Feds Call for Harmonization of Cybersecurity Regulations
Cyber leaders say an inclusive regulatory framework approach and expansion of the workforce would help better prevent cyberthreats.

Agencies and industry need harmonization of effective, adaptable and coordinated regulations on cybersecurity to address the growing threat of cyberattacks, said cyber leaders in a June 5 Senate Homeland Security Governmental Affairs Committee.
This lack of policy harmonization resonated among public comments received from a request for information the Office of the National Cyber Director (ONCD) released in July 2023. This poses a challenge to both cybersecurity outcomes and business competitiveness, said Assistant National Cyber Director for Cyber Policy and Programs Nicholas Leiserson.
“In some cases, respondents noted that CISOs were spending 30-50% of their time not on security, but on compliance activities, which is why improving federal coherence in partnership with our inner agency and private sector stakeholders is at the core of our mission,” Leiserson said. “ONCD has also started to build a pilot reciprocity framework. We anticipate that this pilot will give us valuable insights as to how to best achieve reciprocity when designing a cybersecurity regulatory approach from the ground up.”
The new pilot will act as a catalyst to the development of a comprehensive policy framework, streamlining oversight, strengthening cybersecurity readiness and achieving harmonization, added Leiserson.
Government Accountability Office (GAO) Cybersecurity Director David Hinchman also emphasized the need for Congress to address independent regulatory commissions and to integrate them into the policymaking process.
“We need to look at a common framework and set of standards to ensure that individual sectors have the customized cybersecurity standards they need, in addition to the national framework developed,” Hinchman said. “We have to start to come together to understand the landscape better, which will enable positive developments.”
Leiserson pointed to the 470,000 job openings in the tech industry as a cybersecurity threat. Expanding the federal workforce of cybersecurity professionals and implementing the National Cyber Workforce and Education Strategy is a key initiative and a centerpiece of ONCD’s work, said Leiserson.
“At ONCD, we’re very focused on broadening pathways to entry and removing barriers,” Leiserson said. “We’re focused on skills-based hiring, which means if you have the appropriate skills to do a cybersecurity job, but you do not have a four-year college degree, that should not be a barrier in terms of joining the federal government.”
Organizations must fill the gaps in the cyber workforce, and regulators must develop baseline cybersecurity requirements to reduce potential cyberattacks that threaten critical infrastructure, Leiserson and Hinchman added.
“We have to start harmonizing this effort — bringing independent agencies together and passing legislation is the only solution,” said Sen. Gary Peters of Michigan. “If we fail this mission, we won’t be able to build the most effective response to cyber threats.”
This is a carousel with manually rotating slides. Use Next and Previous buttons to navigate or jump to a slide with the slide dots
-
The Next AI Wave Requires Stronger Cyber Defenses, Data Management
IT officials warn of new vulnerabilities posed by AI as agencies continue to leverage the tech to boost operational efficiency.
5m read -
Federal CIOs Push for ROI-Focused Modernization to Advance Mission Goals
CIOs focus on return on investment, data governance and application modernization to drive mission outcomes as agencies adopt new tech tools.
4m read -
DOD Can No Longer Assume Superiority in Digital Warfare, Officials Warn
The DOD must make concerted efforts to address cyber vulnerabilities to maintain the tactical edge, military leaders said at HammerCon 2025.
4m read -
Tracking CIOs in Trump's Second Term
Stay informed on the latest shifts in federal technology leadership as new CIOs are appointed and President Trump's second term takes shape.
6m read -
Inside Oak Ridge National Lab’s Pioneer Approach to AI
Energy Department’s Oak Ridge National Lab transforms AI vulnerabilities into strategic opportunities for national defense.
22m listen -
AWS Summit: Innovation Accelerates IT Delivery at DOD
Marine Corps Community Services is tackling outdated IT processes with agile development and cutting-edge cloud security to deliver mission-critical capabilities faster.
12m watch -
AWS Summit: NIST Secures High-Performance Computing Against Evolving Threats
NIST’s Yang Guo reveals the broad attack surface of high-performance computing and explains developing guidance and future-proofing security strategies.
9m watch -
Trump Overhauls Federal Cybersecurity with New Executive Order
The new directive aims to strengthen digital defenses while rolling back "burdensome" software requirements and refocusing AI security.
3m read -
AWS Summit: Forging Successful Cloud Modernization Partnerships
Industry leaders share insights on the critical role industry partnerships have in enabling government agencies to navigate procurement challenges for cloud and zero trust solutions.
24m watch Partner Content -
CISA's CVE Program and Why it Matters for Zero Trust
The vulnerability program provides the cybersecurity community visibility into software as part of a key pillar of CISA's zero trust model.
5m read -
Air Force, Coast Guard Talk Data Security Efforts for AI Development
The services' AI initiatives include efforts like creating clean training data, countering data poisoning and bridging siloed teams.
4m read -
DHS Secretary Urges Congress to Reauthorize CISA 2015
Federal leaders highlight CISA 2015's role in strengthening public-private partnerships and defending against evolving cyber threats.
3m read