The launch of NIST CSF 2.0 introduces a range of welcome additions to v1.1 - it's easier to use, considers modern and evolving risks, and focusses on the importance of governance.

To assist cyber teams in the transition, Skylight Cyber have developed a free tool to convert v1.1 scores to 2.0 to establish a baseline score in readiness for full conversion.

Access the Free tool now
First name (required)
Last name (required)
Company (required)
Email (required)
Oops! Something went wrong while submitting the form.

About the Tool

Tool Outcomes   

Establish new 2.0 baseline scores without a complete assessment.

Self-assess the 16 new sub-categories only, instead of the full 106.

Identify key areas to focus your cyber security uplift on against the new framework.

Who is this for

Cyber Risk & Strategy Leads

Commence the transition to NIST 2.0 without a full assessment.

Cybersecurity & IT Managers

Gain actionable knowledge on key focus areas.

C-Suite & Board Members

Understand key security concerns and how they impact your organisation’s risk profile. 

About the Authors

Mischa Tanne

Head of Technical Services

Mischa is the Head of Technical Services at Skylight Cyber and manages the firm’s offensive security and technical capability. He oversees the planning and delivery of offensive-led engagements, including red team, purple team, uplift, penetration, and product testing assessments.  

Mischa guides clients through complex technical engagements and ensures the outcomes delivered are practical, clear, and aligned to desired business priorities. He has worked with government, public, and private sector organisations across the globe and has served as a vCISO supporting pragmatic, security-uplifting initiatives that balance risk, costs, and capability.

He holds a Bachelor of Economics and a Bachelor of Arts from the University of Sydney and has attained industry certifications including ISO 27001 Lead Auditor and CompTIA Security+.

Learn more

Jennifer Vu

Head of Advisory Services

Jennifer is the Head of Advisory Services and leads the cyber strategy and GRC capability at Skylight Cyber.

 
As an experienced cyber security consultant, she specialises in delivering pragmatic and risk-driven cyber security strategies, assessments and cyber risk management services to her clients. Jennifer has engaged with CISOs and cyber security teams to build their security organisations and successfully gain funding for their programs. She also has experience in getting into the weeds of cyber risk management to design, implement and run client's GRC processes and capabilities.


Additionally, in her most recent previous role at NSW Government, she has helped create the 2021 NSW Cyber Security Strategy and led the development and delivery of the first NSW government-wide training sessions for executives and senior management across all departments of NSW government.


 Jennifer holds a Bachelor of Information Systems (Co-op) (Honours) from the University of New South Wales (UNSW).

Learn more

Jackson Henry

Advisory Services Senior Consultant

Jackson is a senior cyber security consultant with experience in offensive security, GRC, and strategic cyber advisory. He has worked with a range of clients across the financial services, retail, utilities, education, and government sector. Jackson has solutioned and executed upon a wide range of engagement types, including cyber security strategies, crisis simulation exercises, crown jewels frameworks and red team remediation programs. 

Jackson has also worked with one of Australia's largest banks to re-design their board reporting capability and processes. Jackson's blend of technical and strategic consulting skills enables a threat-informed and risk-led approach to delivery. He also holds industry certifications such as CompTIA PenTest+.

Learn more

Jerica Macaraeg

Security Analyst Intern

Jerica is studying a Bachelor of IT and a Bachelor of Business majoring in Networking & Cybersecurity and International Business from the University of Technology Sydney. While interning at Skylight Cyber, she is undertaking the Coursera Cybersecurity and Risk Management specialisation course. Jerica supports the Strategy & Risk team to deliver strategy, governance and risk services to Skylight clients.

Learn more

About Skylight Cyber  

Skylight Cyber is an Australia based cyber security company specialising in cyber security services that focus on the prism of sophisticated threat actors. 

Skylight is a trusted advisor to Fortune 500 organisations globally in a variety of industries including Financial Services, Travel and Technology and is often called upon to solve unique security challenges. 

OUR HEADQUARTERS
Level 30
201 Elizabeth Street
Sydney
NSW 2000
Australia
Open the map

Get in touch

Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.