The public comment period for the following concept paper has closed. Thank you to everyone who shared their feedback with us.
If you have any questions, please reach out to our project team at [email protected].
Recent advancements in Artificial Intelligence (AI) technology bring great opportunities to organizations, but also new risks and impacts that need to be managed in the domain of cybersecurity. NIST is evaluating how to use existing frameworks, such as the Cybersecurity Framework (CSF), to assist organizations as they face new or expanded risks.
The public comment period for the following concept paper has closed. Thank you to everyone who shared their feedback with us.
If you have any questions, please reach out to our project team at [email protected].
For the cybersecurity of AI and AI used for cybersecurity, NIST is proposing to focus on three sources of risk that impact an organization’s operational risk: Cybersecurity of AI Systems, AI-enabled Cyber Attacks, and AI-enabled Cyber Defense.
Organizations vary on whether and how they are using AI in these three areas. Some organizations may not yet be using AI. Some may be using cybersecurity solutions enabled with machine learning (ML) but have not yet transitioned to newer and more robust AI capabilities, such as Generative AI (Generative AI can generate text, images, videos, or other data using generative models—and can learn about the patterns and structure of data to generate new data with similar characteristics). Regardless of where they are on their AI journey, organizations need risk management approaches that support the realities of advancements in AI use.
Organizations vary on whether and how they are using AI in these three areas. Some organizations may not yet be using AI. Regardless of where they are on their AI journey, organizations need risk management approaches that support the realities of advancements in AI use.
A Community of Interest (COI) is a group of professionals and advisors who share business insights, technical expertise, challenges, and perspectives to guide NCCoE projects. COIs often include experts, innovators, and everyday users of cybersecurity and privacy technologies. Share your expertise and consider becoming a member of this project's COI.