The White House wants the government to lead a nationwide effort to reduce identity theft and fraud. More secure government credit cards and multi-factor authentication for federal websites dealing with sensitive citizen data are two ways to do that.
The Office of Management and Budget is pushing back against the recent critical report on federal cloud computing efforts by 19 civilian agency inspectors general.
Embedding cybersecurity into the Defense Department's design, manufacturing, and supply chain is a goal the Pentagon sees is possible. Mike Papay is Chief Information Security Officer and Vice President at Northrop Grumman, and Frank Cilluffo is director of the George Washington University Cybersecurity Initiative and the Homeland Security Policy Institute. On In Depth with Francis Rose, they offered steps the DoD can take to address the issue.
SAIC's Mary Mayonado and Bill Kaczor join Federal News Radio's Custom Media Director Jason Fornicola for a free online chat to discuss the challenges in managing threats throughout the full cybersecurity life cycle - beyond just compliance requirements. Ask the industry experts live and learn about cyber's big picture, how to use data analytics to protect against insider threats, and what they're hearing from customers.
Main Video Segment 1: The fundamental differences between cyber security and IT security Segment 2: Risk management and the seven deadly sins of IT security Segment 3: NIST publications and the cloud environment Listen to…
The Council of Inspectors General analyzed 77 commercial cloud contracts across 19 civilian agencies and found most failed to implement federal guidance and best practices. Auditors found these shortcomings could put data and systems at a greater risk to cyber attack or data theft.
Michael Daniel, the White House cyber coordinator, said the administration believes getting cyber legislation through Congress on small pieces is more likely to be successful than in one comprehensive bill. Legislation to update FISMA, to improve information sharing and to expand the workforce all have garnered bi-partisan support.
Andy Ozment, assistant secretary of the Office of Cybersecurity and Communications in DHS, said the CDM, Einstein and Enhance Cybersecurity Services programs are on the upswing in terms of impact and number of users. Ozment said there are no delays with CDM, and the Einstein intrusion detection and prevention software covers 25 percent of all federal employees.
In fiscal 2015 FISMA guidance, OMB is trying to close a big hole exposed during the government's reaction to the Heartbleed vulnerability. The White House is giving DHS the authority to regularly conduct proactive scans of certain civilian agency networks. DHS made it clear to Congress earlier this year the delay in getting permission from agencies to scan their networks cost them days in response time during Heartbleed.
Pentagon wants to discourage other countries' cyber attacks by convincing them that that DoD will respond, and that the attacks will ultimately prove unsuccessful. Step one is conveying those messages more forcefully.
The goal of the scorecard or dashboard would be to give government leaders a better sense of just how secure agency networks are from hackers. As the 11th annual National Cybersecurity Awareness Month begins, DHS is doing much less education about why securing computers and networks is important.
The Army is the latest federal organization to lay out a career path for its cybersecurity leaders. Career Field 17 will offer soldiers that career path. Advocates of professionalizing the cyber workforce believe that would feed talent pipelines with the people agencies need to succeed. Lt. Col. Sean Kern is cyberspace operations officer, and a graduate student at the Joint Advanced Warfighting School at Joint Forces Staff College at the National Defense University. On In Depth with Francis Rose, he said the main cyber problem right now is a people problem.
The leader of the Army's new Cyber Center of Excellence says his job is not merely to build the cyber workforce, but to integrate that up-and-coming capability with the Army's existing signals and intelligence disciplines.
Cyber operations is about the only area of the DoD budget that hasn't been subject to cuts. But the new leader of the Army's Cyber Center of Excellence says that doesn't mean the Army can grow its newest military discipline in isolation. Federal News Radio DoD reporter Jared Serbu has the details.
The Office of Personnel Management has a list of 25 different conferences that comply with federal training regulations. Dan Waddell is director of government affairs for the cybersecurity non-profit (ISC)2. OPM just added their fourth annual Security Congress event to its list of approved conferences. On In Depth with Francis Rose, Waddell explained how the event got on the list.