Udemy
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
Turn what you know into an opportunity and reach millions around the world.
Learn More
Your cart is empty.
Keep shopping
Implement version 2 of NIST Cybersecurity Framework (CSF)
Rating: 4.5 out of 5(151 ratings)
683 students

Implement version 2 of NIST Cybersecurity Framework (CSF)

Designed for hands-on practitioners who really want to know how the NIST Cybersecurity Framework works!
Created byKip Boyle
Last updated 5/2025
English
English

What you'll learn

  • Understand the foundations of the NIST Cybersecurity Framework
  • Be able to use the Framework Core
  • Be able to use the Framework Tiers
  • Be able to use the Framework Implementation Profile
  • Use the CR-MAP method to discover top 5 cyber risks for their organization
  • Use the CR-MAP method to create a compelling plan to mitigate their top 5 cyber risks
  • Use the CR-MAP method to sustain the mitigation work over 12-24 months

Course content

7 sections47 lectures2h 46m total length
  • Introduction6:02

    Explore how the NIST Cybersecurity Framework provides a blueprint for building cyber resilience, detailing six core functions—governance, identify, protect, detect, respond, recover—and practical tools like community profiles.

  • Course summary & study guide0:03
  • Business Value of Framework5:46

    Explore the business value of the NIST cybersecurity framework, a free, vendor-neutral playbook that unifies risk management, continuous improvement, and cyber resilience across organizations.

  • Who Can Use The Framework?5:02

    Discover who can use the NIST Cybersecurity Framework version 2, from critical infrastructure to any organization, and apply its flexible five key benefits to fit size, risk, and resources.

  • Understanding the Core3:16

    Explore the core of the NIST cybersecurity framework and its six functions: govern, identify, protect, detect, respond, recover, and how industry standards enable concurrent, adaptive risk management and cross-stakeholder communication.

  • Understanding the Tiers3:11

    Explore the NIST Cybersecurity Framework implementation tiers from tier one to four, their risk management methods, and why they are not a maturity model.

  • Understanding the Profiles2:58

    Explore how core profiles tailor the NIST CSF for your organization, selecting relevant activities and outcomes to close the gap between current and target states while considering risk appetite.

  • Understanding the Online Resources4:03

    Explore NIST CSF version 2 resources that simplify implementation. See how CPRT and machine readable tools map to ISO 27001 or PCI DSS, with templates and FAQs.

  • Chapter 1 Quiz

Requirements

  • No special tools are required, just a willingness to learn about using the NIST Cybersecurity Framework

Description

The NIST Cybersecurity Framework isn't just another dusty document. It's a practical tool that can help protect your organization. But many people tell me they're confused about how to actually use it.


We've been implementing the Framework with paying customers for over 8 years, so I've seen lots of confusion.


In this course, I'm going to demystify the Framework, show you how to implement it, and give you a straight-forward method along with a free tool for automating the workflow and reporting.


You'll start by learning the basics of the NIST Cybersecurity Framework, like who made it and who can use it.


Then, you'll dive deeper into the framework to fully understand the Framework Core, the Framework Tiers, and the Implementation Profiles.


You'll also review case studies from diverse organizations across the globe, including a critical infrastructure organization, a large global business, and others.


Finally, we'll spend most of our time learning how to implement the framework within your own organization by making a Cyber Risk Management Action Plan (CR-MAP). This CR-MAP of your organization will discover your time five cyber risks and help you to create a mitigation plan to reduce your cyber risk and make your organization more cyber resilient. 


You'll also get a free bonus digital workbook that helps you conduct a CR-MAP step-by-step.


Remember: Cyber criminals don't care how big or small your organization is. They only care if you're an easy target.


The Framework helps make you a harder target. Let's get going!

Who this course is for:

  • Cybersecurity Professionals
  • Information Technology Practitioners
  • Risk Management Practitioners
  • Business Leaders and Executives