Could your business survive a ransomware attack?
Assess your organization's ability to prevent, detect, respond to, and recover from ransomware — and identify the security gaps that could increase operational impact. Based on NIST CSF 2.0 ransomware guidance and CISA #StopRansomware best practices. Answer honestly — this is for your own visibility, not a test.
Ready to see where you stand?
You'll get a real, computed score across GOVERN, IDENTIFY, PROTECT, DETECT, RESPOND and RECOVER — and any critical control gap is called out on its own, even when the overall score looks strong.
Assessment methodology: aligned to NIST IR 8374 Rev. 1, Ransomware Risk Management: A Cybersecurity Framework 2.0 Community Profile, with operational guidance informed by the CISA #StopRansomware Guide. This is a self-assessment, not a certification, a compliance determination or a prediction of any attack.
See your full results
Enter your email to unlock your score, readiness tier, NIST function scores, critical gaps and recommended priorities.
- Overall score and readiness tier
- Six NIST CSF 2.0 function scores
- Critical control gaps, with NIST and CISA references
- Potential exposure by attack stage
- Recommended next steps and an email copy
Your Ransomware Readiness Score
NIST CSF 2.0 function scores
Weighted: PROTECT 30% · IDENTIFY, DETECT, RESPOND, RECOVER 15% each · GOVERN 10%. Expand a function to see the contributing questions, your answers and the NIST outcomes they map to.
Your highest-priority ransomware readiness gaps
Potential ransomware exposure path
Potential exposure based on your assessment responses. Each stage shows the controls you reported for that point in a typical ransomware sequence — it does not predict an actual attack.
Recommended next steps
Assessment methodology: this assessment is aligned to NIST IR 8374 Rev. 1, Ransomware Risk Management: A Cybersecurity Framework 2.0 Community Profile, with operational guidance informed by the CISA #StopRansomware Guide. Readiness tiers are My CISO Partner presentation bands, not NIST ratings. Framework references are crosswalks, not compliance determinations.
Want the full picture?
Your free assessment identifies readiness gaps based on your responses. Continuous monitoring can continuously identify changes in your external exposure, vulnerabilities, controls and security posture. 30 minutes. No obligation. No sales pitch.