NIST Cybersecurity Framework (CSF)
Developed by the National Institute of Standards and Technology, this framework provides an organization with a risk-based approach to cybersecurity using five core functions: Identify, Protect, Detect, Respond, and Recover.
ISO/IEC 27001
A leading international standard for information security management systems (ISMS), provides an organization with a risk-based approach to securing information assets.
CIS Controls
(Center for Internet Security)
A ranked list of activities that should be implemented to counteract the most prevalent cyber attacks. It has 18 security controls.
HIPAA
Legislation that requires the use of security standards to ensure confidentiality, integrity, and protection of health information in the United States.
GDPR
A regulation that regulates the protection of personal data and privacy of individuals in the European Union.
COBIT
A control objectives framework for information and related technologies.
Typically used in financial services, this is focused on governance and management of enterprise IT.
No comments:
Post a Comment