CISA Releases Updated Version of Cyber Performance Goals to Protect Infrastructure
Cybersecurity Dive
|
Contributed by: Kate Gamble
Summary
The Cybersecurity and Infrastructure Security Agency (CISA) has released Version 2.0 of its Cross-Sector Cybersecurity Performance Goals (CPGs) to enhance protections for critical infrastructure, including healthcare facilities. This updated framework integrates insights from three years of operational experience and emphasizes the importance of business leadership in cybersecurity governance through a new "Govern" category. Key enhancements focus on consolidating information technology (IT) and operational technology (OT) goals, addressing supply-chain risks, and promoting zero-trust architecture. These changes aim to improve risk management and accountability, offering clearer guidance to help organizations tackle evolving cybersecurity threats effectively.