US EPA Safe Drinking Water Act (SDWA) — Cybersecurity Requirements
The US Environmental Protection Agency (EPA) enforces cybersecurity requirements for public water systems under the Safe Drinking Water Act (SDWA). Key requirements include: America's Water Infrastructure Act (AWIA, 2018) Section 2013 mandating risk and resilience assessments including cyber risks, EPA enforcement actions for cybersecurity failures (using SDWA Section 1433), and EPA's 2023 memorandum requiring states to include cybersecurity in public water system sanitary surveys.
Domains
Enforcement and Penalties
Certification and Compliance
Cybersecurity-Specific Requirements
Emergency Response Plan (ERP)
Risk and Resilience Assessment (RRA)
Frequently Asked Questions
Map US EPA Safe Drinking Water Act (SDWA) — Cybersecurity Requirements to any other framework
Use our AI-powered compliance platform to find control overlaps, gaps, and build remediation plans in seconds.