NIST CSF Assessment
Evaluate your organization's maturity across the six NIST Cybersecurity Framework 2.0 functions. No account access required.
NIST CSF Assessment
Work through each section at your own pace. Results are shown immediately — no email required.
Compliance & Governance Tool
NIST CSF Assessment
Work through the six NIST Cybersecurity Framework 2.0 functions — Govern, Identify, Protect, Detect, Respond, and Recover — to evaluate your organization's maturity in each.
What This Assessment Evaluates
Six CSF 2.0 Functions
Govern
Whether cybersecurity risk management strategy and accountability are established.
Identify
Whether assets, risks, and their business context are understood.
Protect
Whether safeguards are in place to limit or contain impact.
Detect
Whether anomalies and adverse events are found in a timely way.
Respond
Whether there are actions to take once an incident is detected.
Recover
Whether capabilities exist to restore services after an incident.
FAQ
Common Questions
What is the NIST Cybersecurity Framework 2.0?
NIST CSF 2.0 is a widely used voluntary framework organized around six functions — Govern, Identify, Protect, Detect, Respond, and Recover — that provide a structured way to manage cybersecurity risk.
Is this assessment a substitute for a formal NIST CSF gap assessment?
No — this tool provides a directional maturity snapshot across the six functions. A formal gap assessment involves deeper evidence review against each function's specific categories and subcategories.
Is anything I enter here saved or transmitted?
No. Your answers are processed in your browser to generate the results shown on this page and are not stored or transmitted unless you separately choose to request an emailed copy.
Related Compliance Guidance
Operational Support
Need help building maturity across the NIST CSF functions?
IT KORR can help you close gaps in governance, identification, protection, detection, response, and recovery capability.
No commitment required — we respond within one business day.