{"id":40377,"date":"2021-09-23T10:40:46","date_gmt":"2021-09-23T17:40:46","guid":{"rendered":"https:\/\/lapost.us\/?p=40377"},"modified":"2021-09-23T17:41:14","modified_gmt":"2021-09-24T00:41:14","slug":"report-or-pay-up","status":"publish","type":"post","link":"https:\/\/lapost.us\/?p=40377","title":{"rendered":"Report or pay up"},"content":{"rendered":"<p>The nation\u2019s top cybersecurity officials on Thursday urged Congress to consider passing legislation that would fine organizations if they failed to report cybersecurity incidents to the federal government, part of an effort to do more to confront a recent spree of attacks.<\/p>\n<p><strong>Senior leaders weigh in:<\/strong>\u00a0Jen Easterly, the director of the Cybersecurity and Infrastructure Security Agency (CISA), testified in favor of taking the more hardline stance to encourage incident reporting during a hearing held by the Senate Homeland Security and Governmental Affairs Committee, which is considering bipartisan mandatory cyber reporting legislation.<\/p>\n<p>\u201cI know some of the language talks about subpoena authority,\u201d Easterly said, referring to the committee\u2019s draft legislation. \u201cMy personal view is, that is not an agile enough mechanism to allow us to get the information that we need to share as rapidly as possible to prevent other potential victims from threat actors, so I think we should look at fines.\u201d<\/p>\n<p>Both Federal Chief Information Security Officer Christopher DeRusha and National Cyber Director Chris Inglis testified alongside Easterly on Thursday, with both agreeing that further enforcement mechanisms were needed to encourage cyber incident reporting to the federal government.<\/p>\n<p><strong>Bill incoming:\u00a0<\/strong>Their comments came in response to efforts by Committee Chairman\u00a0Gary Peters\u00a0(D-Mich.) around cyber incident reporting legislation he is working on alongside committee ranking member\u00a0Rob Portman\u00a0(R-Ohio).<\/p>\n<p>\u201cRanking member Portman and I are currently working on legislation that we plan to introduce soon to require critical infrastructure companies that experience cyber incidents, and other entities that make ransomware payments, to report this information to CISA,\u201d Peters said at the start of the hearing Thursday.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The nation\u2019s top cybersecurity officials on&#46;&#46;&#46;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[11,12],"tags":[],"class_list":["post-40377","post","type-post","status-publish","format-standard","hentry","category-business","category-science-tech"],"_links":{"self":[{"href":"https:\/\/lapost.us\/index.php?rest_route=\/wp\/v2\/posts\/40377","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/lapost.us\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/lapost.us\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/lapost.us\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/lapost.us\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=40377"}],"version-history":[{"count":1,"href":"https:\/\/lapost.us\/index.php?rest_route=\/wp\/v2\/posts\/40377\/revisions"}],"predecessor-version":[{"id":40378,"href":"https:\/\/lapost.us\/index.php?rest_route=\/wp\/v2\/posts\/40377\/revisions\/40378"}],"wp:attachment":[{"href":"https:\/\/lapost.us\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=40377"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/lapost.us\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=40377"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/lapost.us\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=40377"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}