Cyber Security
Explore top cybersecurity practices for the Water and Wastewater Systems sector with CISA's latest toolkit and expert-led webinars. Learn how to enhance cyber resilience.
NRWA and the Water Information Sharing & Analysis Center (WaterISAC) have launched a pilot program providing 12 months of complimentary WaterISAC membership for eligible NRWA member utilities serving fewer than 10,000 people. Utilities may apply now through December 31, 2026. This offer is for new WaterISAC membership applicants only (current WaterISAC members are not eligible).
Small and rural utilities face many of the same cyber, physical security, and operational risks as larger systems, often with fewer dedicated resources. WaterISAC membership helps close that gap by delivering timely, water-sector-specific information and a trusted community for information sharing.
Benefits of membership include:
- Timely cyber and physical security alerts
- Weekly Security & Resilience Updates
- Threat analysis and incident reporting
- Webinars and expert briefings
- Water sector intelligence products
- A peer community focused on water sector security and resilience
Utilities enrolling through this pilot also receive access to WaterISAC’s H2OSecCon session, “Responding to a Cyberattack on a Small Water Utility,” which shares real-world lessons and actionable recommendations tailored to small systems.
To learn more and apply, please use one of the links below:
Press Release: https://www.waterisac.org/tlpclear-nrwa-and-waterisac-expand-complimentary-security-resources-to-small-water-utilities
___________________________________________________________________________________________________________________________________
Today, CISA and federal partners released the fact sheet CISA and Partners Urge Hardening Automatic Tank Gauge Systems in response to malicious cyber activity targeting U.S. automatic tank gauge (ATG) systems, which are widely used across critical infrastructure sectors.
● Remove ATG systems from public internet exposure
● Enforce strong, unique passwords and multifactor authentication
● Apply vendor patches and update software
● Monitor for unauthorized access and suspicious activity
For more information, review the full fact sheet. Report suspicious activity to CISA’s Operations Center (report@cisa.gov or 888-282-0870) and the FBI’s IC3 (www.ic3.gov).
Please share your thoughts with us through this anonymous survey. We appreciate your feedback.
The Cybersecurity and Infrastructure Security Agency (CISA) invites you to participate in a two-hour security webinar designed to enhance your organization’s readiness and resilience in the event of an active shooter incident.
Preparing personnel for a potential active shooter situation is a critical component of organizational emergency and response planning. Because these incidents are often unpredictable and can escalate rapidly, understanding how to respond—and acting quickly—can save lives. Every second counts, and informed, practiced response strategies can make a meaningful difference during an emergency.
Please feel free to distribute the attached flyer to colleagues who may benefit from this session. Thank you so much for your attention and partnership. We look forward to your participation in this valuable webinar.
Register Here - Active Shooter Webinar