From the course: NIST Cybersecurity Framework (CSF) 2.0 Primer: From Fundamentals to Implementation by Pearson
Unlock this course with a free trial
Join today to access over 25,200 courses taught by industry experts.
Key takeaways
So we're wrapping up lesson two, we've done the review of CSF core and we talked about the first two functions and those were govern, the new one on the block, and then identify. So let's do just like a few key takeaways, a really quick high level summary, and then we will move on to the next lesson. So first off, the govern function. Just to reiterate what NIST defines this as, the organization's cybersecurity risk management strategy, expectations, and policy, they exist, they've been established, they've been communicated so everyone knows about them or everyone needs to knows about them, and they're being monitored. So we're making sure that they're working, for instance. So all these individual categories kind of feed into this overall objective of the function. So organizational context, kind of like knowing what situation or circumstances we're in. Our risk management strategy, defining the appropriate rules and responsibilities and assigning the right level of authority for…