Continuous Security Monitoring, new draft by NIST

NIST has produced an interesting set of drafts related to Continuous Monitoring(CM).

Continuous Monitiring here can be explained by sentence:

“Continuous security monitoring is a risk management approach to Cybersecurity that maintains a
picture of an organization’s security posture, provides visibility into assets, leverages use of
automated data feeds, monitors effectiveness of security controls, and enables prioritization of
remedies.”

Enterprise Architecture view is presented below.

NIST-CM-2

 

The material presented in these drafts are steps into good direction. It is definitely worth to look this material.

Look also

 

ceasars-maturitymodel

This entry was posted in Cybersecurity, ICT News, NIST, Security Standardization and Practises. Bookmark the permalink.

Comments are closed.