NIST CSF 2.0 Readiness Assessment
NIST Cybersecurity Framework 2.0
Assess your cybersecurity posture across the six NIST CSF 2.0 functions — Govern, Identify, Protect, Detect, Respond, and Recover. The best starting point if you are not yet sure which certification your organisation needs.
- 16 outcomes across 6 CSF functions
- Weighted scoring — critical gaps count three times an operational one
- Instant result, scored in your browser — nothing is sent until you ask for the full report
- Roughly five minutes to complete
This is an indicative self-assessment, not a formal audit or legal advice. For a certification-grade gap analysis, talk to our team.
What the Assessment Covers
The 16 questions are grouped into three weighted tiers.
Tier 1 — Critical
Governance and accountability — weighted 3×
- Govern — Strategy & Policy
- Govern — Roles & Accountability
- Identify — Risk Assessment
- Govern — Oversight & Improvement
Tier 2 — High Impact
Core operational controls — weighted 2×
- Identify — Asset Management
- Protect — Identity & Access
- Protect — Data Security
- Detect — Continuous Monitoring
- Respond — Incident Management
- Recover — Recovery Planning
Tier 3 — Operational
Supporting practices — weighted 1×
- Govern — Supply Chain Risk
- Protect — Awareness & Training
- Protect — Platform Security & Configuration
- Detect — Adverse Event Analysis
- Respond & Recover — Communications
- Identify — Improvement & Lessons Learned
Other Assessment Tools
ISO 27001
Information security management system readiness.
ISO 42001
AI management system readiness for responsible AI adoption.
DPDPA
India's Digital Personal Data Protection Act readiness.
GDPR
EU data protection compliance and enforcement readiness.
SOC 2
Trust Services Criteria readiness for your Type I or Type II report.
Ready to Close Your NIST CSF 2.0 Gaps?
Our consultants take organisations from first gap assessment through to certification and ongoing maintenance.
Talk to a Compliance Expert