NIST Updates Cybersecurity Framework
ISO 27001 + the NIST CSF model has always been a very good combination of Risk Management and Operational Management security frameworks. CSF is undergoing a revision cycle much like ISO 27001:2002. Here are a few ways to engage (Bruce Schneier blog, NIST CSF landing page and overview of the proposed changes/comments).
Bruce Schneier NIST CSF Blog
NIST CSF v2.0 Overview of Proposed Changes
NIST CSF v2.0 Landing Page
Replies to the NIST CSF Request for Information - Comments Received for RFI about Evaluating and Improving Cybersecurity Resources: The Cybersecurity Framework and Cybersecurity Supply Chain Risk Management