CloudCapsule Blog

NIST CSF 2.0 Baseline Now Available

Written by Daniel Johnson | Nov 26, 2024 5:00:00 PM

We are pleased to announce the availability of the NIST CSF 2.0 Baseline on the CloudCapsule platform.

Partners and Clients can now compare assessment results against the NIST standard, clearly identifying areas that are compliant, and controls that may need improvement, whether that be a technical control or a policy element.

 

Understanding NIST CSF 2.0

The NIST Cybersecurity Framework (CSF) 2.0 is a comprehensive guide designed to help organizations manage and reduce cybersecurity risks. It provides a structured approach to identifying, assessing, and mitigating cybersecurity threats through a set of high-level outcomes and best practices.

The framework is adaptable to organizations of any size, sector, or maturity level, making it widely applicable across various industries. By using the NIST CSF 2.0, businesses can better understand their cybersecurity posture, prioritize their efforts, and communicate their strategies effectively.

This framework does not prescribe specific solutions but links to resources that offer detailed guidance on achieving desired cybersecurity outcomes, thereby enhancing overall resilience and security.

 
Getting Started with the NIST Baseline

Follow these simple steps to use the NIST CSF 2.0 Baseline in your assessments.

  • Login to CloudCapsule and choose the tenant or run a new assessment by entering the domain or tenant ID
  • Once the scan completes, click on Baselines on the navigation menu
  • Choose NIST CSF from the Baseline choices above the radar graph

 
Overview of NIST Functions

Scroll down to review the NIST Overview and click on any gauge or individual pass/fail/assumed risk indicator for more detailed information.

 
Review Individual Control Details

Simply click on an individual control for more information on results, suggested remediation, and impacted elements.

 
Augment Compliance

Augment the controls with your own evidence, 3rd party coverage, and/or assumed risk.

 
Learn More

For more information on NIST, please see the following links:

 https://www.nist.gov/cyberframework

 https://csrc.nist.gov/pubs/cswp/29/the-nist-cybersecurity-framework-csf-20/final