
CISA lacked incident response plan during contractor data exposure
CISA, the U.S. federal cybersecurity agency, revealed it did not have a prepared response plan for a cybersecurity incident in May when a contractor publicly exposed sensitive keys and credentials for accessing government systems. The agency had to build a playbook during the incident's early stages.

