NIST Cyber Security Framework Functions Explored
Last week we went through a brief overview of the primary functions of the cybersecurity framework. This week we'll dive a bit deeper into the identify and protect functions. The activities and the identify function are really foundational for effectively utilizing the cybersecurity framework as a whole. It's critical to understand the business context, the resources that support critical business functions and the related cybersecurity risks that allow a business or organization to focus on and prioritize its efforts consistent with its risk management strategy and business needs. Some examples of outcome categories within this function include asset management, business, environment, governance, risk assessment and risk management strategy.