Nevada officials said a major ransomware attack prompted the state to accelerate cybersecurity and digital modernization efforts, with State CIO Tim Galluzi framing the incident as proof that resilience, workforce readiness, and governance must be built into daily operations rather than treated as one-time projects. The state subsequently secured unanimous legislative support and backing from the governor to invest in new cybersecurity tools and infrastructure intended to better protect resident data and critical government systems.
Nevada's response emphasizes zero trust architecture, stronger identity and access management, and broader cross-agency coordination as part of a longer-term modernization strategy. Galluzi described identity as the "new firewall" in an environment where employees, partners, and residents increasingly access systems remotely, and he also highlighted workforce training as a core defensive measure alongside technology upgrades and improved service delivery.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
5 events from the most recent confirmed update back to the earliest known activity.
Nevada named retired Army lieutenant colonel Bertrum Carroll as its new chief information security officer following the statewide ransomware incident. Carroll said he would begin by assessing the state's top risks and focus on governance, workforce training, vendor expectations and responsible AI-era data use.
As part of its broader modernization push, Nevada began exploring artificial intelligence to enhance resident-facing digital services while pursuing secure innovation across agencies.
State leaders moved to accelerate digital modernization by emphasizing zero trust architecture, identity and access management, and workforce training to improve defenses against phishing and social engineering.
Following the attack, Nevada obtained unanimous legislative support and backing from the governor to fund new cybersecurity tools and technology infrastructure to better protect resident data and critical systems.
Nevada experienced a major statewide ransomware attack that exposed the need for stronger resilience, governance and day-to-day cybersecurity preparedness across state operations.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
3 references tracked. Mallory keeps watching after this page renders.
statescoop.com
Open sourcebankinfosecurity.com
Open sourcegovinfosecurity.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.