top of page

Guided Cybersecurity Risk Review

 

 

Our Guided Cybersecurity Risk Review is a consultant-guided self-assessment using the NIST Cybersecurity Framework 2.0, a set of industry recognized standards created by the federal agency Cybersecurity and Infrastructure Security Agency (CISA), or optionally the CIS (Center for Internet Security) Framework. Completing a self-assessment with an experienced guide will help you understand your nonprofit's cybersecurity risk and prioritize work items to improve security and resilience. Understanding what to protect and prioritize can support your organization's ability to recover if a major data breach or cyberattack occurs. Over a series of scheduled remote meetings (no more than 10 weeks), an experienced cybersecurity consultant will work directly with your team to review each NIST CSF standard. You'll work with consultants to complete a CSF Organizational Profile using the NIST CSF 2.0 template. Based on the information you and your team provides, you'll receive a quantitative presentation of assessment results and clear recommendations for next steps, including a list of your top 5 security work items.

To facilitate this process, we ask clients to provide an intake workbook (we provide this prior to our kick-off meeting), copies of current IT/cybersecurity policies, a basic asset inventory (we provide instructions and a template and are here to answer your questions), and support for staff interviews or surveys.

 

You'll develop a baseline understanding of your organization's risk and compliance, a clearer grasp of policy development within a security context, and participate in strategic conversations and mentoring with an expert cybersecurity analyst. You'll receive a completed NIST CSF tool that serves as a living document to track progress and communicate your security posture. Optional 6 and 12 month follow ups are available at no extra charge to assess your progress and adjust your work plan as needed.

To get started, contact Kai Dailey at kai@501secure.org.

bottom of page