Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

ICS/OT

Coast Guard Establishes Office of Maritime Cybersecurity Policy

The new office will serve as the central authority for cybersecurity policy covering US ports, vessels, and maritime facilities.

Office of Maritime Cybersecurity Policy

The US Coast Guard has established a dedicated Office of Maritime Cybersecurity Policy as the maritime industry’s growing reliance on information and operational technology expands the cyber risks facing ports, vessels, and other critical infrastructure.

The Office of Maritime Cybersecurity Policy (CG-MCP) will serve as the Coast Guard’s central authority for developing and implementing policies governing the cyber safety and security of the Marine Transportation System (MTS).

Created under the Director of Inspections and Compliance, the office will also serve as the Coast Guard’s primary liaison with industry partners and other government agencies on maritime cybersecurity matters.

Its responsibilities will include developing domestic policy, contributing to international standards, directing a coordinated cybersecurity compliance and enforcement strategy, and engaging with maritime organizations, academia, and national laboratories.

The office will also monitor emerging technologies and techniques that could help the maritime sector proactively manage cyber risk.

“Advanced systems and equipment, including the increased use of information and operational technology, accelerate and transform the maritime industry,” the Coast Guard said. “While these advancements provide operational efficiencies and improvements throughout the Marine Transportation System, they also introduce increased risks to a critical infrastructure sector.”

Advertisement. Scroll to continue reading.

Rear Adm. Robert C. Compher, assistant commandant for prevention policy, said the Coast Guard must keep pace with the maritime industry’s continued technological advancement.

“The creation of the Office of Maritime Cybersecurity Policy establishes a central authority to develop clear policy, direct a unified compliance strategy, and collaborate with our partners,” Compher said.

The new office is intended to address current threats and vulnerabilities while preparing the maritime sector for emerging cybersecurity challenges, he added.

The announcement comes roughly 18 months after the Government Accountability Office identified multiple shortcomings in the Coast Guard’s approach to securing the MTS, which encompasses roughly 360 commercial sea and river ports.

In a February 2025 report, the watchdog called on the Coast Guard to improve the accuracy of cybersecurity incident information, provide easier access to data on cyber deficiencies, align its cyber plans with the national strategy, establish competency requirements for personnel with MTS cybersecurity responsibilities, and address gaps in those competencies.

The GAO also found that the Coast Guard’s system of record did not provide ready access to complete information about cybersecurity issues uncovered during inspections of vessels and facilities.

Additionally, the agency’s cyber strategy did not fully address several characteristics of an effective national strategy, including risk assessment, performance measures, required resources and investments, and the division of roles and responsibilities.

The Coast Guard did not say whether the creation of the new office was directly related to the GAO findings.

Learn More at SecurityWeek’s ICS Cybersecurity Conference

Written By

For more than 15 years, Mike Lennon has been closely monitoring the threat landscape and analyzing trends in the National Security and enterprise cybersecurity space. In his role at SecurityWeek, he oversees the editorial direction of the publication and is founder and director of several leading cybersecurity industry conferences around the world.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join as speakers examine the various components of ASM strategy, the push to mandate continuous asset visibility and inventory tools, and the use of red-teaming, bug bounties and pen-tests in modern security programs.

Register

In this live webinar, learn how to define your minimum viable business, identify the systems it depends on, measure actual recovery time against business requirements, and present the gaps to the board as measurable risk.

Register

People on the Move

Social engineering protection company Doppel has promoted Alyssa Smrekar to Chief Marketing Officer.

Naveen Bhateja has been appointed Chief People Officer at HackerOne.

The Department of War has appointed Sonu Shankar as Principal Deputy Chief Information Officer.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.