Securityinfowatch CISA Issues Insider Threat Guidance for Critical Infrastructure Resilience
Article Content
- •CISA's new guidance focuses on managing insider threats in critical infrastructure.
- •Insider threats can be malicious or due to unintentional user errors.
- •Collaboration across departments is essential for effective insider threat management.
On March 18, 2026, CISA released new guidance aimed at helping critical infrastructure operators and SLTT governments mitigate insider threats. The guidance identifies insider threats as both malicious acts and unintentional errors that can compromise sensitive data and systems. CISA emphasizes the importance of multidisciplinary insider threat management teams that include various departments such as IT, HR, and legal. The guidance highlights the need for organizations to foster a culture of trust to empower employees to report concerns. Recent incidents, such as a $400 million insider breach at Coinbase, illustrate the potential impact of insider threats. CISA's approach aims to reduce vulnerabilities and strengthen overall cyber resilience. However, the guidance lacks specific technological solutions to address these threats. The urgency for action is underscored by the ongoing challenges posed by insider threats in critical infrastructure sectors.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Coinbase in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
US Military Aircraft Losses in Iran War Reach 81, Costing Up to $3.3 Billion A recent Congressional Research Service report indicates that 81 U.S. military aircraft have been lost or damaged since the start of Operation Epic Fury against Iran on February 28, 2026. The losses include 45 MQ-9 Reaper drones, 12 F-15E Strike Eagles, and an F-35A fighter jet, with total damages estimated between…
Pentagon Responds to Cyber Command Suicide Cluster with Urgent Actions Following reports of a suicide cluster among personnel at U.S. Cyber Command, the Pentagon issued a directive on August 31, 2026, mandating immediate actions to improve mental health support for operators. The directive, from Katherine Sutton, emphasized the need for proactive structures to safeguard personnel…