- What: Nick Andersen appointed as acting director of CISA.
- Impact: Leadership change in the U.S. cybersecurity agency.
Government Nick Andersen Appointed Acting Director of CISA Madhu Gottumukkala has been assigned to a new role within the Department of Homeland Security. By Eduard Kovacs | March 2, 2026 (7:53 AM ET) Flipboard Reddit Whatsapp Whatsapp Email Nick Andersen has been appointed acting director of the United States’ Cybersecurity and Infrastructure Security Agency (CISA). Andersen, who until now served as executive assistant director for cybersecurity at CISA, is replacing Madhu Gottumukkala , who joined the cybersecurity agency in May 2025 when he was named deputy director. Gottumukkala is leaving to become director of strategic implementation at the Department of Homeland Security (DHS), which oversees CISA. His departure comes after reports that he failed a polygraph test and uploaded sensitive government information into a public version of ChatGPT. Andersen has experience in both the government and the private sector. He previously served as president and chief operating officer at the cyber and national security firm Invictus and as CISO at the public-sector arm of Lumen Technologies. Within the government, Andersen held leadership roles at the Department of Energy, the White House, the Coast Guard, the Navy, and the State of Vermont. Advertisement. Scroll to continue reading. CISA has not had a permanent director in the second Trump administration. Sean Plankey, who previously held key cyber roles at the Energy Department and the White House, has been nominated by the Trump administration to lead CISA. Plankey’s nomination was blocked last year and the White House renominated him in January 2026. Politico reported last week that CISA’s CIO, Bob Costello, and acting chief human capital officer, Kevin Diana, have been given the option to take on new roles within the DHS or resign. To stay informed on key personnel changes across the cybersecurity sector, explore SecurityWeek’s People on the Move section. Related : Former CISA Director Jen Easterly Appointed CEO of RSAC Related : Casie Antalis Appointed to Lead CISA Program Related : Tim Kosiba Named NSA Deputy Director Related : Sean Cairncross Confirmed by Senate as National Cyber Director Written By Eduard Kovacs Eduard Kovacs (@EduardKovacs) is the managing editor at SecurityWeek. He worked as a high school IT teacher before starting a career in journalism in 2011. Eduard holds a bachelor’s degree in industrial informatics and a master’s degree in computer techniques applied in electrical engineering. More from Eduard Kovacs Chilean Carding Shop Operator Extradited to US Juniper Networks PTX Routers Affected by Critical Vulnerability Critical Flaws Exposed Gardyn Smart Gardens to Remote Hacking Apple iPhone and iPad Cleared for Classified NATO Use Claude Code Flaws Exposed Developer Devices to Silent Hacking Trend Micro Patches Critical Apex One Vulnerabilities Google Disrupts Chinese Hackers Targeting Telecoms, Governments Medical Device Maker UFP Technologies Hit by Cyberattack Latest News AWS Expands Security Hub Into a Cross-Domain Security Platform North Korean APT Targets Air-Gapped Systems in Recent Campaign Google Working Towards Quantum-Safe Chrome HTTPS Certificates US-Israel and Iran Trade Cyberattacks: Pro-West Hacks Cause Disruption as Tehran Retaliates Hackers Weaponize Claude Code in Mexican Government Cyberattack Canadian Tire Data Breach Impacts 38 Million Accounts Trump Orders All Federal Agencies to Phase Out Use of Anthropic Technology In Other News: ATT&CK Advisory Council, Russian Cyberattacks Aid Missile Strikes, Predator Bypasses iOS Indicators Trending Daily Briefing Newsletter Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts. Webinar: Identity Under Attack: Why Every Business Must Respond Now February 11, 2026 Attendees will walk away with guidance for how to build robust identity defenses, unify them under a consistent security model, and ensure business operations move quickly without compromise. Register Virtual Event: Ransomware Resilience & Recovery 2026 Summit February 25, 2026 SecurityWeek’s 2026 Ransomware Summit will discuss a roadmap for defending the enterprise, from mitigating root causes to mastering recovery, giving security teams the critical insights needed to navigate and neutralize today’s ransomware extortion threats. Submit People on the Move Predictive revenue system company Clari + Salesloft has named Peter Liebert as CISO. Nscale has appointed Latha Maripuri as Chief Information Security Officer. BreachRx has named Young-Sae Song as Chief Marketing Officer. More People On The Move Expert Insights Four Risks Boards Cannot Treat as Background Noise The goal isn’t about preventing every attack but about keeping the business running when attacks succeed. (Steve Durbin) How to Eliminate the Technical Debt of Insecure AI-Assisted Software Development Developers must view AI as a collaborator to be closely monitored, rather than an autonomous entity to be unleashed. Without such a mindset, crippling tech debt is inevitable. (Matias Madou) Security in the Dark: Recognizing the Signs of Hidden Information Security failures don’t always start with attackers, sometimes they start with missing truth. (Joshua Goldfarb) Living off the AI: The Next Evolution of Attacker Tradecraft Living off the AI isn’t a hypothetical but a natural continuation of the tradecraft we’ve all been defending against, now mapped onto assistants, agents, and MCP. (Etay Maor) Why We Can’t Let AI Take the Wheel of Cyber Defense The fastest way to squander the promise of AI is to mistake automation for assurance, and novelty for resilience. (Steve Durbin) Flipboard Reddit Whatsapp Whatsapp Email