New Proposed CISA Mandate Would Require Critical Infrastruct...
Blog post from Socket
The Cybersecurity and Infrastructure Security Agency (CISA) has proposed new rules that would require critical infrastructure entities to report cyber incidents and ransom payments within specified timeframes, aiming to enhance the protection of vital US industries from cyberattacks. These rules, part of updates to the Cyber Incident Reporting for Critical Infrastructure Act (CIRCIA) of 2022, mandate that covered entities report cyber incidents within 72 hours and ransom payments within 24 hours. The proposed mandate targets larger organizations within sectors such as power grids, financial services, transportation, healthcare, and telecommunications, and seeks to provide CISA with a clearer understanding of attack trends and threats. CISA also aims to use this information to improve defenses and share insights with other federal entities. The proposal includes a definition of "substantial cyber incident" to clarify reporting triggers and is set to be officially published in the Federal Register on April 4, 2024, with a 60-day public comment period to gather feedback for potential adjustments.
No tracked trend matches for this post yet.
Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.