POLITICAL HQ
reductionmajor impact Budget PDF p. 33

Cybersecurity and Infrastructure Security Agency

(CISA)

Department of Homeland Security
Proposed Cut
$707M
% Reduction
30.0%
Action Type
reduction
Who Is Served

Federal network defense; critical infrastructure operators; election security; 16 critical infrastructure sectors

Summary

The Cybersecurity and Infrastructure Security Agency (CISA), the Department of Homeland Security's main civilian cyberdefense agency, would lose $707 million in funding under the FY2027 budget proposal, a 30% reduction. The cut would eliminate CISA's election security program entirely, end its chemical facility security inspections, and shrink CISA's role in coordinating with the private companies and state/local governments that run the nation's 16 critical infrastructure sectors, while the administration says it is refocusing the agency on protecting federal networks and core infrastructure.

Who Is Affected

State and local election officials nationwide would lose their dedicated CISA election security advisors and the federal funding that supports the Elections Infrastructure Information Sharing and Analysis Center (EI-ISAC), the main hub for sharing cyber threat alerts with county clerks and election administrators. The cut would also eliminate roughly 867 CISA positions, including more than 200 staff who inspect and oversee high-risk chemical facilities, and would gut the Stakeholder Engagement Division that liaises with critical infrastructure operators, universities, and foreign governments. This comes on top of a workforce already reduced by about one-third (roughly 1,000 employees) over the prior 14 months.

What this cut would actually mean

Without dedicated federal election security advisors or EI-ISAC threat-sharing, county and state election offices—many with limited in-house IT security staff—would have less warning about ransomware, phishing, and foreign probing of voter registration systems ahead of future elections. Ending chemical facility inspections removes a layer of oversight meant to prevent industrial accidents or attacks at high-risk plants, while a smaller, less-networked CISA would be slower to alert power utilities, water systems, and other infrastructure operators to active cyber threats, increasing the risk that attacks succeed before they're detected.

Sources

Administration's Stated Rationale

Reduces CISA workforce and election security programs; refocuses on critical infrastructure protection.