The CBK model
Eight components for municipal cybersecurity governance
The CBK model frames cybersecurity as a governance discipline with eight connected areas that support strategy, trust, resilience, and stewardship.
1
Protection of public assets
Safeguard resident data, utility systems, and critical infrastructure.
2
Regulatory compliance
Support alignment with requirements such as CJIS, HIPAA, PCI-DSS, and Texas-focused frameworks.
3
Continuity of critical services
Strengthen resilience, recovery planning, and service continuity during incidents.
4
Risk management
Identify vulnerabilities, prioritize resources, and adjust controls over time.
5
Public trust and accountability
Support transparency, communication, and visible leadership responsibility.
6
Strategic alignment
Connect cybersecurity to city mission, public safety, and digital services.
7
Response to threats
Improve readiness for ransomware, insider risk, and evolving cyber threats.
8
Financial stewardship
Support smarter budgeting, grant alignment, and return-on-investment framing.