{"id":194215,"date":"2026-03-09T14:28:00","date_gmt":"2026-03-09T18:28:00","guid":{"rendered":"https:\/\/testing.news-you-need.com\/index.php\/2026\/03\/09\/cisa-delays-cyber-incident-reporting-town-halls-due-to-shutdown\/"},"modified":"2026-03-09T14:50:10","modified_gmt":"2026-03-09T18:50:10","slug":"cisa-delays-cyber-incident-reporting-town-halls-due-to-shutdown","status":"publish","type":"post","link":"https:\/\/testing.news-you-need.com\/index.php\/2026\/03\/09\/cisa-delays-cyber-incident-reporting-town-halls-due-to-shutdown\/","title":{"rendered":"CISA delays cyber incident reporting town halls due to shutdown"},"content":{"rendered":"<p><a href=\"https:\/\/federalnewsnetwork.com\/cybersecurity\/2026\/03\/cisa-delays-cyber-incident-reporting-town-halls-due-to-shutdown\/\">CISA delays cyber incident reporting town halls due to shutdown<\/a><\/p>\n<p><a href=\"https:\/\/federalnewsnetwork.com\/cybersecurity\/2026\/03\/cisa-delays-cyber-incident-reporting-town-halls-due-to-shutdown\/\">https:\/\/federalnewsnetwork.com\/cybersecurity\/2026\/03\/cisa-delays-cyber-incident-reporting-town-halls-due-to-shutdown\/<\/a><\/p>\n<p>Publish Date: <a href=\"publish_date]\">2026-03-09 14:28:00<\/a><\/p>\n<p>Source Domain: <a href=\"federalnewsnetwork.com\">federalnewsnetwork.com<\/a><\/p>\n<p>Author: <a href=\"\"><\/a><\/p>\n<p> Using an unordered list, summarize the following article with between 4 and 8 key points. <\/p>\n<p>                    The Cybersecurity and Infrastructure Security Agency is postponing meetings with industry on a forthcoming cyber incident reporting rule due to the ongoing Department of Homeland Security shutdown.<br \/>\nThe shutdown is also \u201clikely\u201d to delay the final Cyber Incident Reporting for Critical Infrastructure Act (CIRCIA) rule, CISA confirmed today.<br \/>\nIn a notice posted to its website, CISA said it won\u2019t be able to hold planned town halls on CIRCIA due to the lapse in appropriations. The town halls were scheduled for today, March 9, through early April.<br \/>\nNick Andersen, acting CISA director, blamed the postponement on the \u201cDemocrats\u2019 shutdown of DHS\u201d in a statement provided to Federal News Network. The DHS-specific shutdown began on Feb. 14 over disagreements between Senate Democrats and the White House over immigration enforcement reforms.]]><\/p>\n<p>\u201cOnce the appropriations lapse has concluded, CISA will issue an updated notice with a revised town hall schedule and share the schedule on cisa.gov\/circia,\u201d Andersen said. \u201cThe continued delays associated with the shutdown will likely result in a delay to the issuance of the final rule.\u201d<br \/>\nCISA had planned on hosting a series of virtual meetings with specific industry sectors, as well as two general meetings, starting today, March 9, through early April.<br \/>\nThe meetings were expected to give representatives from across critical infrastructure sectors, as well as other members of the public, a chance to provide CISA with more feedback on the landmark CIRCIA rules.<br \/>\nThe reporting rules will apply across 16 critical infrastructure sectors, ranging from electric utilities and water systems to hospitals and chemical facilities. Under the regulations, entities will have to report cyber incidents to CISA within 72 hours and ransomware payments within 24 hours.<br \/>\nCISA issued proposed regulations in 2024 under the Biden administration. Last year, the Trump administration delayed issuance of the final CIRCIA rule to get more feedback on the regulations.<br \/>\nWhen announcing the town halls in February, CISA said the engagements would provide a \u201ca limited additional opportunity to provide input on refining the scope and burden\u201d of the rule.<br \/>\nIn a Feb. 17 note to clients, lawyers with Mayer Brown wrote that the rulemaking \u201chas significant implications for companies across many sectors,\u201d adding that \u201ccompanies would be wise to view this notice as a signal that the CIRCIA rulemaking is moving forward once more.\u201d]]><\/p>\n<p>\u201cCompanies should be prepared to revisit their assessments of CIRCIA\u2019s potential impact on their cyber incident response processes to ensure that they are well-positioned to respond if CISA does go forward with a final rule in the coming months,\u201d they wrote.<br \/>\nMany industry groups had criticized CISA\u2019s \u00a0proposed rule for being too broad in defining what organizations should report cyber incidents to CISA. In the NPRM, the agency estimated the rules will apply to about 300,000 organizations across the country.<br \/>\nCaleb Skeath, a partner at the law firm Covington, said CISA is trying to strike the right balance when it comes to defining which organizations should have to report cyber incidents to the agency.<br \/>\n\u201cPart of the reasoning and thinking for getting this information through an incident reporting requirement is to give CISA a certain degree of visibility across the threat ecosystem, so it\u2019s not necessarily with as much of an enforcement focus as some of the other cyber incident reporting frameworks that we see,\u201d Skeath told Federal News Network. \u201cIn that regards, it\u2019s understandable there might be an interest in going fairly broad.\u201d<br \/>\nBut, Skeath added, that can be \u201ca double edged sword in certain respects, because if you go too broad, you might end up with more information than you can readily process or absorb.\u201d<br \/>\nMany organizations also criticized how the proposed rule defines a \u201csubstantial cyber incident\u201d that must be reported to CISA within 72 hours. The American Hospital Association, for instance, called the rule\u2019s definition \u201cambiguous, confusing and does not adequately consider the operational realities or complex interconnectedness of the field.\u201d<br \/>\nIn the Federal Register notice announcing the town halls, CISA acknowledged issues like the scope of entities covered by the rule and what exactly constitutes a covered cyber incident as \u201ctopics of interest\u201d for the upcoming discussions.<br \/>\n\u201cCISA welcomes any specific, actionable improvements that CISA could implement in the final rule to clarify or reduce burden of CIRCIA\u2019s regulatory requirements while enhancing the federal government\u2019s visibility into the cyber threat landscape for critical infrastructure sectors,\u201d CISA wrote in the Federal Register notice.<br \/>\n]]><\/p>\n<p>                     Copyright<br \/>\n                            \u00a9\u00a02026 Federal News Network. All rights reserved. This website is not intended for users located within the European Economic Area.<\/p>\n<p><\/p>\n","protected":false},"excerpt":{"rendered":"<p>CISA delays cyber incident reporting town halls due to shutdown https:\/\/federalnewsnetwork.com\/cybersecurity\/2026\/03\/cisa-delays-cyber-incident-reporting-town-halls-due-to-shutdown\/ Publish Date: 2026-03-09 14:28:00&#8230;<\/p>\n","protected":false},"author":1,"featured_media":194216,"comment_status":"closed","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/federalnewsnetwork.com\/wp-content\/uploads\/2024\/03\/cybersecurity-scaled.jpg","fifu_image_alt":"","footnotes":""},"categories":[15],"tags":[24],"class_list":["post-194215","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-cybersecurity"],"_links":{"self":[{"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts\/194215"}],"collection":[{"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/comments?post=194215"}],"version-history":[{"count":1,"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts\/194215\/revisions"}],"predecessor-version":[{"id":194217,"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts\/194215\/revisions\/194217"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/media\/194216"}],"wp:attachment":[{"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/media?parent=194215"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/categories?post=194215"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/testing.news-you-need.com\/index.php\/wp-json\/wp\/v2\/tags?post=194215"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}