NIST Framework Profiling Overview dashboard

  • Release version: Australia
  • Updated March 12, 2026
  • 1 minute to read
  • NIST Framework Profiling Overview dashboard contains reports within each of the sections in the NIST RMF process: Categorize, Select, Implement, Assess, Authorize, and Monitor. You can view these reports in the Next Experience UI Framework.

    Important:
    Starting with version 18.1.0 of the Policy and Compliance Management application, the NIST Framework Profiling Overview dashboard is available in the Next Experience UI Framework.

    If you are on Vancouver or Washington DC, you can view the dashboard in the Next Experience UI Framework.

    Figure 1. NIST Framework Profiling Overview dashboard in the Next Experience UI Framework
    NIST Framework Profiling Overview dashboard in the Next Experience UI Framework.

    Required ServiceNow AI Platform roles

    • NIST CSF Security Officer (sn_irm_nist_csf.security_officer), to view all the reports in the dashboard.
    • NIST CSF Risk Executive (sn_irm_nist_csf.risk_executive), to view all the reports in the dashboard.

    Access the NIST Framework Profiling Overview dashboard

    To open the dashboard, navigate to All > NIST CSF > Framework Profiling > Analytics Overview.

    Reports

    Title Description
    Gaps Displays an overview of the gaps that exist for cybersecurity activities. Gaps are grouped by policies, entity class, profiles, or functions.
    Non-compliant Controls Displays an overview of non-compliant controls that exist for cybersecurity activities. Non-compliant controls are grouped by policies, entity class, profiles, or functions.
    Risks Displays an overview of risks that exist for cybersecurity activities. Risks are grouped by policies, profile class, entities, or functions.
    Issues Displays an overview of issues for cybersecurity activities. Issues are grouped by policies, entity class, entities, or functions.
    Failed Indicators Displays an overview of failed indicators that for cybersecurity activities. Indicators are grouped by policies, entity class, entities, or functions.
    Action Plans Displays an overview of action plans that exist for cybersecurity activities. Action plans are grouped by policies, entity class, entities, or functions.