CISA, CIRCIA and TSA pipeline rules: 2026 cyber duties for US critical infrastructure operators

Rajan Kumbhani
By Rajan KumbhaniJun 19, 202616 Min Read

The 16 critical-infrastructure sectors and what CIRCIA actually requires

How CISA's Cybersecurity Performance Goals map to NIST CSF 2.0

TSA SD02F, rail and aviation: the OT obligations already in force

Energy NERC CIP and the bulk electric system overlay

Healthcare: HIPAA Security Rule, the OCR Risk Analysis Initiative, and the December 2024 NPRM

SEC Item 1.05, NYDFS Part 500, and the financial-services reporting collision

The 24-hour ransom clock, OFAC sanctions risk, and the operational runbook

What to do next: an 8-week compliance sprint

Rajan Kumbhani
Rajan KumbhaniProfessional Service Manager
linkedin

Share

Share to Microsoft Teams

Related security services

FAQs

Frequently Asked Questions