Closed · DHS-23-GPD-137-00-01 · CFDA 97.137 · Other
Fiscal Year (FY) 2023 State and Local Cybersecurity Grant Program
Federal grant opportunity posted by Department of Homeland Security - FEMA, cataloged on Grants.gov.
- $500K-$375.0M
- Award range
- Closed
- Status
- October 6, 2023
- Close date
- 56
- Expected awards
The verdict
Fiscal Year (FY) 2023 State and Local Cybersecurity Grant Program is a closed other listing from Department of Homeland Security - FEMA that offered $500,000 -- $374,981,324 across 56 expected awards. Future funding cycles may be published under the same CFDA number.
- $500K-$375.0M
- award range
- Closed
- application status
- 56
- expected awards
- 97.137
- CFDA program
Opportunity snapshot. This Grants.gov announcement - Fiscal Year (FY) 2023 State and Local Cybersecurity Grant Program - is cataloged under number DHS-23-GPD-137-00-01 and tied to CFDA assistance listing 97.137, posted by Department of Homeland Security - FEMA. Grants.gov currently shows the opportunity as closed, first posted on August 7, 2023 and last updated on August 8, 2023. The funding category is Other, delivered as a grant.
Award economics. The award range on file is $500,000 -- $374,981,324. The agency has projected $375.0 million in total estimated funding for this announcement. It expects to issue 56 awards. If the agency funds the expected 56 awards from the $375.0 million estimated pool, the average award works out to roughly $6.7 million. Cost sharing is not required, so applicants do not need to commit matching funds to be competitive on this opportunity. Federal award ranges are often upper bounds; actual allocations reflect program appropriations, the strength of the applicant pool, and the evaluation committee's scoring.
Deadline and action path. This opportunity closed on October 6, 2023. Future funding cycles may be published under the same CFDA number, so monitoring the parent program page is the most reliable way to catch re-announcements. Every Grants.gov submission requires an active SAM.gov registration and a Unique Entity ID. Review the Eligibility section below carefully, federal eligibility categories (nonprofit, state or local government, tribal, individual, educational institution, small business) have distinct registration and reporting requirements. Pre-application outreach to the listed agency contact is permitted and often welcomed, it helps clarify scope and scoring priorities. Before acting on the deadline or award figures above, verify them directly on the official Grants.gov listing, amendments can change dates and amounts after this page was last refreshed.
Award Range
$500,000 -- $374,981,324
Close Date
October 6, 2023
Posted
August 7, 2023
Est. Total Funding
$374,981,324
Expected Awards
56
Instrument
Grant
Description
A Cybersecurity Plan of an eligible entity shall -- --(A) incorporate, to the extent practicable -- --(i) any existing plans of the eligible entity to protect against cybersecurity risks and cybersecurity threats to information systems owned or operated by, or on behalf of, State, local, or Tribal governments; and -(ii) if the eligible entity is a State, consultation and feedback from local governments and associations of local governments within the jurisdiction of the eligible entity; --(B) describe, to the extent practicable, how the eligible entity will -- --(i) manage, monitor, and track information systems, applications, and user accounts owned or operated by, or on behalf of, the eligible entity or, if the eligible entity is a State, local governments within the jurisdiction of the eligible entity, and the information technology deployed on those information systems, including legacy information systems and information technology that are no longer supported by the manufacturer of the systems or technology; --(ii) monitor, audit, and, track network traffic and activity transiting or traveling to or from information systems, applications, and user accounts owned or operated by, or on behalf of, the eligible entity or, if the eligible entity is a State, local governments within the jurisdiction of the eligible entity; --(iii) enhance the preparation, response, and resiliency of information systems, applications, and user accounts owned or operated by, or on behalf of, the eligible entity or, if the eligible entity is a State, local governments within the jurisdiction of the eligible entity, against cybersecurity risks and cybersecurity threats; --(iv) implement a process of continuous cybersecurity vulnerability assessments and threat mitigation practices prioritized by degree of risk to address cybersecurity risks and cybersecurity threats on information systems, applications, and user accounts owned or operated by, or on behalf of, the eligible entity or, if the eligible entity is a State, local governments within the jurisdiction of the eligible entity; --(v) ensure that the eligible entity and, if the eligible entity is a State, local governments within the jurisdiction of the eligible entity, adopt and use best practices and methodologies to enhance cybersecurity, such as -- --(I) the practices set forth in the cybersecurity framework developed by the National Institute of Standards and Technology; --(II) cyber chain supply chain risk management best practices identified by the National Institute of Standards and Technology; and --(III) knowledge bases of adversary tools and tactics; --(vi) promote the delivery of safe, recognizable, and trustworthy online services by the eligible entity and, if the eligible entity is a State, local governments within the jurisdiction of the eligible entity, including through the use of the .gov internet domain; --(vii) ensure continuity of operations of the eligible entity and, if the eligible entity is a State, local governments within the jurisdiction of the eligible entity, in the event of a cybersecurity incident, including by conducting exercises to practice responding to a cybersecurity incident; --(viii) use the National Initiative for Cybersecurity Education Workforce Framework for Cybersecurity developed by the National Institute of Standards and Technology to identify and mitigate any gaps in the cybersecurity workforces of the eligible entity and, if the eligible entity is a State, local governments within the jurisdiction of the eligible entity, enhance recruitment and retention efforts for those workforces, and bolster the knowledge, skills, and abilities of personnel of the eligible entity and, if the eligible entity is a State, local governments within the jurisdiction of the eligible entity, to address cybersecurity risks and cybersecurity threats, such as through cybersecurity hygiene training; --(ix) if the eligible entity is a State, ensure continuity of communications and data networks within the jurisdiction of the eligible entity between the eligible entity and local governments within the jurisdiction of the eligible entity in the event of an incident involving those communications or data networks; --(x) assess and mitigate, to the greatest degree possible, cybersecurity risks and cybersecurity threats relating to critical infrastructure and key resources, the degradation of which may impact the performance of information systems within the jurisdiction of the eligible entity; --(xi) enhance capabilities to share cyber threat indicators and related information between the eligible entity and -- --(I) if the eligible entity is a State, local governments within the jurisdiction of the eligible entity, including by expanding information sharing agreements with the Department; and --(II) the Department; --(xii) leverage cybersecurity services offered by the Department; --(xiii) implement an information technology and operational technology modernization cybersecurity review process that ensures alignment between information technology and operational technology cybersecurity objectives; --(xiv) develop and coordinate strategies to address cybersecurity risks and cybersecurity threats in consultation with -- --(I) if the eligible entity is a State, local governments and associations of local governments within the jurisdiction of the eligible entity; and --(II) as applicable -- --(aa) eligible entities that neighbor the jurisdiction of the eligible entity or, as appropriate, members of an information sharing and analysis organization; and --(bb) countries that neighbor the jurisdiction of the eligible entity; --(xv) ensure adequate access to, and participation in, the services and programs described in this subparagraph by rural areas within the jurisdiction of the eligible entity; and --(xvi) distribute funds, items, services, capabilities, or activities to local governments under subsection (n)(2)(A), including the fraction of that distribution the eligible entity plans to distribute to rural areas under subsection (n)(2)(B); --(C) assess the capabilities of the eligible entity relating to the actions described in subparagraph (B); --(D) describe, as appropriate and to the extent practicable, the individual responsibilities of the eligible entity and local governments within the jurisdiction of the eligible entity in implementing the plan; --(E) outline, to the extent practicable, the necessary resources and a timeline for implementing the plan; and --(F) describe the metrics the eligible entity will use to measure progress towards -- --(i) implementing the plan; and --(ii) reducing cybersecurity risks to, and identifying, responding to, and recovering from cybersecurity threats to, information systems owned or operated by, or on behalf of, the eligible entity or, if the eligible entity is a State, local governments within the jurisdiction of the eligible entity.
Eligibility
Grants.gov lists this opportunity under eligibility category code 00. These codes correspond to applicant types (state/local government, tribal organization, nonprofit, educational institution, individual, small business, etc.) defined in Grants.gov's own eligibility reference. See the current Grants.gov eligibility categories or check the official listing below for this opportunity's exact eligibility statement.
Official Listing on Grants.gov
View full details, application forms, and submission instructions.
Agency Contact
ND Grants Service Desk Phone: 1-800-865-4076 E-mail: NDGrants@fema.dhs.gov
Key Dates
Frequently Asked Questions
What is this grant opportunity?
Is this opportunity still open?
How much funding is available?
How do I apply?
More from Department of Homeland Security - FEMA
Fiscal Year 2024 & 2025 Building Resilient Infrastructure and Communities (BRIC)
Fiscal Year (FY) 2014 Staffing for Adequate Fire and Emergency Response (SAFER)
Fiscal Year (FY) 2014 Fire Prevention and Safety Grant Program (FP
Flood Mitigation Assistance (FMA) Grant Program FY2009
Severe Repetitive Loss (SRL) Grant Program FY2009
Disclaimer: This information is sourced from Grants.gov and SAM.gov and is for informational purposes only. Opportunity details, deadlines, and eligibility requirements change frequently. Always verify current information directly on Grants.gov before applying. PlainGrants is not affiliated with any federal agency.
Read our methodology - how this data is sourced, computed, and verified.
Related
| Publisher | PlainGrants |
| Sources | the SAM.gov Assistance Listings and Grants.gov |