What problem does it solve? Security, risk, and compliance teams often struggle to interpret and apply the NIST Cybersecurity Framework, from understanding the six CSF 2.0 functions to building gap assessments, organizational profiles, and implementation roadmaps without a dedicated consultant. ## Core Features & Use Cases - Gap Assessments & Profiles: Produces structured Current vs. Target Profile tables across all six CSF 2.0 functions (Govern, Identify, Protect, Detect, Respond, Recover) with priority ratings. - Tier Assessment & Roadmaps: Evaluates Implementation Tiers 1-4 across three dimensions and generates phased 30/60/90-day remediation plans with effort and risk-reduction ratings. - Cross-Framework Mapping: Maps CSF subcategories to NIST SP 800-53 Rev 5, ISO 27001:2022, CIS Controls v8, and COBIT, plus CSF 1.1 to 2.0 migration guidance. - Use Case: A healthcare compliance lead asks for a CSF 2.0 gap assessment; the skill loads the full subcategory reference, produces a function-by-function gap table, and recommends a prioritized remediation sequence aligned to HIPAA-relevant categories. ## Quick Start Ask the assistant to perform a NIST CSF 2.0 gap assessment for your organization, including current state, target state, and priority for each subcategory.