Skip to main content
WPROIT WPROIT

Public sector

Aligning a Romanian ministry IT estate with NIST CSF in 90 days

RO

Outcome metrics

3

CSF maturity tier

90 days

Engagement length

142

Controls evidenced

1 The challenge

A national ministry needed to align hundreds of legacy systems and processes to NIST CSF before an EU funding milestone, with no clear baseline of where they stood across Identify–Protect–Detect–Respond–Recover.

2 Our approach

WPROIT consultants ran a structured maturity assessment, mapped each control to existing evidence, prioritised the gap-closure backlog by funding-deadline risk, and provided weekly steering-committee reporting.

3 Outcome

The ministry reached "Tier 3 — Repeatable" maturity across all five functions ahead of the deadline, securing the next funding tranche and a clear roadmap to Tier 4.

"The maturity model gave us a shared language. Suddenly every directorate understood what "good" looked like."

Chief Information Security Officer Ministry of Public Administration

Copy link

LinkedIn X Email