Obama to sign executive order Friday urging companies to share cybersecurity-threat information with one another and the government
Obama to sign executive order on sharing cybersecurity threat information — SAN FRANCISCO - President Obama will sign an executive order Friday …
Context & Ripple Effects
A month after Obama proposed legislation protecting companies that share cyberthreat data with the government, he is moving without waiting for Congress: Friday's executive order urges voluntary sharing of threat information among companies and with federal agencies. The sequencing matters — an order can convene information-sharing but cannot deliver the legal liability cover only legislation provides.
First-order effects
- Companies are being asked to route threat intelligence to peers and to government channels now, before any statutory liability shield exists to protect them from lawsuits over what they share.
Second-order effects
- The order puts the pending sharing-liability bill back in front of Congress, since voluntary participation stalls without legal protection for firms that disclose breach or attack data.
Third-order effects
- If the pattern holds, executive orders become the default vehicle for US cybersecurity policy whenever legislation lags — the same playbook later used by Biden's 2021 order setting software-security standards for government vendors and his planned 2025 order on network monitoring and software purchasing.
The trend: US cybersecurity strategy is increasingly shaped through presidential executive orders layered on top of stalled legislation, each administration extending the last.