NIST Privacy Framework 1.0
What is NIST Privacy Framework 1.0?
NIST Privacy Framework v1.0. A privacy‑focused counterpart to the NIST Cybersecurity Framework, organized into 5 core functions, 10 categories, and 30 subcategories.. It comprises 8 controls organised across 8 domains, published by NIST, and applies in the United States.
How NIST Privacy Framework 1.0 maps to other frameworks
All 8 controls, each one mapped to the equivalent requirement in other standards, with the evidence that carries across and the mappings that were judged and rejected shown alongside. No account needed to look.
See the control mappings →The 8 domains NIST Privacy Framework 1.0 groups its controls into
Frameworks that share controls with NIST Privacy Framework 1.0
Each of these has at least one control mapped to a control in NIST Privacy Framework 1.0. The number is how many NIST Privacy Framework 1.0 controls are shared, counted from the mapping graph.
South Korea ISMS-P
7 shared controlsFFIEC Cybersecurity Assessment Tool (CAT)
7 shared controlsVietnam PDPD
6 shared controlsVermont Artificial Intelligence and Consumer Data Act (AICDA)
6 shared controlsUSMCA Chapter 19 - Digital Trade (United States-Mexico-Canada Agreement)
6 shared controlsTurkey KVKK
6 shared controlsTEFCA - Trusted Exchange Framework and Common Agreement
6 shared controlsRussia Federal Law on Personal Data (152-FZ)
6 shared controlsWhere NIST Privacy Framework 1.0 overlaps with the standards you already hold
Analysis of NIST Privacy Framework 1.0
Where to get trained on NIST Privacy Framework 1.0
4 courses in the catalogue cover NIST Privacy Framework 1.0 directly. Each is self-paced, includes the downloadable toolkit and the implementation playbook, and carries a certificate of completion.
Training more than one person? Ten seats of any course is $1,490 on a single licence, against $199 a seat bought one at a time.
What an auditor will ask you for
All 8 NIST Privacy Framework 1.0 controls, each with what it requires, the artefacts an auditor will ask you for, and where it commonly fails. Free to read, nothing to fill in.
Read the NIST Privacy Framework 1.0 evidence request listWhat NIST Privacy Framework 1.0 means in your sector
What NIST Privacy Framework 1.0 means for your job
Questions people ask about NIST Privacy Framework 1.0
What is NIST Privacy Framework?
How many controls does NIST Privacy Framework have?
Where does NIST Privacy Framework apply?
What frameworks does NIST Privacy Framework map to?
How do I get started with NIST Privacy Framework compliance?
Query NIST Privacy Framework 1.0 programmatically
NIST Privacy Framework 1.0, its 8 controls and every mapping into other standards are available over a REST endpoint and an MCP server, so an agent can read them directly. The free tier is 10 calls a day and needs no signup.
NIST Privacy Framework 1.0 API reference and MCP config →What NIST Privacy Framework 1.0 requires, control by control
Each page carries the requirement text for one NIST Privacy Framework 1.0 control and what an assessor expects to see as evidence.
- NISTPF-1 Identify-P - Business Environment, Data Processing Inventory, Ecosystem, and Risk Assessment
- NISTPF-2 Govern-P - Governance Policies, Risk Management Strategy, Awareness Training, and Monitoring
- NISTPF-3 Control-P - Privacy Controls, Data Management, and Disassociated Processing
- NISTPF-4 Communicate-P - Privacy Notice, Transparency, and Individual Awareness
- NISTPF-5 Protect-P Access Control (PR.AC-P)
- NISTPF-6 Protect-P Data Security (PR.DS-P)
- NISTPF-7 Protect-P Maintenance and Protective Technology (PR.MA-P, PR.PT-P)
- NISTPF-8 Protect-P Information Protection Processes (PR.PO-P)
How ready are you for NIST Privacy Framework 1.0?
Answer 25 questions and get a professional readiness report with gap analysis, maturity scores, and prioritised action items. Results in 5 minutes.