BitSight Security Ratings Blog - Cybersecurity News & Tips

7 Cybersecurity Frameworks To Reduce Cyber Risk

Written by Eric Cisternelli | December 28, 2020

While security ratings are a great way to demonstrate that you’re paying attention to the cyber health of the organization you also need to show that you’re adhering to industry and regulatory best practices for IT security and making informed decisions for the long-term. A cybersecurity framework can help.

What is a cybersecurity framework?

A cybersecurity framework provides a common language and set of standards for security leaders across countries and industries to understand their security postures and those of their vendors. With a framework in place it becomes much easier to define the processes and procedures that your organization must take to assess, monitor, and mitigate cybersecurity risk.

Let’s take a look at seven common cybersecurity frameworks.

  1. NIST Cybersecurity Framework
  2. ISO 27001 and ISO 27002
  3. SOC2
  4. NERC-CIP
  5. HIPAA
  6. GDPR
  7. FISMA