The National Institute of Standards and Technology’s Cybersecurity Framework is being revised nearly 10 years after its initial release.
NIST on Tuesday published a draft of Cybersecurity Framework 2.0 in an effort to adapt to the changing landscape of cyber defense.
The new version incorporates feedback from a request for information issued by the institute in February 2022. It retains key attributes of the framework, while providing additional guidance about evolving ransomware threats and supply chain risks stemming from online vulnerabilities.
Extending its scope beyond critical infrastructure, the latest edition attempts to cater to all types and sizes of organizations. CSF 2.0 now has six main functions: to identify, protect, detect, respond, recover and—the newest addition—govern.
The draft is open to public comment until Nov. 4, with a finalized version to be released in early 2024.
Related Articles
Gregory Barbaccia, federal chief information officer and a 2025 Wash100 awardee, has shared his insights on how the federal government should advance digital transformation. “I notice a lot of the government considers itself to be ‘digital,’ but in reality, we’ve only digitized, not transformed. Sure we went 0-1, but that should have just been the beginning,” Barbaccia wrote in a LinkedIn post. He noted the lack of automation and that workflows remain unchanged despite the replacement of paper ledgers with spreadsheets. “Files are shared over email instead of through real-time collaboration tools,” he added. Advancing Digital Transformation in Federal Government
The Federal Communications Commission has adopted new rules that seek to eliminate unnecessary paperwork and address regulatory barriers to the ground-station-as-a-service, or GSaaS, business model as part of efforts to drive innovation in the U.S. space economy. FCC said Thursday the new rules establish a process for ground station operators to secure a baseline license without first identifying a satellite point of communication. A simple FCC notification will be required for each new point of communication. According to FCC, the change would eliminate nearly half of earth station modification applications. “Making the smallest change to a satellite system or earth
The General Services Administration has announced a OneGov agreement with Amazon Web Services that will provide up to $1 billion in direct incentive credits to federal civilian agencies. According to GSA, the direct incentive credits, aggregated across the agencies, will include savings on core AWS cloud services through AWS credits, infrastructure and application technologies modernization through AWS modernization credits, access to AWS training and certification through training credits and a streamlined engagement model with greater savings for direct contracts through direct partnerships. Advancing America’s AI Leadership The agreement is expected to accelerate large-scale IT transformation and boost AI innovation across