Ransomware is a type of malicious attack where attackers encrypt an organization s data and demand payment to restore access. Attackers may also steal an organization s information and demand an additional payment in return for not disclosing the information to authorities, competitors, or the public. This Ransomware Profile identifies the Cybersecurity Framework Version 1.1 security objectives that support identifying, protecting against, detecting, responding to, and recovering from ransomware events. The profile can be used as a guide to managing the risk of ransomware events. That includes helping to gauge an organization s level of readiness to counter ransomware threats and to deal with the potential consequences of events.
Document Citations
Citations are generated automatically from bibliographic data
as a convenience and may not be complete or accurate.
Chicago
National Institute of Standards and Technology (NIST), Commerce Department. "Ransomware Risk Management: A Cybersecurity Framework Profile". Government. Commerce Department, April 18, 2022. https://www.govinfo.gov/app/details/GOVPUB-C13-25e76b9ce1c0a1faf661a500a8e17d3f
APA
National Institute of Standards and Technology (NIST), Commerce Department. (2022, April 18). Ransomware Risk Management: A Cybersecurity Framework Profile. [Government]. Commerce Department. https://www.govinfo.gov/app/details/GOVPUB-C13-25e76b9ce1c0a1faf661a500a8e17d3f
MLA
National Institute of Standards and Technology (NIST), Commerce Department. Ransomware Risk Management: A Cybersecurity Framework Profile. Commerce Department, (18 Apr 2022), https://www.govinfo.gov/app/details/GOVPUB-C13-25e76b9ce1c0a1faf661a500a8e17d3f
Bluebook
National Institute of Standards and Technology (NIST), Commerce Department, Ransomware Risk Management, GovInfo, (April 18, 2022), https://www.govinfo.gov/app/details/GOVPUB-C13-25e76b9ce1c0a1faf661a500a8e17d3f