Heather Hogsett

Last updated
Heather Hogsett
NationalityAmerican
Education Northwestern University (B.A.)
Alma mater Georgetown University (M.Sc.)
OccupationPublic policy executive
Employer Bank Policy Institute

Heather Hogsett is an American public policy executive. She currently serves as Executive Vice President and Head of BITS, the technology policy division of the Bank Policy Institute (BPI). Hogsett leads national initiatives on emerging technology, cybersecurity, and resilience for the Bank Policy Institute (BPI), a trade association and advocacy organization representing the largest U.S. financial institutions. Hogsett specializes in financial sector cybersecurity policy and intergovernmental collaboration. [1] [2] [3] [4]

Contents

Education

Hogsett attained a Bachelor of Arts degree in Political Science and International Studies at Northwestern University and a Master of Science degree in Foreign Service at Georgetown University. [5]

Career

In 2003, Hogsett began her career in U.S. public policy with a focus on national security, serving in professional staff roles on the U.S. House Committee on Homeland Security and U.S. Senate Homeland Security and Governmental Affairs Committee. [5]

Hogsett transitioned to the private sector in 2009, when she joined the National Governors Association, initially as director of the Committee on Homeland Security and Public Safety and later as the staff director for federal relations. In the latter position, Hogsett oversaw NGA's federal legislative agenda on cybersecurity, [6] homeland security, emergency management, defense, [7] and veterans' affairs. She helped establish the Council of Governors, which enables collaboration between state leaders and federal defense officials.

Bank Policy Institute

In 2015, Hogsett joined the Bank Policy Institute (BPI), where she currently serves as Executive Vice President and Head of BITS, leading the Institute's technology policy strategy on issues such as payments fraud, operational resilience, and cybersecurity. [8]

Hogsett began her work at BPI as a Vice President of Technology and Risk Strategy on the BITS technology policy team. In 2018, she was promoted to Senior Vice President of Technology and Risk Strategy. She became Head of BITS in June 2025. [9]

While at BPI, Hogsett has testified as an expert witness at multiple congressional hearings on various security policy topics, [10] including cyber regulatory harmonization [11] and critical infrastructure cybersecurity. [12] She has also submitted written statements for the record for Capitol Hill hearings, such as a statement on the Cyber Incident Reporting for Critical Infrastructure Act (CIRCIA). [13]

Hogsett has submitted comments on federal regulations on cyber incident reporting, [14] promoting innovation in financial services, and other matters. [15]

She has also published articles and other works on federal cybersecurity rules, the examination of cybersecurity in bank supervision, the roles of the legislative and executive branches in cybersecurity policy, financial institutions and privacy and cybersecurity challenges for financial services boards of directors, among other topics. [16]

Recent work

In August 2025, Hogsett was named Vice Chair of the Financial Services Sector Coordinating Council (FSSCC), [17] a nonprofit organization led by the financial industry that aims to convene financial institutions, trade associations and other industry leaders to work collaboratively with public policymakers on responses to natural disasters, [18] security threats and cybersecurity issues.

Hogsett also serves as a board member of fTLD Registry Services, which operates the .bank and .insurance web domains. [19]

She is also a regular participant in relevant industry conferences [20] and panels, [21] both during her time at BPI and in prior positions. [22]

See also

References

  1. https://www.washingtonpost.com/politics/2023/11/15/republicans-want-reverse-an-sec-cybersecurity-rule-heres-why/
  2. "Industry Warns Cyber Reporting Rule Could Lead To Overreporting" . Retrieved October 2, 2025.
  3. "Banks, fintech startups clash over 'the new oil' — your data". POLITICO. February 7, 2020. Retrieved October 2, 2025.
  4. Rundle, James (March 12, 2025). "Cyber Reporting Rules Savaged in House Hearing" . Retrieved October 2, 2025 via www.wsj.com.
  5. 1 2 "Heather Hogsett" . Retrieved October 2, 2025.
  6. "National Governors Association Closing Session | Video | C-SPAN.org" . Retrieved October 2, 2025.
  7. https://www.nga.org/wp-content/uploads/2020/05/CoGLetterJtActionPlan112310.pdf
  8. https://www.rsaconference.com/experts/heather-hogsett
  9. Oprysko, Caitlin (May 1, 2025). "The Chamber's tariff exemption wish list". POLITICO. Retrieved October 2, 2025.
  10. "Heather Hogsett Testifies Before House Committee on Streamlining Duplicative Cyber Regulations". March 11, 2025. Retrieved October 2, 2025 via YouTube.
  11. "Regulatory Harm or Harmonization? Examining the Opportunity to Improve the Cyber Regulatory Regime – Committee on Homeland Security" . Retrieved October 2, 2025.
  12. "House Hearing on Securing U.S. Infrastructure From Cyberattacks | Video | C-SPAN.org" . Retrieved October 2, 2025.
  13. https://www.congress.gov/118/meeting/house/117105/witnesses/HHRG-118-HM08-Wstate-HoggsettH-20240501.pdf
  14. https://www.sec.gov/comments/s7-04-22/s70422-192339-382882.pdf
  15. https://www.nist.gov/system/files/documents/2019/10/25/h_hogsett_financial_trades_nist_letter_oct_24_2019_508.pdf
  16. https://www.mckinsey.com/capabilities/risk-and-resilience/our-insights/cybersecurity/cybersecurity-emerging-challenges-and-solutions-for-the-boards-of-financial-services-companies
  17. "FSSCC - Protecting Critical Financial Infrastructure" . Retrieved October 2, 2025.
  18. https://www.nationaldefensemagazine.org/articles/2012/12/31/2013january-natural-disasters-uncover-ongoing-emergency-communications-problems
  19. https://docs.house.gov/meetings/HM/HM08/20250311/117906/HHRG-119-HM08-Bio-HogsettH-20250311.pdf
  20. "CISA's Incident Reporting Rulemaking: Impacts on Critical Infrastructure" . Retrieved October 2, 2025.
  21. https://static.rainfocus.com/rsac/us25/sess/1727417988290001BvUc/finalwebsite/2025_USA25_CIT-T02_01_Incident_Response_Dilemmas_Sharing_Intel_1744841266408001o53i.pdf
  22. "MRE's agenda for the 10th annual conference". October 1, 2012. Retrieved October 2, 2025.