Wednesday 24 February 2016

New Implementation Guidance for the US Cybersecurity Information Sharing Act

Signed into law on December 18, 2015, the Cybersecurity Information Sharing Act of 2015 (CISA) created new legal authorizations and protections for the sharing of cyber threat indicators and defensive measures between and within the private sector and the government (for more information, see our legal update, “Cybersecurity Information Sharing Act Signed Into US Law as Part of Omnibus Appropriations Legislation”).1 CISA required various federal agencies to issue guidance, policies and procedures to support this information sharing. To that end, on February 16, 2016, the federal government released new implementation guidance to address:

  • Private entities’ sharing of cyber threat indicators and defensive measures with the federal government;
  • Privacy and civil liberties procedures within the federal government;
  • Receipt of cyber threat indicators and defensive measures by the federal government; and
  • Sharing of cyber threat indicators by the federal government.2

In this update we discuss each of these four areas, with particular attention to provisions relevant to private entities. For the full article click here 



from cyber security caucus http://ift.tt/1p3CTp9
via IFTTT

No comments:

Post a Comment