<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>similar Archives -</title>
	<atom:link href="https://zymitry.com/tag/similar/feed/" rel="self" type="application/rss+xml" />
	<link>https://zymitry.com/tag/similar/</link>
	<description>Tech &#38; Other Stuff</description>
	<lastBuildDate>Thu, 05 Jun 2025 22:55:13 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0</generator>

<image>
	<url>https://i0.wp.com/zymitry.com/wp-content/uploads/2016/11/favicon.png?fit=32%2C32&#038;ssl=1</url>
	<title>similar Archives -</title>
	<link>https://zymitry.com/tag/similar/</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">120106411</site>	<item>
		<title>Primary Advantages of COBIT, ISO 27000, and NIST</title>
		<link>https://zymitry.com/primary-advantages-cobit-iso-27000-nist/</link>
					<comments>https://zymitry.com/primary-advantages-cobit-iso-27000-nist/#respond</comments>
		
		<dc:creator><![CDATA[Greg Palmer]]></dc:creator>
		<pubDate>Tue, 23 Jan 2018 04:01:31 +0000</pubDate>
				<category><![CDATA[Information Security Compliance]]></category>
		<category><![CDATA[advantages]]></category>
		<category><![CDATA[COBIT]]></category>
		<category><![CDATA[comparison]]></category>
		<category><![CDATA[frameworks]]></category>
		<category><![CDATA[ISO]]></category>
		<category><![CDATA[NIST]]></category>
		<category><![CDATA[policies]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[similar]]></category>
		<guid isPermaLink="false">https://zymitry.com/?p=896</guid>

					<description><![CDATA[<p>The following is a list of the primary benefits of the COBIT, ISO 27000, and NIST frameworks: COBIT COBIT allows much broader scope and takes into account all IT management processes. Geared towards a method of successfully executing key policies and procedures. It is often used to tie together controls, technical issues and risks, within… <span class="read-more"><a href="https://zymitry.com/primary-advantages-cobit-iso-27000-nist/">Read More: Primary Advantages of COBIT, ISO 27000, and NIST &#187;</a></span></p>
<p>The post <a href="https://zymitry.com/primary-advantages-cobit-iso-27000-nist/">Primary Advantages of COBIT, ISO 27000, and NIST</a> appeared first on <a href="https://zymitry.com"></a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>The following is a list of the primary benefits of the COBIT, ISO 27000, and NIST frameworks:</p>
<p><span style="text-decoration: underline;">COBIT<br />
</span></p>
<ul>
<li>COBIT allows much broader scope and takes into account all <a href="https://zymitry.com/leaderships-role-information-security/" target="_blank" rel="noopener">IT management</a> processes.</li>
<li>Geared towards a method of successfully executing key <a href="https://zymitry.com/security-policies-standards-procedures/" target="_blank" rel="noopener">policies</a> and procedures. It is often used to tie together controls, technical issues and risks, within an organization.</li>
<li>COBIT is managed by the Information Systems Audit and Control Association (ISACA) so it is kept up to date with current technology, and is globally accepted.</li>
<li>Allows scope to extend beyond IT and into management of the organization.</li>
</ul>
<p><span style="text-decoration: underline;">ISO 27002</span></p>
<ul>
<li>ISO 27002 provides best practice recommendations for an Information Security Management System (ISMS) standard. The 27001 and 27002 are used together to provide a management system, and specify industry-related controls. The ISO 27002 is an IT department focused standard.</li>
<li>Allows system managers to identify and mitigate gaps and overlaps in coverage.</li>
<li>Limited in scope compared to other standards.</li>
</ul>
<p><span style="text-decoration: underline;">NIST</span></p>
<ul>
<li>NIST is a Federal Government standard that covers a Risk Management Framework which addresses security controls in accordance with the Federal Information Processing Standard (FIPS) 200. This means that the standard has been through a very stringent review process and is very thorough.</li>
<li>Provides a level of detail for organizations not wanting to do a lot of customization. Comprehensive.</li>
<li>Like the ISO standard, NIST is limited in scope to information security.</li>
</ul>
<p>&nbsp;</p>
<p>When comparing COBIT to the other standards, it does have some appealing advantages. Since it allows for a wide-scope to include management outside of IT, it makes it easier to customize and integrate into the organization. COBIT is a good choice for an organization-wide framework allowing flexibility. Both ISO and NIST are restricted in scope to IT, and are not as flexible. A notable point is that all Government agencies and contractors must adhere to NIST standards. Much depends on the organization, its purpose, and if it is private or Government affiliated. For large private enterprises with no Government ties, COBIT is a desirable framework because of its broad scope, and flexibility.</p>
<p>&nbsp;</p>
<p>References</p>
<p>Agnosticator. (2013, December 09). <em>A Comparison of COBIT, ITIL, ISO 27002 and NIST. </em>Retrieved September 9, 2017, from <a href="http://agnosticationater.blogspot.com/2013/12/a-comparison-of-cobit-itil-iso-27002.html" target="_blank" rel="noopener">http://agnosticationater.blogspot.com/2013/12/a-comparison-of-cobit-itil-iso-27002.html</a>.</p>
<p>Gallagher, P. D. (2013, April). <em>NIST Special Publication 800-53 Revision 4. Security and </em><em>Privacy Controls for Federal Information Systems and Organizations.</em> Retrieved September 9, 2017, from <a href="https://web.archive.org/web/20250531222210/https://nvlpubs.nist.gov/nistpubs/specialpublications/nist.sp.800-53r4.pdf" target="_blank" rel="noopener">http://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-53r4.pdf</a>.</p>
<p>The post <a href="https://zymitry.com/primary-advantages-cobit-iso-27000-nist/">Primary Advantages of COBIT, ISO 27000, and NIST</a> appeared first on <a href="https://zymitry.com"></a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://zymitry.com/primary-advantages-cobit-iso-27000-nist/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">896</post-id>	</item>
	</channel>
</rss>
