CISA Issues First Installment Of Cyber Essentials

SM
Sheppard Mullin Richter & Hampton

Contributor

Sheppard Mullin is a full service Global 100 firm with over 1,000 attorneys in 16 offices located in the United States, Europe and Asia. Since 1927, companies have turned to Sheppard Mullin to handle corporate and technology matters, high stakes litigation and complex financial transactions. In the US, the firm’s clients include more than half of the Fortune 100.
On Friday, May 29, the Cybersecurity and Infrastructure Security Agency (CISA) issued the first in a series of six Cyber Essentials Toolkits. These toolkits are described as "bite-sized actions for IT and C-suite leadership to work ...
United States Technology
To print this article, all you need is to be registered or login on Mondaq.com.

On Friday, May 29, the Cybersecurity and Infrastructure Security Agency (CISA) issued the first in a series of six Cyber Essentials Toolkits.  These toolkits are described as "bite-sized actions for IT and C-suite leadership to work toward full implementation of each Cyber Essential," focused on building a company's cyber readiness.

The first of these elements, entitled "Essential Element: Yourself, the Leader," is a short, two-page document packed with advice and links to additional resources.  It lists four essential actions for leaders of organizations:

  • Approach cyber as a business risk;
  • Determine how much of your organization's operations are dependent on IT;
  • Lead investment in basic cybersecurity; and
  • Build a network of trusted relationships for access to timely cyber threat information.

Added to these is a fifth essential action that leaders should discuss with IT Staff or Service Providers:

  • Lead development of cybersecurity policies.

Each of these five essentials is accompanied by discussion, as well as descriptions of additional resources available on the topic and links to those resources.  These include resources such as a document on "Questions Every CEO Should Ask About Cyber Risks," the Cyber Readiness Institute and the National Cyber Security Alliance, and of course NIST, the National Institute of Standards and Technology.

Putting it Into Practice:  For a two-page document, the first Cyber Essentials Toolkit is packed with useful information.  Corporate leadership that fears they are not on top of their organization's cybersecurity should review the document and its resources to launch an initiative to catch up.  Those leaders who believe their cyber readiness is on par should review it to confirm they are doing things right and have not missed a key element for their program.

Originally published June 2, 2020

The content of this article is intended to provide a general guide to the subject matter. Specialist advice should be sought about your specific circumstances.

We operate a free-to-view policy, asking only that you register in order to read all of our content. Please login or register to view the rest of this article.

See More Popular Content From

Mondaq uses cookies on this website. By using our website you agree to our use of cookies as set out in our Privacy Policy.

Learn More