Congressional Watchdog Probes CISA Staffing Cuts Amid Escalating Cyber Threats
Members of Congress have formally requested that the **Government Accountability Office (GAO)** investigate the impact of significant staffing reductions at the **Cybersecurity and Infrastructure Security Agency (CISA)**. This comes as the agency, crucial for protecting U.S. critical infrastructure, grapples with a nearly one-third workforce reduction since the beginning of the Trump administration, raising serious concerns about its ability to counter evolving cyber and physical threats.
Leading the charge, **Bennie Thompson (D-MS)**, ranking member of the House Committee on Homeland Security, along with several other Democratic representatives, signed a letter to the **GAO**. The letter seeks clarity on how **CISA** is safeguarding critical infrastructure following the departure or termination of nearly 1,000 employees.
Despite acting director **Nick Andersen's** earlier plans to hire 300 new employees to address staffing gaps, the congressional request highlights persistent concerns.
"At precisely the moment when our adversaries are accelerating attacks against critical infrastructure, [**CISA**]... has lost nearly one-third of its workforce, raising serious concerns about the agencyβs ability to fulfill its mission," the letter states.
### Impact on Expertise and Operations
The congressional inquiry also underscores a lack of information regarding how the knowledge lost through these departures has been replaced. Several critical leaders have left **CISA** in the past year, including **David Stern**, a key figure behind a vital ransomware notification initiative.
**CISA** has not yet commented on the letter. **GAO** spokesperson **Sarah Kaczmarek** confirmed receipt of the congressional request, indicating the **GAO** is evaluating whether and when to proceed with the examination.
### Conflicting Signals on Future Staffing
While **Markwayne Mullin**, Secretary of the Department of Homeland Security, previously outlined a plan to rebuild **CISA** over the next year, the letter from Congress notes confusion regarding the Trump administration's proposed fiscal year 2027 budget. This budget reportedly suggests eliminating nearly 900 additional positions and cutting over $700 million from **CISA's** funding.
### Widespread Concerns from State and Local Officials
Concerns about the cuts extend beyond Capitol Hill. Dozens of states and senior Congressional leaders have warned that these reductions could severely impact municipal cybersecurity across the U.S., particularly ahead of the November election season. Industry leaders and state and local officials have reported "reduced responsiveness and support" from **CISA**, attributing it to "staffing turbulence" that has disrupted service delivery.
### Escalating Threat Landscape
The congressional letter comes amidst recent advisories from **CISA**, the **FBI**, and other federal agencies regarding increased cyber threats targeting critical infrastructure. Federal agencies recently warned of an "active threat" employing AI-generated exploit scripts against critical infrastructure organizations, labeling it an "evolution" in attacker capabilities.
### Leadership Instability
**CISA** has lacked a confirmed director since **Jen Easterly's** departure at the end of the Biden administration. **Nick Andersen** recently took over on an acting basis from **Madhu Gottumukkala**, who was removed from the position in February following a series of scandals. Senior **Palantir** official **Shyam Sankar** is reportedly a leading contender for the director role.