Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
No Result
View All Result
Home Cybersecurity

CISA Issues New Cross-Sector Cybersecurity Performance Goals to Counter Emerging Threats

by Elodie Collins
December 12, 2025
in Cybersecurity, News
The Cybersecurity and Infrastructure Security Agency's logo. CISA issued its new Cybersecurity Performance Goals guidance

The Cybersecurity and Infrastructure Security Agency updated its Cross-Sector Cybersecurity Performance Goals to provide new best practices for safeguarding systems across all critical infrastructure organizations

The Cybersecurity and Infrastructure Security Agency has released version 2.0 of its Cross-Sector Cybersecurity Performance Goals, or CPGs, an updated guidance for integrating cybersecurity within an organization’s daily operations.

Table of Contents

    • You might also like
    • Lt. Gen. Kevin Admiral Nominated to Lead US Army Europe & Africa
    • DIU Launches G-BAM Prize Challenge for Long-Range Strike Systems
    • State Department Publishes Generative AI Playbook Built Around StateChat Rollout
  • What Is the CPG Version 2.0?
  • Are CISA’s Cross-Sector CPGs Effective?

You might also like

Lt. Gen. Kevin Admiral Nominated to Lead US Army Europe & Africa

DIU Launches G-BAM Prize Challenge for Long-Range Strike Systems

State Department Publishes Generative AI Playbook Built Around StateChat Rollout

CISA Issues New Cross-Sector Cybersecurity Performance Goals to Counter Emerging Threats

The Potomac Officers Club’s 2026 Cyber Summit on May 21 will bring together cybersecurity experts from across government and industry to discuss some of the most pressing cyber issues and opportunities today. Get your tickets here.

CISA said Thursday that the document reflects three years of operational insights and contains best practices collected from industry and government leaders and cybersecurity experts.

“Over the past year, CISA has engaged extensively with hundreds of stakeholders across both the public and private sectors to ensure the updated goals reflect real-world challenges and operational realities,” Acting CISA Director Madhu Gottumukkala stated. “Version 2.0 demonstrates our commitment to listening to and incorporating partner feedback to deliver practical, outcome-driven guidance that organizations can act on.”

The Cross-Sector CPGs align with the National Institute of Standards and Technology Cybersecurity Framework 2.0.

What Is the CPG Version 2.0?

The updated goals expand the agency’s current guidance on account and device security, data protection, governance, vulnerability management, supply chain risk, and incident response and recovery.

The Cross-Sector CPG 2.0 introduces a section on the role of organizational leadership. CISA also consolidated operational and information technology into universal goals and added measures addressing emerging threats to eliminate silos in the new guidance.

The document also adds new goals for third-party risk, zero trust architecture and incident communication.

According to Gottumukkala, the CPGs apply to all critical infrastructure sectors.

Are CISA’s Cross-Sector CPGs Effective?

The updated guidance comes almost a year after CISA published its Cybersecurity Performance Goals Adoption Report. The agency found that, based on its analysis of 7,791 critical infrastructure organizations enrolled in its vulnerability scanning service, cybersecurity has improved in the sector since the implementation of CPG in 2022.

The report found a decline in known exploited vulnerabilities, or KEVs, and Secure Sockets Layer misconfigurations.

Stay connected via Google News
Follow us for the latest travel updates and guides.
Add as preferred source on Google
Share5Tweet19
Previous Post

NSA Releases Guidance to Mitigate UEFI Secure Boot Vulnerabilities

Next Post

Troy Meink on Air Force’s Acquisition Transformation

Recommended For You

Col. G. Scott McLeod: Army Eyes OTA Usage to Obtain Vehicle Maintenance Trainers

by Joey Harris
November 29, 2018
Col. G. Scott McLeod: Army Eyes OTA Usage to Obtain Vehicle Maintenance Trainers

Col. G. Scott McLeod, Army program manager for training devices, said the service branch is mulling plans to use Other Transaction Authority agreements to help it update its...

Read moreDetails

GSA Pilot Program Tests Federal Supply Chain Monitoring Process; Sonny Hashmi Quoted

by Mary-Louise Hoffman
June 8, 2022
GSA Pilot Program Tests Federal Supply Chain Monitoring Process; Sonny Hashmi Quoted

The General Services Administration ran a pilot test of a new monitoring process for the GSA Advantage! shopping platform in an effort to safeguard federal buyers against suppliers...

Read moreDetails

House Lawmakers Call on White House to Cut DOD Budget

by Jane Edwards
March 19, 2021
House Lawmakers Call on White House to Cut DOD Budget

A group of 50 House lawmakers has asked President Biden to reassess spending priorities by reducing the Department of Defense’s budget to help pay for public health, research...

Read moreDetails

Report: DoD to Unveil National Defense Strategy Soon

by Scott Nicholas
January 9, 2018
Report: DoD to Unveil National Defense Strategy Soon

Defense Secretary James Mattis has said the Defense Department aims to provide details of a national defense strategy by Jan. 19, Defense News reported Sunday. Mattis told reporters Friday...

Read moreDetails

DHS Earmarks $385M in Addtl FY20 Preparedness Grant Funding; Chad Wolf Quoted

by Brenda Marie Rivers
December 9, 2022
DHS Earmarks $385M in Addtl FY20 Preparedness Grant Funding; Chad Wolf Quoted

The Department of Homeland Security (DHS) has allocated $385 million in additional funding for seven grant programs to support the public and private sector's preparedness efforts in fiscal year 2020.

Read moreDetails
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Sponsors

About ExecutiveGov

ExecutiveGov, published by Executive Mosaic, is a site dedicated to the news and headlines in the federal government. ExecutiveGov serves as a news source for the hot topics and issues facing federal government departments and agencies such as Gov 2.0, cybersecurity policy, health IT, green IT and national security. We also aim to spotlight various federal government employees and interview key government executives whose impact resonates beyond their agency.

CATEGORIES

  • Acquisition & Procurement
  • Announcements
  • Articles
  • Artificial Intelligence
  • Awards
  • Big Data & Analytics News
  • C4ISR
  • Civilian
  • Cloud
  • Contract Awards
  • Cybersecurity
  • Defense And Intelligence
  • Defense Security Cooperation
  • DHS
  • Digital Assets
  • Digital Modernization
  • DoD
  • Events
  • Executive Moves
  • Executive Spotlights
  • Federal Civilian
  • Financial Reports
  • Foreign Military Sales
  • General News
  • GovCon Expert
  • Government Cloud
  • Government Technology
  • GSA
  • Healthcare IT
  • Industry News
  • Intelligence
  • Legislation
  • M&A Activity
  • National Security
  • News
  • Policy Updates
  • Press Releases
  • Profiles
  • Space
  • Videos
  • Wash100
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Copyright 2026 Executive Mosaic. All Rights Reserved. Site Archive

No Result
View All Result
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news

Copyright 2026 Executive Mosaic. All Rights Reserved. Site Archive

Get your free GovCon news!

Get your latest GovCon news and insights. Become a VIP and subscribe to the GovConWire Daily News.

Invalid email address
We promise not to spam you. You can unsubscribe at any time.
Thanks for subscribing!