Skip to Content

Insider Threat Assessment Using NIST Cybersecurity Framework

February 18, 2026

IIA Audit Tool: Insider Threat Assessment Using NIST Cybersecurity Framework

As a starting point for building a work program, internal auditors may use an existing risk and control framework. This tool replicates NIST’s Cybersecurity Framework 2.0 as the criteria against which an insider threat program may be evaluated.

Additional resources to use with this IIA Audit Tool

Auditing Insider Threat Programs
Insider Threat Leading Practices

Members Only

This is for members only. To access it and other valuable resources, become a member today or log in!