 Current Efforts The Federal Government is undertaking a bold program of action to implement the NCS and proactively shape the digital ecosystem to align with U.S. national objectives. These efforts build on generational investments in new infrastructure through the Bipartisan Infrastructure Law (BIL), Inflation Reduction Act (IRA), and CHIPS and Science Act; cybersecurity legislation such as CIRCIA; and executive actions including Executive Order (EO) 14028 on Improving the Nation’s Cybersecurity, National Security Memorandum (NSM) 5 on Improving Cybersecurity for Critical Infrastructure Control Systems, and NSM-8 on Improving the Cybersecurity of National Security, Department of Defense, and Intelligence Systems. NCSIP Version 1, released in July 2023, guides Federal efforts to realize the vision of the NCS through 69 high-impact initiatives, from combatting cybercrime to building a skilled cyber workforce to addressing security challenges present in the technical foundations of the Internet. In NCSIP Version 1, the Federal Government was responsible for completing 36 initiatives by the second quarter of 2024. As detailed in the table below, 33 of these 36 (92%) initiatives were completed on time and three remain underway. An additional 33 NCSIP Version 1 initiatives have completion dates over the next two years and are on track. Alongside this report, ONCD has published NCSIP Version 2, which builds on successes achieved in the first year of implementation, responds to evolving challenges, and outlines 31 new initiatives to implement the 2023 NCS. Twenty-four agencies are leading initiatives in NCSIP Version 2, with six new agencies joining the implementation effort to achieve the vision of the NCS. Further details on progress made on initiatives in NCSIP Version 1 and ongoing and new initiatives in NCSIP Version 2 can be found online at www.whitehouse.gov/oncd. NCS Implementation Progress NCSIP Initiative 1.1.1 1.2.2 1.3.1 1.4.3 1.4.4 1.5.1* 2.1.1 2.1.4 2.1.5* 2.2.1 Initiative Title Establish an initiative on cyber regulatory harmonization Provide recommendations for the designation of critical infrastructure sectors and sector risk management agencies Assess the capabilities of Federal Cybersecurity Centers and related cyber centers Develop exercise scenarios to improve cyber incident response Draft legislation to codify the Cyber Safety Review Board with the required authorities Develop an action plan to continue to secure unclassified Federal Civilian Executive Branch Systems Publish an updated Department of Defense Cyber Strategy Propose legislation to disrupt and deter cybercrime and cyber-enabled crime Increase the speed and scale of disruption operations Identify mechanisms for increased adversarial disruption through publicprivate operational collaboration 2024 REPORT 8 ON THE CYBERSECURITY OF THE UNITED STATES POSTURE Responsible Agency ONCD CISA ONCD ONCD Homeland Security OMB Defense Justice FBI ONCD

Select target paragraph3