From: FierceGovernmentIT
By David Perera
The final draft of the critical infrastructure cybersecurity framework under development by the National Institute of Standards and Technology for nearly a year will not include a separate appendix for privacy controls.
In an update (.pdf) on the framework’s status published about a month before the final draft’s anticipated Feb. 13 release date, NIST says industry comments show that its methodology for addressing privacy and civil liberties concerns created by corporate cybersecurity programs “did not generate sufficient support.”
Leave a Reply