Cybersecurity Frameworks Flashcards
1
Q
Cybersecurity Framework
A
Way to measure your progress on the framework to figure out the maturity level for the risk. Your organization should be using a certain framework.
-NIST-CSF
-CSA – CAIQ (for cloud)
-ISO 27001 Cyber Framework
-NIST 800-53
-NYDFS
-Others (CIS, FISMA, ASD,
COBIT, COSO, TCSC, etc.)
2
Q
NIST-CSF
A
Generally commercial space
3
Q
NIST 800-53
A
Mostly government, very controlling and detailed
4
Q
NYDFS
A
Insurance or financial space, subject to this if doing business in New York
5
Q
Internal standards do not equal external standards
A
It isn’t “fair”