Tagged: cybersecurity, ERM, integration, risk appetite, templates, tools
- This topic has 11 replies, 4 voices, and was last updated 8 months, 4 weeks ago by Andrew Brown.
-
AuthorPosts
-
-
January 23, 2024 at 8:41 am #18134Nahla K. IvyParticipant
This is to initiate a thread for the Risk Appetite Working Group, led by Eric Chism (NTSB) and Nicole Rohloff (Xcel Energy). This group will prepare guidance, examples, tools, and templates, applying best practices in the preparation of cybersecurity risk appetite statements.
-
January 23, 2024 at 8:45 am #18135Nahla K. IvyParticipant
Uploading Latest project team Work Plan (1/22/24)
-
January 24, 2024 at 7:19 am #18142Eric ChismParticipant
Testing 1 2 3
-
January 30, 2024 at 1:37 pm #18174Nicole RohloffParticipant
Testing
-
-
January 24, 2024 at 7:22 am #18143Eric ChismParticipant
I am uploading some of the documents previously shared with the team
Attachments:
-
February 26, 2024 at 10:40 am #18256Nahla K. IvyParticipant
Posting copy of the Cyber-ERM Quick Start Guide.
-
February 26, 2024 at 10:45 am #18258Nahla K. IvyParticipant
Posting copy of the Cyber-ERM Quick Start Guide.
Attachments:
-
February 27, 2024 at 12:52 pm #18270Eric ChismParticipant
FAIR Documents from the Feb 26 RA/RT Working Group Meeting
Attachments:
-
February 27, 2024 at 12:53 pm #18275Eric ChismParticipant
FAIR Documents from the Feb 26 RA/RT Working Group Meeting (Part II)
Attachments:
-
March 5, 2024 at 3:31 pm #18305Andrew BrownParticipant
This is somewhat duplicative of the NISTIR 8286. There’s a few points of clarity that the NISTIR doesn’t address. It is very much in a draft state.
Attachments:
-
March 12, 2024 at 10:20 am #18334Andrew BrownParticipant
I’m listening to the CSF 2.0 briefing from NIST on the Cyber-ERM COI meeting today. Perhaps a “quick-start” guide for developing a Risk Appetite statement, a Risk tolerance statement and ultimately a Risk profile. We may be able to plagiarize… reuse the NIST quick start guide(s). Duplication of terminology, process only reinforces the documents
-
March 27, 2024 at 9:21 am #18401Andrew BrownParticipant
I’ve obtained permission from the original author (Lucas Everly-Commonwealth of PA) to modify this document. The original intent was to clarify/visualize the difference between appetite/tolerance and risk thresholds.
Attachments:
-
-
AuthorPosts
- You must be logged in to reply to this topic.