US lawmakers say CISA cuts raise ‘serious concerns about the agency's ability to fulfil its mission’
With hundreds more jobs set to go, concerns are rising about whether the agency can continue its critical work defending organizations
US lawmakers are pushing back against the Trump administration's decision to reduce headcount at the Cybersecurity and Infrastructure Security Agency (CISA).
Five Democrats have written to the Government Accountability Office (GAO), calling on it to look into the effects of the cuts on the agency's ability to protect critical infrastructure and respond to evolving cyber threats.
The group has requested an investigation into how CISA’s workforce has changed over the past five years, including its size, composition, geographic distribution and number of contractors.
They also want the GAO to identify which programs have been affected by the cuts, what the effects have been, what data CISA collects and analyzes for workforce planning and whether it uses that data to align resources with agency priorities.
"At precisely the moment when our adversaries are accelerating attacks against critical infrastructure, the Department of Homeland Security's Cybersecurity and Infrastructure Security Agency (CISA), the nation's lead civilian cyber defense agency, has lost nearly one-third of its workforce, raising serious concerns about the agency's ability to fulfil its mission," they wrote.
"Little is known about the impact of these workforce reductions on CISA’s programs and services or what processes and plans the agency has in place to ensure the agency is hiring the right people to address lost skill sets and meet mission demands."
CISA cuts run deep
The latest changes were announced in June as part of the 2027 budget proposal. CISA is set for a cut in funding of around $700 million - with the White House claiming that it's been functioning “as a hub in the Censorship Industrial Complex, conspiring against the First Amendment rights”.
Sign up today and you will receive a free copy of our Future Focus 2026 report - the leading resource for IT decision-maker insight on priorities and investment areas in AI, security and more.
The cuts would refocus CISA on its core mission – Federal network defense and coordinating with critical infrastructure partners – while eliminating waste by consolidating redundant security advisors and programs. Around 900 jobs are expected to go.
CISA lost nearly 1,000 employees, or about a third of its workforce, in the first half of 2025 - although the agency has since made moves to try and boost staffing again.
It's also seen cutbacks to its work on election security. And all this has come as its work has expanded more than ever, thanks to an accelerating threat environment.
Gene Moody, field CTO at Action1, said the cuts show a lack of awareness over the critical work conducted by the agency.
"In many respects, vulnerability analysis is further behind the curve than it has ever been. And it is being attacked by its own governing bodies out of ignorance and misunderstanding. This is an existential threat to cybersecurity," Moody commented.
"When analysts and programs are overloaded, the ecosystem gets noisier: important vulnerabilities compete with an enormous amount of lower-value information, prioritization becomes harder, and defenders have less confidence about what actually deserves immediate attention."
FOLLOW US ON SOCIAL MEDIA
Follow ITPro on Google News and add us as a preferred source to keep tabs on all our latest news, analysis, views, and reviews.
You can also follow ITPro on LinkedIn, X, Facebook, and BlueSky.
Emma Woollacott is a freelance journalist writing for publications including the BBC, Private Eye, Forbes, Raconteur and specialist technology titles.
-
Semiconductor revenue doubles as AI data center build-outs surgeNews Gartner predicts revenue growth of 92% for semiconductors, with half of that made up of AI data centers by 2030
-
Freeths names new CTO in digital transformation pushNews The former Forvis Mazars executive will lead the law firm’s technology strategy as it continues to invest in digital transformation
-
'An evolution in threat actor capabilities': CISA warns hackers are targeting Siemens industrial controllers – and they're using AI generated codeNews Security agencies are warning that attackers are exploiting Siemens S7 Series programmable logic controllers to target critical infrastructure
-
CISA shares lessons learned from Polish power grid hack – and how to prevent disaster striking againNews New CISA guidance aims to help CNI operators implement secure communications
-
CISA’s interim chief uploaded sensitive documents to a public version of ChatGPT – security experts explain why you should never do thatNews The incident at CISA raises yet more concerns about the rise of ‘shadow AI’ and data protection risks
-
Chinese hackers are using ‘stealthy and resilient’ Brickstorm malware to target VMware servers and hide in networks for months at a timeNews Organizations, particularly in the critical infrastructure, government services, and facilities and IT sectors, need to be wary of Brickstorm
-
Do you really need to fix that critical flaw?News Many CVEs represent no risk in a cloud container environment, researchers claim
-
CISA issues warning in wake of Oracle cloud credentials leakNews The security agency has published guidance for enterprises at risk
-
Warning issued over ‘fast flux’ techniques used to obscure malicious signals on compromised networksNews Cybersecurity agencies have issued a stark message that too little is being done to sniff out malware hiding in corporate networks
-
Five Eyes cyber agencies issue guidance on edge device vulnerabilitiesNews Cybersecurity agencies including the NCSC and CISA have issued fresh guidance on edge device security.