The NIST CSF is a tool to test the effectiveness of your existing security program, or help build a new program from the ground up. Contact us today for a free consultation: 314-669-6569

We assess your organization with the cybersecurity framework

Cybersecurity Framework Risk Assessment

A risk assessment will evaluate the effectiveness of your entire security program and test your internal and external defenses using real-world attack scenarios.

Gap & Maturity Assessment

A controls gap assessment is designed to test your organization against each of the CSF security controls and prepare your organization for audit.

Cybersecurity Framework Penetration Test

Designed to fully meet the requirements of CSF, our network and web application penetration testing will validate the effectiveness of your security program by testing it against real-world attack scenarios.

Continuous Monitoring

We work with your technical teams to help develop a plan to meet your continuous monitoring requirements, and help you stay on top of your 30-60-90 day patch cycles.

Custom Framework Mapping

NightLion has developed proprietary compliance framework mapping tools to help your organization satisfy multiple audits without wasting redundant business resources.

Managed Security Programs

We will work with you and your organization to develop a technology agnostic managed security program to help satisfy control requirements.

Have questions? We are ready to schedule your free consultation

Contact us today


Bloomberg interview with Founder Vinny Troia

Cybersecurity Vulnerabilities Continue to Increase

The need for cybersecurity standards and best practices that address interoperability, usability and privacy continues to be critical for the nation. The CSF was created through collaboration between industry and government, and consists of standards, guidelines, and practices to promote the protection of critical infrastructure.

— Data from NIST

Case Study

Medical & Healthcare Industry

Night Lion provides IT audit and security control validation for Managed IT provider Specializing in Medical and Healthcare Systems