Skip to content

References & Credits

This framework synthesises and builds upon the following publicly available works. OCDF is an independent community project and is not endorsed by, affiliated with, or approved by any of the organisations below.

Primary framework backbone

  • NIST, The NIST Cybersecurity Framework (CSF) 2.0, NIST CSWP 29, February 2024. https://doi.org/10.6028/NIST.CSWP.29. NIST publications are U.S. Government works, not subject to copyright in the United States.

NIST Special Publications & standards

MITRE

EU legislation from EUR-Lex

© European Union. Reuse permitted under Commission Decision 2011/833/EU.

ENISA

Maturity models & incident response communities

Incident response playbook baselines

Digital forensics

Danish legislation & authorities — retsinformation.dk and samsik.dk

  • Lov nr. 434 af 6. maj 2025, Lov om foranstaltninger til sikring af et højt cybersikkerhedsniveau, the NIS 2-loven. https://www.retsinformation.dk/eli/lta/2025/434
  • Lov om styrket beredskab i energisektoren, 2025, the energy-sector NIS2 and CER regime.
  • Lov om sikkerhed og beredskab i telesektoren, 2025, the telecom NIS2 implementation.
  • CER-loven, on kritiske enheders modstandsdygtighed, 2025.
  • Styrelsen for Samfundssikkerhed (SAMSIK), NIS2 guidance. https://samsik.dk/nis2

Other

How to cite this framework

Open CDC Framework (OCDF), version 1.1.0, 2026. Licensed CC BY 4.0. Available at: https://github.com/p0jst/OpenCDC.

Corrections

Found a missing or incorrect attribution? Please open an issue; proper credit is a core value of this project.