NIST Cybersecurity Framework
Authors/Creators
Description
The NIST Cybersecurity Framework (NIST CSF) is a voluntary approach to dealing with cyber threats in an organization. The framework is developed by the National Institute of Standards and Technology and it is designed to provide organizations with a structured method and enhance their security priorities. The framework is used across the public and private sectors in various areas such as finance, the government, health care, and critical infrastructure. This essay takes an in-depth look into the NIST Cybersecurity Framework, including its different components, leadership and implementation strategies, merits and demerits, and the framework contributing to cyber awareness.
Files
JSAER2023-10-8-150-157.pdf
Files
(355.4 kB)
| Name | Size | Download all |
|---|---|---|
|
md5:a7febbd6fbb022a0a71ffbd97cdb4a17
|
355.4 kB | Preview Download |
Additional details
References
- [1]. M. Frayssinet Delgado, D. Esenarro, F. F. Juárez Regalado, and M. Díaz Reátegui, "Methodology based on the NIST cybersecurity framework as a proposal for cybersecurity management in government organizations," 3C TIC: Cuadernos de desarrollo aplicados a las TIC, vol. 10, no. 2, pp. 123–141, Jun. 2021, doi: https://doi.org/10.17993/3ctic.2021.102.123-141.
- [2]. G. B. White and N. Sjelin, "The NIST Cybersecurity Framework," Research Anthology on Business Aspects of Cybersecurity, 2022. https://www.igi-global.com/chapter/the-nist-cybersecurity-framework/288672
- [3]. M. F. Safitra, M. Lubis, and H. Fakhrurroja, "Counterattacking Cyber Threats: A Framework for the Future of Cybersecurity," Sustainability, vol. 15, no. 18, p. 13369, Jan. 2023.
- [4]. K. Thakur, M. Qiu, K. Gai, and M. L. Ali, "An Investigation on Cyber Security Threats and Security Models," IEEE Xplore, 2019. https://ieeexplore.ieee.org/abstract/document/7371499
- [5]. "Public Draft: The NIST Cybersecurity Framework 2.0 National Institute of Standards and Technology Note to Reviewers," Aug. 2023. Available: https://nvlpubs.nist.gov/nistpubs/CSWP/NIST.CSWP.29.ipd.pdf?ref=zimmergren.net&utm_campaign=zimmergren&utm_medium=blog&utm_source=zimmergren
- [6]. H. Taherdoost, "Understanding Cybersecurity Frameworks and Information Security Standards—A Review and Comprehensive Overview," Electronics, vol. 11, no. 14, p. 2181, Jul. 2022, doi: https://doi.org/10.3390/electronics11142181.
- [7]. I. Lee, "Cybersecurity: Risk management framework and investment cost analysis," Business Horizons, vol. 64, no. 5, Feb. 2021, Available: https://www.sciencedirect.com/science/article/pii/S0007681321000240
- [8]. R. Kwon, T. Ashley, J. Castleberry, P. Mckenzie, and S. N. Gupta Gourisetti, "Cyber Threat Dictionary Using MITRE ATT amp;CK Matrix and NIST Cybersecurity Framework Mapping," IEEE Xplore, Oct. 01, 2020. https://ieeexplore.ieee.org/abstract/document/9241271
- [9]. M. Barrett et al., "Approaches for Federal Agencies to Use the Cybersecurity Framework," Aug. 2021, doi: https://doi.org/10.6028/nist.ir.8170-upd.
- [10]. U. Saritac, X. Liu, and R. Wang, "Assessment of Cybersecurity Framework in Critical Infrastructures," IEEE Xplore, Feb. 01, 2022. https://ieeexplore.ieee.org/abstract/document/9753250/