NIST CSF 2.0 Readiness Assessment

NIST Cybersecurity Framework 2.0

Assess your cybersecurity posture across the six NIST CSF 2.0 functions — Govern, Identify, Protect, Detect, Respond, and Recover. The best starting point if you are not yet sure which certification your organisation needs.

  • 16 outcomes across 6 CSF functions
  • Weighted scoring — critical gaps count three times an operational one
  • Instant result, scored in your browser — nothing is sent until you ask for the full report
  • Roughly five minutes to complete

This is an indicative self-assessment, not a formal audit or legal advice. For a certification-grade gap analysis, talk to our team.

Cyberfyx
Cyberfyx Compliance Advisor
NIST CSF 2.0 Readiness Assessment
NIST CSF 2.0 Evaluation

What the Assessment Covers

The 16 questions are grouped into three weighted tiers.

Tier 1 — Critical

Governance and accountability — weighted 3×

  • Govern — Strategy & Policy
  • Govern — Roles & Accountability
  • Identify — Risk Assessment
  • Govern — Oversight & Improvement

Tier 2 — High Impact

Core operational controls — weighted 2×

  • Identify — Asset Management
  • Protect — Identity & Access
  • Protect — Data Security
  • Detect — Continuous Monitoring
  • Respond — Incident Management
  • Recover — Recovery Planning

Tier 3 — Operational

Supporting practices — weighted 1×

  • Govern — Supply Chain Risk
  • Protect — Awareness & Training
  • Protect — Platform Security & Configuration
  • Detect — Adverse Event Analysis
  • Respond & Recover — Communications
  • Identify — Improvement & Lessons Learned

Ready to Close Your NIST CSF 2.0 Gaps?

Our consultants take organisations from first gap assessment through to certification and ongoing maintenance.

Talk to a Compliance Expert