With the passage of the Bipartisan Infrastructure Law, the White House announced, “$1 Billion in Funding for First-Ever State and Local Cybersecurity Grant Program,” in an effort to put money into the hands of local governments to mitigate against hacks and prevent exposure of sensitive government data as a result of data breaches. But why is the federal government so concerned about local government cybersecurity? And why should local governments feel a need to modernize their computer systems?
Data breaches of local governments are becoming more frequent and costly. Hackers aren’t discriminating by region either, with cities as large as Atlanta to townships with populations as small as 13,000 in Texas (to even state governments and federal institutions) facing devastating financial consequences and the loss of critical government data in recent years.
Learn more about why the federal government is wisely encouraging local governments to take action, and how you can leverage federal grants to be resilient against ransomware attacks and hackers.
President Joe Biden recently announced that $1 billion in funds set forth in the Bipartisan Infrastructure Law is being made available, “over four years to help States and Territories become more resilient to cyber threats,” with $185 million being made available in 2022.
For local governments, this news means that you’re able to start applying for the federal State and Local Cyber Security Grant Program (SLCGP) now as it pertains to upgrading your government information technology systems to prevent ransomware attacks and other damaging cyber attacks.
“Cyberattacks have emerged as one of the most significant threats to our homeland” - Secretary of Homeland Security Alejandro N. Mayorkas
In recent memory, governments of all sizes and regions have been hacked across the United States. Foreign hackers performing government data breaches are typically in search of critical and private government data, with the goal to collect a ransom for the safe return of the data. When governments refuse to pay the ransom (which the FBI discourages doing) critical data is oftentimes lost permanently. In Atlanta, it cost the city government as much as $17 million in taxpayer dollars to address and overcome a data breach in 2018.
In order to keep your private government data secure as hack attempts against governments continually occur (and often succeed) you’ll need to use federal grants and your local government budget to address the issue and improve your IT systems for cybersecurity.
On September 16, 2022, the Department of Homeland Security released a Notice of Fund Opportunity (NOFO) allowing state, local, and territory governments to request grant funds to allocate towards local cybersecurity infrastructure. Within this NOFO, clear instructions are outlined for how a locality can receive grant funds.
At a glance, you’ll need to:
Here are more details the key actions your municipal, county, or territory government will need to take in order to receive money for local cybersecurity projects.
Consider which local government officials within your community are well suited to be on your Cybersecurity Planning Committee (CPC). Consider that your CPC will
The following data will need to be included in the Cybersecurity Plan formed by your CPC:
The NOFO specified that your Cybersecurity Plan should be a, “Comprehensive strategic plan to reduce cybersecurity risk and increase capability across the entity…[and] should cover 2 to 3 years.” For more details, see appendix two in the NOFO plan.
Here are the elements laid out as best practices by the Department of Homeland Security that need to be considered by local governments:
The DOHS recommends going beyond these elements when applying for federal grants. Consider the Local Government Cybersecurity guide for more inspiration.
Also consider crafting a Local Government Cyber Security Management Plan like New York has just deployed to stay on top of strategic cyber security plans.
If you’re using antiquated government digital platforms, or even still using paper and on-site computer systems, you’re at serious risk of a data breach. By switching to cloud-based government software, government data across departments will be automatically backed-up and updated in real-time. The cloud is substantially more difficult to hack into than on-site servers, and the regular back-ups ensure you’ll never lose access to your critical data. Plus, the onboarding process for GovPilot includes cybersecurity training for local government officials, so community-wide officials will be educated on phishing scams as they embrace digital infrastructure.
As you receive federal grants, your Cybersecurity Planning Committee should consider modern local government technology as an integral part of your Cybersecurity Plan. To learn more about how GovPilot can help, book a free demo.
The State and Local Cybersecurity Grant Program (SLCGP) is the allocation of federal funds provided in the Bipartisan Infrastructure Law recently signed into law by President Joe Biden. The federal funds are meant to allow state and local governments to upgrade their cybersecurity measures and protocols as government data breaches become more frequent.
GovPilot was built to help local governments make a full digital transformation. That’s why our digital infrastructure is stored in the cloud with Microsoft Azure. Your local government data will be significantly more cyber secure than using in-house servers (and even more so if your locality used paper-based workflows) and will be automatically backed up to ensure critical data will be safe from a ransomware attack.
The Department of Homeland Security is requiring local governments to form a Cybersecurity Planning Committee to form a Cybersecurity Plan for your community. To begin, consider the most qualified technology experts in your local government that would be well-suited to set up your short-term and long-term cybersecurity strategy. As your team makes considerations for grant allocation, pay clear attention to the cybersecurity best practices the Department of Homeland Security encourages you to include in your plan, and consider which government technology will best secure your government data across departments.
Click here for a full list of best practices in Appendix C of the NOFO released by the DOHS.
At a high-level, here are a few local government cybersecurity best practices to consider:
Read on:
Local Government Automation: Benefits of Going Digital