Learning objectives
- Understand the CSF 2.0 Core, Profiles and Tiers
- Build a current profile and a target profile
- Prioritise gaps according to risk and business objectives
- Connect cybersecurity governance with enterprise risk management
Who should attend
CISOs, risk managers, auditors, architects and IT managers.
Prerequisites
General knowledge of risk management and security functions.
Course outline
- Principles, scope and new features of CSF 2.0
- Govern, Identify, Protect, Detect, Respond and Recover functions
- Categories, subcategories and informative references
- Organisational Profiles and implementation Tiers
- Gap assessment, prioritisation and roadmap
- Target profile workshop
Learning approach
Structured instruction, demonstrations, guided exercises, case studies and learning assessment. Technical environments are used only within an authorised context.
Reference source: NIST Cybersecurity Framework 2.0 ↗
Avnorys programme based on a public NIST publication. It does not award a NIST certification.
Avnorys programme based on a public NIST publication. It does not award a NIST certification.
