> ## Content Index
> Fetch the complete content index at: https://broadbandbreakfast.com/llms.txt
> Use this file to discover other available public pages before exploring further.

# DOJ Official Supports Mandatory Breach Reporting
- URL: https://broadbandbreakfast.com/doj-official-supports-mandatory-breach-reporting/
- Published: 2021-08-02T19:15:01.000Z
- Updated: 2026-03-11T06:19:06.000Z
- Description: Proposed legislation would make it mandatory for companies to report cyberattacks.
- Author: Mike Ogunji
- Tags: Justice Department, FBI, #with-siderail, Cybersecurity, CFAA, Chuck Grassley, Colonial Pipeline, Cyber Incident Notification Act of 2021, Featured, JBS, ransomware, #wp, #wp-post, #Import 2024-02-01 10:16, #added-preview-divider

August 2, 2021—An official from the Department of Justice urged members of the Senate judiciary committee last week to proceed with legislation requiring companies to report ransomware attacks to federal agencies.

**Richard Downing**, deputy assistant attorney general of the criminal division within the department, [told the committee](https://www.judiciary.senate.gov/imo/media/doc/Downing%20-%20Statement.pdf?ref=broadbandbreakfast.com) studying cybersecurity during a hearing that such mandatory breach reporting legislation would aid in its defense against cyberattacks.

There is currently no federal law requiring such disclosures, but bipartisan Senate [legislation co-sponsored](https://broadbandbreakfast.com/u-s-senator-recommends-mandatory-breach-reporting-for-companies/) by Senator **Angus King**, I-Maine, would change that. Titled [Cyber Incident Notification Act of 2021](https://www.hipaajournal.com/cyber-incident-notification-act-of-2021-introduced-in-the-senate/?ref=broadbandbreakfast.com), the bill was introduced last month.

This legislation would require all contractors, federal agencies, companies, and organizations critical to U.S national security to report all breaches of data to the Department of Homeland Securities’ Cybersecurity and Infrastructure Security Agency (CISA) within 24 hours.

The bill and discussions about it come in light of high-profile cyberattacks that have targeted software company [SolarWinds](https://broadbandbreakfast.com/senate-looks-for-answers-during-first-public-hearing-on-solarwinds-cyber-attack/) and oil transport company [Colonial Pipeline](https://broadbandbreakfast.com/alabama-dispenses-17m-in-broadband-funds-new-broadband-mapping-insight-pipeline-attack/) in the last several months. And the discussion isn’t expected to slowdown as more critical infrastructure is hooked up to the internet.

The Last week, the House energy committee [approved a series of cyber bills](https://broadbandbreakfast.com/house-energy-committee-approves-series-of-cyber-bills-o-improve-telecom-security/) that would improve telecom network security.

#### *Cyber threats becoming more bold*

Downing noted that threat actors are becoming bolder and more sophisticated, and that the government must hasten efforts to thwart attacks and stay ahead of such malicious acts.

“Many actors now research their victims—identifying the victim’s net worth, the cost of a business interruption, and even the value of their cyber insurance policy—to extort as much money as possible,” Downing said during the hearing.