DHS Issues Updated National Cyber Incident Response Plan
Time 2 Minute Read

On January 18, 2017, the Department of Homeland Security (“DHS”) issued an updated National Cyber Incident Response Plan (the “Plan”) as directed by Obama’s Presidential Policy Directive 41, issued this past summer, and the National Cybersecurity Protection Act of 2014.

The Plan applies to cyber incidents, and particularly focuses on significant cyber incidents that are likely to result in demonstrable harm to the United States’ national security interests, foreign relations or economy, or to the public confidence, civil liberties or public health and safety of the American people. The Plan describes a national approach to dealing with cyber incidents by addressing the role that the private sector, state and local governments, and multiple federal agencies play in responding to incidents, and how the actions of these stakeholders fit together to form an integrated response. According to DHS’ press release, the Plan is “not a tactical or operational plan for responding to cyber incidents” but rather is intended to “foster unity of effort for emergency operations planning and will help those affected by cyber incidents understand how Federal departments…provide resources to support mitigation and recovery efforts.”

DHS’ National Protection and Programs Directorate and Federal Emergency Management Agency’s National Integration Center led the Plan’s development, in coordination with the Department of Justice, the Secretary of Defense, the Sector Specific Agencies and other interagency partners, representatives from the 16 critical infrastructure sectors, and state and local governments.

You May Also Be Interested In

Time 3 Minute Read

Immediately prior to the lapse in funding on October 1, Department of Veterans Affairs (VA) and the Department of Homeland Security (DHS) released information on their contingency plans during the impending government shutdown, providing guidance to federal contractors.

Time 3 Minute Read

On September 2, 2025, two class actions were filed in federal district court alleging that defendants digital advertising platforms Xandr, Inc. and Index Exchange, Inc. violated the Electronic Communications Privacy Act by unlawfully intercepting wire communications for the purpose of violating the Department of Justice’s Bulk Data Transfer Rule.

Time 1 Minute Read

Immigration enforcement on colleges and universities is undergoing significant changes.  Higher education institutions must prepare for new challenges that could impact their students and faculty.

Time 2 Minute Read

On April 11, 2025, the U.S. Department of Justice issued a compliance guide, FAQs and an Implementation and Enforcement Policy to assist organizations to comply with the DOJ’s final rule implementing Executive Order 14117 (Preventing Access to Americans’ Bulk Sensitive Personal Data and United States Government-Related Data by Countries of Concern). The guidance comes just days after certain of the final rule’s provisions became effective on April 8, 2025.

Search

Subscribe Arrow

Recent Posts

Categories

Tags

Archives

Jump to Page