CISA Releases Updated Insider Threat Guide With New Insights to Mitigate Physical and Cyber Threats
Official websites use .gov
A .gov website belongs to an official government organization in the United States.
Secure .gov websites use HTTPS
A lock () or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.
Share:
Opens in a new window
Opens in a new window
Opens in a new window
Press Release
CISA Releases Updated Insider Threat Guide With New Insights to Mitigate Physical and Cyber Threats
New Resources Help Organizations Assess and Mitigate the Challenges and Growing Impact of Insider Threats Released Related topics: Insider Threat Mitigation , Physical SecurityWASHINGTON – The Cybersecurity and Infrastructure Security Agency (CISA) released today the updated Insider Threat Mitigation Guide which provides security support consistent with our statutory mission. The guide gives organizations a current look at insider threats and practical steps to develop or enhance an insider threat program. Delivered in a more streamlined format, the updated guide addresses evolving considerations such as the rise in hybrid and remote work, and advances in artificial intelligence (AI).
First published in 2020, the Insider Threat Mitigation Guide supports security and human resource professionals who manage insider threat programs, as well as leaders at every level of an organization. The guide was updated to acknowledge the growing impact insider threats have on critical infrastructure, the dynamic and evolving operational landscape, and provide new use cases to help organizations address new challenges. Any organization, regardless of the maturity level of its security, can leverage the guide to bolster their threat mitigation program.
“Insider threats continue to evolve as technology becomes more advanced. We urge organizations to establish a mitigation program that protects key assets, prevent violence, reduce losses, safeguard sensitive data, and save lives,” said Acting Executive Assistant Director for Infrastructure Security Scott Breor. “CISA appreciates the industry and government partner feedback that informed this timely update. CISA encourages organizations to review this updated guide, assess their program, and recommended steps to bolster their threat mitigation program.”
This updated guide gives employees an understanding of behavioral indicators that may signal a risk. Key updates in the guide include:
For more information, please visit Insider Threat Mitigation Resources and Tools.
As the nation’s cyber defense agency and national coordinator for critical infrastructure security, the Cybersecurity and Infrastructure Security Agency leads the national effort to manage, uncover, and reduce risk to our digital and physical infrastructure Americans rely on every hour of every day.
Visit CISA.gov for more information and follow us on X, Facebook, LinkedIn, Instagram.