Skip to content
Cyber Horizon
All frameworks

// Cyber Hygiene

NIST Cybersecurity Framework 2.0 Compliance Software

NIST Cybersecurity Framework — voluntary guidance for managing cybersecurity risk across six functions: Govern, Identify, Protect, Detect, Respond, Recover.

Framework at a glance

Short name

NIST CSF

Version

2.0

Category

Cyber Hygiene

Controls

106

What NIST CSF covers

106 controls across 6 domains — every one tracked, owned and evidenced in Cyber Horizon.

Govern

31 controls
  • GV.OC-01 Organizational Mission
  • GV.OC-02 Internal Stakeholders
  • GV.OC-03 Legal & Regulatory Requirements
  • GV.OC-04 Critical Objectives & Services
  • GV.OC-05 Outcomes & Dependencies

Identify

21 controls
  • ID.AM-01 Hardware Inventory
  • ID.AM-02 Software Inventory
  • ID.AM-03 Network Mapping
  • ID.AM-04 External System Catalogue
  • ID.AM-05 Asset Prioritization

Protect

22 controls
  • PR.AA-01 Identity Management
  • PR.AA-02 Identity Proofing
  • PR.AA-03 Authentication
  • PR.AA-04 Authentication Credentials
  • PR.AA-05 Access Permissions

Detect

11 controls
  • DE.AE-02 Anomalies Analysed
  • DE.AE-03 Event Data Aggregated
  • DE.AE-04 Impact Estimated
  • DE.AE-06 Event Information Provided
  • DE.AE-07 Threat Intelligence Integrated

Respond

13 controls
  • RS.AN-03 Incident Analysis
  • RS.AN-06 Investigation Actions Recorded
  • RS.AN-07 Incident Data and Metadata Collected
  • RS.AN-08 Incident Magnitude Estimated
  • RS.CO-02 Stakeholder Notification

Recover

8 controls
  • RC.CO-03 Recovery Communication
  • RC.CO-04 Public Recovery Updates
  • RC.RP-01 Recovery Plan Executed
  • RC.RP-02 Recovery Actions Prioritised
  • RC.RP-03 Backup Integrity Verification

How Cyber Horizon automates NIST CSF

Every NIST CSF control lives in a shared control library, crosswalked to the other frameworks you run — evidence collected once counts everywhere it applies.

Evidence is collected automatically from your connected tools, with owners, review cadences and gaps tracked continuously instead of at audit time.

Audit packs generate on demand, and the risk register, vendor risk and threat intelligence sit in the same platform — one evidence trail across your whole programme.

Frequently asked questions

What is NIST Cybersecurity Framework 2.0?

NIST Cybersecurity Framework — voluntary guidance for managing cybersecurity risk across six functions: Govern, Identify, Protect, Detect, Respond, Recover.

How many controls does NIST Cybersecurity Framework 2.0 have?

NIST Cybersecurity Framework 2.0 (2.0) has 106 controls in Cyber Horizon's catalogue, organised across 6 domains.

How does Cyber Horizon help with NIST Cybersecurity Framework 2.0?

Cyber Horizon maps NIST Cybersecurity Framework 2.0 into a shared control library alongside every other framework you run, so evidence collected once counts towards NIST CSF and everything else it overlaps with. Controls, evidence status and audit packs live in one place, with automated collection from your connected tools.

See NIST CSF mapped to your environment

Start with the free 20-question readiness check — no signup — or get a personal walkthrough of NIST CSF in Cyber Horizon.