193k views
0 votes
Under the NIST Cybersecurity Framework, __________________ of the Integrated Risk Management Program indicates there is an awareness of cybersecurity risk at the organizational level but an organization-wide approach to managing cybersecurity risk has not been established.

User Eddified
by
7.9k points

1 Answer

4 votes

Final answer:

A 'Partial' implementation of the NIST Cybersecurity Framework implies awareness of cybersecurity risk but the absence of a comprehensive organizational strategy to manage it, representing a significant risk.

Step-by-step explanation:

Under the NIST Cybersecurity Framework, the phrase needed to complete the sentence could be 'Partial' implementation of the Integrated Risk Management Program. This indicates there is an awareness of cybersecurity risk at the organizational level but an organization-wide approach to managing cybersecurity risk has not been established. A 'Partial' implementation suggests that while there is some recognition of the importance of cybersecurity, there is still significant work to be done to integrate it fully across all levels of the organization.

Also important to recognize is that a challenge cannot be effectively mitigated unless it is first identified and acknowledged. The very lack of collective awareness about a credible risk of collapse is itself unsettling. If open discussion of the possibility of collapse were not so uncomfortable and off-putting, we would stand a better chance of preventing its unfolding. It would be a huge relief to be wrong about the concern. But not taking it seriously represents a colossal risk.

User Marouane Lakhal
by
7.4k points