CISA’s approach to cybersecurity is grounded in five fundamental precepts:
C YBERSEC URIT Y IS A WH O LE O F C I SA M I SSIO N : While our Cybersecurity Division
provides unique technical expertise and executes many of the agency’s core cybersecurity
authorities, every organization, every team, every person in CISA contributes to our
cybersecurity mission — recognizing that at times cybersecurity risks are most effectively
addressed through non-digital means, such as investing in functional resilience under all
conditions. In particular, our growing regional teams are essential to our aim of providing
responsive and actionable assistance to organizations in every corner of our country.
C YBERSEC URIT Y IS A WH O LE O F GOV E R N M E N T M I SSIO N : Within the U.S.
government, CISA serves a unique role — a role that depends on close collaboration with our
interagency partners. We maintain invaluable operational partnerships with agencies such as
the Federal Bureau of Investigation, the National Security Agency, U.S. Cyber Command, and
the Sector Risk Management Agencies, and coordinate closely with the Office of the National
Cyber Director, the Office of Management and Budget, and the National Security Council to
advance national priorities and strategic imperatives. We must continue to institutionalize
these partnerships so that they endure and eliminate any gaps in cohesion that could be
exploited by our adversaries.
C YBERSEC URIT Y IS A WH O LE O F N ATIO N M ISSI O N : The breadth of our
cybersecurity challenge exceeds the capacity of any one organization. We will succeed or fail
as a community. We will work toward a model where collaboration is the default response,
where information about malicious activity, including intrusions, is presumed necessary for the
common good and urgently shared between industry and government, and where government
and industry work together with reciprocal expectations of transparency and value. Most
C I S A C Y B ER S EC U RI T Y ST R AT EG I C PL A N
4