US Maritime Transportation Security Act (MTSA) and USCG Cybersecurity Requirements
The US Maritime Transportation Security Act (MTSA, 2002) and subsequent US Coast Guard (USCG) regulations establish security requirements for US maritime facilities and vessels. USCG Navigation and Vessel Inspection Circular (NVIC) 01-20 provides guidance on addressing cyber risks in Facility Security Assessments (FSA) and Facility Security Plans (FSP) per 33 CFR Part 105. NVIC 05-17 addresses cyber risks in Area Maritime Security Plans. The 2024 USCG cyber incident reporting rule establishes mandatory cyber incident reporting for MTSA-regulated facilities. Applies to port facilities, OCS (outer continental shelf) facilities, and vessels operating in US waters.
Framework summaries on this platform are AI-assisted interpretations for educational and compliance planning purposes. They do not reproduce or replace the official standards. Refer to the authoritative source for the definitive text. Framework names and trademarks belong to their respective organisations.
Framework Domains (4)
Cyber Assessment
| Code | Title |
|---|---|
| USMTSA-2 | Cybersecurity Assessment and CSO Designation |
Incident Reporting
| Code | Title |
|---|---|
| USMTSA-3 | Reportable Suspicious Activity (RSA) and Cyber Incident Reporting |
Security Plan
| Code | Title |
|---|---|
| USMTSA-1 | Facility Security Assessment and Plan |
Training
| Code | Title |
|---|---|
| USMTSA-4 | Training, Drills, Exercises |
Your Compliance Coverage
If you comply with US Maritime Transportation Security Act (MTSA) and USCG Cybersecurity Requirements, you already cover:
ISO/IEC 27400:2022
50%
2 controls mapped
Compare →NIST SP 800-171A Rev 3 - Assessing CUI Security Requirements
50%
2 controls mapped
Compare →FedRAMP Rev 5
50%
2 controls mapped
Compare →+ 105 more: IACS Unified Requirements E26/E27 - Cyber Resilience of Ships and On-Board Systems (50%), IAEA Nuclear Security Series - Computer Security at Nuclear Facilities (NSS-17-T Rev 1) (50%)
See all 108 mapped frameworks ↓Maps to 108 other frameworks
Frequently Asked Questions
What is US Maritime Transportation Security Act (MTSA) and USCG Cybersecurity Requirements?
US Maritime Transportation Security Act (MTSA) and USCG Cybersecurity Requirements is a compliance framework from United States (USCG) with 4 domains and 4 controls. The US Maritime Transportation Security Act (MTSA, 2002) and subsequent US Coast Guard (USCG) regulations establish security requirements for US maritime facilities and vessels. USCG Navigation and Vessel Inspection Circular (NVIC) 01-20 provides guidance on addressing cyber risks in Facility Security Assessments (FSA) and Facility Security Plans (FSP) per 33 CFR Part 105. NVIC 05-17 addresses cyber risks in Area Maritime Security Plans. The 2024 USCG cyber incident reporting rule establishes mandatory cyber incident reporting for MTSA-regulated facilities. Applies to port facilities, OCS (outer continental shelf) facilities, and vessels operating in US waters. It is used by organisations to establish and maintain compliance with industry standards and regulatory requirements.
How many controls does US Maritime Transportation Security Act (MTSA) and USCG Cybersecurity Requirements have?
US Maritime Transportation Security Act (MTSA) and USCG Cybersecurity Requirements has 4 controls organised across 4 domains. The largest domains are Cyber Assessment (1 controls), Incident Reporting (1 controls), Security Plan (1 controls). Each control defines specific requirements that organisations must implement to achieve compliance.
What frameworks does US Maritime Transportation Security Act (MTSA) and USCG Cybersecurity Requirements map to?
US Maritime Transportation Security Act (MTSA) and USCG Cybersecurity Requirements maps to 108 other compliance frameworks. The top mapping partners are ISO/IEC 27400:2022 (50% coverage), NIST SP 800-171A Rev 3 - Assessing CUI Security Requirements (50% coverage), FedRAMP Rev 5 (50% coverage). Use our comparison tool to explore control-level mappings between frameworks.
How do I get started with US Maritime Transportation Security Act (MTSA) and USCG Cybersecurity Requirements compliance?
Start your US Maritime Transportation Security Act (MTSA) and USCG Cybersecurity Requirements compliance journey by running a self-assessment on our platform to identify your current compliance posture. Our AI advisory can answer specific questions about US Maritime Transportation Security Act (MTSA) and USCG Cybersecurity Requirements requirements, and cross-framework mapping helps you leverage existing controls from other frameworks you may already comply with. Create a free account to access all 4 controls and track your progress.
Start Your Compliance Journey
Create a free account to run self-assessments, get AI advisory, and track your compliance progress across 718 frameworks.
Get Started Free →Free forever — no credit card required