The National Institute of Standards and Technology (NIST) is a non-regulatory federal agency within the U.S. Department of Commerce. Founded in 1901, NIST's mission is to promote U.S. innovation and industrial competitiveness by advancing measurement science, standards, and technology to enhance economic security and improve quality of life. NIST carries out its mission through various programs, including the NIST Laboratories, the Baldrige Performance Excellence Program, the Hollings Manufacturing Extension Partnership, and the Technology Innovation Program
The Center for Internet Security (CIS) is an independent, nonprofit organization dedicated to making the connected world a safer place. CIS is known for developing globally recognized best practices for securing IT systems and data, such as the CIS Controls and CIS Benchmarks. These resources help organizations improve their cybersecurity posture by providing prioritized and simplified best practices.
CIS also operates the Multi-State Information Sharing and Analysis Center (MS-ISAC) and the Elections Infrastructure Information Sharing and Analysis Center (EI-ISAC), which support U.S. state, local, tribal, and territorial government entities in their cybersecurity efforts
Placeholder
Placeholder
Placeholder
Placeholder
The National Institute of Standards and Technology (NIST) was founded in 1901 and is now part of the U.S. Department of Commerce. NIST is one of the nation's oldest physical science laboratories. Congress established the agency to remove a major challenge to U.S. industrial competitiveness at the time — a second-rate measurement infrastructure that lagged behind the capabilities of the United Kingdom, Germany and other economic rivals.
From the smart electric power grid and electronic health records to atomic clocks, advanced nanomaterials and computer chips, innumerable products and services rely in some way on technology, measurement and standards provided by the National Institute of Standards and Technology.
Today, NIST measurements support the smallest of technologies to the largest and most complex of human-made creations — from nanoscale devices so tiny that tens of thousands can fit on the end of a single human hair up to earthquake-resistant skyscrapers and global communication networks.
To promote U.S. innovation and industrial competitiveness by advancing measurement science, standards, and technology in ways that enhance economic security and improve our quality of life.
NIST will be the world's leader in creating critical measurement solutions and promoting equitable standards. Our efforts stimulate innovation, foster industrial competitiveness, and improve the quality of life.
NIST is an organization with strong values, reflected both in our history and our current work. NIST leadership and staff will uphold these values to ensure a high-performing environment that is safe and respectful of all.
source and credit: nist.gov
This document provides an overview of the recently updated NIST CSF v2.0, and includes updated Functions, Categories, and Subcategories. Page 15 is a good place to start at a high level
The Center for Internet Security, Inc. (CIS®) makes the connected world a safer place for people, businesses, and governments through our core competencies of collaboration and innovation.
We are a community-driven nonprofit, responsible for the CIS Controls® and CIS Benchmarks®, globally recognized best practices for securing IT systems and data. We lead a global community of IT professionals to continuously evolve these standards and provide products and services to proactively safeguard against emerging threats. Our CIS Hardened Images® provide secure, on-demand, scalable computing environments in the cloud.
CIS is home to the Multi-State Information Sharing and Analysis Center® (MS-ISAC®), the trusted resource for cyber threat prevention, protection, response, and recovery for U.S. State, Local, Tribal, and Territorial government entities, and the Elections Infrastructure Information Sharing and Analysis Center® (EI-ISAC®), which supports the rapidly changing cybersecurity needs of U.S. elections offices.
CIS operates as a mission driven, nonprofit organization dedicated to making the connected world a safer place. Our employees adhere to our Code of Ethics, Leadership Principles, and Code of Conduct, consistent with our collaborative, nonpartisan, vendor-agnostic operating model. These values guide our decisions and actions and build trust in our capabilities, enabling us to achieve our mission.
Leading the global community to secure our ever-changing connected world.
Our mission is to make the connected world a safer place by developing, validating, and promoting timely best practice solutions that help people, businesses, and governments protect themselves against pervasive cyber threats.
CIS receives funding through various means, including direct sales of various cybersecurity best practices tools and resources, like CIS SecureSuite Membership and CIS Hardened Images, and cybersecurity services like CIS Endpoint Security Services. CIS also receives funding from various government and non-profit grant programs designed to improve the overall cybersecurity posture of U.S. State, Local, Tribal, and Territorial government organizations. CIS operates the Multi-State and Elections Infrastructure Information Sharing and Analysis Centers (MS-ISAC and EI-ISAC) in a cost-share model including federal funding and CIS funds. Information about CIS funding through a Cooperative Agreement with Congressional federal fiscal year 2023 appropriations can be found here (page 57-58 addresses the MS-ISAC).
Back in August of 2000, a small group of business and government leaders met at the legendary Cosmos Club in Washington, D.C. to discuss a concerning rash of cyber-attacks. From that meeting and others, a vision emerged for an independent, mission-driven, nonprofit organization dedicated to preventing and mitigating new cyber threats.
Today, CIS is the embodiment of that vision. Over the course of 20 years, we have been privileged to work with some of the best minds in the cybersecurity and IT professions. Through a global, collaborative effort, we have developed world-class standards in the form of the CIS Controls and CIS Benchmarks, along with specialized technology tools to help security practitioners implement and manage their cyber defenses.
source and credit: cisecurity.org / CIS
Add a footnote if this applies to your business
But do you have a good cybersecurity compass and map?
No? Then Let's Go!