New funding announced for State and Local Cybersecurity Grant Program

Author

Picture of Seamus Dowdall smiling in a suit jacket and button down with orange background

Seamus Dowdall

Legislative Director, Telecommunications & Technology | Veterans and Military Services
Image of Rita-Reynolds-2.png

Rita Reynolds

Director of Public Sector, CAI

Upcoming Events

Related News

County News

PDFs are DOA as new web standards approach

Image of GettyImages-1350722246.jpg

Key Takeaways

On September 16, the U.S. Department of Homeland Security (DHS) and Federal Emergency Management Agency (FEMA) announced the a Notice of Funding Opportunity (NOFO) for the State and Local Cybersecurity Grant Program (SLCGP), which is funded by the Bipartisan Infrastructure Law (BIL). The SLGCP provides a total of $1 billion in funding over the next four years, with a total of $185 million available for Fiscal Year (FY) 2022, to support state and local efforts to address cyber risks to their information systems.

Eligible entities, which include states and counties, can now apply for funding for FY 2022. As required by the SLCGP, 80 percent of the entire program’s funds must be sub-allocated to local governments and rural areas within 45 days of an eligible entity’s receipt of the funds (i.e. state).  The state-by-state allocation figures can be found on pages 8-9 of the NOFO.

Applicants are required to demonstrate how their efforts will achieve the following SLCGP program objectives:

  1. Develop and establish appropriate governance structures, including developing, implementing, or revising cybersecurity plans, to improve capabilities to respond to cybersecurity incidents and ensure continuity of operations
  2. Understand their current cybersecurity posture and areas for improvement based on continuous testing, evaluation, and structured assessments
  3. Implement security protections commensurate with risk
  4. Ensure organization personnel are appropriately trained in cybersecurity, commensurate with responsibility

SLCGP funds are encouraged to prioritize the establishment of cybersecurity planning committees, the development of state-wide cybersecurity plans, conducting assessments and evaluations as the basis for individual projects throughout the life of the program, and adopting key cybersecurity best practices.

NACo strongly encourages all county IT directors and CIOs to begin coordinating with their State Administrative Agent (SAA) for next steps on their state’s plans to applying for funding. A list of SAA's can be found here. NACo will continue to monitor this program closely and provide updates as needed.

Related News

Shannon Smith, director, Public Sector, CAI, speaks Feb. 22 to members of the Mid-Size County Caucus. Photo by Denny Henry
County News

Expert warns Mid-Size County Caucus of rising cybersecurity risks as AI expands

Counties must prepare for increasingly sophisticated cyber threats, particularly if they still rely on aging technology systems, some decades old, which can make them vulnerable to attacks.

ADA
County News

PDFs are DOA as new web standards approach

Counties with 50,000 residents or more have until April 24 to meet accessibility guidelines for their websites and social media accounts, while smaller counties have another year.

GettyImages-1300444386
Advocacy

White House sends legislative recommendations on national AI policy framework to Congress

The proposals prioritize children’s online safety, intellectual property rights, establishing risk mitigation and duty of care for AI , and enshrining protections for ratepayers.