Search for an article

Select a plan

Choose a plan from below, subscribe, and get access to our exclusive articles!

Monthly plan

$
13
$
0
billed monthly

Yearly plan

$
100
$
0
billed yearly

All plans include

  • Donec sagittis elementum
  • Cras tempor massa
  • Mauris eget nulla ut
  • Maecenas nec mollis
  • Donec feugiat rhoncus
  • Sed tristique laoreet
  • Fusce luctus quis urna
  • In eu nulla vehicula
  • Duis eu luctus metus
  • Maecenas consectetur
  • Vivamus mauris purus
  • Aenean neque ipsum
Customize Consent Preferences

We use cookies to help you navigate efficiently and perform certain functions. You will find detailed information about all cookies under each consent category below.

The cookies that are categorized as "Necessary" are stored on your browser as they are essential for enabling the basic functionalities of the site. ... 

Always Active

Necessary cookies are required to enable the basic features of this site, such as providing secure log-in or adjusting your consent preferences. These cookies do not store any personally identifiable data.

No cookies to display.

Functional cookies help perform certain functionalities like sharing the content of the website on social media platforms, collecting feedback, and other third-party features.

No cookies to display.

Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics such as the number of visitors, bounce rate, traffic source, etc.

No cookies to display.

Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.

No cookies to display.

Advertisement cookies are used to provide visitors with customized advertisements based on the pages you visited previously and to analyze the effectiveness of the ad campaigns.

No cookies to display.

HomeCII/OTThe Governance Function of NIST CSF 2.0

The Governance Function of NIST CSF 2.0

Published on

spot_img

Cybersecurity leaders are constantly searching for new tools and strategies to combat the ever-evolving landscape of digital threats. Despite being responsible for protecting digital assets, Chief Information Security Officers (CISOs) have long faced a major gap in their management capabilities: a lack of oversight of their entire operations, preventing them from seeing the big picture while quickly identifying critical issues.

The initial version of the National Institute of Standards and Technology’s Cybersecurity Framework was created in 2014 in response to a presidential executive order aimed at helping critical infrastructure organizations mitigate cybersecurity risks. This framework was expanded in the Cybersecurity Framework 2.0 to include a new function called Govern, acknowledging the importance of effective management in the CISO role.

The Govern function provides CISOs with a more comprehensive approach to management, bridging the gap in their ability to address key questions and concerns proactively. Without this function, CISOs often struggle to assess policy enforcement, measure progress, or determine the impact of their investments on overall performance.

For example, evaluating readiness against specific threats and monitoring policy enforcement often relies on reactive approaches driven by rumors rather than concrete data. This lack of continuous visibility into performance metrics and controls hinders decision-making and strategic planning.

The Govern function aims to empower CISOs by promoting transparency, visibility, automation, and simplification. By providing insights into the implementation status of controls, automating metrics systems, translating technical data into understandable terms for executives, and enabling real-time monitoring of performance, CISOs can better govern, manage, and measure their cybersecurity operations.

In essence, the Govern function of the NIST CSF 2.0 signifies a shift towards proactive and informed leadership in cybersecurity management. With this new framework, CISOs can gain a sixth sense for overseeing their operations, making data-driven decisions, and enhancing their cybersecurity measures in a more efficient and effective manner. This new era of management will enable CISOs to navigate the complex digital landscape with confidence and agility, staying one step ahead of evolving threats and risks.

Source link

Latest articles

Lazarus Hackers Utilizing IIS Servers for ASP-based Web Shell Deployment

The recent cybersecurity landscape has been shaken by the emergence of sophisticated attacks carried...

Threat Actor Poses as Booking.com in Phishing Scam

The technology giant, Microsoft, recently disclosed a complex cyberattack campaign that utilizes a clever...

Insurer notifies 335,500 customers, agents, others of hack

New Era Life Insurance Companies, a Texas-based insurance firm, has recently announced that it...

Nationwide Cyber Security Review Sees Historic Participation and Positive Outcomes

In the ongoing battle to protect our nation’s state, local, tribal, and territorial (SLTT)...

More like this

Lazarus Hackers Utilizing IIS Servers for ASP-based Web Shell Deployment

The recent cybersecurity landscape has been shaken by the emergence of sophisticated attacks carried...

Threat Actor Poses as Booking.com in Phishing Scam

The technology giant, Microsoft, recently disclosed a complex cyberattack campaign that utilizes a clever...

Insurer notifies 335,500 customers, agents, others of hack

New Era Life Insurance Companies, a Texas-based insurance firm, has recently announced that it...