Cyber-security versus Cyber-resilience

VC Sreedhar
1 min readAug 15, 2022

Cyber-security and cyber-resilience are two areas that are at the forefront of many enterprise clients. Unfortunately, if you ask many of them what is their strategy to deal with the two areas, they struggle. Often cyber-security team and cyber-resilience team are sitting far apart. Let us look at the following NIST (National Institute of Standards and Technology) Cyber-Security Framework (CSF)

NIST Cybersecurity Framework

There are five main steps in NIST CSF: (1) Identify, (2) Protect, (3) Detect, (4) Respond and (5) Recover.

If we take the steps in a clockwise: Identify →Protect → Detect → Respond → Recover, the focus is cyber-security.

If we take the steps in a counterclockwise: Recover → Respond → Detect → Protect → Identify, the focus is cyber-resilience.

BTW, it is always important to glue cyber-security and cyber-resilience using Data and Artificial Intelligence :-)

