NIST cybersecurity framework :: a pocket guide /
The NIST CSF is a framework for organizations to manage and mitigate cybersecurity risk based on existing standards, guidelines, and practices.
Gespeichert in:
1. Verfasser: | |
---|---|
Format: | Elektronisch E-Book |
Sprache: | English |
Veröffentlicht: |
Ely, Cambridgeshire, United Kingdom :
IT Governance Publishing,
2018.
|
Schlagworte: | |
Online-Zugang: | Volltext |
Zusammenfassung: | The NIST CSF is a framework for organizations to manage and mitigate cybersecurity risk based on existing standards, guidelines, and practices. |
Beschreibung: | 1 online resource |
Bibliographie: | Includes bibliographical references. |
ISBN: | 9781787780415 1787780414 9781787780422 1787780422 |
Internformat
MARC
LEADER | 00000cam a2200000 i 4500 | ||
---|---|---|---|
001 | ZDB-4-EBU-on1056110263 | ||
003 | OCoLC | ||
005 | 20241004212047.0 | ||
006 | m o d | ||
007 | cr cnu---unuuu | ||
008 | 181008s2018 enk ob 000 0 eng d | ||
040 | |a JSTOR |b eng |e rda |e pn |c JSTOR |d EBLCP |d OCLCF |d MERUC |d IDB |d K6U |d UMI |d OTZ |d TOH |d OCLCQ |d N$T |d OCLCO |d N$T |d OCLCQ |d MM9 |d OCLCO |d OCLCQ |d OCLCO |d KSU |d OCLCQ |d OCLCO |d OCLCL |d DEGRU | ||
019 | |a 1090413803 |a 1111634289 |a 1119129628 |a 1121385219 |a 1121439745 |a 1152986715 |a 1156369017 |a 1192345334 | ||
020 | |a 9781787780415 |q (electronic bk.) | ||
020 | |a 1787780414 |q (electronic bk.) | ||
020 | |a 9781787780422 |q (electronic bk.) | ||
020 | |a 1787780422 |q (electronic bk.) | ||
024 | 8 | |a 9781787780422 | |
035 | |a (OCoLC)1056110263 |z (OCoLC)1090413803 |z (OCoLC)1111634289 |z (OCoLC)1119129628 |z (OCoLC)1121385219 |z (OCoLC)1121439745 |z (OCoLC)1152986715 |z (OCoLC)1156369017 |z (OCoLC)1192345334 | ||
037 | |a CL0501000063 |b Safari Books Online | ||
050 | 4 | |a QA76.9.A25 | |
082 | 7 | |a 005.8 |2 23 | |
049 | |a MAIN | ||
100 | 1 | |a Calder, Alan, |d 1957- |e author. |1 https://id.oclc.org/worldcat/entity/E39PCjFk9VbdBGPWpx6MgTCHhb |0 http://id.loc.gov/authorities/names/nb2002066406 | |
245 | 1 | 0 | |a NIST cybersecurity framework : |b a pocket guide / |c Alan Calder. |
264 | 1 | |a Ely, Cambridgeshire, United Kingdom : |b IT Governance Publishing, |c 2018. | |
300 | |a 1 online resource | ||
336 | |a text |b txt |2 rdacontent | ||
337 | |a computer |b c |2 rdamedia | ||
338 | |a online resource |b cr |2 rdacarrier | ||
347 | |a text file | ||
504 | |a Includes bibliographical references. | ||
588 | 0 | |a PDF (JSTOR, viewed October 8, 2018). | |
505 | 0 | |a Cover; Title; Copyright; About the Author; Contents; Introduction; The growing digital ecosystem; Federal responses; Past cyber incidents; The NIST Cybersecurity Framework; Chapter 1: Aims of the Framework; Relevant factors and variables; Implementation benefits; Structure; Chapter 2: Framework core; Functions; Identify; Protect, detect, and respond; Recover; Categories; Subcategories; Informative references; ISO 27001; COBIT; NIST SP 800-53; ISA 62443; CIS CSC; How the core elements interact; Implementation -- risk management; Methodologies; Risk responses; NIST's Risk Management Framework | |
505 | 8 | |a Chapter 3: Framework profilesCurrent profile; Target profile; How the two profiles interact; Chapter 4: Framework implementation tiers; How to view the tiers; Risk management aspects; Risk management processes; Integrated risk management program; External participation; Tier 1: Partial; Tier 2: Risk-informed; Tier 3: Repeatable; Tier 4: Adaptive; How the tiers, profiles, and core interact; Chapter 5: Implementing the Framework; Step 1: Determine objectives, priorities, and scope; Step 2: Identify assets and risks; Step 3: Create a current profile; Step 4: Conduct a risk assessment | |
505 | 8 | |a Step 5: Create a target profileStep 6: Perform a gap analysis; Step 7: Implement the action plan; Continual improvement; Decision-making and implementation responsibilities; Chapter 6: Alignment with other frameworks; ISO 27001; ISO 22301; Combining ISO 27001 and ISO 22301; Appendix: Key changes from Version 1.0 to 1.1; Glossary; Further reading | |
520 | |a The NIST CSF is a framework for organizations to manage and mitigate cybersecurity risk based on existing standards, guidelines, and practices. | ||
542 | |f © 2018 IT Governance |g 2018 | ||
588 | 0 | |a Print version record. | |
610 | 2 | 0 | |a National Institute of Standards and Technology (U.S.) |0 http://id.loc.gov/authorities/names/n88112126 |
610 | 2 | 7 | |a National Institute of Standards and Technology (U.S.) |2 fast |
650 | 0 | |a Computer security. |0 http://id.loc.gov/authorities/subjects/sh90001862 | |
650 | 0 | |a Cyberterrorism |x Prevention. | |
650 | 2 | |a Computer Security |0 https://id.nlm.nih.gov/mesh/D016494 | |
650 | 6 | |a Sécurité informatique. | |
650 | 7 | |a COMPUTERS / Security / General. |2 bisacsh | |
650 | 7 | |a Computer security |2 fast | |
650 | 7 | |a Cyberterrorism |x Prevention |2 fast | |
758 | |i has work: |a NIST cybersecurity framework (Text) |1 https://id.oclc.org/worldcat/entity/E39PCGKwVkDcjHbGJThfmTqGH3 |4 https://id.oclc.org/worldcat/ontology/hasWork | ||
856 | 4 | 0 | |l FWS01 |p ZDB-4-EBU |q FWS_PDA_EBU |u https://search.ebscohost.com/login.aspx?direct=true&scope=site&db=nlebk&AN=1901977 |3 Volltext |
938 | |a De Gruyter |b DEGR |n 9781787780415 | ||
938 | |a ProQuest Ebook Central |b EBLB |n EBL5796954 | ||
938 | |a ProQuest Ebook Central |b EBLB |n EBL5522754 | ||
938 | |a EBSCOhost |b EBSC |n 1901977 | ||
994 | |a 92 |b GEBAY | ||
912 | |a ZDB-4-EBU | ||
049 | |a DE-863 |
Datensatz im Suchindex
DE-BY-FWS_katkey | ZDB-4-EBU-on1056110263 |
---|---|
_version_ | 1816796932036624384 |
adam_text | |
any_adam_object | |
author | Calder, Alan, 1957- |
author_GND | http://id.loc.gov/authorities/names/nb2002066406 |
author_facet | Calder, Alan, 1957- |
author_role | aut |
author_sort | Calder, Alan, 1957- |
author_variant | a c ac |
building | Verbundindex |
bvnumber | localFWS |
callnumber-first | Q - Science |
callnumber-label | QA76 |
callnumber-raw | QA76.9.A25 |
callnumber-search | QA76.9.A25 |
callnumber-sort | QA 276.9 A25 |
callnumber-subject | QA - Mathematics |
collection | ZDB-4-EBU |
contents | Cover; Title; Copyright; About the Author; Contents; Introduction; The growing digital ecosystem; Federal responses; Past cyber incidents; The NIST Cybersecurity Framework; Chapter 1: Aims of the Framework; Relevant factors and variables; Implementation benefits; Structure; Chapter 2: Framework core; Functions; Identify; Protect, detect, and respond; Recover; Categories; Subcategories; Informative references; ISO 27001; COBIT; NIST SP 800-53; ISA 62443; CIS CSC; How the core elements interact; Implementation -- risk management; Methodologies; Risk responses; NIST's Risk Management Framework Chapter 3: Framework profilesCurrent profile; Target profile; How the two profiles interact; Chapter 4: Framework implementation tiers; How to view the tiers; Risk management aspects; Risk management processes; Integrated risk management program; External participation; Tier 1: Partial; Tier 2: Risk-informed; Tier 3: Repeatable; Tier 4: Adaptive; How the tiers, profiles, and core interact; Chapter 5: Implementing the Framework; Step 1: Determine objectives, priorities, and scope; Step 2: Identify assets and risks; Step 3: Create a current profile; Step 4: Conduct a risk assessment Step 5: Create a target profileStep 6: Perform a gap analysis; Step 7: Implement the action plan; Continual improvement; Decision-making and implementation responsibilities; Chapter 6: Alignment with other frameworks; ISO 27001; ISO 22301; Combining ISO 27001 and ISO 22301; Appendix: Key changes from Version 1.0 to 1.1; Glossary; Further reading |
ctrlnum | (OCoLC)1056110263 |
dewey-full | 005.8 |
dewey-hundreds | 000 - Computer science, information, general works |
dewey-ones | 005 - Computer programming, programs, data, security |
dewey-raw | 005.8 |
dewey-search | 005.8 |
dewey-sort | 15.8 |
dewey-tens | 000 - Computer science, information, general works |
discipline | Informatik |
format | Electronic eBook |
fullrecord | <?xml version="1.0" encoding="UTF-8"?><collection xmlns="http://www.loc.gov/MARC21/slim"><record><leader>04551cam a2200625 i 4500</leader><controlfield tag="001">ZDB-4-EBU-on1056110263</controlfield><controlfield tag="003">OCoLC</controlfield><controlfield tag="005">20241004212047.0</controlfield><controlfield tag="006">m o d </controlfield><controlfield tag="007">cr cnu---unuuu</controlfield><controlfield tag="008">181008s2018 enk ob 000 0 eng d</controlfield><datafield tag="040" ind1=" " ind2=" "><subfield code="a">JSTOR</subfield><subfield code="b">eng</subfield><subfield code="e">rda</subfield><subfield code="e">pn</subfield><subfield code="c">JSTOR</subfield><subfield code="d">EBLCP</subfield><subfield code="d">OCLCF</subfield><subfield code="d">MERUC</subfield><subfield code="d">IDB</subfield><subfield code="d">K6U</subfield><subfield code="d">UMI</subfield><subfield code="d">OTZ</subfield><subfield code="d">TOH</subfield><subfield code="d">OCLCQ</subfield><subfield code="d">N$T</subfield><subfield code="d">OCLCO</subfield><subfield code="d">N$T</subfield><subfield code="d">OCLCQ</subfield><subfield code="d">MM9</subfield><subfield code="d">OCLCO</subfield><subfield code="d">OCLCQ</subfield><subfield code="d">OCLCO</subfield><subfield code="d">KSU</subfield><subfield code="d">OCLCQ</subfield><subfield code="d">OCLCO</subfield><subfield code="d">OCLCL</subfield><subfield code="d">DEGRU</subfield></datafield><datafield tag="019" ind1=" " ind2=" "><subfield code="a">1090413803</subfield><subfield code="a">1111634289</subfield><subfield code="a">1119129628</subfield><subfield code="a">1121385219</subfield><subfield code="a">1121439745</subfield><subfield code="a">1152986715</subfield><subfield code="a">1156369017</subfield><subfield code="a">1192345334</subfield></datafield><datafield tag="020" ind1=" " ind2=" "><subfield code="a">9781787780415</subfield><subfield code="q">(electronic bk.)</subfield></datafield><datafield tag="020" ind1=" " ind2=" "><subfield code="a">1787780414</subfield><subfield code="q">(electronic bk.)</subfield></datafield><datafield tag="020" ind1=" " ind2=" "><subfield code="a">9781787780422</subfield><subfield code="q">(electronic bk.)</subfield></datafield><datafield tag="020" ind1=" " ind2=" "><subfield code="a">1787780422</subfield><subfield code="q">(electronic bk.)</subfield></datafield><datafield tag="024" ind1="8" ind2=" "><subfield code="a">9781787780422</subfield></datafield><datafield tag="035" ind1=" " ind2=" "><subfield code="a">(OCoLC)1056110263</subfield><subfield code="z">(OCoLC)1090413803</subfield><subfield code="z">(OCoLC)1111634289</subfield><subfield code="z">(OCoLC)1119129628</subfield><subfield code="z">(OCoLC)1121385219</subfield><subfield code="z">(OCoLC)1121439745</subfield><subfield code="z">(OCoLC)1152986715</subfield><subfield code="z">(OCoLC)1156369017</subfield><subfield code="z">(OCoLC)1192345334</subfield></datafield><datafield tag="037" ind1=" " ind2=" "><subfield code="a">CL0501000063</subfield><subfield code="b">Safari Books Online</subfield></datafield><datafield tag="050" ind1=" " ind2="4"><subfield code="a">QA76.9.A25</subfield></datafield><datafield tag="082" ind1="7" ind2=" "><subfield code="a">005.8</subfield><subfield code="2">23</subfield></datafield><datafield tag="049" ind1=" " ind2=" "><subfield code="a">MAIN</subfield></datafield><datafield tag="100" ind1="1" ind2=" "><subfield code="a">Calder, Alan,</subfield><subfield code="d">1957-</subfield><subfield code="e">author.</subfield><subfield code="1">https://id.oclc.org/worldcat/entity/E39PCjFk9VbdBGPWpx6MgTCHhb</subfield><subfield code="0">http://id.loc.gov/authorities/names/nb2002066406</subfield></datafield><datafield tag="245" ind1="1" ind2="0"><subfield code="a">NIST cybersecurity framework :</subfield><subfield code="b">a pocket guide /</subfield><subfield code="c">Alan Calder.</subfield></datafield><datafield tag="264" ind1=" " ind2="1"><subfield code="a">Ely, Cambridgeshire, United Kingdom :</subfield><subfield code="b">IT Governance Publishing,</subfield><subfield code="c">2018.</subfield></datafield><datafield tag="300" ind1=" " ind2=" "><subfield code="a">1 online resource</subfield></datafield><datafield tag="336" ind1=" " ind2=" "><subfield code="a">text</subfield><subfield code="b">txt</subfield><subfield code="2">rdacontent</subfield></datafield><datafield tag="337" ind1=" " ind2=" "><subfield code="a">computer</subfield><subfield code="b">c</subfield><subfield code="2">rdamedia</subfield></datafield><datafield tag="338" ind1=" " ind2=" "><subfield code="a">online resource</subfield><subfield code="b">cr</subfield><subfield code="2">rdacarrier</subfield></datafield><datafield tag="347" ind1=" " ind2=" "><subfield code="a">text file</subfield></datafield><datafield tag="504" ind1=" " ind2=" "><subfield code="a">Includes bibliographical references.</subfield></datafield><datafield tag="588" ind1="0" ind2=" "><subfield code="a">PDF (JSTOR, viewed October 8, 2018).</subfield></datafield><datafield tag="505" ind1="0" ind2=" "><subfield code="a">Cover; Title; Copyright; About the Author; Contents; Introduction; The growing digital ecosystem; Federal responses; Past cyber incidents; The NIST Cybersecurity Framework; Chapter 1: Aims of the Framework; Relevant factors and variables; Implementation benefits; Structure; Chapter 2: Framework core; Functions; Identify; Protect, detect, and respond; Recover; Categories; Subcategories; Informative references; ISO 27001; COBIT; NIST SP 800-53; ISA 62443; CIS CSC; How the core elements interact; Implementation -- risk management; Methodologies; Risk responses; NIST's Risk Management Framework</subfield></datafield><datafield tag="505" ind1="8" ind2=" "><subfield code="a">Chapter 3: Framework profilesCurrent profile; Target profile; How the two profiles interact; Chapter 4: Framework implementation tiers; How to view the tiers; Risk management aspects; Risk management processes; Integrated risk management program; External participation; Tier 1: Partial; Tier 2: Risk-informed; Tier 3: Repeatable; Tier 4: Adaptive; How the tiers, profiles, and core interact; Chapter 5: Implementing the Framework; Step 1: Determine objectives, priorities, and scope; Step 2: Identify assets and risks; Step 3: Create a current profile; Step 4: Conduct a risk assessment</subfield></datafield><datafield tag="505" ind1="8" ind2=" "><subfield code="a">Step 5: Create a target profileStep 6: Perform a gap analysis; Step 7: Implement the action plan; Continual improvement; Decision-making and implementation responsibilities; Chapter 6: Alignment with other frameworks; ISO 27001; ISO 22301; Combining ISO 27001 and ISO 22301; Appendix: Key changes from Version 1.0 to 1.1; Glossary; Further reading</subfield></datafield><datafield tag="520" ind1=" " ind2=" "><subfield code="a">The NIST CSF is a framework for organizations to manage and mitigate cybersecurity risk based on existing standards, guidelines, and practices.</subfield></datafield><datafield tag="542" ind1=" " ind2=" "><subfield code="f">© 2018 IT Governance</subfield><subfield code="g">2018</subfield></datafield><datafield tag="588" ind1="0" ind2=" "><subfield code="a">Print version record.</subfield></datafield><datafield tag="610" ind1="2" ind2="0"><subfield code="a">National Institute of Standards and Technology (U.S.)</subfield><subfield code="0">http://id.loc.gov/authorities/names/n88112126</subfield></datafield><datafield tag="610" ind1="2" ind2="7"><subfield code="a">National Institute of Standards and Technology (U.S.)</subfield><subfield code="2">fast</subfield></datafield><datafield tag="650" ind1=" " ind2="0"><subfield code="a">Computer security.</subfield><subfield code="0">http://id.loc.gov/authorities/subjects/sh90001862</subfield></datafield><datafield tag="650" ind1=" " ind2="0"><subfield code="a">Cyberterrorism</subfield><subfield code="x">Prevention.</subfield></datafield><datafield tag="650" ind1=" " ind2="2"><subfield code="a">Computer Security</subfield><subfield code="0">https://id.nlm.nih.gov/mesh/D016494</subfield></datafield><datafield tag="650" ind1=" " ind2="6"><subfield code="a">Sécurité informatique.</subfield></datafield><datafield tag="650" ind1=" " ind2="7"><subfield code="a">COMPUTERS / Security / General.</subfield><subfield code="2">bisacsh</subfield></datafield><datafield tag="650" ind1=" " ind2="7"><subfield code="a">Computer security</subfield><subfield code="2">fast</subfield></datafield><datafield tag="650" ind1=" " ind2="7"><subfield code="a">Cyberterrorism</subfield><subfield code="x">Prevention</subfield><subfield code="2">fast</subfield></datafield><datafield tag="758" ind1=" " ind2=" "><subfield code="i">has work:</subfield><subfield code="a">NIST cybersecurity framework (Text)</subfield><subfield code="1">https://id.oclc.org/worldcat/entity/E39PCGKwVkDcjHbGJThfmTqGH3</subfield><subfield code="4">https://id.oclc.org/worldcat/ontology/hasWork</subfield></datafield><datafield tag="856" ind1="4" ind2="0"><subfield code="l">FWS01</subfield><subfield code="p">ZDB-4-EBU</subfield><subfield code="q">FWS_PDA_EBU</subfield><subfield code="u">https://search.ebscohost.com/login.aspx?direct=true&scope=site&db=nlebk&AN=1901977</subfield><subfield code="3">Volltext</subfield></datafield><datafield tag="938" ind1=" " ind2=" "><subfield code="a">De Gruyter</subfield><subfield code="b">DEGR</subfield><subfield code="n">9781787780415</subfield></datafield><datafield tag="938" ind1=" " ind2=" "><subfield code="a">ProQuest Ebook Central</subfield><subfield code="b">EBLB</subfield><subfield code="n">EBL5796954</subfield></datafield><datafield tag="938" ind1=" " ind2=" "><subfield code="a">ProQuest Ebook Central</subfield><subfield code="b">EBLB</subfield><subfield code="n">EBL5522754</subfield></datafield><datafield tag="938" ind1=" " ind2=" "><subfield code="a">EBSCOhost</subfield><subfield code="b">EBSC</subfield><subfield code="n">1901977</subfield></datafield><datafield tag="994" ind1=" " ind2=" "><subfield code="a">92</subfield><subfield code="b">GEBAY</subfield></datafield><datafield tag="912" ind1=" " ind2=" "><subfield code="a">ZDB-4-EBU</subfield></datafield><datafield tag="049" ind1=" " ind2=" "><subfield code="a">DE-863</subfield></datafield></record></collection> |
id | ZDB-4-EBU-on1056110263 |
illustrated | Not Illustrated |
indexdate | 2024-11-26T14:49:32Z |
institution | BVB |
isbn | 9781787780415 1787780414 9781787780422 1787780422 |
language | English |
oclc_num | 1056110263 |
open_access_boolean | |
owner | MAIN DE-863 DE-BY-FWS |
owner_facet | MAIN DE-863 DE-BY-FWS |
physical | 1 online resource |
psigel | ZDB-4-EBU |
publishDate | 2018 |
publishDateSearch | 2018 |
publishDateSort | 2018 |
publisher | IT Governance Publishing, |
record_format | marc |
spelling | Calder, Alan, 1957- author. https://id.oclc.org/worldcat/entity/E39PCjFk9VbdBGPWpx6MgTCHhb http://id.loc.gov/authorities/names/nb2002066406 NIST cybersecurity framework : a pocket guide / Alan Calder. Ely, Cambridgeshire, United Kingdom : IT Governance Publishing, 2018. 1 online resource text txt rdacontent computer c rdamedia online resource cr rdacarrier text file Includes bibliographical references. PDF (JSTOR, viewed October 8, 2018). Cover; Title; Copyright; About the Author; Contents; Introduction; The growing digital ecosystem; Federal responses; Past cyber incidents; The NIST Cybersecurity Framework; Chapter 1: Aims of the Framework; Relevant factors and variables; Implementation benefits; Structure; Chapter 2: Framework core; Functions; Identify; Protect, detect, and respond; Recover; Categories; Subcategories; Informative references; ISO 27001; COBIT; NIST SP 800-53; ISA 62443; CIS CSC; How the core elements interact; Implementation -- risk management; Methodologies; Risk responses; NIST's Risk Management Framework Chapter 3: Framework profilesCurrent profile; Target profile; How the two profiles interact; Chapter 4: Framework implementation tiers; How to view the tiers; Risk management aspects; Risk management processes; Integrated risk management program; External participation; Tier 1: Partial; Tier 2: Risk-informed; Tier 3: Repeatable; Tier 4: Adaptive; How the tiers, profiles, and core interact; Chapter 5: Implementing the Framework; Step 1: Determine objectives, priorities, and scope; Step 2: Identify assets and risks; Step 3: Create a current profile; Step 4: Conduct a risk assessment Step 5: Create a target profileStep 6: Perform a gap analysis; Step 7: Implement the action plan; Continual improvement; Decision-making and implementation responsibilities; Chapter 6: Alignment with other frameworks; ISO 27001; ISO 22301; Combining ISO 27001 and ISO 22301; Appendix: Key changes from Version 1.0 to 1.1; Glossary; Further reading The NIST CSF is a framework for organizations to manage and mitigate cybersecurity risk based on existing standards, guidelines, and practices. © 2018 IT Governance 2018 Print version record. National Institute of Standards and Technology (U.S.) http://id.loc.gov/authorities/names/n88112126 National Institute of Standards and Technology (U.S.) fast Computer security. http://id.loc.gov/authorities/subjects/sh90001862 Cyberterrorism Prevention. Computer Security https://id.nlm.nih.gov/mesh/D016494 Sécurité informatique. COMPUTERS / Security / General. bisacsh Computer security fast Cyberterrorism Prevention fast has work: NIST cybersecurity framework (Text) https://id.oclc.org/worldcat/entity/E39PCGKwVkDcjHbGJThfmTqGH3 https://id.oclc.org/worldcat/ontology/hasWork FWS01 ZDB-4-EBU FWS_PDA_EBU https://search.ebscohost.com/login.aspx?direct=true&scope=site&db=nlebk&AN=1901977 Volltext |
spellingShingle | Calder, Alan, 1957- NIST cybersecurity framework : a pocket guide / Cover; Title; Copyright; About the Author; Contents; Introduction; The growing digital ecosystem; Federal responses; Past cyber incidents; The NIST Cybersecurity Framework; Chapter 1: Aims of the Framework; Relevant factors and variables; Implementation benefits; Structure; Chapter 2: Framework core; Functions; Identify; Protect, detect, and respond; Recover; Categories; Subcategories; Informative references; ISO 27001; COBIT; NIST SP 800-53; ISA 62443; CIS CSC; How the core elements interact; Implementation -- risk management; Methodologies; Risk responses; NIST's Risk Management Framework Chapter 3: Framework profilesCurrent profile; Target profile; How the two profiles interact; Chapter 4: Framework implementation tiers; How to view the tiers; Risk management aspects; Risk management processes; Integrated risk management program; External participation; Tier 1: Partial; Tier 2: Risk-informed; Tier 3: Repeatable; Tier 4: Adaptive; How the tiers, profiles, and core interact; Chapter 5: Implementing the Framework; Step 1: Determine objectives, priorities, and scope; Step 2: Identify assets and risks; Step 3: Create a current profile; Step 4: Conduct a risk assessment Step 5: Create a target profileStep 6: Perform a gap analysis; Step 7: Implement the action plan; Continual improvement; Decision-making and implementation responsibilities; Chapter 6: Alignment with other frameworks; ISO 27001; ISO 22301; Combining ISO 27001 and ISO 22301; Appendix: Key changes from Version 1.0 to 1.1; Glossary; Further reading National Institute of Standards and Technology (U.S.) http://id.loc.gov/authorities/names/n88112126 National Institute of Standards and Technology (U.S.) fast Computer security. http://id.loc.gov/authorities/subjects/sh90001862 Cyberterrorism Prevention. Computer Security https://id.nlm.nih.gov/mesh/D016494 Sécurité informatique. COMPUTERS / Security / General. bisacsh Computer security fast Cyberterrorism Prevention fast |
subject_GND | http://id.loc.gov/authorities/names/n88112126 http://id.loc.gov/authorities/subjects/sh90001862 https://id.nlm.nih.gov/mesh/D016494 |
title | NIST cybersecurity framework : a pocket guide / |
title_auth | NIST cybersecurity framework : a pocket guide / |
title_exact_search | NIST cybersecurity framework : a pocket guide / |
title_full | NIST cybersecurity framework : a pocket guide / Alan Calder. |
title_fullStr | NIST cybersecurity framework : a pocket guide / Alan Calder. |
title_full_unstemmed | NIST cybersecurity framework : a pocket guide / Alan Calder. |
title_short | NIST cybersecurity framework : |
title_sort | nist cybersecurity framework a pocket guide |
title_sub | a pocket guide / |
topic | National Institute of Standards and Technology (U.S.) http://id.loc.gov/authorities/names/n88112126 National Institute of Standards and Technology (U.S.) fast Computer security. http://id.loc.gov/authorities/subjects/sh90001862 Cyberterrorism Prevention. Computer Security https://id.nlm.nih.gov/mesh/D016494 Sécurité informatique. COMPUTERS / Security / General. bisacsh Computer security fast Cyberterrorism Prevention fast |
topic_facet | National Institute of Standards and Technology (U.S.) Computer security. Cyberterrorism Prevention. Computer Security Sécurité informatique. COMPUTERS / Security / General. Computer security Cyberterrorism Prevention |
url | https://search.ebscohost.com/login.aspx?direct=true&scope=site&db=nlebk&AN=1901977 |
work_keys_str_mv | AT calderalan nistcybersecurityframeworkapocketguide |