Framework module · nist-csf-2-0
NIST Cybersecurity Framework
The outcome-based vocabulary boards use to talk about cyber risk. Not certifiable — it organizes a program rather than testing one.
2.0 · NIST Cybersecurity Framework · published 2024-02-26
Standing today
Acquisition required
01Standing
Acquisition required
Named, with the authority's acquisition path recorded; onboarding is refused until a control set is registered.
NIST Cybersecurity Framework cannot be onboarded yet: Freely published; not ingested as a control catalog. Onboarding is enabled once a control set is registered, so a new project never opens into an empty workspace.
NIST Cybersecurity Framework cannot be onboarded yet: Freely published; not ingested as a control catalog. Onboarding is enabled once a control set is registered, so a new project never opens into an empty workspace.
02Registry record
checked 2026-08-06
- Registry status
- Roadmap · modelledWe model the regime — control families and at least one crosswalk map on disk — but no control catalog is ingested.
- Control units
- Not on record — no catalog ingested and no authority-published count cited.
- Control families
- Govern · Identify · Protect · Detect · Respond · Recover
- Applies to
- all sectors · US · global
- Verification
- Secondary — corroborated across independent sources; the authority blocks automated fetch or does not state it plainly. checked 2026-08-06
03Version ledger
2 editions
| 1.1 | Superseded | 2018-04-16 |
| 2.0 | Current edition · supersedes 1.1 | 2024-02-26 |