{"id":7904,"date":"2025-08-18T05:00:00","date_gmt":"2025-08-18T10:00:00","guid":{"rendered":"https:\/\/cyberscoop.com\/?p=85607"},"modified":"2025-08-18T05:00:00","modified_gmt":"2025-08-18T10:00:00","slug":"heres-what-could-happen-if-cisa-2015-expires-next-month","status":"publish","type":"post","link":"https:\/\/ddi.mohflo.net\/index.php\/2025\/08\/18\/heres-what-could-happen-if-cisa-2015-expires-next-month\/","title":{"rendered":"Here\u2019s what could happen if CISA 2015 expires next month"},"content":{"rendered":"<p><head> <meta charset=\"UTF-8\"> <meta name=\"viewport\" content=\"width=device-width, initial-scale=1\"> <meta name=\"robots\" content=\"index, follow, max-image-preview:large, max-snippet:-1, max-video-preview:-1\"> <!-- This site is optimized with the Yoast SEO Premium plugin v24.5 (Yoast SEO v24.5) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ --> <title>Here\u2019s what could happen if CISA 2015 expires next month | CyberScoop<\/title> <meta name=\"description\" content=\"Expiration of a 2015 law could dramatically reduce cyber threat information sharing within industry, as well as between companies and the federal government, almost to the point of eliminating it.\"> <link rel=\"canonical\" href=\"https:\/\/cyberscoop.com\/cisa-2015-expiration-industry-warning-threat-information-sharing\/\"> <meta property=\"og:locale\" content=\"en_US\"> <meta property=\"og:type\" content=\"article\"> <meta property=\"og:title\" content=\"Here\u2019s what could happen if CISA 2015 expires next month\"> <meta property=\"og:description\" content=\"Expiration of a 2015 law could dramatically reduce cyber threat information sharing within industry, as well as between companies and the federal government, almost to the point of eliminating it.\"> <meta property=\"og:url\" content=\"https:\/\/cyberscoop.com\/cisa-2015-expiration-industry-warning-threat-information-sharing\/\"> <meta property=\"og:site_name\" content=\"CyberScoop\"> <meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/cyberscoop\/\"> <meta property=\"article:published_time\" content=\"2025-08-18T10:00:00+00:00\"> <meta property=\"og:image\" content=\"https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-5.jpg\"> <meta property=\"og:image:width\" content=\"1920\"> <meta property=\"og:image:height\" content=\"1440\"> <meta property=\"og:image:type\" content=\"image\/jpeg\"> <meta name=\"author\" content=\"Tim Starks\"> <meta name=\"twitter:card\" content=\"summary_large_image\"> <meta name=\"twitter:creator\" content=\"@timstarks\"> <meta name=\"twitter:site\" content=\"@CyberScoopNews\"> <!-- \/ Yoast SEO Premium plugin. --> <link rel=\"dns-prefetch\" href=\"\/\/securepubads.g.doubleclick.net\">\n<link rel=\"dns-prefetch\" href=\"\/\/use.typekit.net\">\n<link rel=\"alternate\" type=\"application\/rss+xml\" title=\"CyberScoop \u00bb Feed\" href=\"https:\/\/cyberscoop.com\/feed\/\">\n<link rel=\"alternate\" type=\"application\/rss+xml\" title=\"CyberScoop \u00bb Comments Feed\" href=\"https:\/\/cyberscoop.com\/comments\/feed\/\"> <link rel=\"stylesheet\" id=\"all-css-2\" href=\"https:\/\/cyberscoop.com\/wp-includes\/css\/dist\/block-library\/style.min.css?m=1754500264g\" type=\"text\/css\" media=\"all\"> <link rel=\"stylesheet\" id=\"all-css-6\" href=\"https:\/\/cyberscoop.com\/wp-content\/mu-plugins\/search\/elasticpress\/dist\/css\/related-posts-block-styles.min.css?m=1755021799g\" type=\"text\/css\" media=\"all\"> <link rel=\"stylesheet\" id=\"all-css-8\" href=\"https:\/\/cyberscoop.com\/wp-content\/themes\/scoopnewsgroup\/dist\/css\/frontend.css?m=1753281318g\" type=\"text\/css\" media=\"all\">\n<link rel=\"stylesheet\" id=\"typekit-css\" href=\"https:\/\/use.typekit.net\/itk2qbh.css?ver=13897d660a0ac2c9c7d1\" media=\"all\"> <link rel=\"https:\/\/api.w.org\/\" href=\"https:\/\/cyberscoop.com\/wp-json\/\"><link rel=\"alternate\" title=\"JSON\" type=\"application\/json\" href=\"https:\/\/cyberscoop.com\/wp-json\/wp\/v2\/posts\/85607\"><link rel=\"EditURI\" type=\"application\/rsd+xml\" title=\"RSD\" href=\"https:\/\/cyberscoop.com\/xmlrpc.php?rsd\">\n<meta name=\"generator\" content=\"WordPress 6.8.2\">\n<link rel=\"shortlink\" href=\"https:\/\/cyberscoop.com\/?p=85607\">\n<link rel=\"alternate\" title=\"oEmbed (JSON)\" type=\"application\/json+oembed\" href=\"https:\/\/cyberscoop.com\/wp-json\/oembed\/1.0\/embed?url=https%3A%2F%2Fcyberscoop.com%2Fcisa-2015-expiration-industry-warning-threat-information-sharing%2F\">\n<link rel=\"alternate\" title=\"oEmbed (XML)\" type=\"text\/xml+oembed\" href=\"https:\/\/cyberscoop.com\/wp-json\/oembed\/1.0\/embed?url=https%3A%2F%2Fcyberscoop.com%2Fcisa-2015-expiration-industry-warning-threat-information-sharing%2F&amp;format=xml\"> <!-- Google Tag Manager --> <!-- End Google Tag Manager --> <link rel=\"icon\" href=\"https:\/\/cyberscoop.com\/wp-content\/uploads\/sites\/3\/2023\/01\/cropped-cs_favicon-2.png?w=32\" sizes=\"32x32\">\n<link rel=\"icon\" href=\"https:\/\/cyberscoop.com\/wp-content\/uploads\/sites\/3\/2023\/01\/cropped-cs_favicon-2.png?w=192\" sizes=\"192x192\">\n<link rel=\"apple-touch-icon\" href=\"https:\/\/cyberscoop.com\/wp-content\/uploads\/sites\/3\/2023\/01\/cropped-cs_favicon-2.png?w=180\">\n<meta name=\"msapplication-TileImage\" content=\"https:\/\/cyberscoop.com\/wp-content\/uploads\/sites\/3\/2023\/01\/cropped-cs_favicon-2.png?w=270\"> <\/head><body class=\"wp-singular post-template-default single single-post postid-85607 single-format-standard wp-theme-scoopnewsgroup wp-child-theme-cyberscoop\" id=\"readabilityBody\"> <a href=\"https:\/\/cyberscoop.com\/cisa-2015-expiration-industry-warning-threat-information-sharing\/#main\" class=\"skip-to-content-link visually-hidden-focusable\">Skip to main content<\/a> <\/p>\n<div class=\"ad ad--top ad--top-desktop\">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p> <main id=\"main\" role=\"main\" tabindex=\"-1\"> <\/p>\n<div class=\"ad ad--top ad--top-mobile\">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<section id=\"stickybar\" class=\"stickybar stickybar--newsletter js-stickybar\" readability=\"0.82\"> <button class=\"stickybar__close js-stickybar-close\" aria-controls=\"stickybar\"> <svg class=\"icon icon--close\" width=\"21\" height=\"22\" viewBox=\"0 0 21 22\" fill=\"none\"><path d=\"m.822.518-.805.805L9.695 11 .017 20.678l.805.805 9.678-9.678 9.677 9.678.806-.805L11.305 11l9.678-9.677-.806-.805-9.677 9.677L.822.518Z\" fill=\"currentColor\" \/><\/svg> <span class=\"visually-hidden\">Close<\/span> <\/button> <\/section>\n<article class=\"single-article content\">\n<div class=\"single-article__container js-single-article-content\">\n<header class=\"single-article__header \" readability=\"25.036363636364\">\n<div class=\"single-article__header-content\" readability=\"31.293532338308\">\n<p> The Cybersecurity Information Sharing Act lapsing might spell disaster, experts and industry groups warn. <\/p>\n<p> <!-- Listen to this article section --> <!-- End of audio player --> <\/div>\n<div class=\"single-article__cover-wrap\">\n<figure class=\"single-article__cover\"> <img data-recalc-dims=\"1\" fetchpriority=\"high\" width=\"640\" height=\"480\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month.jpg?resize=640%2C480&#038;ssl=1\" class=\"single-article__cover-image wp-post-image\" alt decoding=\"async\" fetchpriority=\"high\" srcset=\"https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-5.jpg 1920w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-5.jpg?resize=300,225 300w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-5.jpg?resize=768,576 768w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-5.jpg?resize=1024,768 1024w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-5.jpg?resize=1536,1152 1536w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-5.jpg?resize=600,450 600w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-5.jpg?resize=224,168 224w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-5.jpg?resize=449,337 449w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-5.jpg?resize=900,675 900w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-5.jpg?resize=1124,843 1124w\" sizes=\"(max-width: 900px) 100vw, 900px\"><figcaption> filo, Getty Images <\/figcaption><\/figure>\n<\/p><\/div>\n<\/header>\n<div class=\"single-article__content\">\n<div class=\"single-article__content-inner has-drop-cap\"> <html readability=\"66.439800613497\"><body readability=\"141.05010585745\"><\/p>\n<p>Expiration of a 2015 law at the end of September could dramatically reduce cyber threat information sharing within industry, as well as between companies and the federal government, almost to the point of eliminating it, some experts and industry officials warn.<\/p>\n<p>The <a href=\"https:\/\/cyberscoop.com\/cybersecurity-information-sharing-law-expiring-congress-renewal\/\">Cybersecurity Information Sharing Act<\/a>, also known as CISA 2015, is due to end next month unless Congress extends it. Leaders of both of the House and Senate panels with the responsibility for reauthorizing it say they intend to act on legislation next month, but the law still stands to expire soon without a quick bicameral deal.<\/p>\n<p>The original 2015 law provided legal safeguards for organizations to share threat data with other organizations and the federal government.<\/p>\n<p>\u201cWe can expect, roughly, potentially, if this expires, maybe an 80 to 90% reduction in cyber threat information flows, like raw flows,\u201d Emily Park, a Democratic staffer on the Senate Homeland Security and Governmental Affairs Committee, said at <a href=\"https:\/\/industrialcyber.co\/reports\/booz-allen-mccrary-report-warns-of-cyber-sabotage-risk-at-us-ports-urges-zero-trust-amid-systemic-ot-weaknesses\/\">an event<\/a> last month. \u201cBut that doesn\u2019t say anything about the break in trust that will occur as well, because at its core, CISA 2015, as an authority, is about trust, and being able to trust the businesses and organizations around you, and being able to trust the federal government that it will use the information you share with it.\u201d<\/p>\n<div class=\"ad ad--inline_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p>That estimate \u2014 80 to 90% \u2014 is on the high side of warnings issued by policymakers and others, and some reject the notion that the sky is catastrophically falling should it lapse. Additionally, some of the organizations warning about the fallout from the law\u2019s lapse benefit from its provisions. But there\u2019s near-unanimity that expiration of the law could largely shift decisions about cyber threat info sharing from organizations\u2019 chief information security officers to the legal department.<\/p>\n<p>\u201cIf you think about it from the company\u2019s perspective, what a lapse would do would be to cause the ability to share information \u2014 to move the decision from the CISO to the general counsel\u2019s office,\u201d&nbsp; said Amy Shuart, vice president of technology and innovation at Business Roundtable, which considered the issue important enough to fly in CISOs from member companies to meet with lawmakers this summer and persuade them to act. \u201cAnd any good general counsel is going to say, \u2018I used to have authority here that protects us from antitrust. We don\u2019t have it anymore. Now I\u2019ve got concerns.\u2019 So we do anticipate that if this was to lapse, the vast majority of private sector information sharing would shut down just due to legal risk.\u201d<\/p>\n<p>A common expectation among watchers is that Congress is likely to pass <a href=\"https:\/\/cyberscoop.com\/consensus-forms-on-reauthorizing-2015-cyber-info-sharing-law-now-upgrading-it-later\/\">a short-term extension<\/a> that would be attached to an annual spending bill known as <a href=\"https:\/\/www.naco.org\/news\/congress-passes-full-year-continuing-resolution-through-september-30-2025\">a continuing resolution<\/a> before the end of the current fiscal year, which also is tied to the end of September. But that still gives lawmakers a short window, and even if a short-term extension passes, Hill appropriators are likely to be impatient about a long-term extension and unwilling to aid any extension past the end of December.<\/p>\n<p>Senate Homeland Security and Governmental Affairs Chairman Rand Paul, R-Ky., <a href=\"https:\/\/cyberscoop.com\/plankey-vows-to-boot-china-from-u-s-supply-chain-advocate-for-cisa-budget\/\">said last month<\/a> that he intends to hold a markup of CISA 2015 extension legislation in September. A critic of the Cybersecurity and Infrastructure Security Agency over allegations that it pushed social media outlets to censor election security and COVID-19 data \u2014 allegations that then-CISA leaders denied \u2014 Paul said he wants to include language in any extension prohibiting the agency known as CISA from censorship.<\/p>\n<p>The new leader of the House Homeland Security Committee, Andrew Garbarino, R-N.Y., also has said reauthorization is a priority, but wants to make other changes to the law as well.<\/p>\n<div class=\"ad ad--inline_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p>\u201cReauthorizing the Cybersecurity and Information Sharing Act is essential as the deadline nears and as threats evolve,\u201d Garbarino said in a statement to CyberScoop. \u201cThe House Committee on Homeland Security plans to mark up our legislative text for its reauthorization shortly after Congress returns from recess in September. In a 10-year extension, I will preserve the privacy protections in the law, and I aim to provide enhanced clarity to certain pre-existing provisions to better address the evolving threat landscape.\u201d<\/p>\n<p>Separate from the 2015 law, the Justice and Homeland Security departments have issued and updated legal guidance pertaining to cyber threat information sharing that sector-specific information sharing and analysis centers say undergird exchanges from company to company.<\/p>\n<p>But <a href=\"https:\/\/cyberscoop.com\/cybersecurity-regulations-face-uphill-battle-after-chevron-ruling\/\">a Supreme Court decision<\/a> last year about federal regulatory authority could cast a shadow over that guidance should CISA 2015 expire, warned Michael Daniel, leader of the Cyber Threat Alliance. Furthermore, a failure from Congress to act could send <a href=\"https:\/\/www.lawfaremedia.org\/article\/the-case-for-reauthorizing-cisa-2015\">a message to courts<\/a>.<\/p>\n<p>\u201cA lack of congressional action to positively reauthorize private entities to monitor their networks, deploy defensive measures, and share information \u2018notwithstanding any other provision of law\u2019 introduces uncertainty about sharing information that could trigger certain criminal laws, such as the Computer Fraud and Abuse Act or the Stored Communications Act, or could violate antitrust laws when participating in collective cyber defense,\u201d he recently wrote. \u201cIn short, the resulting uncertainty would reduce the amount of sharing that occurs, reintroduce friction into the system, and inhibit the ability to identify, detect, track, prepare for, or respond to cyber threats.\u201d<\/p>\n<p>Daniel told CyberScoop some of those discussions about expiration fallout are hypothetical at this point, but legal experts have told him they are realistic.&nbsp;<\/p>\n<div class=\"ad ad--inline_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p>Trump administration officials and nominees have said they support reauthorization of the 2015 law. There are links to its recent <a href=\"https:\/\/cyberscoop.com\/trump-ai-action-plan-critical-infrastructure-cyber-defense\/\">artificial intelligence action plan<\/a>, which calls for establishment of <a href=\"https:\/\/www.linkedin.com\/feed\/update\/urn:li:activity:7353926541866586113\/\">an AI-ISAC<\/a>.<\/p>\n<p>\u201cOne piece we were happy to hear is the administration generally be supportive of a clean reauthorization,\u201d Shuart said. \u201cOne of the things that we\u2019ve heard the administration say pretty loud and clear about their approach with the [AI] action plan is that they were thinking about what they could do within their existing authorities. So CISA 2015 is a pretty important existing authority for the action plan to be successful.\u201d<\/p>\n<p>Still, the future of the 2015 law is uncertain.<\/p>\n<p>\u2018There\u2019s a lot of people kind of searching around for how to do this. I really couldn\u2019t say I know that there\u2019s a consensus,\u201d said Larry Clinton, president of the Internet Security Alliance. \u201cI know that there are people working in multiple different committees \u2014 Homeland Security, Armed Services, Appropriations, Intel \u2014 who are trying to figure out how to do this. And that\u2019s a good thing, because we want all that support. It\u2019s also a troubling thing because we wind up with too many cooks in the kitchen, and it\u2019s harder to get things done without a consensus on the specifics of what needs to be done, given the tight timeline.\u201d<\/p>\n<p><\/body> <\/p>\n<footer class=\"single-article__footer\">\n<div class=\"author-card\" readability=\"7.7216117216117\">\n<div class=\"author-card__avatar\">\n<figure class=\"author-card__image-wrap\"> <img data-recalc-dims=\"1\" decoding=\"async\" class=\"author-card__image\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-1.jpg?w=640&#038;ssl=1\" alt=\"Tim Starks\"> <\/figure>\n<\/p><\/div>\n<div class=\"author-card__details\" readability=\"10.901098901099\">\n<h4 class=\"author-card__name\">Written by Tim Starks<\/h4>\n<p> Tim Starks is senior reporter at CyberScoop. His previous stops include working at The Washington Post, POLITICO and Congressional Quarterly. An Evansville, Ind. native, he&#8217;s covered cybersecurity since 2003. Email Tim here: <a href=\"mailto:tim.starks@cyberscoop.com\">tim.starks@cyberscoop.com<\/a>. <\/div>\n<\/p><\/div>\n<div class=\"single-article__tags-container\">\n<h4 class=\"single-article__tags-title\">In This Story<\/h4>\n<\/p><\/div>\n<\/footer>\n<p> <\/html><\/div>\n<\/p><\/div>\n<\/p><\/div>\n<div class=\"single-article__ads js-single-article-sidebar\">\n<div class=\"ad ad--sidebar js-single-article-sidebar-5 ad--rightrail_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<div class=\"ad ad--sidebar js-single-article-sidebar-4 ad--rightrail_2 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<div class=\"ad ad--sidebar js-single-article-sidebar-3 ad--rightrail_3 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div><\/div>\n<\/article>\n<div class=\"popular-stories popular-stories--single-post\">\n<div class=\"popular-stories__container\">\n<h2 class=\"popular-stories__title\"> More Scoops <\/h2>\n<div class=\"popular-stories__stories\">\n<div class=\"popular-stories__cards\">\n<article class=\"post-item post-item--popular-stories-cards \" readability=\"21.294117647059\">\n<figure class=\"post-item__thumbnail\"> <a class=\"post-item__thumbnail-link\" href=\"https:\/\/cyberscoop.com\/national-cyber-director-sean-cairncross-faces-challenges-on-policy-bureaucracy-threats\/\" tabindex=\"-1\"> <img data-recalc-dims=\"1\" loading=\"lazy\" width=\"506\" height=\"337\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-2.jpg?resize=506%2C337&#038;ssl=1\" class=\"attachment-ratio-16-9-md size-ratio-16-9-md wp-post-image\" alt decoding=\"async\" loading=\"lazy\" srcset=\"https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-6.jpg 1920w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-6.jpg?resize=300,200 300w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-6.jpg?resize=768,512 768w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-6.jpg?resize=1024,683 1024w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-6.jpg?resize=1536,1024 1536w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-6.jpg?resize=600,400 600w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-6.jpg?resize=252,168 252w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-6.jpg?resize=506,337 506w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-6.jpg?resize=1013,675 1013w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-6.jpg?resize=1265,843 1265w\" sizes=\"auto, (max-width: 506px) 100vw, 506px\"> <\/a><figcaption class=\"screen-reader-text\"> Sean Cairncross, CEO, Millenium Challenge Corporation, speaks onstage during the 2019 Concordia Annual Summit \u2013 Day 2 at Grand Hyatt New York on Sept. 24, in New York City. (Photo by Riccardo Savi\/Getty Images for Concordia Summit) <\/figcaption><\/figure>\n<header class=\"post-item__meta\" readability=\"2.2755555555556\">\n<h3 class=\"post-item__title\"> <a class=\"post-item__title-link\" href=\"https:\/\/cyberscoop.com\/national-cyber-director-sean-cairncross-faces-challenges-on-policy-bureaucracy-threats\/\"> New National Cyber Director Cairncross faces challenges on policy, bureaucracy, threats <\/a> <\/h3>\n<p> It\u2019s a \u201cpivotal\u201d moment for Sean Cairncross, fresh off his Senate confirmation in a changing federal cyber landscape. <\/p>\n<div class=\"post-item__byline\"> <span class=\"post-item__author\"> <span>By <\/span> <a class=\"post-item__author-link\" href=\"https:\/\/cyberscoop.com\/author\/tim-starkscyberscoop-com\/\"> Tim Starks <\/a> <\/span> <\/div>\n<p><!-- .byline --> <\/header>\n<p><!-- .post-item__meta --> <\/article>\n<article class=\"post-item post-item--popular-stories-cards \">\n<figure class=\"post-item__thumbnail\"> <a class=\"post-item__thumbnail-link\" href=\"https:\/\/cyberscoop.com\/plankey-vows-to-boot-china-from-u-s-supply-chain-advocate-for-cisa-budget\/\" tabindex=\"-1\"> <img data-recalc-dims=\"1\" loading=\"lazy\" width=\"252\" height=\"168\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-3.jpg?resize=252%2C168&#038;ssl=1\" class=\"attachment-ratio-16-9-sm size-ratio-16-9-sm wp-post-image\" alt decoding=\"async\" loading=\"lazy\" srcset=\"https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-7.jpg 4000w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-7.jpg?resize=300,200 300w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-7.jpg?resize=768,512 768w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-7.jpg?resize=1024,683 1024w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-7.jpg?resize=1536,1024 1536w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-7.jpg?resize=2048,1366 2048w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-7.jpg?resize=600,400 600w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-7.jpg?resize=252,168 252w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-7.jpg?resize=505,337 505w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-7.jpg?resize=1012,675 1012w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-7.jpg?resize=1264,843 1264w\" sizes=\"auto, (max-width: 252px) 100vw, 252px\"> <\/a><figcaption class=\"screen-reader-text\"> Sean Plankey, of Pennsylvania, responds to questioning during Senate Committee on Homeland Security and Governmental Affairs hearings to examine his nomination to be Director of the Cybersecurity and Infrastructure Security Agency, of the Department of Homeland Security, in the Dirksen Senate office building, in Washington, DC, on Wednesday July 24, 2025. (Mattie Neretin\/CNP\/Sipa USA) <\/figcaption><\/figure>\n<header class=\"post-item__meta\">\n<h3 class=\"post-item__title\"> <a class=\"post-item__title-link\" href=\"https:\/\/cyberscoop.com\/plankey-vows-to-boot-china-from-u-s-supply-chain-advocate-for-cisa-budget\/\"> Plankey vows to boot China from U.S. supply chain, advocate for CISA budget <\/a> <\/h3>\n<div class=\"post-item__byline\"> <span class=\"post-item__author\"> <span>By <\/span> <a class=\"post-item__author-link\" href=\"https:\/\/cyberscoop.com\/author\/tim-starkscyberscoop-com\/\"> Tim Starks <\/a> <\/span> <\/div>\n<p><!-- .byline --> <\/header>\n<p><!-- .post-item__meta --> <\/article>\n<article class=\"post-item post-item--popular-stories-cards \">\n<figure class=\"post-item__thumbnail\"> <a class=\"post-item__thumbnail-link\" href=\"https:\/\/cyberscoop.com\/cisa-2015-bill-extension-2025\/\" tabindex=\"-1\"> <img data-recalc-dims=\"1\" loading=\"lazy\" width=\"252\" height=\"168\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-4.jpg?resize=252%2C168&#038;ssl=1\" class=\"attachment-ratio-16-9-sm size-ratio-16-9-sm wp-post-image\" alt decoding=\"async\" loading=\"lazy\" srcset=\"https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-8.jpg 1920w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-8.jpg?resize=300,200 300w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-8.jpg?resize=768,512 768w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-8.jpg?resize=1024,683 1024w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-8.jpg?resize=1536,1024 1536w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-8.jpg?resize=600,400 600w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-8.jpg?resize=252,168 252w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-8.jpg?resize=506,337 506w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-8.jpg?resize=1013,675 1013w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/08\/heres-what-could-happen-if-cisa-2015-expires-next-month-8.jpg?resize=1265,843 1265w\" sizes=\"auto, (max-width: 252px) 100vw, 252px\"> <\/a><figcaption class=\"screen-reader-text\"> Dilok Klaisataporn, Getty Images <\/figcaption><\/figure>\n<header class=\"post-item__meta\">\n<h3 class=\"post-item__title\"> <a class=\"post-item__title-link\" href=\"https:\/\/cyberscoop.com\/cisa-2015-bill-extension-2025\/\"> Short-term extension of expiring cyber information-sharing law could be on the table <\/a> <\/h3>\n<div class=\"post-item__byline\"> <span class=\"post-item__author\"> <span>By <\/span> <a class=\"post-item__author-link\" href=\"https:\/\/cyberscoop.com\/author\/tim-starkscyberscoop-com\/\"> Tim Starks <\/a> <\/span> <\/div>\n<p><!-- .byline --> <\/header>\n<p><!-- .post-item__meta --> <\/article>\n<\/p><\/div>\n<\/p><\/div>\n<p><!-- .popular-stories__stories --> <\/div>\n<p><!-- .popular-stories__inner -->\n<\/div>\n<p><!-- .popular-stories --> <\/p>\n<section class=\"latest-podcasts\">\n<h2 class=\"latest-podcasts__title\"> Latest Podcasts\t<\/h2>\n<\/section>\n<div class=\"top-categories\">\n<div class=\"top-categories__container\">\n<h3 class=\"top-categories__category-title\">Government<\/h3>\n<\/p><\/div>\n<div class=\"top-categories__container\">\n<h3 class=\"top-categories__category-title\">Technology<\/h3>\n<\/p><\/div>\n<\/p><\/div>\n<p> <\/main> <\/p>\n<div class=\"ad ad--bottom \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<div id=\"interstitial\" class=\"welcome__container\"> <button id=\"close-modal-1\" class=\"welcome__clickable_area\"><\/button> <\/p>\n<div class=\"welcome__ad_wrapper\">\n<p> <button id=\"close-modal-3\" class=\"welcome__continue-button\">Continue to CyberScoop<\/button> <\/p>\n<\/p><\/div>\n<\/p><\/div>\n<p> <!-- Start of HubSpot Embed Code --> <!-- End of HubSpot Embed Code --> <\/body> <a href=\"https:\/\/cyberscoop.com\/cisa-2015-expiration-industry-warning-threat-information-sharing\/\">Source<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Here\u2019s what could happen if CISA 2015 expires next month<\/p>\n","protected":false},"author":11,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[4642,1092,384,3390,655,452,3530,117,1093,2173,3777,3778,4822,439,3507,1380,4823],"tags":[4644,1094,388,3391,657,454,3535,119,1095,2176,3779,3780,4824,443,3512,1383,4825],"class_list":["post-7904","post","type-post","status-publish","format-standard","hentry","category-ai-action-plan","category-andrew-garbarino","category-artificial-intelligence-ai","category-computer-fraud-and-abuse-act-cfaa","category-congress","category-cybersecurity-and-infrastructure-security-agency-cisa","category-cybersecurity-information-sharing-act","category-government","category-house-homeland-security-committee","category-information-sharing","category-information-sharing-and-analysis-centers-isacs","category-internet-security-alliance","category-larry-clinton","category-policy","category-rand-paul","category-senate-homeland-security-and-governmental-affairs-committee","category-stored-communications-protection-act","tag-ai-action-plan","tag-andrew-garbarino","tag-artificial-intelligence-ai","tag-computer-fraud-and-abuse-act-cfaa","tag-congress","tag-cybersecurity-and-infrastructure-security-agency-cisa","tag-cybersecurity-information-sharing-act","tag-government","tag-house-homeland-security-committee","tag-information-sharing","tag-information-sharing-and-analysis-centers-isacs","tag-internet-security-alliance","tag-larry-clinton","tag-policy","tag-rand-paul","tag-senate-homeland-security-and-governmental-affairs-committee","tag-stored-communications-protection-act"],"featured_image_urls":{"full":"","thumbnail":"","medium":"","medium_large":"","large":"","1536x1536":"","2048x2048":"","chromenews-featured":"","chromenews-large":"","chromenews-medium":""},"author_info":{"display_name":"Cyber Scoop","author_link":"https:\/\/ddi.mohflo.net\/index.php\/author\/cyberscoop\/"},"category_info":"<a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/ai-action-plan\/\" rel=\"category tag\">AI Action Plan<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/andrew-garbarino\/\" rel=\"category tag\">Andrew Garbarino<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/artificial-intelligence-ai\/\" rel=\"category tag\">artificial intelligence (AI)<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/computer-fraud-and-abuse-act-cfaa\/\" rel=\"category tag\">Computer Fraud and Abuse Act (CFAA)<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/congress\/\" rel=\"category tag\">Congress<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/cybersecurity-and-infrastructure-security-agency-cisa\/\" rel=\"category tag\">Cybersecurity and Infrastructure Security Agency (CISA)<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/cybersecurity-information-sharing-act\/\" rel=\"category tag\">Cybersecurity Information Sharing Act<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/government\/\" rel=\"category tag\">Government<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/house-homeland-security-committee\/\" rel=\"category tag\">House Homeland Security Committee<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/information-sharing\/\" rel=\"category tag\">information sharing<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/information-sharing-and-analysis-centers-isacs\/\" rel=\"category tag\">information sharing and analysis centers (ISACs)<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/internet-security-alliance\/\" rel=\"category tag\">Internet Security Alliance<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/larry-clinton\/\" rel=\"category tag\">Larry Clinton<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/policy\/\" rel=\"category tag\">Policy<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/rand-paul\/\" rel=\"category tag\">rand paul<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/senate-homeland-security-and-governmental-affairs-committee\/\" rel=\"category tag\">Senate Homeland Security and Governmental Affairs Committee<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/stored-communications-protection-act\/\" rel=\"category tag\">Stored Communications Protection Act<\/a>","tag_info":"Stored Communications Protection Act","comment_count":"0","jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/7904","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/users\/11"}],"replies":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/comments?post=7904"}],"version-history":[{"count":0,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/7904\/revisions"}],"wp:attachment":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media?parent=7904"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/categories?post=7904"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/tags?post=7904"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}