When the State Stops, Cybersecurity Slows Down: The CISA Case

Introduction

A country’s cybersecurity does not depend solely on advanced technologies or private experts: it also depends on the proper functioning of the public institutions that oversee it. When these institutions are affected by operational disruptions, the consequences can be significant for everyone, including businesses and citizens. This is what is happening in the United States with the crisis that has struck CISA, the federal agency dedicated to cybersecurity and critical infrastructure protection.

What Happened

On February 14, 2026, an operational shutdown of the United States Department of Homeland Security, known as DHS, came into effect. This type of event, called a “government shutdown,” occurs when federal funding is interrupted or suspended, forcing government agencies to drastically reduce their activities. CISA, which is part of DHS, had to reduce its active staff to approximately 888 employees out of a total of 2,341: less than 40 percent of the normal workforce. This means that the majority of experts who routinely monitor cyber threats, coordinate incident responses, and support the country’s critical infrastructures were not operational. It should be noted that the full details of which specific activities were suspended or slowed down are not all publicly known at this time.

Why It Matters and What Impact It Can Have

CISA plays a central role in protecting essential sectors such as energy, healthcare, transportation, and communications. Such a drastic reduction in personnel weakens the agency’s ability to respond promptly to potential cyberattacks against critical infrastructures. Among the affected activities is also planning related to CIRCIA, a federal law that requires organizations managing critical infrastructures to report cyber incidents within specific timeframes. The slowdown of this preparatory work could delay the full implementation of transparency obligations designed precisely to strengthen the collective resilience of the national system.

What Businesses and Users Can Do

At a time when institutional support is reduced, it is even more important that organizations do not rely exclusively on public intervention. Companies should verify that they have up-to-date incident response plans, keep their security systems active and monitored, and not postpone update and protection activities. Citizens, for their part, can adopt cautious behaviors such as using strong passwords, enabling two-factor authentication, and paying close attention to suspicious communications.

Final Takeaways

National cybersecurity also depends on the operational continuity of the public institutions responsible for ensuring it.

A reduction of CISA’s staff to less than 40 percent has a concrete impact on incident response capabilities and regulatory preparedness.

In times of institutional weakening, individual and corporate responsibility in cybersecurity management becomes even more relevant.

Sources:
https://www.securityweek.com/cisa-navigates-dhs-shutdown-with-reduced-staff/
https://www.bankinfosecurity.com/cisa-leadership-shakeup-amid-dhs-shutdown-a-30879

Source: DataBreaches