Cybersecurity And Infrastructure Security Agency

The Cybersecurity and Infrastructure Security Agency (CISA) is a component of the United States Department of Homeland Security (DHS) responsible for cybersecurity and infrastructure protection across all levels of government, coordinating cybersecurity programs with U.S.

states, and improving the government's cybersecurity protections against private and nation-state hackers.

Cybersecurity and Infrastructure Security Agency
Cybersecurity And Infrastructure Security Agency
Seal of CISA
Cybersecurity And Infrastructure Security Agency
CISA's future headquarters on the DHS St. Elizabeth's Campus in Washington, D.C.
Agency overview
FormedNovember 26, 2018; 5 years ago (2018-11-26)
Preceding
  • National Protection and Programs Directorate
JurisdictionUnited States Federal Government
HeadquartersRosslyn, Arlington, Virginia
Motto"America's Cyber Defense Agency"
Employees3,161 (2023)
Annual budget$2.9 billion (2023)
Agency executives
Parent departmentDepartment of Homeland Security
Websitecisa.gov

The agency began in 2007 as the DHS National Protection and Programs Directorate. With the Cybersecurity and Infrastructure Security Agency Act of 2018, CISA's footprint grew to include roles in securing elections and the census, managing National Special Security Events, and the U.S. response to the COVID-19 Pandemic. It has also been involved in 5G network security and hardening the US grid against electromagnetic pulses (EMPs). The Office for Bombing Prevention leads the national counter-IED effort.

Currently headquartered in Arlington, Virginia, in 2025 CISA is planning to move its headquarters along with 6,500 employees to a new 10 story, 620,000 sq ft building on the consolidated DHS St. Elizabeths campus headquarters.

History

The National Protection and Programs Directorate (NPPD) was formed in 2007 as a component of the United States Department of Homeland Security. NPPD's goal was to advance the Department's national security mission by reducing and eliminating threats to U.S. critical physical and cyber infrastructure.

On November 16, 2018, President Trump signed into law the Cybersecurity and Infrastructure Security Agency Act of 2018, which elevated the mission of the former NPPD within DHS, establishing the Cybersecurity and Infrastructure Security Agency (CISA). CISA is a successor agency to NPPD, and assists both other government agencies and private sector organizations in addressing cybersecurity issues. Former NPPD Under-Secretary Christopher Krebs was CISA's first Director, and former Deputy Under-Secretary Matthew Travis was its first deputy director.

On January 22, 2019, CISA issued its first Emergency Directive (19-01: Mitigate DNS Infrastructure Tampering) warning that "an active attacker is targeting government organizations" using DNS spoofing techniques to perform man-in-the-middle attacks. Research group FireEye stated that "initial research suggests the actor or actors responsible have a nexus to Iran."

In 2020, CISA created a website, titled Rumor Control, to rebut disinformation associated with the 2020 United States presidential election. On November 12, 2020, CISA issued a press release asserting, "There is no evidence that any voting system deleted or lost votes, changed votes, or was in any way compromised." On the same day, Director Krebs indicated that he expected to be dismissed from his post by the Trump administration. Krebs was subsequently fired by President Trump on November 17, 2020 via tweet for his comments regarding the security of the election.

Cybersecurity And Infrastructure Security Agency 
Secretary of Homeland Security Alejandro Mayorkas at CISA's current headquarters in Arlington, Virginia in 2021.

On July 12, 2021, the Senate confirmed Jen Easterly by a voice vote. Easterly's nomination had been reported favorably out of Senate Committee on Homeland Security and Governmental Affairs on June 16, but a floor vote had been reportedly held (delayed) by Senator Rick Scott over broader national security concerns, until the President or Vice President had visited the southern border with Mexico. Easterly hired new staff to monitor online disinformation to enhance what she called the nation's "cognitive infrastructure" and utilized the existing rumor control website during the 2021 elections.

Performance

In September 2022, CISA released their 2023–2025 CISA Strategic Plan, the first comprehensive strategy document since the agency was established in 2018.

In August 2021, Easterly stated "One could argue we’re in the business of critical infrastructure, and the most critical infrastructure is our cognitive infrastructure, so building that resilience to misinformation and disinformation, I think, is incredibly important."

Recently in 2021, the Cybersecurity and Infrastructure Security Agency (CISA) released a report that provided guidance for how to navigate and prevent ransomware incidents. This was due to a significant jump in recent attacks related to ransomware.

Organization

Cybersecurity And Infrastructure Security Agency 
Real Fake, a 2020 graphic novel from CISA about disinformation and misinformation campaigns

CISA divisions include the:

  • Cybersecurity Division
  • Infrastructure Security Division
    • Bombing Prevention
    • Chemical Security
    • Exercises
    • Infrastructure Assessment & Analysis
    • School Safety
    • Strategy, Performance & Resources
  • Emergency Communications Division
  • National Risk Management Center
  • Integrated Operations Division
    • Regions 1 through 10
  • Stakeholder Engagement Division
    • Council Management
    • International
    • Sector Management
    • Strategic Relations

Major Programs

The Continuous Diagnostics and Mitigations program provides cybersecurity tools and services to federal agencies.

CISA issues "binding operational directives" that require federal government agencies to take action against specific cybersecurity risks.

In March 2021, CISA assumed control of the ".gov" top-level domain (TLD) from the General Services Administration. CISA manages the approval of domains and operates the TLD Domain Name System nameservers. In April 2021, CISA removed the fee for registering domains. In January 2023, Cloudflare received a $7.2M contract to provide DNS registry and hosting services for the TLD.

CISA provides incident response services to the federal executive branch and US-based entities.

CISA manages the EINSTEIN intrusion detection system to detect malicious activity on federal government agency networks.

The National Defense Authorization Act for Fiscal Year 2021 granted CISA the authority to issue administrative subpoenas in order to identify the owners of internet connected critical infrastructure related devices with specific vulnerabilities. In 2021, CISA issued 47 subpoenas.

Committees

Cybersecurity Advisory Committee

In 2021, the Agency created the Cybersecurity Advisory Committee with the following members:

  • Steve Adler, Mayor, City of Austin, Texas
  • Marene Allison, Chief Information Security Officer, Johnson & Johnson
  • Lori Beer, Chief Information Officer, JPMorgan Chase
  • Robert Chesney, James A. Baker III Chair in the Rule of Law and World Affairs, University of Texas School of Law
  • Thomas Fanning, Chairman, President and CEO, Southern Company
  • Vijaya Gadde
  • Patrick D. Gallagher, Chancellor, University of Pittsburgh
  • Ronald Green, Executive Vice President and Chief Security Officer, Mastercard
  • Niloofar Razi Howe, Board Member, Tenable
  • Kevin Mandia, Chief Executive Officer, Mandiant
  • Jeff Moss, President, DEF CON Communications
  • Nuala O’Connor, Senior Vice President & Chief Counsel, Digital Citizenship, Walmart
  • Nicole Perlroth, Cybersecurity journalist
  • Matthew Prince, Chief Executive Officer, Cloudflare
  • Ted Schlein, General Partner, Kleiner Perkins; and Caufield & Byers
  • Stephen Schmidt, Chief Information Security Officer, Amazon Web Services
  • Suzanne Spaulding, Senior Advisor for Homeland Security, CSIS
  • Alex Stamos, Partner, Krebs Stamos Group
  • Kate Starbird, Associate Professor, Human Centered Design & Engineering, University of Washington
  • George Stathakopoulos, Vice President of Corporate Information Security, Apple
  • Alicia Tate-Nadeau (ARNG-Ret.), Director, Illinois Emergency Management Agency
  • Nicole Wong, Principal, NWong Strategies
  • Chris Young, Executive Vice President of Business Development, Strategy, and Ventures, Microsoft

Directors

No. Director Term
Portrait Name Took office Left office Term length
1Krebs, Chris C.Chris C. Krebs16 November 201817 November 20202 years, 1 day
2Easterly, Jen M.Jen M. Easterly13 July 2021Incumbent2 years, 280 days

See also

References

Tags:

Cybersecurity And Infrastructure Security Agency HistoryCybersecurity And Infrastructure Security Agency PerformanceCybersecurity And Infrastructure Security Agency OrganizationCybersecurity And Infrastructure Security Agency Major ProgramsCybersecurity And Infrastructure Security Agency CommitteesCybersecurity And Infrastructure Security Agency DirectorsCybersecurity And Infrastructure Security AgencyCybersecurityHackerInfrastructureU.S. statesUnited States Department of Homeland Security

🔥 Trending searches on Wiki English:

Skibidi ToiletHong KongList of American films of 2024Murder of Yvonne FletcherVictor WembanyamaSex positionKanye WestA Beautiful Mind (film)Metro BoominChatGPTDev PatelFallout (series)Jai Shri RamFallout 2Olivia Munn2024 Andhra Pradesh Legislative Assembly electionJesse PlemonsKobe BryantAnna (2019 feature film)MyanmarNaslen K. GafoorMurders of Chris Kyle and Chad LittlefieldSaudi ArabiaRonald ReaganAudrey HepburnFallout 4Dan SchneiderXVideosCharlie ChaplinThe Beekeeper (2024 film)Godzilla Minus OneWish (film)El ClásicoCanadaSasha LussDick Van DykeWordleMS DhoniEddie the EagleList of James Bond filmsJohnny PembertonNew York CityNATOJohn Jacob Astor IVGoogleBob DylanCody RhodesMadame Web (film)Abigail (2024 film)John Mellencamp2024 AFC U-23 Asian CupDakota FanningMarlon BrandoKYURFC Bayern MunichAl Hilal SFCKepler's SupernovaList of countries and dependencies by populationMahatma GandhiCharlize TheronByeon Woo-seokMatt BerryTed KaczynskiArman TsarukyanMichael DouglasDakota JohnsonAl CowlingsElla PurnellGreek alphabetNo Way UpAlexandra GrantList of prime ministers of IndiaRon GoldmanJoseph StalinTheo JamesOusmane DembéléBundesligaAli Khamenei🡆 More