Reporting indicates personnel and access-policy changes in US federal cyber and science institutions that could affect national cybersecurity strategy development and research capacity. A senior National Security Council (NSC) cybersecurity policy official, JD Work, reportedly left the White House and returned to teaching at the National Defense University; sources cited uncertainty about the reasons, including leadership denying an extension request. The departure was described as part of broader staffing churn in the NSC cyber directorate as it works with the Office of the National Cyber Director on a forthcoming national cyber strategy and a more hardened approach to offensive cyber policy.
Separately, lawmakers and sources told WIRED that NIST has begun taking steps that could limit foreign-born researchers’ ability to work at the agency, including reported time limits for international graduate students and postdoctoral researchers—changes that lawmakers warned could reduce expertise and harm credibility. While NIST’s work underpins widely used cybersecurity frameworks and guidance (including AI security guidelines), the other items in this set were general security commentary (OT lab security, board engagement, and compliance vs. security) and did not report a specific incident, vulnerability, or threat activity tied to the NSC/NIST developments.

See the reporting duties and controls this puts on the clock.
4 events from the most recent confirmed update back to the earliest known activity.
As of late February 2026, officials were expected to be coordinating a forthcoming national cyber strategy between the NSC and the White House Office of the National Cyber Director. The strategy may include a framework for offensive cyber operations.
After leaving the NSC, JD Work returned to academia, resuming teaching at the National Defense University’s College of Information and Cyberspace. The move was reported as part of broader staffing changes affecting the NSC cyber team.
Earlier in February 2026, JD Work departed his position as a top cybersecurity policy official at the National Security Council. According to anonymous sources, the reasons for his exit were not confirmed, though one source said leadership denied a request to extend his time at the NSC.
JD Work joined the U.S. National Security Council about a year before his reported departure, serving under senior cybersecurity director Alexei Bulazel. His role placed him within the team shaping White House cyber policy.
See what this changes for your reporting obligations and which controls it puts on the clock.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.