GovWhitePapers Logo

Sorry, your browser is not compatible with this application. Please use the latest version of Google Chrome, Mozilla Firefox, Microsoft Edge or Safari.

Incident Response Recommendations and Considerations for Cybersecurity Risk Management

The April 2025 revision of NIST SP 800-61 provides updated guidance for integrating incident response into broader cybersecurity risk management efforts, aligned with the NIST Cybersecurity Framework (CSF) 2.0. It emphasizes that incident response should not be a siloed function but an ongoing, organization-wide activity involving governance, detection, response, and recovery. The publication outlines a new lifecycle model and provides a “Community Profile” to help organizations align incident response priorities with risk tolerance, regulatory obligations, and threat landscapes. It also stresses the importance of continual improvement, shared responsibilities, and the role of contextual threat intelligence in proactive defense.

  • Author(s):
  • Alex Nelson
  • Sanjay Rekhi
  • Murugiah Souppaya
  • Karen Scarfone
  • Share this:
  • Share on Facebook
  • Share on Twitter
  • Share via Email
  • Share on LinkedIn
Incident Response Recommendations and Considerations for Cybersecurity Risk Management
Format:
  • White Paper
Topics:
Website:Visit Publisher Website
Publisher:National Institute of Standards and Technology (NIST)
Published:April 1, 2025
License:Public Domain

Featured Content

Contact Publisher

Claim Content