Contact Us

Continuity Insights Management Conference

NIST Unveils Final Report on Identifying Enterprise-Level Cybersecurity Risks

The National Institute of Standards and Technology (NIST) has released the final version of Identifying and Estimating Cybersecurity Risk for Enterprise Risk Management, supporting the agency’s report on integrating cybersecurity and enterprise risk management.

The report is intended to guide organizations on how to prioritize, manage and respond to cybersecurity risks within their ERM programs by illustrating methods for identifying and analyzing the severity of threats.

The report also highlights the importance of creating an enterprise risk register to properly document the potential impacts of cybersecurity risks on enterprise assets and develop an appropriate risk mitigation plan.

NIST is expected to release the draft of a third companion document detailing processes for oversight of cybersecurity risks for public comments in the coming weeks.

Read more.

Continuity Insights

Similar Articles

Bridging the Gap Between Malicious Threat Awareness and Business Continuity Response

By Brandon Tanner, Rentsys Recovery Services, and Rick Phillips, Stickley on Security: With malicious threats such as ransomware continually in the news, it’s hard to deny the reality that cybersecurity …

Rise of Operational Resilience in the Wake of COVID-19  

Continuity Insights has announced that Rise of Operational Resilience in the Wake of COVID-19 has been added to its highly-regarded webinar series. This critically important topic will be presented on Tuesday, …

Watch Out for Typosquatting

Next time you type out a website, beware of a common mistake that all of us have made – typos. Domain hacks are on the rise and ICANN (The Internet …

Leave a Comment

Share to...