NIST Cybersecurity Framework (CSF) 2.0 expands the classic cyber defense pillars to formally integrate enterprise Governance, establishing an overarching model to manage and reduce cybersecurity risks across organizations of all sizes.
1. The New 'Govern' Function & The 6 Core Pillars
NIST CSF 2.0 reorganizes enterprise security into six continuous functions:
- Govern (GV): Organizational context, risk management strategy, and cybersecurity supply chain policies.
- Identify (ID): Asset management, threat intelligence, and risk assessment.
- Protect (PR): Identity management, awareness training, data security, and platform maintenance.
- Detect (DE): Continuous monitoring, anomalous event detection, and SIEM/SOAR alert triage.
- Respond (RS): Incident response execution, stakeholder communication, and forensic containment.
- Recover (RC): Restoration of affected services, lessons learned, and resilience improvement.
