Congress Should Support Cybersecurity Through Log Standardization Funding

In late August, the Office of Management and Budget (OMB) issued an implementation memo regarding Section 8 of the administration’s cybersecurity executive order, which focused on security through data log management. The “Improving the Federal Government’s Investigative and Remediation Capabilities Related to Cybersecurity Incidents” memo contained three key provisions: establishing a maturity model for event log management, agency implementation requirements, and government-wide responsibilities.

As others have already stated — perhaps most notably BSA | The Software Alliance letter to Congressional Appropriators — implementing the order’s requirements will continue to lag without a clear funding mechanism from Congress. In particular, the memo’s enterprise-wide maturity model event logging capture and retention requirements and associated deadlines could place a significant burden on federal departments and agencies already operating in a tight budgetary environment. However, with the continued persistent threats faced daily, government data can be made more secure through efforts such as those outlined in OMB’s memo.

As the federal government currently operates under a continuing resolution while Congress proceeds through a delayed appropriations process, now is the time for dedicated funding lines specific to data log management. Cybersecurity is no doubt a priority of Congress. This can easily be seen in the billions of dollars appropriated each year specific to cybersecurity. However, important efforts such as data log management can be lost in the wash of larger cybersecurity investments within federal departments and agencies. To help maintain adequate cyber defenses, explicit funding should expand to log management which by extension will improve the federal government’s cyber incident investigation and remediation capabilities.

It is also worth mentioning the Technology Modernization Fund (TMF) here. Cybersecurity projects are one of the four areas that the TMF Board is prioritizing. The OMB memo seems to be aligned closely with this funding priority. TMF priorities are designated specifically “[t]o ensure the Administration is balancing immediate response needs and congressional intent for the additional TMF funding in the American Rescue Plan, the Board intends to prioritize projects that cut across agencies, address immediate security gaps... will support investments that move the government to a consistent baseline of maturity in cybersecurity..."

With clear funding in place, industry is here to help federal departments and agencies implement OMB’s data logging requirements. As I recently wrote, Splunk can assist with many of these requirements. From event forwarding, centralized access, logging orchestration, automation, and response, to protecting and validating log information, Splunk offers solutions to meet OMB’s required deadlines.

Click here to find out more about how Splunk can help.

Related Articles

How Splunk is Helping Shape the Future of Higher Education IT by Tackling EDUCAUSE 2026 Top Issues
Industries
3 Minute Read

How Splunk is Helping Shape the Future of Higher Education IT by Tackling EDUCAUSE 2026 Top Issues

Dive into how Splunk aligns with key priorities highlighted at EDUCAUSE 2025.
Enhancing Government Resilience: How AI and Automation Empower Public Sector Missions
Industries
3 Minute Read

Enhancing Government Resilience: How AI and Automation Empower Public Sector Missions

Splunk helps government agencies boost security and efficiency with powerful, mission-ready AI and automation.
Solving Manual Mayhem in Telecom with Agentic AI
Industries
3 Minute Read

Solving Manual Mayhem in Telecom with Agentic AI

Agentic AI cuts downtime, improves security, and boosts customer experience, and with unified data from Splunk and Cisco, teams can build more resilient operations.
Upgrading to Splunk Enterprise 10.0 and Splunk Cloud Platform 10.0: Key Resources for Public Sector Customers
Industries
2 Minute Read

Upgrading to Splunk Enterprise 10.0 and Splunk Cloud Platform 10.0: Key Resources for Public Sector Customers

Splunk Enterprise 10.0 and Splunk Cloud Platform 10.0 deliver the most secure, stable, and modernized platform for a digitally resilient and compliance-ready future.
Building the Next Generation of Defenders: From the Classroom to the SOC of the Future
Industries
3 Minute Read

Building the Next Generation of Defenders: From the Classroom to the SOC of the Future

Resilience in the AI era doesn’t just happen – it's built one student, one SOC, and one organisation at a time.
Analytics That Work: 3 Approaches for the Future of Contact Centers
Industries
3 Minute Read

Analytics That Work: 3 Approaches for the Future of Contact Centers

Splunker Khalid Ali explains how unified, real-time intelligence connects data, empowers agents, and builds lasting customer loyalty.
Observability + Security: Real-Time Digital Resilience for SLED
Industries
1 Minute Read

Observability + Security: Real-Time Digital Resilience for SLED

Cisco and Splunk are helping public sector organizations build digital resilience.
Digital Resilience for State and Local Governments (Part Two)
Industries
3 Minute Read

Digital Resilience for State and Local Governments (Part Two)

Discover how collaboration—powered by shared data platforms like Splunk—can enhance incident response and overall digital resilience.
Reflections from SIBOS 2025: How will advances in technology (and especially AI) change the financial services industry over the next 5 years?
Industries
2 Minute Read

Reflections from SIBOS 2025: How will advances in technology (and especially AI) change the financial services industry over the next 5 years?

Discover key insights from SIBOS 2025 on how AI, collaboration, and data will reshape financial services over the next 5 years—prepare for rapid change and exciting opportunities ahead.