The US Coast Guard has established a dedicated Office of Maritime Cybersecurity Policy as the maritime industry’s growing reliance on information and operational technology expands the cyber risks facing ports, vessels, and other critical infrastructure.
The Office of Maritime Cybersecurity Policy (CG-MCP) will serve as the Coast Guard’s central authority for developing and implementing policies governing the cyber safety and security of the Marine Transportation System (MTS).
Created under the Director of Inspections and Compliance, the office will also serve as the Coast Guard’s primary liaison with industry partners and other government agencies on maritime cybersecurity matters.
Its responsibilities will include developing domestic policy, contributing to international standards, directing a coordinated cybersecurity compliance and enforcement strategy, and engaging with maritime organizations, academia, and national laboratories.
The office will also monitor emerging technologies and techniques that could help the maritime sector proactively manage cyber risk.
“Advanced systems and equipment, including the increased use of information and operational technology, accelerate and transform the maritime industry,” the Coast Guard said. “While these advancements provide operational efficiencies and improvements throughout the Marine Transportation System, they also introduce increased risks to a critical infrastructure sector.”
Rear Adm. Robert C. Compher, assistant commandant for prevention policy, said the Coast Guard must keep pace with the maritime industry’s continued technological advancement.
“The creation of the Office of Maritime Cybersecurity Policy establishes a central authority to develop clear policy, direct a unified compliance strategy, and collaborate with our partners,” Compher said.
The new office is intended to address current threats and vulnerabilities while preparing the maritime sector for emerging cybersecurity challenges, he added.
The announcement comes roughly 18 months after the Government Accountability Office identified multiple shortcomings in the Coast Guard’s approach to securing the MTS, which encompasses roughly 360 commercial sea and river ports.
In a February 2025 report, the watchdog called on the Coast Guard to improve the accuracy of cybersecurity incident information, provide easier access to data on cyber deficiencies, align its cyber plans with the national strategy, establish competency requirements for personnel with MTS cybersecurity responsibilities, and address gaps in those competencies.
The GAO also found that the Coast Guard’s system of record did not provide ready access to complete information about cybersecurity issues uncovered during inspections of vessels and facilities.
Additionally, the agency’s cyber strategy did not fully address several characteristics of an effective national strategy, including risk assessment, performance measures, required resources and investments, and the division of roles and responsibilities.
The Coast Guard did not say whether the creation of the new office was directly related to the GAO findings.
