WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Community Partnerships ODNI Group Guidance for U.S. Critical Infrastructure to Address Growing Insider Threats
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Directory
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

ODNI Group Guidance for U.S. Critical Infrastructure to Address Growing Insider Threats

Author: Charles Egli

Created: Tuesday, March 30, 2021 - 15:07

Categories: Cybersecurity, General Security and Resilience, Physical Security

The National Counterintelligence and Security Center (NCSC), a group within the Office of the Director of National Intelligence (ODNI), has issued Insider Threat Mitigation for U.S. Critical Infrastructure Entities: Guidelines from an Intelligence Perspective, a new publication aimed at helping U.S. critical infrastructure organizations understand and address the growing problem of insider threats. As the publication observes, concerns over insider threats have been exacerbated by geopolitical tensions – foreign adversaries have demonstrated their interest in U.S. critical infrastructure – and the current ideational-ideological landscape within the U.S. In insider threat scenarios, employees can use or be exploited for their authorized access to facilities, personnel, or information to harm their organization. The harm can range from negligence – such as failing to secure data or clicking on a spear-phishing link – to malicious activities like sabotage, intellectual property theft, fraud, or workplace violence. The publication provides guidance on how to address this threat in organizational risk management plans and offers best practices for critical infrastructure entities to mitigate insider threats.

At a minimum, it recommends critical infrastructure organizations:

  1. Have an insider threat program that identifies individual anomalous behavior at an early stage and the resources to respond appropriately, and
  2. Respond in a way that fosters trust across the organization and leverages the workforce as a partner.

Access the publication at the NCSC or below.

Attached Files:

20210319-Insider-Threat-Mitigation-for-US-Critical-Infrastru-March-2021

Related Resources

(TLP:CLEAR) FIRESTARTER Backdoor and Updated Emergency Directive for CISCO Firepower and Secure Firewall Devices

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness
Members Only

(TLP:GREEN) FBI FLASH – Newly Observed Ransomware Variant Black Shrantac Threat to U.S. Entities

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness
Members Only

(TLP:AMBER+STRICT) Likely PRC State-Sponsored Activity Observed in the Water Sector – DocuSign Phishing Tactics Identified

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar