CRI Profile
TRAC's CRI Profile Module offers an efficient way to replace the FFIEC Cybersecurity Assessment Tool (CAT) with the Cyber Risk Institute’s CRI Profile. Built on a foundation of NIST CSF 2.0, the CRI Profile condenses more than 2,500 regulatory guidelines into a simple, easy-to-use assessment, providing a robust and dedicated alternative for financial institutions looking to replace the CAT.

A Financial Institution-Focused NIST Implementation
While the NIST CSF 2.0 is the most well-known and broadly adopted framework in the World, one potential drawback for financial institutions is that it is also industry-agnostic. For those institutions seeking a CAT replacement that is more focused on the financial services industry, the CRI Profile is a great alternative. Using an Impact Tiering questionnaire, the CRI Profile customizes the control objectives based on the size and complexity of the institution. The control objectives themselves take into account more than 2,500 regulatory expectations, allowing users to meet compliance requirements, while also gaining a better and more holistic understanding of their risk posture.




Our team of experts monitors any changes implemented by the CRI to ensure you always have access to the latest CRI Profile.
We'd Love to Show You
Register for a product demo and let us convince you of the benefits of TRAC's implementation of the CRI Profile.