Français

Organismes ayant un pouvoir

Cybersecurity and Infrastructure Security Agency (CISA)

Type
Government body
Lieu
États-Unis — United States (federal), DHS component
Dernière vérification
2026-09-22
Prochaine vérification
2027-03-21

Pas encore traduit — affiché en anglais.

Comment les joindre

  • Report a cyber incident to CISA · Complaint route
    Non vérifié

    Anyone may report a cyber incident, including AI-enabled attacks or compromise of AI systems.

    UNVERIFIED as fetched; the reporting hub https://www.cisa.gov/reporting-cyber-incident appeared in search results.

  • CISA Central · Email address
    Non vérifié

    General incident reporting and CISA Central intake.

    UNVERIFIED as a live fetch — the CISA contact page was fetched but the email strings were machine-redacted. This address appears in CISA's own published PDF guidance. Confirm at https://www.cisa.gov/about/contact-us before relying on it.

  • CISA 24/7 incident line · Web form
    888-282-0870
    Vérifié · 2026-09-22

    General and cybersecurity incident reporting.

    VERIFIED on https://www.cisa.gov/about/contact-us.

  • Homepage · Homepage
    Non contrôlé

Ce qu'il fait

Operational cyber-defence agency for federal civilian networks and critical infrastructure. Issues joint guidance on securing AI systems and on agentic AI governance (2026), runs CISA Central for incident intake, and administers CIRCIA incident-reporting rules for covered entities. Powers are largely voluntary/advisory toward the private sector, with administrative subpoena authority for vulnerability identification and binding operational directives that bind FEDERAL agencies only — not AI developers.

Ses pouvoirs

investigate

Évaluation franche

CISA's incident intake is genuinely staffed and 24/7 — a credible report of an AI-enabled intrusion or a compromised AI system will be actioned. But CISA has no authority over how frontier models are trained or released; framing a frontier-risk concern as a CISA incident report will be closed as out of scope. Its AI guidance documents are produced with industry partners and occasionally take comment via the Federal Register; that is the policy lever, the incident line is the operational one.

Notes

Note the practical caveat on CISA's own site: email is not secure and CISA prefers its structured reporting forms.

Sources

Une erreur ?