CyberzSOC

Publication detail
← Back to advisories & guidance

Cybersecurity Performance Goals 2.0 for Critical Infrastructure ↗ source

December 11, 2025 CISA Alert

Summary

This update incorporates lessons learned, aligns with the most recent National Institute of Standards and Technology Cybersecurity Framework revisions, and addresses the most common and impactful threats facing critical infrastructure today. CPG 2.0 includes a new component focused on the essential role of governance in managing cybersecurity. It emphasizes accountability, risk management, and strategic integration of cybersecurity into day-to-day operations, reinforcing the principle that effective governance is the cornerstone of a resilient cyber posture. CPGs are streamlined and outcome-driven cybersecurity protections for information technology and operational technology environments and provide: Clear, foundational practices aligned with real-world threats. Straightforward, outcome-oriented language to aid implementation.

News Coverage

No coverage found in monitored research blogs or news feeds.

CVEs Referenced in This Publication

No CVEs are referenced in this publication.

Vendors Named in This Publication

No KEV-catalogued vendors are named in this publication.