On March 9 2022, the U.S. Securities and Exchange Commission proposed new and amended rules for public companies regarding cybersecurity risk management, strategy, governance, and incident reporting. This article gives an overview of what the proposed rules would require.