Critical analysis of the completeness of cybersecurity core profiles in the context of the transition to the NIST Cybersecurity Framework 2.0 model

Loading...
Thumbnail Image

Date

item.page.thesis.degree.name

item.page.thesis.degree.level

item.page.thesis.degree.discipline

item.page.thesis.degree.department

item.page.thesis.degree.grantor

item.page.thesis.degree.advisor

item.page.thesis.degree.committeeMember

Journal Title

Journal ISSN

Volume Title

Publisher

Національний технічний університет "Харківський політехнічний інститут"

Abstract

Topicality. The current state of global cyberspace is characterized by a rapid increase in the complexity and intensity of targeted attacks on critical infrastructure facilities, which requires Ukraine to harmonize national standards with leading international practices. A key stage in this transformation was the implementation of the NIST Cybersecurity Framework 2.0 model, which provides for a transition to flexible risk management. However, the dynamic change in the regulatory framework during 2025-2026 created a time and content gap between the previously approved industry profiles and the new basic Catalog of Cybersecurity Measures. The subject of study in the article is the completeness and methodological compliance of the 2025 Basic Security Profiles with the requirements of the updated national taxonomy of cyber defense measures. The purpose of the article is to conduct a critical analysis of functional gaps in existing profiles and develop recommendations for improving entities' Cyber Defense Plans to achieve an adaptive level of maturity.
Актуальність. Сучасний стан глобального кіберпростору характеризується стрімким зростанням складності та інтенсивності цілеспрямованих атак на об'єкти критичної інфраструктури, що вимагає від України гармонізації національних стандартів з провідними міжнародними практиками. Ключовим етапом цієї трансформації стало впровадження моделі NIST Cybersecurity Framework 2.0, яка передбачає перехід до гнучкого управління ризиками. Однак динамічна зміна нормативно-правової бази протягом 2025-2026 років створила часовий та змістовний розрив між раніше затвердженими галузевими профілями та новим базовим Каталогом заходів кібербезпеки. Предметом дослідженняу статті є повнота та методологічна відповідність Базових профілів безпеки 2025 року вимогам оновленої національної таксономії заходів кіберзахисту. Метою статтіє проведення критичного аналізу функціональних прогалин у існуючих профілях та розробка рекомендацій щодо вдосконалення Планів кіберзахисту суб'єктів господарювання для досягнення адаптивного рівня зрілості.

Description

Citation

Myroshnichenko M., Gvozdov R. Critical analysis of the completeness of cybersecurity core profiles in the context of the transition to the NIST Cybersecurity Framework 2.0 model. Територія безпеки. 2026. Т. 2. № 2. С. 54-58.

Endorsement

Review

Supplemented By

Referenced By