Kelly Hood on LinkedIn: CSF 2.0 Informative References (2024)

Kelly Hood

EVP & Cybersecurity Engineer @ Optic Cyber Solutions | CISSP, CDPSE, CMMC RP

  • Report this post

For everyone that's been hitting refresh on NIST's #CSF Informative References page waiting for the SP 800-53 r5 mapping to pop up (definitely not me 😅) you will have found that it paid off! Yesterday, #NIST updated their #CybersecurityFramework 2.0 Informative References to include a mapping to NIST SP 800-53 r5. (Previously, we had CSF 1.1 to SP 800-53 r5, but now they've done the work for us and shared the updated mapping!) For anyone that hasn't seen it yet, I'm linking it below 👇https://lnkd.in/e3F6hn9Y

CSF 2.0 Informative References nist.gov

58

8 Comments

Like Comment

Kelly Hood

EVP & Cybersecurity Engineer @ Optic Cyber Solutions | CISSP, CDPSE, CMMC RP

1mo

  • Report this comment

In case you haven’t seen yet, the 53r5 mapping is out Jacob Horne!

Like Reply

1Reaction

Garrett Zickgraf, CISSP

Cybersecurity Consultant | Manager | CISSP

1mo

  • Report this comment

Any idea of updates surrounding mapping NIST 2.0 to the HIPAA Security Rule?

Like Reply

1Reaction

Jacob Hill

EVP of Cyber | Founder of GRCAcademy.io | Podcast Host

1mo

  • Report this comment

Excellent news, thanks for sharing, Kelly Hood!!

Like Reply

1Reaction 2Reactions

Jacob Horne

CMMC Town Crier | Ask me about NIST cybersecurity controls | Smashing compliance frameworks for fun and profit | Cyber policy wonk |

1mo

  • Report this comment

Mappings, mappings everywhere and not a drop of control enhancements. I'm really puzzled by NIST's decision to only map to the control level and not provide any rationale as to why.

Like Reply

6Reactions 7Reactions

Dino Price

Governance, Risk & Compliance Manager • Cybersecurity • SOC & HiTrust Readiness • Responsible AI • Policy Research, Development & Training

1mo

  • Report this comment

yay!! Thank you.

Like Reply

1Reaction 2Reactions

See more comments

To view or add a comment, sign in

More Relevant Posts

  • Brett Osborne

    Sr CyberSec-CyberGRC Advisor|vCISO|CMMC|[@RPM3Solutions]| & SP800-171| Advisor-Assessor-Instructor-Speaker|@Aperitisoft compliance design|Multi Frameworks NIST ISO CIS

    • Report this post

    NIST CSF v2.0 Initial Public Draft has been released. It will close in November.If you are considering CSF in less than 90 days or so, I have you covered. I wrote the template for CSF (v. 1.1) used in Aperitisoft™ - rPM3 SolutionsI have updated the Informative References (e.g. CIS v8, SP 800-53R5, etc.) to supplement CSF v. 1.1 I am preparing to update to 2.0. My UPDATED Informative References should get you most of the way.#nistcybersecurityframework

    • Kelly Hood on LinkedIn: CSF 2.0 Informative References (12)

    1

    Like Comment

    To view or add a comment, sign in

  • Elyas Z.

    Head of Security Operations at Couchbase | Security Leader | SecOps and OffSec

    • Report this post

    NIST CSF v1.1 Identify functions, in my own words. This is meant to be more straightforward and comprehensive, while respecting the original language and requirements. I find rewriting these kinds of things reinforces understanding and information accessibility.

    • Kelly Hood on LinkedIn: CSF 2.0 Informative References (15)

    2

    Like Comment

    To view or add a comment, sign in

  • Glenda R. Snodgrass, CCP/CCA

    Weaving security & compliance into business processes.

    • Report this post

    Do you "speak NIST"? Are you certain you understand the requirements of NIST SP 800-171 without having read 171A? Do you *really* understand what those Assessment Objectives are talking about? If you have any doubts, join me in my next virtual workshop on Wednesday, where I will take a deep dive into the requirements, AOs and evidence for all CMMC L1 practices, giving you the foundation to understand and apply all of 171 to your CUI environment.https://lnkd.in/em3p8ATB#CMMC #CUI #DIB #800171

    • Kelly Hood on LinkedIn: CSF 2.0 Informative References (18)

    12

    2 Comments

    Like Comment

    To view or add a comment, sign in

  • Josh Cramer

    Cyber & Engineering Services for Government Teams That Like Their Projects Delivered On-Time and On-Budget I Workday Federal Forum May 22nd

    • Report this post

    July 11 >>> DIBCAC Director Nick DelRosso will be presenting on Preparing for a NIST/CMMC Assessment.A few areas of focus will include: what to expect from a DIBCAC or C3PAO assessment and what are the stumbling blocks for contractors in previous NIST 800-171 assessments. If you are interested in attending or would like the post-event recording/deck - use this link here: https://lnkd.in/eS2raHQ4

    • Kelly Hood on LinkedIn: CSF 2.0 Informative References (22)

    1

    Like Comment

    To view or add a comment, sign in

  • Martino Bordin

    🧑🏻💻Senior software developer 🎖️Microsoft Certified Professional

    • Report this post

    Just completed “Master the OWASP Top 10”: https://lnkd.in/djX8zDiD #owasp, #vulnerabilitymanagement, #webapplicationsecurity.

    Certificate of Completion linkedin.com

    17

    1 Comment

    Like Comment

    To view or add a comment, sign in

  • Troemner, LLC

    1,079 followers

    • Report this post

    NIST HB 105-1 No Longer Recommends NIST Class F #TestWeights. Don't worry, #Troemner has you covered. #NIST Class F #ScaleWeights and #TestWeights have been replaced by #ASTM Class 6. Read the latest at https://bit.ly/42YeMvw.

    • Kelly Hood on LinkedIn: CSF 2.0 Informative References (29)

    14

    Like Comment

    To view or add a comment, sign in

  • IFMA St. Louis Chapter

    706 followers

    • Report this post

    Do you know the difference between IFMA's certification (CFM) and certificates (FMP + SFP)? Here are the differences.Learn more: https://lnkd.in/d49FB8x

    • Kelly Hood on LinkedIn: CSF 2.0 Informative References (32)

    2

    Like Comment

    To view or add a comment, sign in

  • Affan SHAIKH

    Deputy Vice President, IT SecurityCISSP, CISA, ISO 27001 LA

    • Report this post

    NIST CSF v2.0 officially released https://lnkd.in/du9HUw-aIt's ten years effort and experience from CSF v1.0 to CSF v2.0

    • Kelly Hood on LinkedIn: CSF 2.0 Informative References (35)

    34

    Like Comment

    To view or add a comment, sign in

  • Kenneth Cikanovich, PMP

    Supporting small businesses navigate the complex world of cyber security compliance with a range of IT services and solutions

    • Report this post

    Looking for information on what changed in the newest draft of NIST 800-171 R3? Check out our partners at FutureFeed for their webinar on the subject.

    1

    Like Comment

    To view or add a comment, sign in

  • Karen G. Vilchez Guerrero

    Service Manager GRC | Innotec Security, a part of Accenture

    • Report this post

    NIST CSF 2.0 is coming in early 2024!The current public draft provides a great overview of what we can expect from the final publication.

    6

    Like Comment

    To view or add a comment, sign in

Kelly Hood on LinkedIn: CSF 2.0 Informative References (42)

Kelly Hood on LinkedIn: CSF 2.0 Informative References (43)

4,380 followers

  • 260 Posts

View Profile

Follow

Explore topics

  • Sales
  • Marketing
  • Business Administration
  • HR Management
  • Content Management
  • Engineering
  • Soft Skills
  • See All
Kelly Hood on LinkedIn: CSF 2.0 Informative References (2024)
Top Articles
Latest Posts
Article information

Author: Neely Ledner

Last Updated:

Views: 5789

Rating: 4.1 / 5 (42 voted)

Reviews: 89% of readers found this page helpful

Author information

Name: Neely Ledner

Birthday: 1998-06-09

Address: 443 Barrows Terrace, New Jodyberg, CO 57462-5329

Phone: +2433516856029

Job: Central Legal Facilitator

Hobby: Backpacking, Jogging, Magic, Driving, Macrame, Embroidery, Foraging

Introduction: My name is Neely Ledner, I am a bright, determined, beautiful, adventurous, adventurous, spotless, calm person who loves writing and wants to share my knowledge and understanding with you.