The NIST Cybersecurity Framework

From the NIST article, it described different ways how The Framework could be implemented into an organization. The biggest benefit that I thought would be useful for organizations would be that they could use the framework to evaluate where they may need improvement within their company from using the tier system. The tier system was intriguing since companies could assess where they were in a specific category from the different tiers, and if there was anything that they could do to evolve then they could implement strategies to do so. I found this to be crucial since one company could have strengths in risk management process but maybe are struggling with external participation; so, they could use that to help them improve in that category and be more secure as a company. If I had a business, I would use this framework to evaluate how the company is doing; personally because I think that there is always room for improvement. Maybe the guidelines or standards that were set by the time I would get to the company were outdated, so if that is the case then it would be a good introduction to try a different approach.

Leave a Reply

Your email address will not be published. Required fields are marked *