Ampyx Cyber Blog

The Intersection of Regulation & Resilience

Executive Order 14421 and the Bulk-Power System Supply Chain
Policy Pulse Patrick Miller Policy Pulse Patrick Miller

Executive Order 14421 and the Bulk-Power System Supply Chain

An executive order signed August 26, 2026 declares a national emergency over foreign-produced bulk-power system electric equipment. It reaches 69 kV and above, adds software, firmware, a list of OT/ICS gear, and vendor remote access to scope, and creates authority to condition or remove equipment already installed. Here is what changed since the 2020 order, where it meets CIP-003-9 and CIP-013-2, and what to do before December 24.

Read More
Analysis of the June 6th, 2025 Executive Order on Cybersecurity
Policy Pulse Patrick Miller Policy Pulse Patrick Miller

Analysis of the June 6th, 2025 Executive Order on Cybersecurity

On June 6, 2025, President Donald J. Trump issued a new Executive Order (EO) titled “Sustaining Select Efforts to Strengthen the Nation’s Cybersecurity and Amending Executive Orders 13694 and 14144.” This directive serves as a recalibration of federal cybersecurity strategy, signaling a shift away from prescriptive mandates toward more targeted, agency-specific authority and risk-informed investment in critical initiatives. It amends prior EOs while preserving core elements of federal cybersecurity policy.

Read More
Is SBOM the answer?
Deep Dive Patrick Miller Deep Dive Patrick Miller

Is SBOM the answer?

Government and industry experts have recently pointed to software bill of materials (SBOM) as a requirement for organizations, but what are you getting? David Foose spends some time exploring aspects of SBOM fever.

Read More