Executive Order 13691: Promoting Private Sector Information Sharing:
Under Executive Order (EO) 13691, the Secretary of Homeland Security was called on to strongly encourage the development and formation of Information Sharing and Analysis Organizations (ISAOs). ISAOs, like ISACs, are entities formed to share cyber threat information with its community of trust. However, whereas ISACs are sector based, ISAOs may be formed based on region, sector, subsector, or any affinity of interest. As part of the EO, DHS was to enter into an agreement with a nongovernmental organization to serve as the ISAO Standards Organization (SO).
The EO addresses two concerns the private sector has raised:
• How can companies share information if they do not fit neatly into the sector-based structure of the existing Information Sharing and Analysis Centers (ISACs)?
• If a group of companies wants to start an information sharing organization, what model should they follow? What are the best practices for such an organization?