Skip to main content
U.S. flag

An official website of the United States government

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

NIST Revises Publications on Integrating Cybersecurity and Enterprise Risk Management

NIST revises three publications on Integrating Cybersecurity and Enterprise Risk Management: NIST IR 8286r1, 8286Ar1, and 8286Cr1.

Integrating Cybersecurity and Enterprise Risk Management: Three Revised NIST IR 8286 Publications Now Available!

The NIST Interagency Report (IR) 8286 series helps practitioners understand the critical connection between cybersecurity and enterprise risk management (ERM). Recent updates to three publications in the series align more closely with the NIST Cybersecurity Framework (CSF) 2.0 and other NIST guidance, placing greater emphasis on cybersecurity governance to ensure that cybersecurity capabilities effectively support broader organizational missions through ERM. View the three finalized publications:    

See NIST IR 8286r1 to view the entire 8286 series.



If you have any questions related to the 8286 series, the CSF site, or would like to share publicly available CSF 2.0 resources with our library, please email the team at csf [at] nist.gov (csf[at]nist[dot]gov).

Released December 18, 2025
Was this page helpful?