the part where we go back and further learn about what the correct response should’ve been. Improving is what this framework is all about, when you have weak spots you are able to go back over and grow in those areas. Having this information and response when it comes to a cyber event, having the frame work and using it effectively not only myself but the other associates with me, will enable growth throughout the organization. Realizing that their improvements means we need validation that cyber security specs match the specific needs the organization really needs. This means for casual reassessments that make sure the requirements of the organization are still being met. Constantly covering the gaps and prioritizing them creates a stronger profile throughout.