CISA Urged to Strengthen OT Security as Cloud Compliance Lags Among Agencies

CISA Urged to Strengthen OT Security as Cloud Compliance Lags Among Agencies
Image: cyberscoop

The cybersecurity landscape is evolving rapidly, driven by the increasing integration of Artificial Intelligence (AI) into various sectors. Experts are now urging the Cybersecurity and Infrastructure Security Agency (CISA) to take decisive action to safeguard federal operational technology (OT) from rising cyber threats. This push comes at a time when a recent watchdog report has highlighted significant compliance failures among federal agencies regarding cloud security mandates.

Call for Enhanced Operational Technology Directives

A coalition of cybersecurity experts is advocating for CISA to issue a binding operational directive specifically targeting federal OT security. The rationale for this directive stems from the heightened risks posed by AI, which can amplify existing vulnerabilities within federal systems. Industry stakeholders stress that without a robust regulatory framework, agencies may struggle to effectively mitigate these evolving threats.

Compliance Failures Heighten Security Risks

Compounding the urgency of the situation, a recent report from the Department of Homeland Security's (DHS) watchdog revealed that over 75% of federal civilian agencies failed to meet CISA's cloud security compliance deadline, known as SCuBA. This non-compliance is attributed to CISA's current lack of enforcement power, raising concerns about the overall security posture of federal systems.

  • Key findings from the DHS watchdog report include:
  • More than three-quarters of agencies did not comply with cloud security orders.
  • CISA's limited authority hampers its ability to enforce compliance effectively.

The implications of these findings are significant. The failure to adhere to cloud security protocols not only exposes federal networks to potential cyberattacks but also erodes public confidence in the government's ability to protect sensitive information.

As the cybersecurity landscape becomes increasingly complex, the call for CISA to strengthen operational technology security measures is more critical than ever. Strengthening compliance frameworks will be essential for mitigating risks and protecting vital national infrastructure from emerging threats.

Sources: Cyberscoop, Federal News Network, SecurityWeek, and www.trendmicro.com

Edited by Daniel Vazdar, Editor. How DEFCROS News reports, sources and corrects.

Read more

Ad HS Produkt — Croatian small arms manufacturer. Expect the best. hs-produkt.hr