
 The Cyber Ranch Podcast
 The Cyber Ranch Podcast CSF 1.1 and 2.0 with Geoff Hancock
 Dec 6, 2023 
 Geoff Hancock, Deputy CEO and CISO for Access Point Consulting, discusses the NIST CSF versions 1.1 and 2.0. Highlights of the conversation include the role of frameworks in cybersecurity, the changes in CSF 2.0, the addition of the GV function, overdue implementation examples, and the focus on supply chain. The chapter also explores starting small with a lightweight framework, the difference between compliance and security, and the importance of supply chain risk management. 
 Chapters 
 Transcript 
 Episode notes 
 1  2  3  4  5  6 
 Introduction 
 00:00 • 2min 
 CSF 2.0 Development and Implementation 
 01:39 • 7min 
 The Role of Frameworks in Cybersecurity 
 09:01 • 3min 
 The Difference Between Compliance and Security in Cybersecurity Frameworks 
 12:08 • 3min 
 Starting Small with a Lightweight Framework 
 14:49 • 19min 
 Exploring Supply Chain Risk in Cybersecurity 
 33:43 • 3min 
