Loading…

5.12 Cybersecurity (detail)

<p style='margin:0in;'><font face='Avenir Next W01'><span style='font-size:16px;'>The National Institute of Standards and Technology (NIST) provides a Cybersecurity Framework (CSF) for benchmarking and measuring the maturity level of cyber security programs across all industries. The City uses this framework and toolset to measure and report on its internal cyber security program.</span></font></p><p style='margin:0in;'><font face='Avenir Next W01'><span style='font-size:16px;'><br /></span></font></p><p style='margin:0in;'><font face='Avenir Next W01'><span style='font-size:16px;'>The foundation for this measure is the Framework Core, a set of cybersecurity activities, desired outcomes and applicable references that are common across critical infrastructure/industry sectors. These activities come from the National Institute of Standards and Technology (NIST) Cybersecurity Framework (CSF) published standard, along with the information security and customer privacy controls it references (NIST 800 Series Special Publications). The Framework Core presents industry standards, guidelines, and practices in a manner that allows for communication of cybersecurity activities and outcomes across the organization from the executive level to the implementation/operations level.  </span></font></p><p style='margin:0in;'><font face='Avenir Next W01'><span style='font-size:16px;'><br /></span></font></p><p style='margin:0in;'><font face='Avenir Next W01'><span style='font-size:16px;'>The Framework Core consists of five concurrent and continuous functions – identify, protect, detect, respond, and recover.  When considered together, these functions provide a high-level, strategic view of the lifecycle of an organization’s management of cybersecurity risk.  The Framework Core identifies underlying key categories and subcategories for each function, and matches them with example references, such as existing standards, guidelines and practices for each subcategory. </span></font></p><p style='margin:0in;'><font face='Avenir Next W01'><span style='font-size:16px;'><br /></span></font></p><p style='margin:0in;'><font face='Avenir Next W01'><span style='font-size:16px;'>This page provides data for the Cybersecurity performance measure.</span></font></p><p style='margin:0in;'><font face='Avenir Next W01'><span style='font-size:16px;'><br /></span></font></p><p style='margin:0in;'><font face='Avenir Next W01'><span style='font-size:16px;'>Cybersecurity Framework (CSF) scores by each CSF category per fiscal year quarter (Performance Measure 5.12)</span></font></p><p style='margin:0in;'><font face='Avenir Next W01'><span style='font-size:16px;'><br /></span></font></p><p style='margin:0in;'><font face='Avenir Next W01'><span style='font-size:16px;'>The performance measure dashboard is available at </span></font><a href='https://financial-stability-and-vitality-tempegov.hub.arcgis.com/pages/cyber-security' target='_blank' rel='nofollow ugc noopener noreferrer'>5.12 Cybersecurity</a><font face='Avenir Next W01'><span style='font-size:16px;'>.</span></font></p><p style='margin:0in;'><font face='Avenir Next W01'><span style='font-size:16px;'><br /></span></font></p><p style='margin:0in;'><font face='Avenir Next W01'><span style='font-size:16px;'>Additional Information</span></font></p><p style='margin:0in;'><font face='Avenir Next W01'><span style='font-size:16px;'>Source: Maturity assessment /</span></font><a href='https://www.nist.gov/topics/cybersecurity' target='_blank' rel='nofollow ugc noopener noreferrer'>https://www.nist.gov/topics/cybersecurity</a></p><p style='margin:0in;'><font face='Avenir Next W01'><span style='font-size:16px;'>Contact: Scott Campbell</span></font></p><p style='margin:0in;'><font face='Avenir Next W01'><span style='font-size:16px;'>Contact E-Mail: [email protected]</span></font></p><p style='margin:0in;'><font face='Avenir Next W01'><span style='font-size:16px;'>Data Source Type: Excel</span></font></p><p style='margin:0in;'><font face='Avenir Next W01'><span style='font-size:16px;'>Preparation Method: The data is a summary of a detailed and confidential analysis of the city's cyber security program. Maturity scores of subcategories within NIST CFS are combined, averaged and rolled up to a summary score for each major category.</span></font></p><p style='margin:0in;'><font face='Avenir Next W01'><span style='font-size:16px;'>Publish Frequency: Annual</span></font></p><p style='margin:0in;'><font face='Avenir Next W01'><span style='font-size:16px;'>Publish Method: Manual</span></font></p><p style='margin:0in;'><a href='https://gis.tempe.gov/design/data-dictionary/5.12%20Cybersecurity%20(detail)/' target='_blank' rel='nofollow ugc noopener noreferrer'>Data Dictionary</a><br /></p>

Year, Date, Control_Set, Control, Control_Name, Control_Family_Code, Definition, Compliance_Score, Reporting_Date, ObjectId