Skip to main content

Frameworks & Resources: NIST CSF 2.0

L
Written by Leart Kollqaku
Updated this week

The NIST Cybersecurity Framework (CSF) 2.0 provides a structured approach to managing cybersecurity risk through six core functions: Identify, Protect, Detect, Respond, Recover, and Govern. It helps organizations understand, assess, prioritize, and communicate their cybersecurity activities.

Why Use NIST CSF 2.0 in Ardoq?

Using NIST CSF 2.0 in Ardoq enables organizations to map their cybersecurity posture against a recognized standard, identify gaps in controls, and trace security requirements to technical implementations. It provides a common language for discussing cybersecurity risk across technical and business stakeholders.

How Ardoq Adopts NIST CSF 2.0

The NIST CSF 2.0 framework is implemented as a single workspace containing the complete hierarchy of Functions, Categories, and Subcategories from the framework.

Structure Element

Details

Workspace Name

NIST CSF 2.0

Component Types

β€’ Category - High-level groupings within each function

β€’ Information Artifact - Framework functions (ID, PR, DE, RS, RC, GV)

β€’ Requirement - Specific subcategories and implementation guidance

Framework Structure

The workspace organizes NIST CSF 2.0 into six main functions:

  • IDENTIFY (ID) - Asset Management, Business Environment, Governance, Risk Assessment, Risk Management, Supply Chain Risk

  • PROTECT (PR) - Identity Management, Awareness & Training, Data Security, Platform Security, Technology Infrastructure

  • DETECT (DE) - Continuous Monitoring, Adverse Event Analysis

  • RESPOND (RS) - Response Planning, Response Communications, Analysis, Mitigation, Improvements

Importing NIST CSF 2.0 into Ardoq

Access the NIST CSF 2.0 framework through Ardoq's Frameworks & Resources Importer. For step-by-step instructions, see How to use the Frameworks & Resources Importer.

Did this answer your question?