Abstract
For organizations of all sizes, managing risk (including information security and privacy risk), is critical for organizational resilience. This guide is designed to help small, under-resourced entities understand the value and core components of the NIST Risk Management Framework (RMF) and provide a starting point for designing and implementing an information security and privacy risk management program. This document is not intended to replace the RMF; it is intended to be an introductory guide to help organizations get started.
Citation
Special Publication (NIST SP) - 1314
Keywords
RMF, risk management framework, risk, privacy
Citation
Eliot, D.
(2024),
NIST Risk Management Framework (RMF) Small Enterprise Quick Start Guide, Special Publication (NIST SP), National Institute of Standards and Technology, Gaithersburg, MD, [online], https://doi.org/10.6028/NIST.SP.1314, https://tsapps.nist.gov/publication/get_pdf.cfm?pub_id=958109 (Accessed April 23, 2026)
Additional citation formats
Issues
If you have any questions about this publication or are having problems accessing it, please contact [email protected].