
NIST CSF 2.0
STDIONIST网络安全框架2.0综合MCP服务器
NIST网络安全框架2.0综合MCP服务器
Complete NIST Cybersecurity Framework 2.0 implementation with professional assessment GUI and comprehensive MCP server. Built for cybersecurity professionals, CISOs, and AI integration.
🎯 740 assessment questions • 🛡️ Multi-tier security • 📊 Executive dashboards • 🤖 40+ MCP tools
Choose your deployment option based on your use case:
Perfect for: CISOs, Security Teams, Executive Presentations
git clone https://github.com/rocklambros/nist-csf-2-mcp-server.git cd nist-csf-2-mcp-server/gui-platform docker-compose up
Access Your Platform:
Features:
Perfect for: Claude Desktop, ChatGPT, Technical Users
Claude Desktop Setup:
{ "mcpServers": { "nist-csf": { "command": "sh", "args": ["-c", "docker run -i --rm ghcr.io/rocklambros/nist-csf-2-mcp-server:latest node dist/index.js 2>/dev/null"], "env": {"MCP_SERVER": "true"} } } }
start_assessment_workflow
- Begin comprehensive assessmentpersistent_comprehensive_assessment
- Resume assessments across sessionsassess_maturity
- Calculate maturity scores across NIST functionscalculate_risk_score
- Risk assessment with heat map generationget_assessment_questions
- 740-question bank with size filteringgenerate_gap_analysis
- Current vs target state analysiscreate_implementation_plan
- Phased roadmap with timelinesgenerate_priority_matrix
- Effort/impact prioritizationestimate_implementation_cost
- Financial planning and ROI analysistrack_progress
- Implementation progress monitoringgenerate_executive_report
- Board-ready executive summariesgenerate_dashboard
- Real-time dashboard dataexport_data
- Multi-format data export (PDF, CSV, Excel)generate_compliance_report
- Multi-framework compliance mappingComplete Tool Documentation with Examples →
# Development AUTH_MODE=disabled docker-compose up # Production AUTH_MODE=oauth OAUTH_ISSUER=https://your-provider.com docker-compose up
# Monitoring enabled ENABLE_MONITORING=true docker-compose up # Development with hot reload docker-compose -f docker-compose.dev.yml up
MIT License
Enterprise-grade cybersecurity assessment platform for NIST CSF 2.0 compliance, executive reporting, and professional security evaluation.