A risk-based approach to reducing cybersecurity risk composed of three parts: the Framework Core, the Framework Profile, and the Framework Implementation Tiers.
Source(s):
NIST SP 800-37 Rev. 2
under cybersecurity framework