The article provides a comprehensive analysis of the evolution of the NIST Cybersecurity Framework from its initial version 1.0 to the current version 2.0. It highlights the background to the creation of the framework, its place in international practice, and its key role in improving the cyber resilience of organizations of all sizes, from small companies to global corporations and government agencies. It examines in detail the features of previous editions, in particular CSF 1.0, which laid the foundation in the form of five basic functions (Identify, Protect, Detect, Respond, Recover), and CSF 1.1, which clarified approaches to risk management in supply chains and made the framework more applicable. It is shown that the transition to CSF 2.0 in 2024 was a qualitative stage of development, as the new version focuses not only on technical aspects but also on strategic corporate governance. Among the key innovations are the Govern function, which formally establishes management responsibility, as well as expanded opportunities for integration with international standards, improved performance metrics, and increased focus on supply chain risk management. The specifics of the transit
📖 افتح في inklap 🔗 DOI 📮 اطلب بحثاً