<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Cybersecurity on CrossGov</title>
    <link>https://crossgov.com/tags/cybersecurity/</link>
    <description>Recent content in Cybersecurity on CrossGov</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Sat, 10 Oct 2026 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://crossgov.com/tags/cybersecurity/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>FedRAMP 20x Reaches 538 Certified Cloud Services on a $10 Million Budget, While Europe Still Has No Common Cloud Certification</title>
      <link>https://crossgov.com/fedramp-20x-reaches-538-certified-cloud-services-on-a-10-million-budget-while-europe-still-has-no-common-cloud-certification/</link>
      <pubDate>Sat, 10 Oct 2026 00:00:00 +0000</pubDate>
      <guid>https://crossgov.com/fedramp-20x-reaches-538-certified-cloud-services-on-a-10-million-budget-while-europe-still-has-no-common-cloud-certification/</guid>
      <description>&lt;p&gt;FedRAMP is the US government&amp;rsquo;s security approval for cloud services. If a federal agency wants to run its work on someone&amp;rsquo;s cloud, the service generally needs FedRAMP clearance first. In fiscal 2026, which ended on 30 September, the programme issued 92 new certifications, bringing the total to 538 cloud offerings. Agencies issued 760 new authorisations to use them.&lt;/p&gt;&#xA;&lt;p&gt;It did that with 17 federal employees, 15 contractors and a budget of $10 million, of which it spent just under $9 million.&lt;/p&gt;</description>
    </item>
    <item>
      <title>US Cyber Information-Sharing Law Runs on Stopgaps While the EU Cyber Resilience Act Reporting Clock Starts</title>
      <link>https://crossgov.com/us-cyber-information-sharing-law-runs-on-stopgaps-while-the-eu-cyber-resilience-act-reporting-clock-starts/</link>
      <pubDate>Tue, 06 Oct 2026 00:00:00 +0000</pubDate>
      <guid>https://crossgov.com/us-cyber-information-sharing-law-runs-on-stopgaps-while-the-eu-cyber-resilience-act-reporting-clock-starts/</guid>
      <description>&lt;p&gt;On 11 September 2026 a new obligation started for every company selling software or connected hardware in the EU. If a vulnerability in one of their products is being actively exploited, they now have 24 hours to send an early warning, 72 hours to file a notification, and 14 days after a fix is available to send a final report. It applies to products already on the market too. ENISA, the EU cybersecurity agency, opened its single reporting platform the same day.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
