Phase 11 · GRC: Governance, Risk & Compliance

Topics

Security Frameworks (NIST, ISO 27001)

Part of the Cybersecurity Roadmap.

Summary

Structured, widely-adopted frameworks for building and maturing a security program — NIST's Cybersecurity Framework and ISO 27001 both provide a comprehensive checklist of controls and processes.

How to Learn This

  • 1Read a summary of the NIST Cybersecurity Framework's 5 core functions.
  • 2Compare NIST CSF and ISO 27001 at a high level — both cover similar ground with different structures.
  • 3Learn why frameworks provide a shared vocabulary auditors and security teams both understand.
InsideEdge

Stuck on this topic? Ask an Insider

Get 1:1 guidance from people who've walked this exact path — free on the InsideEdge app.

Download
InsideEdge