FB pixel

NIST updates Privacy Framework to better align with new Cybersecurity Framework

Changes reflect how privacy and security interconnect
NIST updates Privacy Framework to better align with new Cybersecurity Framework
 

In biometrics and digital identity discussions, privacy and security are often grouped together in theory – though less so in practice, wherein silos remain a challenge. How can data be used responsibly to improve life while truly maintaining individual digital privacy and keeping personal data secure?

The U.S. National Institute of Standards and Technology (NIST) says it has updated its Privacy Framework in an effort to bring privacy and security into closer alignment. A release from NIST says a draft of the updated Privacy Framework is “intended to address current privacy risk management needs, maintain alignment with NIST’s recently updated Cybersecurity Framework, and improve usability.”

Privacy risk is closely related to, and often overlaps with, cybersecurity risk, says NIST.  “Because of this, the two frameworks have the same high-level structure to make them easy to use together.”

The Cybersecurity Framework (CSF) was updated in February 2024. That update included a feature shared with the new Privacy Framework (PFW): tweaks to the “Core” – “an increasingly granular set of activities and outcomes that can help organizations discuss risk management.”

New framework addresses overlap with AI, simplifies UX

The PFW 1.1 Public Draft Core includes changes to structure and content, partly in response to feedback gathered through public channels. A new section on AI and privacy risk management “briefly outlines ways that AI and privacy risks relate to one another and how PFW 1.1 can be used to manage AI privacy risks.” And changes to use guidelines make them easier to access and use.

All of the updates aim to align the PFW more closely with the CSF 2.0, to help organizations manage privacy risks involved in processing personal data through complex information systems.

Julie Chua, director of NIST’s Applied Cybersecurity Division, calls it a “modest but significant” update. “The PFW can be used on its own to manage privacy risks, but we have also maintained its compatibility with CSF 2.0 so that organizations can use them together to manage the full spectrum of privacy and cybersecurity risks,” Chua says.

NIST is accepting public feedback on PFW 1.1 Initial Public Draft until June 13, 2025, via privacyframework@nist.gov. A template for submitting comments can be found at the NIST Privacy Framework website.  A final version of the revised PFW is expected later in 2025.

Related Posts

Article Topics

 |   |   |   |   | 

Latest Biometrics News

 

MOSIP delves into biometric data quality considerations

Biometric data quality was in focus at MOSIP Connect 2026 in Rabat, Morocco, from policies for ensuring good enrollment practices…

 

NIST nominee pressed on AI standards, facial recognition oversight

The Senate Committee on Commerce, Science and Transportation on Thursday considered the nomination of Arvind Raman to serve as Under…

 

Trulioo’s Hal Lonas on how he applies aeronautics principles to fighting fraud

Rocket science is routinely held up as the ultimate example of a highly complex discipline. But Trulioo’s Hal Lonas found…

 

Vouched donates MCP-I framework to Decentralized Identity Foundation

An announcement from Seattle-based Vouched says it has formally donated its Model Context Protocol – Identity (MCP-I) framework to the…

 

California’s OS-based age verification law challenges open-source community

California’s new online safety bill, AB 1043 (the Digital Age Assurance Act), adopts a declared age model for operating systems….

 

87% of failed biometric verifications in Southern Africa due to AI spoofing: Smile ID

A new report spotlights deepfake fraud posing an acute problem for Africa. Digital identity, banking and e-government are being used…

Comments

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Biometric Market Analysis and Buyer's Guides

Most Viewed This Week

Featured Company

Biometrics Insight, Opinion

Digital ID In-Depth

Biometrics White Papers

Biometrics Events