House Democrats asked the inspectors general for the intelligence community and the Department of Homeland Security to investigate allegations that former CISA Acting Director Madhu Gottumukkala bypassed intelligence access protocols after failing two polygraph examinations tied to entry into a highly sensitive controlled access program. The lawmakers' letter describes a July 2025 effort to obtain access to one of the government's most restricted intelligence compartments, where admission requires both a demonstrated need-to-know and a successful counterintelligence-scope polygraph.
The request for an independent probe also cites alleged retaliation against career staff, security clearance suspensions, internal investigations, and possible violations of national security directives. Both reports describe the same developing oversight matter and frame it as a governance and security-clearance controversy inside CISA, with lawmakers questioning whether required escalation steps, including notification to the Office of the Director of National Intelligence, were ignored after the failed polygraphs.

See the reporting duties and controls this puts on the clock.
6 events from the most recent confirmed update back to the earliest known activity.
About a week before March 30, 2026, DHS closed its internal investigation into seven CISA employees and a contractor tied to the polygraph episode, clearing the staffers after they had been placed on leave and had clearances suspended. Lawmakers welcomed the reinstatement and criticized the earlier treatment of the employees.
In March 2026, five House Democratic lawmakers sent a letter to the inspectors general for the intelligence community and DHS calling for an independent investigation into the CISA polygraph and clearance controversy.
Following the internal investigation, at least five career CISA employees and one contractor had their security clearances suspended and were placed on administrative leave, prompting concerns about retaliation and personnel practices.
Rather than referring the matter for independent oversight, Gottumukkala allegedly used a newly formed internal investigatory unit to examine staff conduct related to the episode.
During the 2025 review tied to that access request, Gottumukkala allegedly failed two polygraph examinations and may have bypassed required escalation procedures for handling the matter.
In July 2025, then-CISA Acting Director Madhu Gottumukkala requested access to a highly sensitive Controlled Access Program, triggering scrutiny described in lawmakers' later letter.
See what this changes for your reporting obligations and which controls it puts on the clock.
3 references tracked. Mallory keeps watching after this page renders.
nextgov.com
Open sourcebankinfosecurity.com
Open sourcegovinfosecurity.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.