Educational Information Only
This page provides general educational information about cybersecurity laws and regulations. It does not constitute legal advice, legal interpretation, or a substitute for professional legal counsel. Laws change frequently. Always consult a qualified attorney and verify current requirements directly from official government sources before making compliance decisions. DecipherU is not a law firm and does not provide legal services.
Executive Order 13800: Strengthening the Cybersecurity of Federal Networks and Critical Infrastructure
EO 13800 directed federal agencies to use the NIST Cybersecurity Framework (CSF) for managing cybersecurity risk. This cybersecurity executive order held agency heads accountable for risk management and required agencies to submit risk assessments to OMB and DHS. It also addressed workforce development, calling for assessments of cybersecurity education needs.
Quick Reference
Key Requirements
Section 1(b)
Agency heads must use the NIST Cybersecurity Framework to manage cybersecurity risk within their enterprises
Section 1(c)
Each agency must provide a risk management report to OMB and DHS within 90 days
Section 3(d)
Commerce and DHS must assess the scope and sufficiency of efforts to educate and train the cybersecurity workforce
How Does EO 13800 Affect Cybersecurity Careers?
This executive order designated the NIST CSF as the standard risk management framework for federal cybersecurity. GRC analysts implementing NIST CSF in government agencies work under this mandate. The workforce development provisions helped expand funding for cybersecurity education and training programs.
Cybersecurity Roles That Work With EO 13800
Related Cybersecurity Certifications
Related Cybersecurity Laws
Read the full text of EO 13800 at the official source: https://www.federalregister.gov/documents/2017/05/16/2017-10004/strengthening-the-cybersecurity-of-federal-networks-and-critical-infrastructure
Frequently Asked Questions
EO 13800 directed federal agencies to use the NIST Cybersecurity Framework (CSF) for managing cybersecurity risk. This cybersecurity executive order held agency heads accountable for risk management and required agencies to submit risk assessments to OMB and DHS. It also addressed workforce development, calling for assessments of cybersecurity education needs.
This executive order designated the NIST CSF as the standard risk management framework for federal cybersecurity. GRC analysts implementing NIST CSF in government agencies work under this mandate. The workforce development provisions helped expand funding for cybersecurity education and training programs.
Agency heads personally accountable for cybersecurity risk management
Educational Information Only
This page provides general educational information about cybersecurity laws and regulations. It does not constitute legal advice, legal interpretation, or a substitute for professional legal counsel. Laws change frequently. Always consult a qualified attorney and verify current requirements directly from official government sources before making compliance decisions. DecipherU is not a law firm and does not provide legal services.
Sources
Explore Related Cybersecurity Resources
Was this page helpful?
Where to go next
Three next steps depending on where you are. The first two are free.
Free · 2 minutes
Start with the AI Risk Score
Two minutes. Tells you how exposed your current role is to AI automation and which defensive moves carry the best return.
Start the AI Risk Score →Paid program · $147-$597
Aligned course: GRC and Compliance Fundamentals
Capstone reviewed by the founder, published rubric, Ed25519-signed verifiable credential on completion.
View the course →Free account
Save your results and track progress
A free account stores your assessments, recommendations, and an exportable copy of your Career DNA. No card needed.
Create your account →Cybersecurity law and regulation summaries are educational plain-language descriptions, not legal advice. Statutes, regulations, and enforcement guidance change frequently. Consult qualified legal counsel and verify against the official published text before relying on any summary for compliance or career decisions.