Understanding New FCC Requirements and the Changing Landscape of VoIP Security
The telecommunications industry is undergoing significant regulatory and security changes, and many business owners are unaware of how these updates affect their day-to-day operations. Recent FCC mandates—such as STIR/SHAKEN, the Do-Not-Originate (DNO) registry, Kari’s Law, and the Ray Baum’s Act—were created to address long-standing issues ranging from caller-ID spoofing to accurate 911 dispatching. These rules impact any organization using modern phone systems, regardless of size.
Over the past decade, phone fraud, spoofed numbers, robocalls, and emergency-response delays have become industry-wide challenges. In response, federal regulators have implemented several key protections:
STIR/SHAKEN: A nationwide caller-ID authentication framework meant to reduce spoofing and restore trust in business calls.
DNO (Do-Not-Originate): A registry of numbers that should never originate calls, commonly impersonated by scammers.
Kari’s Law: Ensures anyone can dial 911 directly without dialing a prefix, and that designated personnel receive immediate notification of emergency calls.
Ray Baum’s Act: Requires “dispatchable location” information for more accurate and timely 911 response.
These measures are intended to create a safer, more reliable communication environment for businesses.
The VoIP industry experienced a major wake-up call in 2020, when coordinated attacks impacted service providers worldwide. Cybersecurity researchers documented more than 1,200 organizations across 60+ countries having their VoIP servers compromised in a wide-ranging fraud campaign.
Additionally, several U.S. carriers experienced disruptions from large-scale DDoS and fraud-related traffic, prompting a nationwide reevaluation of VoIP security practices.
These events underscored two realities:
VoIP systems are attractive targets for fraudsters.
Providers must remain vigilant and adaptive as threats evolve.
VoIP systems operate across the open internet, making them more exposed to opportunistic attacks than traditional landlines. Businesses across the country face risks such as unauthorized call routing, credential theft, and toll fraud. Even well-configured systems must adapt as new vulnerabilities and attack methods emerge.
Responsible carriers treat regulatory compliance and security preparedness as ongoing responsibilities, not one-time tasks. This includes:
Staying aligned with all FCC guidelines
Reviewing configurations as standards evolve
Monitoring industry changes and emerging threats
Maintaining strong operational practices to reduce exposure
For business owners, this translates into fewer disruptions, more accurate emergency response routing, and a communication system that is better protected from spoofing-related risks.
Southern California Telephone Company maintains full compliance with all current FCC requirements and conducts ongoing internal reviews to ensure systems remain aligned with new regulations. Our local oversight and hands-on operational model allow us to respond faster to changes in both regulation and the security landscape.
This commitment results in increased reliability, clearer caller identification, and a communication environment built around safety, accuracy, and trust.
The telecom landscape continues to evolve quickly. As regulations change and cyber threats grow more sophisticated, the most resilient businesses will be those who stay informed and partner with providers who take compliance and security seriously. The goal is simple: safer communication and a more dependable experience for the entire community.