CISA Looking to Change Cybercrime Reporting Rules

September 9, 2022 by Madeline Hughes
CISA Looking to Change Cybercrime Reporting Rules

WASHINGTON — As cybercrimes are on the rise, the Cybersecurity and Infrastructure Security Agency is asking people, businesses and other organizations for feedback on what its new reporting rules should look like.

The agency released the eight-page request for information Friday asking people how the agency should collect information. The agency’s progress towards making new rules comes as it works to meet its 2024 deadline set in the Cyber Incident Reporting for Critical Infrastructure Act of 2022, which President Joe Biden signed into law this past March.

Lawmakers saw an opportunity to prevent cybercrimes through the creation of a set of requirements for businesses to meet when dealing with them.

The law “marks an important milestone in improving America’s cybersecurity by, among other things, requiring CISA to develop and implement regulations requiring covered entities to report covered cyber incidents and ransom payments to CISA,” the agency wrote in its request.

“These reports will allow CISA, in conjunction with other federal partners, to rapidly deploy resources and render assistance to victims suffering attacks, analyze incoming reporting across sectors to spot trends and understand how malicious cyber actors are perpetrating their attacks, and quickly share that information with network defenders to warn other potential victims.”

The agency is embarking on a multi-year process to create these laws by first soliciting information.

Agency employees will be visiting cities around the country on a “listening tour” to hear input from people throughout the fall. They will visit Salt Lake City, Utah; Atlanta, Georgia; Chicago, Illinois; Dallas, Texas; New York City, New York; Philadelphia, Pennsylvania; Oakland, California; Boston, Massachusetts; Seattle, Washington; Kansas City, Missouri; and host a session in Washington, D.C.

The new rules are a shift in how these cyberattacks are handled. The agency has mostly had a voluntary relationship with companies that choose to share they were victims of such attacks.

The request is specifically asking about how the agency should define what is a “covered entity” — the companies within the critical infrastructure sectors that would need to report cybercrimes and any ransoms they pay.

Currently different types of utility companies have different cybercrime reporting rules, which led to the Colonial Pipeline ransomware attack last year, halting the gas pipeline that brought gasoline up the East Coast. The Atlantic Council referenced that attack in a report it released in June this year, calling out these inconsistencies throughout cybersecurity practices.

The new law seeks to change that.

“Reporting cyber incidents and ransom payments to the government has many benefits. An organization that is a victim of a cyber incident, including those that result in ransom payments, can receive assistance from government agencies that are prepared to investigate the incident, mitigate its consequences, and help prevent future incidents through analysis and sharing of cyber threat information,” the agency states.

“CISA and our federal law enforcement partners have highly trained investigators who specialize in responding to cyber incidents for the express purpose of disrupting threat actors who caused the incident, and providing technical assistance to protect assets, mitigate vulnerabilities, and offer on-scene response personnel to aid in incident recovery.”

The agency is accepting public comments for 60 days after the request for information is officially published in the Federal Register on Monday, Sept. 12.

Madeline can be reached at [email protected] and @ByMaddieHughes


A+
a-
  • cybercrime
  • cybersecurity
  • Cybersecurity and Infrastructure Security Agency
  • In The News

    Health

    Voting

    Cybersecurity

    July 18, 2023
    by Tom Ramstack
    Congress Told AI Holds Great Risks and Benefits for US Military

    WASHINGTON — Artificial intelligence experts warned Tuesday during a congressional hearing of ominous dangers for the United States if it... Read More

    WASHINGTON — Artificial intelligence experts warned Tuesday during a congressional hearing of ominous dangers for the United States if it falls behind in developing the technology but a bright future by taking the lead. One of the greatest risks would be defending against a foreign enemy... Read More

    July 17, 2023
    by Dan McCue
    DOE, Sandia Labs to Host Bioenergy Cybersecurity Workshop

    WASHINGTON — The Department of Energy’s Bioenergy Technologies Office is partnering with the Sandia National Laboratories in New Mexico to... Read More

    WASHINGTON — The Department of Energy’s Bioenergy Technologies Office is partnering with the Sandia National Laboratories in New Mexico to present a virtual workshop on the cybersecurity risks in biofuel and bioproduct manufacturing. The Microsoft Teams session will be held on Sept. 11 from 1 p.m.... Read More

    May 17, 2023
    by Tom Ramstack
    US Prosecutors Indict Russian for Ransomware Attacks

    WASHINGTON — The Justice Department indicted a Russian citizen Tuesday prosecutors accused of ransomware campaigns that netted him and his... Read More

    WASHINGTON — The Justice Department indicted a Russian citizen Tuesday prosecutors accused of ransomware campaigns that netted him and his conspirators about $200 million in stolen payments. The victims were mostly in the United States. They included nonprofits, hospitals and police departments, such as the Washington,... Read More

    Congress Eyes New Rules for Tech: What's Under Consideration

    WASHINGTON (AP) — Most Democrats and Republicans agree that the federal government should better regulate the biggest technology companies, particularly... Read More

    WASHINGTON (AP) — Most Democrats and Republicans agree that the federal government should better regulate the biggest technology companies, particularly social media platforms. But there is very little consensus on how it should be done. Should TikTok be banned? Should younger children be kept off social... Read More

    April 19, 2023
    by Tom Ramstack
    House Panel Demands Stronger Cybersecurity in Wake of Health Records Breach

    WASHINGTON — A month after cyberthieves looted a local health insurance database making off with the sensitive personal records of... Read More

    WASHINGTON — A month after cyberthieves looted a local health insurance database making off with the sensitive personal records of members of Congress and thousands of others, a member of a congressional panel looking into the incident on Wednesday declared "that may not be the full... Read More

    March 16, 2023
    by Tom Ramstack
    SEC Seeks Court Order in Investigation of Chinese Cyberattack

    WASHINGTON — A Securities and Exchange Commission investigation of a Chinese cyberattack is being opposed by some of Washington, D.C.’s... Read More

    WASHINGTON — A Securities and Exchange Commission investigation of a Chinese cyberattack is being opposed by some of Washington, D.C.’s biggest law firms. The SEC says it is trying to investigate the extent of 2020 cyberattacks in the United States, such as the one that penetrated... Read More

    News From The Well
    scroll top