You will map the organization's practices against the NIST Cybersecurity Framework, identify where formal control plans exist versus where gaps remain, and build the reporting architecture that empowers executives to see and mitigate risk before it becomes an incident. NIST Expertise: Deep Subject Matter Expertise (SME) and strong working knowledge of the NIST Cybersecurity Framework and how it applies to business control plans.