State Cyber Leaders Beg Congress for More Funding, Support
This article reports on a congressional hearing where state cyber leaders urgently requested increased funding and support from the federal government, citing significant cuts to cybersecurity initiatives and a rise in sophisticated attacks. States are struggling with limited resources, exacerbated by federal downsizing of agencies like CISA and the shift of the MS-ISAC to a subscription model. The hearing highlighted the escalating threat landscape, including ransomware, supply chain attacks, and the increasing role of AI-powered threats, demanding a renewed federal partnership to bolster state defenses.
During a recent House Homeland Security Subcommittee hearing, state cybersecurity leaders from Tennessee, Florida, and New York voiced concerns about dwindling federal support for critical cybersecurity programs. The states are grappling with the consequences of reduced funding to agencies like CISA and the Information Sharing Analysis Center (ISAC) ecosystem, particularly the Multi-State Information Sharing and Analysis Center (MS-ISAC). The shift to a subscription model for the MS-ISAC has created a significant hurdle for state governments, particularly given the increasing sophistication of cyberattacks and the limited resources available to address them. The hearing underscored the urgent need for Congress to reauthorize and enhance the State and Local Cybersecurity Grant Program (SLCGP), which state officials consider a vital tool for strengthening collective defense.
The challenges facing states are compounded by broader trends, including rapid AI growth, which has accelerated the scale and speed of attacks, and the increasing reliance of threat actors on supply chain compromise and exploitation of identity systems. Furthermore, the administration's downsizing of CISA's staff and resources has created a breakdown in trust between federal and state officials, particularly concerning election cybersecurity. The article also notes the impact of municipal and federal budget cuts on smaller entities, leading to prioritization challenges and a reliance on free services like CISA's vulnerability scanning.
Collaboration is seen as a key solution, with initiatives like the MassCyberCenter playing a crucial role in workforce development and raising public cybersecurity awareness. The center leverages partnerships, such as with the Massachusetts Executive Office of Technology Services and Security (EOTSS), to provide free cybersecurity training and phishing tests to municipalities and school systems. The report emphasizes the importance of patching vulnerabilities and proactive threat mitigation, particularly in light of the evolving threat landscape and the potential for AI-powered attacks.
_Gang_Liu_Alamy.jpg?width=1280&auto=webp&quality=80&disable=upscale)