

CSF 1.1 and 2.0 with Geoff Hancock
Dec 6, 2023
Geoff Hancock, Deputy CEO and CISO for Access Point Consulting, discusses the NIST CSF versions 1.1 and 2.0. Highlights of the conversation include the role of frameworks in cybersecurity, the changes in CSF 2.0, the addition of the GV function, overdue implementation examples, and the focus on supply chain. The chapter also explores starting small with a lightweight framework, the difference between compliance and security, and the importance of supply chain risk management.
Chapters
Transcript
Episode notes
1 2 3 4 5 6
Introduction
00:00 • 2min
CSF 2.0 Development and Implementation
01:39 • 7min
The Role of Frameworks in Cybersecurity
09:01 • 3min
The Difference Between Compliance and Security in Cybersecurity Frameworks
12:08 • 3min
Starting Small with a Lightweight Framework
14:49 • 19min
Exploring Supply Chain Risk in Cybersecurity
33:43 • 3min