{"id":16151,"date":"2015-05-13T19:45:19","date_gmt":"2015-05-13T19:45:19","guid":{"rendered":"https:\/\/one.sightlinemg.com\/federaltimes\/uncategorized\/2015\/05\/13\/to-whom-should-agency-cisos-report\/"},"modified":"2026-08-08T04:44:43","modified_gmt":"2026-08-08T04:44:43","slug":"to-whom-should-agency-cisos-report","status":"publish","type":"post","link":"https:\/\/one.sightlinemg.com\/federaltimes\/management\/2015\/05\/13\/to-whom-should-agency-cisos-report\/","title":{"rendered":"To whom should agency CISOs report?"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">Rafael Diaz, CIO at HUD, has spent time on both sides of the fence \u2014 as a CIO in the private and public sectors and a CISO with the state of Illinois \u2014 and has had a different perspective on who a security official should report to at different stages of his career.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><b>Related: <\/b><a href=\"http:\/\/www.federaltimes.com\/story\/government\/dhs\/blog\/2014\/12\/24\/data-breach-security-clearance\/20859009\/\" title=\"http:\/\/www.federaltimes.com\/story\/government\/dhs\/blog\/2014\/12\/24\/data-breach-security-clearance\/20859009\/\">Breaches should reignite push for better cyber hygiene<\/a><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">&#8220;When I was the CIO in Illinois, I had a risk manager who was telling me what we needed to do \u2026 I was glad he was reporting to me,&#8221; Diaz said during a May 12 panel discussion hosted by FedScoop. &#8220;When I became the CISO, I didn&#8217;t want to report to the CIO.&#8221;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">While serving as the state&#8217;s CISO, Diaz said he advocated for keeping the position outside of the CIO office, reporting directly to a chief risk officer or CEO.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Now, as a CIO in the federal environment, Diaz admitted he wants the CISO reporting to him, to have that control over his organization, but that might not be the best option.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><b>Related: <\/b><a href=\"http:\/\/www.federaltimes.com\/story\/government\/it\/2015\/04\/06\/education-department-information-assurance-security-officer\/25360795\/\" title=\"http:\/\/www.federaltimes.com\/story\/government\/it\/2015\/04\/06\/education-department-information-assurance-security-officer\/25360795\/\">Ed Department seeking Info Assurance Director, CISO<\/a><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">&#8220;The CISO and the response team needs to be independent of me and independent of anyone else in the organization to be able to respond,&#8221; he said. &#8220;Once you see that there&#8217;s somebody attacking you \u2014 and there&#8217;s somebody attacking you all the time \u2014 you need to have autonomy to be able to respond.&#8221;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Either way, defining the organizational structure is important.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">&#8220;The question determines how you&#8217;re organized and that will determine your response,&#8221; Diaz said. &#8220;It&#8217;s a very difficult relationship to have. And it&#8217;s all about the relationship.&#8221;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">&#8220;I think the CISO should hang off the CIO \u2014 they are the tag-team that manages the network, the information and the security apparatus,&#8221; said Rob Carey, vice president of global cybersecurity for CSC. &#8220;If they were split I think you have security overruling business operations.&#8221;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Daiz agreed with that assessment, noting the mission is fundamentally more important than security.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><b>Related: <\/b><a href=\"http:\/\/archive.federaltimes.com\/article\/20140910\/MOB\/309100020\/Move-mobile-balance-between-security-capability\" title=\"http:\/\/archive.federaltimes.com\/article\/20140910\/MOB\/309100020\/Move-mobile-balance-between-security-capability\">Move to mobile IT a balance between security, capability<\/a><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">&#8220;We have to run the business,&#8221; he said. &#8220;In one of these conversations, somebody said, &#8216;Security is more important than connectivity.&#8217; The whole point is connectivity, but we have to do it securely. I&#8217;m not saying that we disregard security but the business has to run, we&#8217;ve got to do the mission.&#8221;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Having an established reporting structure is key to finding that balance.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">&#8220;Security is no longer something that is in addition to how a business is run or how your job is performed \u2013 it&#8217;s an integral part,&#8221; said Jay Scroggins, BDNA executive vice president of engineering and operations, who was in favor of the CISO reporting to the CIO. &#8220;And we need to be sure that that&#8217;s reflected in the organizational design, in strategy and everything else.&#8221;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>How the CISO fits into an agency&#8217;s structure will determine how it responds to cyber incidents.<\/p>\n","protected":false},"author":7,"featured_media":46365,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"_yoast_wpseo_meta-robots-noindex":"","_yoast_wpseo_meta-robots-nofollow":"","_yoast_wpseo_canonical":"","_acf":"","_yoast_wpseo_primary_category":0,"_jetpack_feature_clip_id":0,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","_smg_distribution_targets":[]},"categories":[15],"tags":[],"coauthors":[2349],"class_list":["post-16151","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-management"],"acf":{"subheadline":"","legacy_arc_id":"24VOO34OOBCOPCAMOSPEKYPJVQ","arc_canonical_url":"\/2015\/05\/13\/to-whom-should-agency-cisos-report\/","remove_feature_photo":false,"is_sponsored":false,"subtype":"","redirect_url":"","disable_inline_ads":false,"native_logo_pretext":"Presented By:"},"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v26.0 (Yoast SEO v28.1) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>To whom should agency CISOs report? - Federal Times<\/title>\n<meta name=\"description\" content=\"How the CISO fits into an agency&#039;s structure will determine how it responds to cyber incidents.\" \/>\n<meta name=\"robots\" content=\"noindex, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"To whom should agency CISOs report?\" \/>\n<meta property=\"og:description\" content=\"How the CISO fits into an agency&#039;s structure will determine how it responds to cyber incidents.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/one.sightlinemg.com\/federaltimes\/management\/2015\/05\/13\/to-whom-should-agency-cisos-report\/\" \/>\n<meta property=\"og:site_name\" content=\"Federal Times\" \/>\n<meta property=\"article:published_time\" content=\"2015-05-13T19:45:19+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-08-08T04:44:43+00:00\" \/>\n<meta name=\"author\" content=\"Aaron Boyd\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Aaron Boyd\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\n\t    \"@context\": \"https:\\\/\\\/schema.org\",\n\t    \"@graph\": [\n\t        {\n\t            \"@type\": \"Article\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/management\\\/2015\\\/05\\\/13\\\/to-whom-should-agency-cisos-report\\\/#article\",\n\t            \"isPartOf\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/management\\\/2015\\\/05\\\/13\\\/to-whom-should-agency-cisos-report\\\/\"\n\t            },\n\t            \"author\": {\n\t                \"name\": \"migration\",\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/#\\\/schema\\\/person\\\/cc76c831bb37a926738c8391fca7a3b1\"\n\t            },\n\t            \"headline\": \"To whom should agency CISOs report?\",\n\t            \"datePublished\": \"2015-05-13T19:45:19+00:00\",\n\t            \"dateModified\": \"2026-08-08T04:44:43+00:00\",\n\t            \"mainEntityOfPage\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/management\\\/2015\\\/05\\\/13\\\/to-whom-should-agency-cisos-report\\\/\"\n\t            },\n\t            \"wordCount\": 482,\n\t            \"commentCount\": 0,\n\t            \"publisher\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/#organization\"\n\t            },\n\t            \"image\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/management\\\/2015\\\/05\\\/13\\\/to-whom-should-agency-cisos-report\\\/#primaryimage\"\n\t            },\n\t            \"thumbnailUrl\": \"https:\\\/\\\/one.sightlinemg.com\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/635671282131395903-presentation1jpg.jpg\",\n\t            \"articleSection\": [\n\t                \"Inside the Agencies\"\n\t            ],\n\t            \"inLanguage\": \"en-US\",\n\t            \"potentialAction\": [\n\t                {\n\t                    \"@type\": \"CommentAction\",\n\t                    \"name\": \"Comment\",\n\t                    \"target\": [\n\t                        \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/management\\\/2015\\\/05\\\/13\\\/to-whom-should-agency-cisos-report\\\/#respond\"\n\t                    ]\n\t                }\n\t            ]\n\t        },\n\t        {\n\t            \"@type\": \"WebPage\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/management\\\/2015\\\/05\\\/13\\\/to-whom-should-agency-cisos-report\\\/\",\n\t            \"url\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/management\\\/2015\\\/05\\\/13\\\/to-whom-should-agency-cisos-report\\\/\",\n\t            \"name\": \"To whom should agency CISOs report? - Federal Times\",\n\t            \"isPartOf\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/#website\"\n\t            },\n\t            \"primaryImageOfPage\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/management\\\/2015\\\/05\\\/13\\\/to-whom-should-agency-cisos-report\\\/#primaryimage\"\n\t            },\n\t            \"image\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/management\\\/2015\\\/05\\\/13\\\/to-whom-should-agency-cisos-report\\\/#primaryimage\"\n\t            },\n\t            \"thumbnailUrl\": \"https:\\\/\\\/one.sightlinemg.com\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/635671282131395903-presentation1jpg.jpg\",\n\t            \"datePublished\": \"2015-05-13T19:45:19+00:00\",\n\t            \"dateModified\": \"2026-08-08T04:44:43+00:00\",\n\t            \"description\": \"How the CISO fits into an agency's structure will determine how it responds to cyber incidents.\",\n\t            \"breadcrumb\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/management\\\/2015\\\/05\\\/13\\\/to-whom-should-agency-cisos-report\\\/#breadcrumb\"\n\t            },\n\t            \"inLanguage\": \"en-US\",\n\t            \"potentialAction\": [\n\t                {\n\t                    \"@type\": \"ReadAction\",\n\t                    \"target\": [\n\t                        \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/management\\\/2015\\\/05\\\/13\\\/to-whom-should-agency-cisos-report\\\/\"\n\t                    ]\n\t                }\n\t            ]\n\t        },\n\t        {\n\t            \"@type\": \"ImageObject\",\n\t            \"inLanguage\": \"en-US\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/management\\\/2015\\\/05\\\/13\\\/to-whom-should-agency-cisos-report\\\/#primaryimage\",\n\t            \"url\": \"https:\\\/\\\/one.sightlinemg.com\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/635671282131395903-presentation1jpg.jpg\",\n\t            \"contentUrl\": \"https:\\\/\\\/one.sightlinemg.com\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/635671282131395903-presentation1jpg.jpg\"\n\t        },\n\t        {\n\t            \"@type\": \"BreadcrumbList\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/management\\\/2015\\\/05\\\/13\\\/to-whom-should-agency-cisos-report\\\/#breadcrumb\",\n\t            \"itemListElement\": [\n\t                {\n\t                    \"@type\": \"ListItem\",\n\t                    \"position\": 1,\n\t                    \"name\": \"Home\",\n\t                    \"item\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/\",\n\t                    \"ad_zone\": \"home\"\n\t                },\n\t                {\n\t                    \"@type\": \"ListItem\",\n\t                    \"position\": 2,\n\t                    \"name\": \"Inside the Agencies\",\n\t                    \"item\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/management\\\/\",\n\t                    \"ad_zone\": \"management\"\n\t                },\n\t                {\n\t                    \"@type\": \"ListItem\",\n\t                    \"position\": 3,\n\t                    \"name\": \"To whom should agency CISOs report?\"\n\t                }\n\t            ]\n\t        },\n\t        {\n\t            \"@type\": \"WebSite\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/#website\",\n\t            \"url\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/\",\n\t            \"name\": \"Federal Times\",\n\t            \"description\": \"Federal Times\",\n\t            \"publisher\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/#organization\"\n\t            },\n\t            \"potentialAction\": [\n\t                {\n\t                    \"@type\": \"SearchAction\",\n\t                    \"target\": {\n\t                        \"@type\": \"EntryPoint\",\n\t                        \"urlTemplate\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/?s={search_term_string}\"\n\t                    },\n\t                    \"query-input\": {\n\t                        \"@type\": \"PropertyValueSpecification\",\n\t                        \"valueRequired\": true,\n\t                        \"valueName\": \"search_term_string\"\n\t                    }\n\t                }\n\t            ],\n\t            \"inLanguage\": \"en-US\"\n\t        },\n\t        {\n\t            \"@type\": \"Organization\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/#organization\",\n\t            \"name\": \"Federal Times\",\n\t            \"url\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/\",\n\t            \"logo\": {\n\t                \"@type\": \"ImageObject\",\n\t                \"inLanguage\": \"en-US\",\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/#\\\/schema\\\/logo\\\/image\\\/\",\n\t                \"url\": \"https:\\\/\\\/one.sightlinemg.com\\\/wp-content\\\/uploads\\\/2026\\\/06\\\/federal-logo-white.png\",\n\t                \"contentUrl\": \"https:\\\/\\\/one.sightlinemg.com\\\/wp-content\\\/uploads\\\/2026\\\/06\\\/federal-logo-white.png\",\n\t                \"caption\": \"Federal Times\"\n\t            },\n\t            \"image\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/#\\\/schema\\\/logo\\\/image\\\/\"\n\t            }\n\t        },\n\t        {\n\t            \"@type\": \"Person\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/#\\\/schema\\\/person\\\/cc76c831bb37a926738c8391fca7a3b1\",\n\t            \"name\": \"migration\",\n\t            \"image\": {\n\t                \"@type\": \"ImageObject\",\n\t                \"inLanguage\": \"en-US\",\n\t                \"@id\": \"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/9e8d47be443ce94ce7fc357677b5f9c70235bb1f59e7267a102a74af58c04f59?s=96&d=mm&r=gcf4cb6ee0ec29e49e7a963234e4340ec\",\n\t                \"url\": \"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/9e8d47be443ce94ce7fc357677b5f9c70235bb1f59e7267a102a74af58c04f59?s=96&d=mm&r=g\",\n\t                \"contentUrl\": \"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/9e8d47be443ce94ce7fc357677b5f9c70235bb1f59e7267a102a74af58c04f59?s=96&d=mm&r=g\",\n\t                \"caption\": \"migration\"\n\t            },\n\t            \"url\": \"https:\\\/\\\/one.sightlinemg.com\\\/federaltimes\\\/author\\\/migration\\\/\"\n\t        }\n\t    ]\n\t}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"To whom should agency CISOs report? - Federal Times","description":"How the CISO fits into an agency's structure will determine how it responds to cyber incidents.","robots":{"index":"noindex","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"og_locale":"en_US","og_type":"article","og_title":"To whom should agency CISOs report?","og_description":"How the CISO fits into an agency's structure will determine how it responds to cyber incidents.","og_url":"https:\/\/one.sightlinemg.com\/federaltimes\/management\/2015\/05\/13\/to-whom-should-agency-cisos-report\/","og_site_name":"Federal Times","article_published_time":"2015-05-13T19:45:19+00:00","article_modified_time":"2026-08-08T04:44:43+00:00","author":"Aaron Boyd","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Aaron Boyd","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/one.sightlinemg.com\/federaltimes\/management\/2015\/05\/13\/to-whom-should-agency-cisos-report\/#article","isPartOf":{"@id":"https:\/\/one.sightlinemg.com\/federaltimes\/management\/2015\/05\/13\/to-whom-should-agency-cisos-report\/"},"author":{"name":"migration","@id":"https:\/\/one.sightlinemg.com\/federaltimes\/#\/schema\/person\/cc76c831bb37a926738c8391fca7a3b1"},"headline":"To whom should agency CISOs report?","datePublished":"2015-05-13T19:45:19+00:00","dateModified":"2026-08-08T04:44:43+00:00","mainEntityOfPage":{"@id":"https:\/\/one.sightlinemg.com\/federaltimes\/management\/2015\/05\/13\/to-whom-should-agency-cisos-report\/"},"wordCount":482,"commentCount":0,"publisher":{"@id":"https:\/\/one.sightlinemg.com\/federaltimes\/#organization"},"image":{"@id":"https:\/\/one.sightlinemg.com\/federaltimes\/management\/2015\/05\/13\/to-whom-should-agency-cisos-report\/#primaryimage"},"thumbnailUrl":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/08\/635671282131395903-presentation1jpg.jpg","articleSection":["Inside the Agencies"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/one.sightlinemg.com\/federaltimes\/management\/2015\/05\/13\/to-whom-should-agency-cisos-report\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/one.sightlinemg.com\/federaltimes\/management\/2015\/05\/13\/to-whom-should-agency-cisos-report\/","url":"https:\/\/one.sightlinemg.com\/federaltimes\/management\/2015\/05\/13\/to-whom-should-agency-cisos-report\/","name":"To whom should agency CISOs report? - Federal Times","isPartOf":{"@id":"https:\/\/one.sightlinemg.com\/federaltimes\/#website"},"primaryImageOfPage":{"@id":"https:\/\/one.sightlinemg.com\/federaltimes\/management\/2015\/05\/13\/to-whom-should-agency-cisos-report\/#primaryimage"},"image":{"@id":"https:\/\/one.sightlinemg.com\/federaltimes\/management\/2015\/05\/13\/to-whom-should-agency-cisos-report\/#primaryimage"},"thumbnailUrl":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/08\/635671282131395903-presentation1jpg.jpg","datePublished":"2015-05-13T19:45:19+00:00","dateModified":"2026-08-08T04:44:43+00:00","description":"How the CISO fits into an agency's structure will determine how it responds to cyber incidents.","breadcrumb":{"@id":"https:\/\/one.sightlinemg.com\/federaltimes\/management\/2015\/05\/13\/to-whom-should-agency-cisos-report\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/one.sightlinemg.com\/federaltimes\/management\/2015\/05\/13\/to-whom-should-agency-cisos-report\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/one.sightlinemg.com\/federaltimes\/management\/2015\/05\/13\/to-whom-should-agency-cisos-report\/#primaryimage","url":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/08\/635671282131395903-presentation1jpg.jpg","contentUrl":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/08\/635671282131395903-presentation1jpg.jpg"},{"@type":"BreadcrumbList","@id":"https:\/\/one.sightlinemg.com\/federaltimes\/management\/2015\/05\/13\/to-whom-should-agency-cisos-report\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/one.sightlinemg.com\/federaltimes\/","ad_zone":"home"},{"@type":"ListItem","position":2,"name":"Inside the Agencies","item":"https:\/\/one.sightlinemg.com\/federaltimes\/management\/","ad_zone":"management"},{"@type":"ListItem","position":3,"name":"To whom should agency CISOs report?"}]},{"@type":"WebSite","@id":"https:\/\/one.sightlinemg.com\/federaltimes\/#website","url":"https:\/\/one.sightlinemg.com\/federaltimes\/","name":"Federal Times","description":"Federal Times","publisher":{"@id":"https:\/\/one.sightlinemg.com\/federaltimes\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/one.sightlinemg.com\/federaltimes\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/one.sightlinemg.com\/federaltimes\/#organization","name":"Federal Times","url":"https:\/\/one.sightlinemg.com\/federaltimes\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/one.sightlinemg.com\/federaltimes\/#\/schema\/logo\/image\/","url":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/06\/federal-logo-white.png","contentUrl":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/06\/federal-logo-white.png","caption":"Federal Times"},"image":{"@id":"https:\/\/one.sightlinemg.com\/federaltimes\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/one.sightlinemg.com\/federaltimes\/#\/schema\/person\/cc76c831bb37a926738c8391fca7a3b1","name":"migration","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/9e8d47be443ce94ce7fc357677b5f9c70235bb1f59e7267a102a74af58c04f59?s=96&d=mm&r=gcf4cb6ee0ec29e49e7a963234e4340ec","url":"https:\/\/secure.gravatar.com\/avatar\/9e8d47be443ce94ce7fc357677b5f9c70235bb1f59e7267a102a74af58c04f59?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/9e8d47be443ce94ce7fc357677b5f9c70235bb1f59e7267a102a74af58c04f59?s=96&d=mm&r=g","caption":"migration"},"url":"https:\/\/one.sightlinemg.com\/federaltimes\/author\/migration\/"}]}},"jetpack_sharing_enabled":true,"distributor_meta":false,"distributor_terms":false,"distributor_media":false,"distributor_original_site_name":"Federal Times","distributor_original_site_url":"https:\/\/one.sightlinemg.com\/federaltimes","push-errors":false,"jetpack_featured_media_url":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/08\/635671282131395903-presentation1jpg.jpg","_links":{"self":[{"href":"https:\/\/one.sightlinemg.com\/federaltimes\/wp-json\/wp\/v2\/posts\/16151","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/one.sightlinemg.com\/federaltimes\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/one.sightlinemg.com\/federaltimes\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/one.sightlinemg.com\/federaltimes\/wp-json\/wp\/v2\/users\/7"}],"replies":[{"embeddable":true,"href":"https:\/\/one.sightlinemg.com\/federaltimes\/wp-json\/wp\/v2\/comments?post=16151"}],"version-history":[{"count":1,"href":"https:\/\/one.sightlinemg.com\/federaltimes\/wp-json\/wp\/v2\/posts\/16151\/revisions"}],"predecessor-version":[{"id":16156,"href":"https:\/\/one.sightlinemg.com\/federaltimes\/wp-json\/wp\/v2\/posts\/16151\/revisions\/16156"}],"wp:attachment":[{"href":"https:\/\/one.sightlinemg.com\/federaltimes\/wp-json\/wp\/v2\/media?parent=16151"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/one.sightlinemg.com\/federaltimes\/wp-json\/wp\/v2\/categories?post=16151"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/one.sightlinemg.com\/federaltimes\/wp-json\/wp\/v2\/tags?post=16151"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/one.sightlinemg.com\/federaltimes\/wp-json\/wp\/v2\/coauthors?post=16151"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}