strategy Controls
7 controls across 1 framework.
NIST CSF
The organizational mission is understood and informs cybersecurity risk management
Govern / Organizational Context
Cybersecurity risk management strategy outcomes are reviewed to inform and adjust strategy
Govern / Oversight
The cybersecurity risk management strategy is reviewed and adjusted to ensure coverage of organizational requirements and risks
Govern / Oversight
Risk management objectives are established and agreed to by organizational stakeholders
Govern / Risk Management Strategy
Risk appetite and risk tolerance statements are established, communicated, and maintained
Govern / Risk Management Strategy
Strategic direction that describes appropriate risk response options is established and communicated
Govern / Risk Management Strategy
Strategic opportunities (positive risks) are characterized and included in organizational cybersecurity risk discussions
Govern / Risk Management Strategy