Critical Infrastructure Security, Government security

Updated CISA cybersecurity goals for critical infrastructure unveiled

Secure By Design Pledge

Improved accountability, risk management, and cybersecurity governance among critical infrastructure entities in the U.S. have been sought by the Cybersecurity and Infrastructure Security Agency's second iteration of its Cross-Sector Cybersecurity Performance Goals, reports Cybersecurity Dive.

Apart from including a "Govern" category for goals to bolster business leaders' role in cybersecurity oversight and combining IT and operational technology goals, CPG version 2.0 also details supply chain risk, zero-trust architecture, and incident response communications goals, while clarifying adoption of CPGs. All goals' costs, impact, and related challenges have also been more detailed in the updated framework, which CISA Acting Director Madhu Gottumukkala says was based on feedback provided by stakeholders on the orginal CPGs presented three years ago.

"Version 2.0 demonstrates our commitment to listening to and incorporating partner feedback to deliver practical, outcome-driven guidance that organizations can act on," said Gottumukkala.

Get daily email updates

SC Media's daily must-read of the most current and pressing daily news

By clicking the Subscribe button below, you agree to SC Media Terms of Use and Privacy Policy.

You can skip this ad in 5 seconds