The April 2025 revision of NIST SP 800-61 provides updated guidance for integrating incident response into broader cybersecurity risk management efforts, aligned with the NIST Cybersecurity Framework (CSF) 2.0. It emphasizes that incident response should not be a siloed function but an ongoing, organization-wide activity involving governance, detection, response, and recovery. The publication outlines a new lifecycle model and provides a “Community Profile” to help organizations align incident response priorities with risk tolerance, regulatory obligations, and threat landscapes. It also stresses the importance of continual improvement, shared responsibilities, and the role of contextual threat intelligence in proactive defense.
Format: |
|
Topics: | |
Website: | Visit Publisher Website |
Publisher: | National Institute of Standards and Technology (NIST) |
Published: | April 1, 2025 |
License: | Public Domain |