NIST CSF 2.0 - National Institute of Standards and Technology

NIST CSF. Identify. Protect.
Detect. Respond. Recover. Govern.

Compliance belongs to your culture. The burden belongs to us.

Simplif-i maps your controls across all six NIST CSF 2.0 functions - including the new Govern function - and keeps your evidence continuously updated.

NIST CSF 2.0
Six Core Functions
AI-powered evidence mapping
Built by a certified ISO Lead Auditor
Built by a certified ISO Lead Auditor
NIST CSF 2.0 including Govern function
All six core functions covered
10/10 penetration tested - Zero vulnerabilities
TLS 1.3 encrypted

NIST CSF 2.0 Raised the Bar. Most Organisations Haven't Kept Up.

The 2024 update to NIST CSF added a sixth function - Govern - placing cybersecurity risk management firmly in the boardroom. It's no longer enough to have technical controls. Leadership accountability, supply chain risk, and continuous improvement are now explicit requirements.

NIST CSF is the most widely adopted cybersecurity framework in the United States - and increasingly referenced by UK and international organisations as the standard for mature cybersecurity practice.

But most implementations are spreadsheet-based, manually maintained, and already out of date before the ink is dry.

Compliance belongs to your culture. The burden belongs to us.

All Six Functions. Continuously Evidenced.

Map your existing controls

Upload your security documentation and Simplif-i maps every control to the relevant NIST CSF category and subcategory automatically. Current profile established. Target profile defined. Gaps identified.

Evidence across all six functions

Identify - asset management and risk assessment evidenced. Protect - access controls, training, data security documented. Detect - monitoring and detection capabilities captured. Respond - incident response plans and procedures logged. Recover - recovery planning and communications evidenced. Govern - cybersecurity strategy, roles, supply chain risk managed.

Capture evidence from any system

Navigate to your SIEM, your asset management platform, your access control system - paste the URL, hit capture. Evidence filed against the specific subcategory. No integrations. One button.

Board-ready reporting

NIST CSF was designed to create a common language between technical teams and leadership. Simplif-i's analytics dashboard and board pack generator translate your security posture into language the board can act on.

All Six Functions. All 106 Subcategories.

Current and Target Profile Mapping

Where you are. Where you need to be. Gap analysis automated.

Evidence Collector

Any system. Any URL. One button. No integrations.

Supply Chain Risk Management

Govern function support. Supplier questionnaires scored automatically.

Policy Architect

NIST CSF aligned policies through plain business questions.

Risk Register

ISO 31000 compliant. Linked to NIST CSF risk management categories.

Incident Response

Respond function support. Incident workflow built in.

Board Pack Generator

NIST CSF posture translated into board-ready language. One click.

Analytics Dashboard

Executive, Operations, and Audit Readiness views. Always live.

Compliance Calendar

Review schedules, assessment dates, improvement milestones tracked.

Trust Portal

Your live NIST CSF posture shareable with partners and clients.

Built by Someone Who Understands Cybersecurity Governance

Simplif-i was built by a certified ISO Lead Auditor, ex-CTO and ex-COO with 25 years of experience implementing cybersecurity frameworks across sectors where getting it wrong has real consequences.

That's why the Govern function is fully supported - because cybersecurity risk that isn't visible at board level isn't managed.

That's why supply chain risk management is built in - because your security posture is only as strong as your weakest supplier.

That's why the board pack generator translates technical controls into business language - because the board needs to understand the risk, not just the CTO.

Compliance belongs to your culture. The burden belongs to us.

We Hold Ourselves to the Same Standard

Independently penetration tested. 35 tests. Zero outstanding vulnerabilities.

Authentication secure. Data isolation enforced at every layer. TLS 1.3 throughout. GDPR Article 25 compliant by design.

Your data belongs to you. The AI operates exclusively on your evidence. Full security architecture report available on request.

Founding Member Pricing. First 50 Only.

Lite

£49/month

Core compliance tools. NIST CSF 2.0 framework. Evidence logging. Gap analysis.

1 user - 500MB - 150 AI credits/month
Most Popular

Pro

£499/month

Rises to £299 on general release - save £1,800 in year one.

Full platform. All 30+ frameworks. Supply chain risk management. Board Pack Generator. Analytics Dashboard.

5 users - 5GB - 150 AI credits/month

Enterprise

POA

White label available. Unlimited users. Dedicated account manager. Bespoke onboarding.

Custom configuration

Founding member pricing locked for 12 months. Closes permanently when the first 50 cohort is full.

7-day free trial. No charge if you cancel before day 7.

Frequently Asked Questions

NIST CSF compliance that speaks to the board and satisfies the auditor.

Not a spreadsheet with RAG ratings. A continuously evidenced cybersecurity programme - all six functions documented, supply chain risks managed, board reporting automated - built on the principle that compliance belongs to your culture, and the burden belongs to us.

First 50 founding members. £499/month. Locked for 12 months.

Simplif-iSimplif-i
simplif-i.com-TLS 1.3 encrypted-GDPR Article 25 compliant-10/10 pen tested-Built by a certified ISO Lead Auditor

© 2026 Simplif-i. All rights reserved.

Install Simplif-i

Add to your home screen for quick access & offline viewing