The NIST Cybersecurity Framework (CSF) 2.0 now applies to all organizations—government, industry, and academia—not just critical infrastructure. It’s designed for any sector and organizations of all sizes and cybersecurity maturity, helping address cybersecurity challenges at any scale. With this in mind NIST has posted the initial public draft of Special Publication 1308, NIST Cybersecurity Framework 2.0: Cybersecurity, Enterprise Risk Management, and Workforce Management Quick Start Guide. These resources provide different audiences with tailored pathways into the CSF 2.0, making it easier to implement.
The public comment period is open through Friday, April 25, 2025. The NIST update and link to related documents can be found here.