Cybersecurity

The U.S. Department of Energy's 2024 Cybersecurity Strategy

The U.S. Department of Energy (DOE) Cybersecurity Strategy is a plan for an effective, collaborative, enterprise-wide cybersecurity posture and defense. The increasing reliance on secure technology to achieve the Department’s missions is our guiding light. Each of Energy’s missions, which range from nuclear security, open science research, and clean energy development and deployment, to environmental management and operational enterprise functions, require safe, secure, and resilient technology and the cybersecurity solutions to ensure their operational success. DOE must continue to leverage its broad expertise and capabilities across the Department to strategically manage cybersecurity risks and ensure a secure, resilient, and defensible infrastructure for both the enterprise and the energy sector. Click through the tabs below to learn about the five pillars that make up our 2024 Cybersecurity Strategy.
  • Illustration of global cybersecurity -- lines and points of data merge to create a globe, with a lock icon in the center

    Understanding cybersecurity risks to the DOE enterprise by identifying threats, critical systems and their interdependencies and vulnerabilities, and estimating the likelihood and potential impact of cybersecurity incidents.  Sound understanding of the overarching risk is required to effectively allocate resources, prioritize efforts, and develop an effective mitigation strategy.  

Cybersecurity Research, Development, and Demonstration for Energy Systems

Illustration of data visualizations (charts and globe) overlaid on a photo of solar panels and wind turbines at sunrise

The U.S. Department of Energy is focused on reducing the risk of energy disruptions due to cyber events by bringing to bear the best ideas of the Federal government, the National Laboratories, private partners across the energy sector, academia, and state and local governments. Through the research, development, and demonstration (RD&D) cycle, these game-changing projects aim to enhance the speed and effectiveness of threat and vulnerability information sharing, accelerate the mitigation of cyber incidents in today’s systems, and enhance resilience while reducing risk in a quantifiable manner.

DOE moves innovative research to industry-ready solutions using a strategic mix of RD&D that focuses on both shorter-term RD&D with a high probability of rapid market readiness and game-changing RD&D that supports next-generation cyber system designs. These products are commercialized, released as guidance or open-source software, or adopted into ongoing research to develop new capabilities that help the energy sector achieve its vision of energy delivery systems that can prevent or withstand a cyberattack.

Cybersecurity RD&D Funding Opportunities

When RD&D funding opportunities become available, an application can be found at the National Energy Technology Laboratory’s Solicitations and Funding Opportunities webpage