Push continues to fund cyber info-sharing center

akinbostanci via Getty Images

Emergency funding for the Multi-State Information Sharing and Analysis Center runs out at the end of September, and experts are worried about the consequences if it lapses fully.

Late last month, Nevada announced it had been targeted by a cyberattack that temporarily closed services and forced others to rely on paper and in-person activities.

As the state looked to get its systems back up alongside its partners and recover from the attack, the federal Cybersecurity and Infrastructure Security Agency said it was providing real-time incident response to Nevada, and noted that it offers “a wide range of no-cost services to protect governments’ networks and critical services.”

But other groups said the attack on Nevada’s systems highlighted the need for more sustained and targeted cybersecurity support for state and local governments through the Multi-State Information Sharing and Analysis Center, known as MS-ISAC.

The center, which partners with more than 18,000 state, local, tribal and territorial governments — known as SLTT — and offers incident response, monitoring and threat intelligence, had its federal funding slashed by $10 million by the Department of Homeland Security earlier this year. Since then, MS-ISAC has been operating using emergency funding from the Center for Internet Security, but that money runs out at the end of this month. It is now moving to a paid membership model for governments to maintain its services.

If the MS-ISAC is forced to close altogether, the consequences could be disastrous, members of its executive committee warned.

“I'm sure the bad guys out there are watching this funding thing going on, and it's just a matter of time where they're going to elevate the attacks and hit a lot harder in SLTT, and we're simply still not prepared,” said Gary Coverdale, chief information security officer for Santa Barbara County, California. “MS-ISAC is an amazing organic support that gives the SLTT a lot of the tools that we need to protect ourselves.”

A recent CIS report illustrated the continued cyber risks that state, local, tribal and territorial governments face, which would be magnified if the MS-ISAC disappears. The report found that 68% of governments do not have the budget to address their major cybersecurity priorities, while small and rural communities are “disproportionately vulnerable” to cyberattacks, partly due to their lack of resources. Foreign hackers are wise to this weakness too, the report found, as they target local infrastructure like water systems, public schools and other critical sectors.

Local leaders have stressed the MS-ISAC’s importance too. In a joint letter early last month, the National Association of Counties, National Association of State Chief Information Officers, the U.S. Conference of Mayors, the National League of Cities and the Major County Sheriffs of America urged Congress to fund the organization during its FY 2026 appropriations process. 

The letter said MS-ISAC has helped state and local governments detect more than 43,000 potential cyberattacks, identify and prevent more than 59,000 malware and ransomware attacks, prevent 25 billion connections to malicious sites, and block 5.4 million potentially malicious emails.

The MS-ISAC provides various cybersecurity services for free or at massively reduced prices, including regional security operations centers for 24/7 monitoring and shared services like endpoint detection. For small governments with less money in their budgets to spend on cybersecurity, losing those services that have previously been provided for them would create an impossible situation.

“They're going to be critically impacted,” Coverdale said. “They're going to have to do without all the services that MS-ISAC provides. They're not going to find replacements. They're going to go out and buy replacements. They can't afford it. A lot of these small agencies are very resource constrained, and so it's essentially going to be the weak spot.”

The MS-ISAC’s end might necessitate a larger role for the private sector and a reliance on them providing certain services or products to under-resourced governments. In mid-August, CIS announced it had selected cybersecurity company Sophos as the endpoint protection provider for government organizations as part of the organization’s new CIS Managed Detection and Response service. That service is intended to stop malicious activity, as well as provide continuous monitoring, detection and response. 

Rob Lalumondier, Sophos’ vice president of public sector, said that partnerships such as these will help “close that resource gap.”

“A lot of this is very targeted at and built around the needs of what we call underserved governments out there,” he said. “Rural counties, small municipalities, villages that don't really have the resources to run their own [security operations center], and probably lack quite a bit of cybersecurity manpower and expertise. A lot of times these entire cities’ cybersecurity system is basically run by one or two people. This gives them access to that same caliber of defense that some of the world's largest organizations get.”

In the absence of the MS-ISAC, Coverdale said responsibility for cybersecurity protection and response could be pushed onto state governments, some of which may also lack the resources to help their localities or critical infrastructure providers.

Joshua Bauman, director of technology at the Festus R-VI School District in Missouri and an MS-ISAC executive committee member, said having a state-by-state approach also risks creating a patchwork of protection.

“There's 50 states, and you likely have 50 different versions of cybersecurity programs out there,” Bauman said. “You have very robust ones being built … but not every state has taken to dedicating money out of a state budget to a cybersecurity program, where the actions of those programs happen behind the scenes.”

X
This website uses cookies to enhance user experience and to analyze performance and traffic on our website. We also share information about your use of our site with our social media, advertising and analytics partners. Learn More / Do Not Sell My Personal Information
Accept Cookies
X
Cookie Preferences Cookie List

Do Not Sell My Personal Information

When you visit our website, we store cookies on your browser to collect information. The information collected might relate to you, your preferences or your device, and is mostly used to make the site work as you expect it to and to provide a more personalized web experience. However, you can choose not to allow certain types of cookies, which may impact your experience of the site and the services we are able to offer. Click on the different category headings to find out more and change our default settings according to your preference. You cannot opt-out of our First Party Strictly Necessary Cookies as they are deployed in order to ensure the proper functioning of our website (such as prompting the cookie banner and remembering your settings, to log into your account, to redirect you when you log out, etc.). For more information about the First and Third Party Cookies used please follow this link.

Allow All Cookies

Manage Consent Preferences

Strictly Necessary Cookies - Always Active

We do not allow you to opt-out of our certain cookies, as they are necessary to ensure the proper functioning of our website (such as prompting our cookie banner and remembering your privacy choices) and/or to monitor site performance. These cookies are not used in a way that constitutes a “sale” of your data under the CCPA. You can set your browser to block or alert you about these cookies, but some parts of the site will not work as intended if you do so. You can usually find these settings in the Options or Preferences menu of your browser. Visit www.allaboutcookies.org to learn more.

Sale of Personal Data, Targeting & Social Media Cookies

Under the California Consumer Privacy Act, you have the right to opt-out of the sale of your personal information to third parties. These cookies collect information for analytics and to personalize your experience with targeted ads. You may exercise your right to opt out of the sale of personal information by using this toggle switch. If you opt out we will not be able to offer you personalised ads and will not hand over your personal information to any third parties. Additionally, you may contact our legal department for further clarification about your rights as a California consumer by using this Exercise My Rights link

If you have enabled privacy controls on your browser (such as a plugin), we have to take that as a valid request to opt-out. Therefore we would not be able to track your activity through the web. This may affect our ability to personalize ads according to your preferences.

Targeting cookies may be set through our site by our advertising partners. They may be used by those companies to build a profile of your interests and show you relevant adverts on other sites. They do not store directly personal information, but are based on uniquely identifying your browser and internet device. If you do not allow these cookies, you will experience less targeted advertising.

Social media cookies are set by a range of social media services that we have added to the site to enable you to share our content with your friends and networks. They are capable of tracking your browser across other sites and building up a profile of your interests. This may impact the content and messages you see on other websites you visit. If you do not allow these cookies you may not be able to use or see these sharing tools.

If you want to opt out of all of our lead reports and lists, please submit a privacy request at our Do Not Sell page.

Save Settings
Cookie Preferences Cookie List

Cookie List

A cookie is a small piece of data (text file) that a website – when visited by a user – asks your browser to store on your device in order to remember information about you, such as your language preference or login information. Those cookies are set by us and called first-party cookies. We also use third-party cookies – which are cookies from a domain different than the domain of the website you are visiting – for our advertising and marketing efforts. More specifically, we use cookies and other tracking technologies for the following purposes:

Strictly Necessary Cookies

We do not allow you to opt-out of our certain cookies, as they are necessary to ensure the proper functioning of our website (such as prompting our cookie banner and remembering your privacy choices) and/or to monitor site performance. These cookies are not used in a way that constitutes a “sale” of your data under the CCPA. You can set your browser to block or alert you about these cookies, but some parts of the site will not work as intended if you do so. You can usually find these settings in the Options or Preferences menu of your browser. Visit www.allaboutcookies.org to learn more.

Functional Cookies

We do not allow you to opt-out of our certain cookies, as they are necessary to ensure the proper functioning of our website (such as prompting our cookie banner and remembering your privacy choices) and/or to monitor site performance. These cookies are not used in a way that constitutes a “sale” of your data under the CCPA. You can set your browser to block or alert you about these cookies, but some parts of the site will not work as intended if you do so. You can usually find these settings in the Options or Preferences menu of your browser. Visit www.allaboutcookies.org to learn more.

Performance Cookies

We do not allow you to opt-out of our certain cookies, as they are necessary to ensure the proper functioning of our website (such as prompting our cookie banner and remembering your privacy choices) and/or to monitor site performance. These cookies are not used in a way that constitutes a “sale” of your data under the CCPA. You can set your browser to block or alert you about these cookies, but some parts of the site will not work as intended if you do so. You can usually find these settings in the Options or Preferences menu of your browser. Visit www.allaboutcookies.org to learn more.

Sale of Personal Data

We also use cookies to personalize your experience on our websites, including by determining the most relevant content and advertisements to show you, and to monitor site traffic and performance, so that we may improve our websites and your experience. You may opt out of our use of such cookies (and the associated “sale” of your Personal Information) by using this toggle switch. You will still see some advertising, regardless of your selection. Because we do not track you across different devices, browsers and GEMG properties, your selection will take effect only on this browser, this device and this website.

Social Media Cookies

We also use cookies to personalize your experience on our websites, including by determining the most relevant content and advertisements to show you, and to monitor site traffic and performance, so that we may improve our websites and your experience. You may opt out of our use of such cookies (and the associated “sale” of your Personal Information) by using this toggle switch. You will still see some advertising, regardless of your selection. Because we do not track you across different devices, browsers and GEMG properties, your selection will take effect only on this browser, this device and this website.

Targeting Cookies

We also use cookies to personalize your experience on our websites, including by determining the most relevant content and advertisements to show you, and to monitor site traffic and performance, so that we may improve our websites and your experience. You may opt out of our use of such cookies (and the associated “sale” of your Personal Information) by using this toggle switch. You will still see some advertising, regardless of your selection. Because we do not track you across different devices, browsers and GEMG properties, your selection will take effect only on this browser, this device and this website.