https://www.channelfutures.com/wp-content/themes/channelfutures_child/assets/images/logo/footer-new-logo.png
  • Home
  • Technologies
    • Back
    • SDN/SD-WAN
    • Cloud
    • RMM/PSA
    • Security
    • Telephony/UC/Collaboration
    • Cable
    • Mobility & Wireless
    • Fiber/Ethernet
    • Data Centers
    • Backup & Disaster Recovery
    • IoT
    • Desktop
    • Artificial Intelligence
    • Analytics
  • Strategy
    • Back
    • Mergers and Acquisitions
    • Channel Research
    • Business Models
    • Distribution
    • Technology Solutions Brokerages
    • Sales & Marketing
    • Best Practices
    • Vertical Markets
    • Regulation & Compliance
    • Diversity, Equity & Inclusion
  • MSP 501
    • Back
    • 2022 MSP 501 Rankings
    • MSP 501 Information Center
  • Intelligence
    • Back
    • Galleries
    • Podcasts
    • From the Industry
    • Reports/Digital Issues
    • Webinars
    • White Papers
  • Channel Futures TV
  • EMEA
  • Channel Chatter
    • Back
    • People on the Move
    • New/Changing Channel Programs
    • New Products & Services
    • Industry Honors
  • Resources
    • Back
    • Advisory Boards
    • Industry Organizations
    • Our Sponsors
    • Advertise
    • 2022 Editorial Calendar
  • Awards
    • Back
    • 2022 MSP 501
    • Channel Influencers
    • Circle of Excellence
    • DE&I 101
    • Channel Partners 101 (CP 101)
  • Events
    • Back
    • CP Conference & Expo
    • MSP Summit
    • Channel Partners Europe
    • Channel Partners Event Coverage
    • Webinars
    • Industry Events
  • About Us
  • DE&I
Channel Futures
  • NEWSLETTER
  • Home
  • Technologies
    • Back
    • SDN/SD-WAN
    • Cloud
    • RMM/PSA
    • Security
    • Telephony/UC/Collaboration
    • Cable
    • Mobility & Wireless
    • Fiber/Ethernet
    • Data Centers
    • Backup & Disaster Recovery
    • IoT
    • Desktop
    • Artificial Intelligence
    • Analytics
  • Strategy
    • Back
    • Mergers and Acquisitions
    • Channel Research
    • Business Models
    • Distribution
    • Technology Solutions Brokerages
    • Sales & Marketing
    • Best Practices
    • Vertical Markets
    • Regulation & Compliance
    • Diversity, Equity & Inclusion
  • MSP 501
    • Back
    • 2022 MSP 501 Rankings
    • MSP 501 Information Center
  • Intelligence
    • Back
    • Galleries
    • Podcasts
    • From the Industry
    • Reports/Digital Issues
    • Webinars
    • White Papers
  • Channel Futures TV
  • EMEA
  • Channel Chatter
    • Back
    • People on the Move
    • New/Changing Channel Programs
    • New Products & Services
    • Industry Honors
  • Resources
    • Back
    • Advisory Boards
    • Industry Organizations
    • Our Sponsors
    • Advertise
    • 2022 Editorial Calendar
  • Awards
    • Back
    • 2022 MSP 501
    • Channel Influencers
    • Circle of Excellence
    • DE&I 101
    • Channel Partners 101 (CP 101)
  • Events
    • Back
    • CP Conference & Expo
    • MSP Summit
    • Channel Partners Europe
    • Channel Partners Event Coverage
    • Webinars
    • Industry Events
  • About Us
  • DE&I
    • Newsletter
  • REGISTER
  • MSPs
  • VARs / SIs
  • Agents
  • Cloud Service Providers
  • Channel Partners Events
 Channel Futures

From the Industry


Getty Images

Sponsor Content

how your organization can benefit from the NIST cybersecurity framework

How Your Organization Can Benefit from the NIST Cybersecurity Framework

  • Written by Huntress Labs Guest Blogger
  • June 20, 2022
The primary goal of the NIST cybersecurity framework is to reduce cybersecurity risk to an acceptable level.

Everyone loves a good life hack, right? I’ve found that one such hack for those in cybersecurity is the NIST Cybersecurity Framework.

When the National Institute of Standards and Technology (NIST) first released its cybersecurity framework (now known as the NIST CSF) in 2014, it was looked to as a “gold standard” for how organizations should organize and improve their cybersecurity program. Many chose to emulate the NIST CSF since it’s the simplest one to implement and follow. But don’t let the previous sentence fool you. The NIST CSF is also complex when you really get into the weeds.

While the NIST cybersecurity framework serves several purposes, its primary goal is to reduce cybersecurity risk to an acceptable level for an organization. I’d say the close second is to provide a common language for all organization stakeholders to use to maintain clear and consistent messaging. It keeps everyone aligned and informed on the direction the organization wants to take regarding its cybersecurity posture.

In addition to having the NIST CSF as a guiding light, it also aids in identifying gaps in your knowledge. We simply don’t know what we don’t know, and often that’s due to not having experienced certain learning opportunities in our day-to-day activities. While the NIST CSF is not a one-size-fits-all framework, it’s meant to provide guidance and complement an existing risk management program. And, in the absence such a program, the framework should be leveraged to initiate one.

What is the NIST Cybersecurity Framework?

The NIST Cybersecurity Framework (CSF) is a set of guidelines designed to help organizations secure their critical infrastructure and improve their ability to identify, prevent, detect, respond and recover from cyber incidents. Today, it is embraced by many to help manage their organization’s cybersecurity risks and provide a common language to leverage between technical and non-technical teams.

While other standards and guidance have existed for many years, the need to create the NIST CSF specifically came from Executive Order 13636 Improving Critical Infrastructure Cybersecurity, which was signed in February 2013. Since then, versions 1.0 and 1.1 of the framework have been released. Version 1.1, the most recent, was released in April 2018. The NIST CSF will likely see an update soon, as the organization has indicated the goal of updating at least every three years.

So, if the framework was created to address critical infrastructure, does that mean that some organizations won’t benefit from it? Not at all.

The documentation clearly calls out that the framework can and should be used by any organization in any sector: “While the Framework has been developed to improve cybersecurity risk management as it relates to critical infrastructure, it can be used by organizations in any sector of the economy or society. It is intended to be useful to companies, government agencies, and not-for-profit organizations regardless of their focus or size.”

Essentially, all organizations should be using it to some extent to help guide them through the process of securing their assets. If I had to elevator pitch the NIST CSF, I’d say it’s a framework that provides a standardized common language for organizations to identify, assess and mitigate cybersecurity risks—resulting in a stronger cybersecurity posture. Its value is found in the simplified approach of helping organizations continuously iterate to uncover and address evolving cybersecurity risks.

So, what’s in the NIST CSF? It is composed of a Framework Core that includes Functions, Categories, Subcategories and Informative References.

Click here for a full review the five functions and some of the categories within each function.

Want some help evaluating your existing stack against the NIST CSF? Watch our on-demand webinar, Leveraging A Proven Framework to Evolve Your Stack, for some expert insight.

 

This guest blog is part of a Channel Futures sponsorship.

Tags: Cloud Service Providers MSPs VARs/SIs From the Industry Intelligence Security Huntress Labs Sponsor Content

Most Recent


  • Adam Wilson Vonage CP Europe Still
    Vonage a 'Single Communications Stack Provider' for Partners, Customers
    These are the biggest opportunities for Vonage partners today.
  • NextGen 101 logo feature size
    2022 Channel Futures NextGen 101 Winners, Part 2: #50-#1
    These are the top 50 companies in the Channel Futures NextGen 101 for 2022.
  • NextGen 101 logo feature size
    2022 Channel Futures NextGen 101 Winners, Part 1: #101-#51
    These are some of the hottest next-generation IT service providers in the industry.
  • Security Merger
    XM Cyber Acquires Cyber Observer for Security Posture Management
    The acquisition extends XM Cyber's attack path management platform.

Leave a comment Cancel reply

-or-

Log in with your Channel Futures account

Alternatively, post a comment by completing the form below:

Your email address will not be published. Required fields are marked *

Related Content

  • why MSPS are attractive cybersecurity targets
    Why MSPs are Attractive Cyberattack Targets
  • partner programs must expand to meet new market demands
    IT Partner Programs Must Evolve to Meet Market Demands
  • 5 ways to grow your MSP business
    5 Ways to Grow Your MSP Business
  • managed detection and response
    MDR Can Help SMBs Become More Cyber Resilient

Upcoming Events

View all

MSP Summit

September 13, 2022 - September 16, 2022

Channel Partners Conference & Expo

May 1, 2023 - May 4, 2023

Galleries

View all

2022 Channel Futures NextGen 101 Winners, Part 2: #50-#1

June 27, 2022

2022 Channel Futures NextGen 101 Winners, Part 1: #101-#51

June 27, 2022

8 Channel People Making Waves This Week at Splunk, Telarus, More

June 24, 2022

Industry Perspectives

View all

Why MSPs are Attractive Cyberattack Targets

June 24, 2022

IT Partner Programs Must Evolve to Meet Market Demands

June 21, 2022

How Your Organization Can Benefit from the NIST Cybersecurity Framework

June 20, 2022

Webinars

View all

VEP Platform for Delivery of uCPE, SD-WAN and SASE

June 29, 2022

The Digital Worker: How to Empower Customers with a Flexible, Scalable VDI Solution to Enable Remote Work

June 30, 2022

Growing Partner Revenue and Customer Satisfaction with Power Management Services

June 23, 2022

White Papers

View all

Work Goes Remote – (and Other Top ITOps Trends)

May 25, 2022

The New Bottom Line: How MSPs Can Meet the Healthcare Crisis While Evolving Their Businesses

April 19, 2022

How to build a Security Operations Center (on a budget)

April 4, 2022

Channel Futures TV

View all

AT&T, Microsoft, Cisco, ThreatLocker on Unlocking Partner Potential

Vonage a ‘Single Communications Stack Provider’ for Partners, Customers

June 27, 2022

IBM, Partners and the $1 Trillion Hybrid Cloud Opportunity

June 26, 2022

Agents Share ‘Secrets,’ Industry Opportunity

May 11, 2022

Twitter

ChannelFutures

We got some partner insights from @HPE Partner Growth Summit, They shared their sentiments on the new partner progr… twitter.com/i/web/status/1…

June 28, 2022
ChannelFutures

.@XMCyber_ acquires @Cyberobserver. #cloudsecurity dlvr.it/SSxvt0 https://t.co/re42mofbdT

June 27, 2022
ChannelFutures

.@HPE has rolled out a new program aimed at growing @HPE_Partners' as-a-service business journey, along with severa… twitter.com/i/web/status/1…

June 27, 2022
ChannelFutures

The Channel Futures top 50 NextGen 101ers are here! See the managed service providers that are the future of the te… twitter.com/i/web/status/1…

June 27, 2022
ChannelFutures

Congrats to the NextGen 101 Class of 2022, part of the #MSP501 community! This list honors industry-leading managed… twitter.com/i/web/status/1…

June 27, 2022
ChannelFutures

Part Two of the 2022 Channel Futures NextGen 101 has been revealed. Who made the list? #MSP501 @MSP_501… twitter.com/i/web/status/1…

June 27, 2022
ChannelFutures

Part One of the 2022 Channel Futures NextGen 101 has been revealed. Who made the list? #MSP501 @MSP_501… twitter.com/i/web/status/1…

June 27, 2022
ChannelFutures

#MSPs can offer niche specialties to augment cloud service #hyperscalers offer, says @ThisisCloudBlue.… twitter.com/i/web/status/1…

June 27, 2022

MSP 501

The industry's largest and most comprehensive partner awards program.

Newsletters and Updates

Sign up for The Channel Report, Channel Futures Update, MSP 501 Newsletter and more.

Live Channel Events

Get the latest information on the next industry-leading Channel Partners event.

Galleries

Educational slide shows and images from live events.

Media Kit And Advertising

Want to reach our audience? Access our media kit.

DISCOVER MORE FROM INFORMA TECH

  • Channel Partners Events
  • Telecoms.com
  • MSP 501
  • Black Hat
  • IoT World Today
  • Omdia

WORKING WITH US

  • Contact
  • About Us
  • Advertise
  • Newsletter

FOLLOW Channel Futures ON SOCIAL

  • Privacy
  • CCPA: “Do Not Sell My Data”
  • Cookie Policy
  • Terms
Copyright © 2022 Informa PLC. Informa PLC is registered in England and Wales with company number 8860726 whose registered and Head office is 5 Howick Place, London, SW1P 1WG.
This website uses cookies, including third party ones, to allow for analysis of how people use our website in order to improve your experience and our services. By continuing to use our website, you agree to the use of such cookies. Click here for more information on our Cookie Policy and Privacy Policy.
X