Critical infrastructure operators get more time to shape new cyber reporting rules
What happened
The US government is holding more public meetings about new cyber incident reporting rules. This means companies running critical systems get another chance to tell regulators what they think before the rules are final.
Why it matters
The government wants to force companies that run critical infrastructure to report cyberattacks and ransom payments. These rules could be expensive and complex. Giving companies more time to comment means they can push for less burdensome requirements.
The signal
Watch for changes in the final rules compared to the proposed version, especially around which companies must report and what information they must share.