Skip to main content
U.S. flag

An official website of the United States government

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Small Business Cybersecurity and Privacy Videos

Phishing

Protecting Your Small Business: Phishing
Protecting Your Small Business: Phishing
See the Phishing companion PDF here.

Multi-Factor Authentication

Protecting Your Small Business: Multi-Factor Authentication
Protecting Your Small Business: Multi-Factor Authentication
See the Multi-Factor Authentication companion PDF here.

Ransomware

Protecting Your Small Business: Ransomware
Protecting Your Small Business: Ransomware
See the Ransomware companion PDF here.

 


You've Been Phished 
 

You've Been Phished
You've Been Phished
NIST research has uncovered one reason, and the findings could help CIOs mount a better defense.

 The NIST Privacy Framework

The NIST Privacy Framework
The NIST Privacy Framework
Learn more here

Overview of the NIST CSF 2.0 Small Business Quick Start Guide

Overview of the NIST CSF 2.0 Small Business Quick Start Guide
Overview of the NIST CSF 2.0 Small Business Quick Start Guide
Overview of the NIST CSF 2.0 Small Business Quick Start Guide

March 20, 2024

Ransomware Prevention Detection Response and Recovery

NIST Small Business Webinar: Ransomware Prevention, Detection, Response, and Recovery
NIST Small Business Webinar: Ransomware Prevention, Detection, Response, and Recovery
Ransomware is a very serious and increasingly common threat to organizations of all sizes, and it is particularly devastating to smaller organizations that have limited resources. A successful ransomware attack can stop your business in its tracks. 

CSF 2.0 Webinar Series: Implementing CSF 2.0 - The Why, What and How

In the first episode of NIST’s new multi-part CSF 2.0 webinar series, we provide an overview focused on implementing CSF 2.0, including: Why organizations would want to upgrade and how to foster bidirectional cybersecurity risk communications between leadership and practitioners. •  Practical actions organizations can take to implement the CSF 2.0. •  What resources are available to assist with implementation.

Cybersecurity Resources for Small to Medium Sized Manufacturers

Cybersecurity Resources for Small to Medium-Sized Manufacturers: A Fireside Chat with the NIST Manufacturing Extension Partnership (MEP)
Cybersecurity Resources for Small to Medium-Sized Manufacturers: A Fireside Chat with the NIST Manufacturing Extension Partnership (MEP)
The webinar provides an overview of the NIST Manufacturing Extension Partnership (MEP) and highlights the cybersecurity resources available to the nation’s small and medium-sized manufacturers (SMMs). 

 


Protecting Your Small Business from Phishing Risks

Phishing is one of the most common types of cyber crime. These scams use convincing emails or other messages, such as text messages or social media messages, to trick users into opening harmful links, downloading malicious software, or submitting sensitive information, such as credentials. These messages are often disguised as coming from a trusted source, such as a bank, credit card company, or even a leader from within the business.

Cybersecurity Fundamentals for Entrepreneurs

 

Cybersecurity Fundamentals for Entrepreneurs
This webinar, held during National Entrepreneurship Week (2025), provides an introduction to NIST and its small business cybersecurity resources, highlights cybersecurity fundamentals, and more.

Protecting CUI: Overview of the NIST SP 800-171 Rev. 3 Small Business Primer

During this webinar, held on January 20, 2026, NIST provides attendees with an overview of the NIST Special Publication (SP) 800-171, Revision 3, Small Business Primer, including: A foundational overview of SP 800-171.Key differences between SP 800-171 Revision 2 and Revision 3.An overview of the relationship between SP 800-171 and SP 800-171A.Considerations to be mindful of as small organizations begin implementing the requirements in SP 800-171.Answers to frequently asked questions.

Resources for Ransomware Risk Management

Resources for Ransomware Risk Management

January 28, 2026. Speakers: Bill Fisher, Security Engineer, National Institute of Standards and Technology (NIST); Valecia Stocchetti, Senior Cybersecurity Engineer, CIS Critical Security Controls; Michael Klein, Senior Director for Preparedness and Response, Institute for Security and Technology (IST)

 

Non NIST Videos


Cyber Basics for Small Business - Watch this video to learn some cybersecurity basics and learn how to put them into practice in your small business.
Federal Trade Commission

Cybersecurity for the Clinician – a series of 8 training videos explains in easy, non-technical language what clinicians and students in the medical profession need to understand about how cyber attacks can affect clinical operations and patient safety, and how to do your part to help keep healthcare data, systems and patients safe from cyber threats.
Health Sector Council

Created December 15, 2021, Updated February 11, 2026
Was this page helpful?