The National Institute of Standards and Technology (NIST) has released a draft update to its Privacy Framework, aimed at helping organizations better manage privacy risks while aligning the guidance with its recently updated Cybersecurity Framework.
The updated draft, titled NIST Privacy Framework 1.1 Initial Public Draft, is open for public comment through June 13, 2025. It introduces targeted revisions that streamline usability, respond to stakeholder feedback, and reflect the growing intersection between privacy and cybersecurity.
“This is a modest but significant update,” said Julie Chua, director of NIST’s Applied Cybersecurity Division. “The Privacy Framework can be used on its own, but we’ve maintained compatibility with the Cybersecurity Framework so organizations can manage both privacy and cybersecurity risks together.”
Key updates include refinements to the framework’s “Core,” a structured list of outcomes and activities that guide risk management conversations. These changes help realign the Privacy Framework Core with that of the Cybersecurity Framework 2.0, released in February 2024, particularly around governance and protection functions.
The draft also adds a new section on artificial intelligence, acknowledging the unique privacy risks associated with AI tools like chatbots. Section 1.2.2 outlines how organizations can apply the framework to address those risks.
To improve accessibility, NIST has moved its user guidance online into a searchable FAQ format. This change enables real-time updates and quicker access to answers. An updated PFW Learning Center, including multilingual quick-start guides and a new highlights video, is also available to support user engagement.
NIST is inviting public feedback via email at [email protected]. A comment template and additional resources are available on the NIST Privacy Framework website. A final version of the updated framework is expected later this year.
Need Help?
If you’re concerned or have questions about how to navigate the U.S. or global AI regulatory landscape, don’t hesitate to reach out to BABL AI. Their Audit Experts can offer valuable insight and ensure you’re informed and compliant.