Free Guide
The NIST CSF Implementation Guide
NIST CSF is a framework for organizing security outcomes, not a control list to certify against, and treating it as the latter is why implementations stall at a spreadsheet nobody maintains. This guide covers what CSF 2.0 is and is not, the six Functions including the new Govern function, and the seven-step process for getting from a Current Profile to a Target Profile you can act on.
- The six Functions of CSF 2.0, including what Govern changed
- Tiers explained as rigor of practice, not a maturity score to chase
- The seven-step implementation process, start to finish
- A Current and Target Profile worksheet, plus where CSF outcomes land in SOC 2 and ISO 27001
Get the guide
Enter your work email and we'll take you straight to the download.