- What: FEMA clarifies cybersecurity grant rules
- Impact: Affects how states use federal funds for cybersecurity
Security Strategy, Plan, Budget FEMA clarifies rules for cybersecurity grant funding July 2, 2026 Share By SC Staff Adobe Stock Coverage from Statescoop indicates that the Federal Emergency Management Agency has issued new guidance regarding the use of funds from its State and Local Cybersecurity Grant Program and the Tribal Cybersecurity Grant Program, specifically addressing restrictions on membership fees for cybersecurity services. FEMA has clarified that state and local governments are prohibited from using federal cyber grant funds to pay for membership fees that bundle cybersecurity or technical services, as the agency cannot determine the reasonableness of these bundled costs. Previously, a broader prohibition on spending grant funds on services from the Multi-State Information Sharing and Analysis Center (MS-ISAC) was in place. The new bulletin clarifies that purchasing individual products or services through membership organizations is permissible, provided recipients adhere to federal procurement standards. This clarification comes after some officials expressed frustration with the initial restrictions. Additionally, recipients of federal cyber grants are no longer required to complete the Nationwide Cybersecurity Review, though an alternative assessment may be mandated in the future. This update follows a bill introduced by Senator Mark Warner to restore annual funding to the MS-ISAC, highlighting ongoing discussions about federal support for state and local cybersecurity efforts. Source: Statescoop SC Staff Related Security Strategy, Plan, Budget Texas A&M CIO emphasizes user experience in cybersecurity strategy SC Staff June 11, 2026 Per Information Week, Texas A&M University System CIO Vince Kellen argues that organizations must balance robust security measures with user experience to prevent users from circumventing controls. Security Strategy, Plan, Budget Why boards must stop chasing buzzwords Jon David May 8, 2026 Here are three ways CISOs can guide board members to move beyond the buzzwords. Small business Australian small businesses lack cyber security plans, research finds SC Staff May 6, 2026 Research from Ipsos, commissioned by Optus, indicates that one in three Australian small businesses have experienced a cyber incident, yet many remain underprepared. Get daily email updates SC Media's daily must-read of the most current and pressing daily news Business Email By clicking the Subscribe button below, you agree to SC Media Terms of Use and Privacy Policy . Subscribe Related Terms Business Continuity Plan (BCP) Cost Benefit Analysis You can skip this ad in 5 seconds