Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

NIST Framework Profiling Overview dashboard

NIST Framework Profiling Overview dashboard contains reports within each of the sections in the NIST RMF process: Categorize, Select, Implement, Assess, Authorize, and Monitor. You can view these reports in the Next Experience UI Framework.

Important: Starting with version 18.1.0 of the Policy and Compliance Management application, the NIST Framework Profiling Overview dashboard is available in the Next Experience UI Framework.

If you are on Vancouver or Washington DC, you can view the dashboard in the Next Experience UI Framework.

Image omitted: nist-framework-profiling-pa-db-pc.png
NIST Framework Profiling Overview dashboard in the Next Experience UI Framework.

Required ServiceNow AI Platform roles

  • NIST CSF Security Officer (sn_irm_nist_csf.security_officer), to view all the reports in the dashboard.
  • NIST CSF Risk Executive (sn_irm_nist_csf.risk_executive), to view all the reports in the dashboard.

Access the NIST Framework Profiling Overview dashboard

To open the dashboard, navigate to All > NIST CSF > Framework Profiling > Analytics Overview.

Reports

TitleDescription
GapsDisplays an overview of the gaps that exist for cybersecurity activities. Gaps are grouped by policies, entity class, profiles, or functions.
Non-compliant ControlsDisplays an overview of non-compliant controls that exist for cybersecurity activities. Non-compliant controls are grouped by policies, entity class, profiles, or functions.
RisksDisplays an overview of risks that exist for cybersecurity activities. Risks are grouped by policies, profile class, entities, or functions.
IssuesDisplays an overview of issues for cybersecurity activities. Issues are grouped by policies, entity class, entities, or functions.
Failed IndicatorsDisplays an overview of failed indicators that for cybersecurity activities. Indicators are grouped by policies, entity class, entities, or functions.
Action PlansDisplays an overview of action plans that exist for cybersecurity activities. Action plans are grouped by policies, entity class, entities, or functions.

Parent Topic:Analytics and Reporting solutions for GRC: Policy and Compliance Management