Many enterprises lack an approach to integrate cybersecurity standards and enterprise governance of Information & Technology (EGIT). This lack of approach leaves them unable to establish systematic yet flexible and achievable governance and management objectives, processes, and capability levels to make measured improvements toward cybersecurity goals. Created to support critical infrastructure, the US National Institute of Standards and Technology (NIST) Cybersecurity Framework (CSF) continues to evolve based on feedback from diverse stakeholders and use cases. Today, the NIST CSF is a useful guide to help any enterprise address its cyberrisk. Explore proven practices to anticipate, understand and optimize IT risk by implementing NIST Framework for Improving Critical Infrastructure Cybersecurity V1.1 using COBIT® 2019. Features NIST CSF Implementation. Correlating CSF guidance with measurable governance and management practices. Mapping of CSF steps and activities to COBIT 2019. Appendices for quick reference and further considerations.