The NIST Cybersecurity Framework (CSF) 2.0 provides a structured approach to managing cybersecurity risk through six core functions: Identify, Protect, Detect, Respond, Recover, and Govern. It helps organizations understand, assess, prioritize, and communicate their cybersecurity activities.
Why Use NIST CSF 2.0 in Ardoq?
Using NIST CSF 2.0 in Ardoq enables organizations to map their cybersecurity posture against a recognized standard, identify gaps in controls, and trace security requirements to technical implementations. It provides a common language for discussing cybersecurity risk across technical and business stakeholders.
How Ardoq Adopts NIST CSF 2.0
The NIST CSF 2.0 framework is implemented as a single workspace containing the complete hierarchy of Functions, Categories, and Subcategories from the framework.
Structure Element | Details |
Workspace Name | NIST CSF 2.0 |
Component Types | β’ Category - High-level groupings within each function β’ Information Artifact - Framework functions (ID, PR, DE, RS, RC, GV) β’ Requirement - Specific subcategories and implementation guidance |
Framework Structure
The workspace organizes NIST CSF 2.0 into six main functions:
IDENTIFY (ID) - Asset Management, Business Environment, Governance, Risk Assessment, Risk Management, Supply Chain Risk
PROTECT (PR) - Identity Management, Awareness & Training, Data Security, Platform Security, Technology Infrastructure
DETECT (DE) - Continuous Monitoring, Adverse Event Analysis
RESPOND (RS) - Response Planning, Response Communications, Analysis, Mitigation, Improvements
Importing NIST CSF 2.0 into Ardoq
Access the NIST CSF 2.0 framework through Ardoq's Frameworks & Resources Importer. For step-by-step instructions, see How to use the Frameworks & Resources Importer.
