National Institute of Standards and Technology February 22, 2022 – Federal Register Recent Federal Regulation Documents

Evaluating and Improving NIST Cybersecurity Resources: The Cybersecurity Framework and Cybersecurity Supply Chain Risk Management
Document Number: 2022-03642
Type: Notice
Date: 2022-02-22
Agency: Department of Commerce, National Institute of Standards and Technology
The National Institute of Standards and Technology (NIST) is seeking information to assist in evaluating and improving its cybersecurity resources, including the ``Framework for Improving Critical Infrastructure Cybersecurity'' (the ``NIST Cybersecurity Framework,'' ``CSF'' or ``Framework'') and a variety of existing and potential standards, guidelines, and other information, including those relating to improving cybersecurity in supply chains. NIST is considering updating the NIST Cybersecurity Framework to account for the changing landscape of cybersecurity risks, technologies, and resources. In addition, NIST recently announced it would launch the National Initiative for Improving Cybersecurity in Supply Chains (NIICS) to address cybersecurity risks in supply chains. This wide- ranging public-private partnership will focus on identifying tools and guidance for technology developers and providers, as well as performance-oriented guidance for those acquiring such technology. To inform the direction of the NIICS, including how it might be aligned and integrated with the Cybersecurity Framework, NIST is requesting information that will support the identification and prioritization of supply chain-related cybersecurity needs across sectors. Responses to this RFI will inform a possible revision of the Cybersecurity Framework as well as the NIICS initiative.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.