October 2025

The NIST Cybersecurity Framework

Practical Law The Journal
Mark H. Francis

Data privacy and cybersecurity attorney Mark Francis authored an article for Practical Law The Journal providing an overview of the National Institute of Standards and Technology (NIST) Cybersecurity Framework (CSF) 2.0. The framework provides guidance to industry, government agencies and other organizations on managing cyber risks, outlining a risk-based approach to cybersecurity that incorporates a logical methodology for developing and maintaining a comprehensive information security program. Mr. Francis' article breaks down key aspects of the guidance, particularly important amid a spate of high-profile data breaches and continued concerns about evolving risks.

READ: The NIST Cybersecurity Framework (Subscription required)

Related Insights