NIST Privacy Framework Glossary

Terminology is important. You will notice that I use terms in a very deliberate and formal fashion. Using terms in this manner aids in communication and thinking about privacy and the NIST Privacy Framework. The full glossary is available in the NIST Privacy Framework v1.0. NS in this glossary represents non-standardized definitions that are not in the NIST Privacy Framework glossary.

NIST Privacy Engineering Collaboration Space

NIST’s Privacy Engineering Collaboration Space is an online venue open to the public where practitioners can discover, share, discuss, and improve upon open source tools, solutions, and processes that support privacy engineering and risk management.

Align Your Program With the NIST Privacy Framework ​

The NIST Privacy Framework is a tool developed by the National Institutes of Standards and Technology to help organization manage privacy risks. It was published in 2020 as a companion to the NIST Cybersecurity Framework which is a tool for organizations to manage cybersecurity risks. The Privacy Framework can be a dense document for those […]

NIST Privacy Framework: Cybersecurity and Privacy Learning Program

A knowledgeable and skilled workforce is at key to success in your privacy and cybersecurity program. NIST is in the process of revising their Special Publication 800-50 for how to create and operate a Cybersecurity and Privacy Learning Program. Training is one of Enterprivacy Consulting Group’s strengths and we can help you create a successful learning program […]

NIST Privacy Framework: Assessments and GAP Analysis

Third party assessments help an organization gauge how they are doing and what they can be doing better. Many companies, leveraging the reputation of NIST, want an assessment against the Privacy Framework. But the framework is not a conformance standard, as many people mistakenly believe.   Types of Assessments Assessment Type If your organization… Question Answered […]

NIST Privacy Framework Implementation: 5 Steps to Success

Begin with the End in Mind The NIST Privacy Framework is a tool for managing risk. In order to manage risk, you must first understand risk. This first step entails understanding the business, its operations, the clients, customers, vendors, partners and others it interacts with and most importantly, what it values and, in some cases, […]

NIST IR 8477: Mapping Relationships Between Documentary Standards, Regulations, Frameworks, and Guidelines

The NIST IR 8477 explains National Institute of Standards and Technology’s approach for identifying and documenting the relationships between concepts in cybersecurity and privacy. By following this approach, the standards community can jointly establish a single concept system over time that links cybersecurity and privacy concepts from many sources into a cohesive, consistent set of […]