DHS, CISA Announce Membership Changes to the Cyber Safety Review Board

The Department of Homeland Security (DHS) and the Cybersecurity and Infrastructure Security Agency (CISA) announced changes to the Cyber Safety Review Board (CSRB) membership. Four current members of the CSRB will depart and four new members will join the board. 

Departing members include:

  • Katie Moussouris, Founder and CEO, Luta Security
  • Chris Novak, Co-Founder and Managing Director, Verizon Threat Research Advisory Center
  • Tony Sager, Senior Vice President and Chief Evangelist, Center for Internet Security, and
  • Wendi Whitmore, Senior Vice President, Unit 42, Palo Alto Networks

Joining the CSRB:

  • Jamil Jaffer, Venture Partner Paladin Capital Group and Founder and Executive Director, National Security Institute, George Mason University Scalia Law School
  • David Luber, Director, Cybersecurity Directorate, NSA
  • Katie Nickels, Senior Director of Intelligence Operations, Red Canary
  • Chris Krebs, Chief Intelligence and Public Policy Officer, Sentinel One

David Luber will serve as the Federal CSRB representative from the NSA, replacing Rob Joyce upon his retirement. Joyce has been asked to continue to serve on the board as a private sector member.

“I can’t thank Katie, Chris, Tony, and Wendi enough for the outstanding contributions they’ve made as CSRB members. I am truly grateful for their service on the Board,” said CISA Director Jen Easterly.  “I am also very pleased to welcome Jamil, Dave, Katie, and Chris to the Board. I know their cybersecurity expertise and experience will be instrumental in the continuing evolution of the CSRB as a catalyst for positive change in the cybersecurity ecosystem.”

Robert Silvers, DHS Under Secretary for Policy, and Heather Adkins, Vice President for Security Engineering at Google, have been re-appointed as the Chair and Deputy Chair respectively for a second term by Easterly. 

“I send my sincere thanks to the departing members and welcome those who are beginning their service,” said Under Secretary Silvers. “The Cyber Safety Review Board will continue in its charge to conduct fact finding and develop lessons learned from the most serious cyber incidents.”

“It has been an honor to serve on the CSRB and I am looking forward to seeing the Board continue to evolve its important role in the cybersecurity ecosystem as we increase the security of the nation,” said Deputy Chair Adkins.  

Other returning members include:

  • Dmitri Alperovitch, Co-Founder and Chairman, Silverado Policy Accelerator and Co-Founder and former CTO of CrowdStrike, Inc.
  • Harry Coker, Jr., National Cyber Director, Office of the National Cyber Director
  • Jerry Davis, Founder, Gryphon X
  • Chris DeRusha, Federal Chief Information Security Officer, Office of Management and Budget
  • Eric Goldstein, Executive Assistant Director for Cybersecurity, Cybersecurity and Infrastructure Security Agency
  • Marshall Miller, Principal Associate Deputy Attorney General, Department of Justice
  • John Sherman, Chief Information Officer, Department of Defense
  • Bryan Vorndran, Assistant Director, Cyber Division, Federal Bureau of Investigation

The CSRB conducts fact-finding and issues recommendations in the wake of major cyber incidents. The Board is made up of cybersecurity luminaries from the private sector and senior officials from DHS, CISA, the Department of Defense, the National Security Agency, the Department of Justice, the Federal Bureau of Investigation, the Office of the National Cyber Director, and the Office of Management and Budget.

As directed by President Biden through Executive Order 14028 Improving the Nation’s Cybersecurity, Secretary Mayorkas established the CSRB in February 2022. The Board is administered by CISA on behalf of the Secretary. The Board’s reviews are conducted independently, and its conclusions are independently reached. DHS and the CSRB are committed to transparency and will, whenever possible, release public versions of CSRB reports, consistent with applicable law and the need to protect sensitive information from disclosure.