NIST Releases Discussion Draft of Privacy Framework for Enterprises
Tuesday, May 07, 2019 | Comments

The National Institute of Standards and Technology (NIST) released a discussion draft of its privacy framework, a set of industry standards and best practices designed to assist organizations in managing cybersecurity risks.

The structure of the “NIST Privacy Framework: An Enterprise Risk Management Tool” aligns with NIST's 2014 cybersecurity framework for critical infrastructure, a similar voluntary risk-based guideline created through collaboration between the government and private sector to help cost effectively manage cybersecurity risks without subjecting businesses to additional regulatory requirements.

NIST invites public feedback on whether the discussion draft could be readily used as part of an enterprise's broader risk management processes and scalable to organizations of various sizes, which will help NIST craft a preliminary draft of the framework. The document is here.

Would you like to comment on this story? Find our comments system below.

Post a comment
Name: *
Email: *
Title: *
Comment: *


No Comments Submitted Yet

Be the first by using the form above to submit a comment!

Site Navigation