https://urgentcomm.com/wp-content/themes/ucm_child/assets/images/logo/footer-new-logo.png
  • Home
  • News
  • Multimedia
    • Back
    • Multimedia
    • Video
    • Podcasts
    • Galleries
    • IWCE’s Video Showcase
    • Product Guides
  • Commentary
    • Back
    • Commentary
    • Urgent Matters
    • View From The Top
    • All Things IWCE
    • Legal Matters
  • Resources
    • Back
    • Resources
    • Webinars
    • White Papers
    • Reprints & Reuse
  • IWCE
    • Back
    • IWCE
    • Conference
    • Special Events
    • Exhibitor Listings
    • Premier Partners
    • Floor Plan
    • Exhibiting Information
    • Register for IWCE
  • About Us
    • Back
    • About Us
    • Contact Us
    • Advertise
    • Terms of Service
    • Privacy Statement
    • Cookie Policy
  • Related Sites
    • Back
    • American City & County
    • IWCE
    • Light Reading
    • IOT World Today
    • Mission Critical Technologies
    • TU-Auto
  • In the field
    • Back
    • In the field
    • Broadband Push-to-X
    • Internet of Things
    • Project 25
    • Public-Safety Broadband/FirstNet
    • Virtual/Augmented Reality
    • Land Mobile Radio
    • Long Term Evolution (LTE)
    • Applications
    • Drones/Robots
    • IoT/Smart X
    • Software
    • Subscriber Devices
    • Video
  • Call Center/Command
    • Back
    • Call Center/Command
    • Artificial Intelligence
    • NG911
    • Alerting Systems
    • Analytics
    • Dispatch/Call-taking
    • Incident Command/Situational Awareness
    • Tracking, Monitoring & Control
  • Network Tech
    • Back
    • Network Tech
    • Interoperability
    • LMR 100
    • LMR 200
    • Backhaul
    • Deployables
    • Power
    • Tower & Site
    • Wireless Networks
    • Coverage/Interference
    • Security
    • System Design
    • System Installation
    • System Operation
    • Test & Measurement
  • Operations
    • Back
    • Operations
    • Critical Infrastructure
    • Enterprise
    • Federal Government/Military
    • Public Safety
    • State & Local Government
    • Training
  • Regulations
    • Back
    • Regulations
    • Narrowbanding
    • T-Band
    • Rebanding
    • TV White Spaces
    • None
    • Funding
    • Policy
    • Regional Coordination
    • Standards
  • Organizations
    • Back
    • Organizations
    • AASHTO
    • APCO
    • DHS
    • DMR Association
    • ETA
    • EWA
    • FCC
    • IWCE
    • NASEMSO
    • NATE
    • NXDN Forum
    • NENA
    • NIST/PSCR
    • NPSTC
    • NTIA/FirstNet
    • P25 TIG
    • TETRA + CCA
    • UTC
Urgent Communications
  • NEWSLETTER
  • Home
  • News
  • Multimedia
    • Back
    • Video
    • Podcasts
    • Omdia Crit Comms Circle Podcast
    • Galleries
    • IWCE’s Video Showcase
    • Product Guides
  • Commentary
    • Back
    • All Things IWCE
    • Urgent Matters
    • View From The Top
    • Legal Matters
  • Resources
    • Back
    • Webinars
    • White Papers
    • Reprints & Reuse
    • UC eZines
    • Sponsored content
  • IWCE
    • Back
    • Conference
    • Why Attend
    • Exhibitor Listing
    • Floor Plan
    • Exhibiting Information
    • Join the Event Mailing List
  • About Us
    • Back
    • About Us
    • Contact Us
    • Advertise
    • Cookie Policy
    • Terms of Service
    • Privacy Statement
  • Related Sites
    • Back
    • American City & County
    • IWCE
    • Light Reading
    • IOT World Today
    • TU-Auto
  • newsletter
  • In the field
    • Back
    • Internet of Things
    • Broadband Push-to-X
    • Project 25
    • Public-Safety Broadband/FirstNet
    • Virtual/Augmented Reality
    • Land Mobile Radio
    • Long Term Evolution (LTE)
    • Applications
    • Drones/Robots
    • IoT/Smart X
    • Software
    • Subscriber Devices
    • Video
  • Call Center/Command
    • Back
    • Artificial Intelligence
    • NG911
    • Alerting Systems
    • Analytics
    • Dispatch/Call-taking
    • Incident Command/Situational Awareness
    • Tracking, Monitoring & Control
  • Network Tech
    • Back
    • Cybersecurity
    • Interoperability
    • LMR 100
    • LMR 200
    • Backhaul
    • Deployables
    • Power
    • Tower & Site
    • Wireless Networks
    • Coverage/Interference
    • Security
    • System Design
    • System Installation
    • System Operation
    • Test & Measurement
  • Operations
    • Back
    • Critical Infrastructure
    • Enterprise
    • Federal Government/Military
    • Public Safety
    • State & Local Government
    • Training
  • Regulations
    • Back
    • Narrowbanding
    • T-Band
    • Rebanding
    • TV White Spaces
    • None
    • Funding
    • Policy
    • Regional Coordination
    • Standards
  • Organizations
    • Back
    • AASHTO
    • APCO
    • DHS
    • DMR Association
    • ETA
    • EWA
    • FCC
    • IWCE
    • NASEMSO
    • NATE
    • NXDN Forum
    • NENA
    • NIST/PSCR
    • NPSTC
    • NTIA/FirstNet
    • P25 TIG
    • TETRA + CCA
    • UTC
acc.com

State & Local Government


Partner content

A billion dollars for local-government cybersecurity—Will they ever see it?

A billion dollars for local-government cybersecurity—Will they ever see it?

  • Written by Dr. Alan R. Shark / American City & County
  • 19th January 2023

Remember the fanfare upon learning of the passage of the bipartisan Infrastructure Investment and Jobs Act (IIJA) signed into law in November 2021? One billion dollars targeted state, local, tribal and territorial (SLTT) with a cyber grant program within the Cybersecurity and Infrastructure Security Agency (CISA) over four years. After the bill’s passage came the “great wait” and it wasn’t until 10 months later in September 2022, when CISA issued its 96+ page rules for implementation. During this time, it appeared that the rules were being drafted without any input from those representing state and local governments. Sadly, the final result tends to prove this.

Sifting through the main and supporting documents reveals a brilliant set of requirements that when taken together present the very best in cybersecurity planning and best practices. At the same time the rules’ complexity and built-in roadblocks lead one to conclude that it is highly unlikely small and medium-sized local government will ever see a penny, despite their well-documented needs. In other words, the rules’ brilliance in substance is offset by its seemingly complete lack of understanding of the overall targeted audience. To make matters worse, CISA has tasked FEMA, an agency with little to no on-going relationships with local government tech folks, to be the administrative body everyone is supposed to interact with.

So now we are at the beginning of 2023 as cyber threats are only increasing, each state is to develop its own plan. This is just the first hurdle, and not an unreasonable one. But why did everyone have to wait nearly a year only to learn that there needed to be detailed plans? Entities are required to show in their applications that they will implement projects that will further a list of core objectives. Each project must include a project schedule with clearly defined milestones that also clearly aligns with each entity’s Cybersecurity Plan. The four core objectives are: Cyber Incident Response, Testing and Evaluation, Cyber Risk Protections, and Workforce Initiatives. Next there are 15 required elements that each applicant must address. And finally, there are seven tactical areas that need to be addressed in each local government application:

• Implement multi-factor authentication capabilities
• Implement enhanced logging capabilities
• Data encryption for data at rest and in transit
• End the use of unsupported/end-of-life hardware and software
• Prohibit the use of known/fixed/default passwords and credentials
• Ensure the ability to reconstitute systems through backups
• Complete migration to the .gov internet domain

Very few small to medium-sized local governments have the staff capacity to even apply for any such grant, let alone implement and pay for it. Yes, there is a matching funds requirement, too.

Many senior local government tech managers have dismissed the program outright due to its complexity, available capacity, short- and long-term funding considerations, and the accompanying red tape reporting requirements.

To read the complete article, visit American City & County.

 

Tags: Applications Critical Infrastructure Cybersecurity DHS Federal Government/Military Funding Incident Command/Situational Awareness Interoperability News Policy Public Safety Security Software State & Local Government System Design System Operation Tracking, Monitoring & Control Partner content

Most Recent


  • Phishers trick Microsoft into granting them 'verified' Cloud Partner status
    Late last year, a group of threat actors managed to obtain “verified publisher” status through the Microsoft Cloud Partner Program (MCPP). This allowed them to surpass levels of brand impersonation ordinarily seen in phishing campaigns, as they distributed malicious applications bolstered by a verified blue badge only ever given to trusted vendors and service providers in […]
  • Shapeshifting robot can morph from a liquid to a solid
    A new shape-shifting robot can reversibly morph between liquid and solid shapes. The novel design was created by a team of engineers from The Chinese University of Hong Kong and Carnegie Mellon University. Inspired by sea cucumbers’ ability to go both soft or rigid depending on its environment, the miniature robot was built using magnetic […]
  • Automakers against stampede to BEV dominance
    When the president of the world’s biggest carmaker talks, people listen. So, when Toyota President Akio Toyoda said, in September of last year, that bans on ICE cars within 10 to 15 years  will be “rather difficult to achieve” because EVs “are just going to take longer than the media would like us to believe,” […]
  • FCC nominee Gigi Sohn headed for third Senate hearing
    President Biden’s nominee for FCC Commissioner Gigi Sohn will is expected to sit through a third hearing in the US Senate sometime in the coming weeks. That means that, in addition to being on track to become the first openly LGBTQ+ Commissioner for the FCC, Sohn will also make history as the first person to endure three […]

Leave a comment Cancel reply

To leave a comment login with your Urgent Comms account:

Log in with your Urgent Comms account

Or alternatively provide your name, email address below:

Your email address will not be published. Required fields are marked *

Related Content

  • Ransomware profits decline as victims dig in, refuse to pay
  • Critical manufacturing sector in the cyberattacking bullseye
  • T-Mobile failed to secure API in latest hack
  • With the rise of remote work, American cities face an ‘urban doom loop’ as revenue declines

Commentary


How 5G is making cities safer, smarter, and more efficient

26th January 2023

3GPP moves Release 18 freeze date to March 2024

18th January 2023

Do smart cities make safer cities?

  • 1
6th January 2023
view all

Events


UC Ezines


IWCE 2019 Wrap Up

13th May 2019
view all

Twitter


UrgentComm

Phishers trick Microsoft into granting them ‘verified’ Cloud Partner status dlvr.it/Shqngn

2nd February 2023
UrgentComm

Shapeshifting robot can morph from a liquid to a solid dlvr.it/Shqk9K

2nd February 2023
UrgentComm

Automakers against stampede to BEV dominance dlvr.it/ShpX08

2nd February 2023
UrgentComm

FCC nominee Gigi Sohn headed for third Senate hearing dlvr.it/ShpDcZ

1st February 2023
UrgentComm

Sign up to learn how to successfully manage your Motorola ASTRO® 25 System: spr.ly/60143j8fp https://t.co/XcxiUwzN27

1st February 2023
UrgentComm

Hytera parent cites financial health, but unable to make royalty payment to Motorola Solutions dlvr.it/ShlrlM

1st February 2023
UrgentComm

NATE: Todd Schlekeway highlights organization’s safety, legislative initiatives dlvr.it/ShljHj

1st February 2023
UrgentComm

Cybercrime ecosystem spawns lucrative underground Gig Economy dlvr.it/ShkKbf

31st January 2023

Newsletter

Sign up for UrgentComm’s newsletters to receive regular news and information updates about Communications and Technology.

Expert Commentary

Learn from experts about the latest technology in automation, machine-learning, big data and cybersecurity.

Business Media

Find the latest videos and media from the market leaders.

Media Kit and Advertising

Want to reach our digital and print audiences? Learn more here.

DISCOVER MORE FROM INFORMA TECH

  • American City & County
  • IWCE
  • Light Reading
  • IOT World Today
  • Mission Critical Technologies
  • TU-Auto

WORKING WITH US

  • About Us
  • Contact Us
  • Events
  • Careers

FOLLOW Urgent Comms ON SOCIAL

  • Privacy
  • CCPA: “Do Not Sell My Data”
  • Cookie Policy
  • Terms
Copyright © 2023 Informa PLC. Informa PLC is registered in England and Wales with company number 8860726 whose registered and Head office is 5 Howick Place, London, SW1P 1WG.