The Relationship Between Comply to Connect and Continuous Monitoring
When there are humans involved in the organization, there will never be perfect security.
Ryan Latreille
Chief Technology Officer, Three Wire Systems
The Department of Homeland Security has worked with Congress to implement Continuous Diagnostic and Mitigation programs, commonly known as CDM. One variation on...
Today’s cybersecurity attacks are frustrating. Attackers are creative, flexible and never ending. Viewing this at a high level, the Department of Homeland Security has worked with Congress to implement Continuous Diagnostic and Mitigation programs, commonly known as CDM. One variation on that approach is from the Defense Department with a concept of the Comply to Connect program, or C2C. Much confusion has ensued trying to understand the differences and applications of both concepts.
During a recent interview with Federal News Network, Ryan Latreille, chief technology officer for Three Wire Systems, compared the different concepts. After explaining the key differentiators, he went on to discuss scope of control, the weakness of a point solution, and the value that a framework like ATT&CK provides for cybersecurity.
Latreille also put into perspective how the National Defense Authorization Act can be applied through automation, and its impact on auditing and risk management.
When there are humans involved in the organization, there will never be perfect security.
Chief Technology Officer, Three Wire Systems
ATT&CK is a great framework. That is essentially the tactics, techniques, and procedures that adversaries will use to exploit vulnerabilities inside networks.
Chief Technology Officer, Three Wire Systems
How do I ensure that my network is being secured and how am I automating to alleviate and repurpose some of my human assets to do more human-centric things versus just discerning white noise?
Chief Technology Officer, Three Wire Systems
Listen to the full show:
Copyright © 2024 Federal News Network. All rights reserved. This website is not intended for users located within the European Economic Area.
Chief Technology Officer, Three Wire Systems
Host of Federal Tech Talk, Federal News Network
Chief Technology Officer, Three Wire Systems
Ryan serves as the Chief Technology Officer, which includes developing and executing Three Wire's strategic technical vision, leading strategic development of the company's technology portfolio of offerings and Three Wire's strategic relationships with solutions partners.
Host of Federal Tech Talk, Federal News Network
John Gilroy has been a member of the Washington D.C. technology community for over twenty years. In 2007 he began weekly interviews on Federal News Network called “Federal Tech Talk with John Gilroy.” His 428 interviews provides the basis for profitable referral business. In 2009 he created a successful breakfast club of previous radio guests called The Technology Leadership Roundtable. He has been instrumental in two of his guests forming their own radio shows: Derrick Dortch with “Fed Access” and Aileen Black and Gigi Schumm with “Women in Washington.”
In 2011 he began teaching a course in social media marketing at Georgetown University; in March of 2014, John won the Tropaia Award for Outstanding Faculty. John conducts monthly corporate training for large companies on how to leverage social media to generate revenue.