WASHINGTON – As the United States marks Cybersecurity Awareness Month, global tech trade association 91¿ì»îÁÖ released its Global Cybersecurity Incident Reporting Policy Index. In the index, 91¿ì»îÁÖ’s experts provide a summary of cybersecurity incident reporting measures across the globe, highlighting key provisions and offering an update on where they stand and what to look out for in 2023. The index covers efforts in Australia, Canada, Europe, India, Japan, Singapore, United Kingdom, and the United States.

“Over the past several years, governments around the world have taken steps to improve visibility into cyber incidents through developing new cyber incident reporting requirements and updating existing ones,” the memo states. “The index includes incident reporting policies from eight countries and covers key information such as the scope of covered entities, threshold for reporting, timeline to report, enforcement mechanisms, among other areas. It seeks to help further inform incident reporting efforts across the globe, particularly in preventing fragmentation of approaches across borders. Because several of these efforts remain in flux, particularly in Canada, the United States, and the United Kingdom, 91¿ì»îÁÖ will be closely tracking how these proposals unfold over the next year."

The index builds upon 91¿ì»îÁÖ’s ongoing cybersecurity advocacy. In September 2021, 91¿ì»îÁÖ published Global Policy Principles for Security Incident Reporting to help policymakers worldwide as they seek to develop an effective and efficient security incident notification regime. In July 2021, 91¿ì»îÁÖ published Principles for Security Incident Reporting in the U.S., first-of-their-kind recommendations designed to help inform U.S. policymakers as they seek to develop a security incident notification regime.

Read the memo here.

Cybersecurity]" tabindex="0">Related [Cybersecurity]