The problem with IT modernization is often a people problem. “There’s a cultural challenge within the IT community,” said Department of Homeland Security Acting CIO Stephen Rice, at the AFCEA Homeland Security Conference on Sept. 13. “Changes aren’t just within the technology but also within the culture of those managing the technology.” […]

Acting Secretary of Homeland Security Elaine Duke released a binding operational directive on Sept. 13 requiring agencies to identify and plan to remove all Kaspersky Lab products within the next 90 days. “The Department is concerned about the ties between certain Kaspersky officials and Russian intelligence and other government agencies, and requirements under Russian law that allow Russian intelligence agencies to request or compel assistance from Kaspersky and to intercept communications transiting Russian networks,” DHS noted. […]

Creating one cloud architecture for the civilian agencies will make it easier for hackers, according to Beth Dunphy, program director of cybersecurity technologies at IBM. The White House’s recent IT Modernization Report calls for the Federal government to invest in two to three cloud models to support the different agencies. “At the end of the day it’s just going to make it easier to repeat the attacks from the attackers,” Dunphy said at the AFCEA Homeland Security Conference on Sept. 12. […]

The Federal government is working on improving its inter-agency information sharing process during cyber threats, but Greg Touhill, former Federal CISO, said that information sharing is useless if recipients of the information don’t act on it. “You can share all day long but if people aren’t listening and they aren’t acting on it, bad things are going to happen,” Touhill, president of Cyxtera Federal Group, said at the AFCEA Homeland Security Conference on Sept. 12. […]

Cybersecurity threats have risen to the top of the nation’s national security concerns, according to U.S. Director of National Intelligence Daniel Coats, who spoke at the Billington CyberSecurity Summit on Sept. 13. “What keeps me up at night now is the wide diversity of threats that we have from all across the world, including the […]

The Department of Homeland Security’s (DHS) Continuous Diagnostics and Mitigation (CDM) program is entering its fourth year and introducing a third phase. Now, the Trump administration’s increasing focus on cybersecurity adds growing pressure to the program and its scope. […]

The government needs to get tougher on financial institutions that endanger consumer data, as occurred in the recent Equifax breach, according to testimony at a Senate Banking, Housing, and Urban Affairs Committee hearing. […]

Federal agencies are expected to submit their budget requests to Congress in September, detailing the funding they’ll need to meet their missions for fiscal year 2018. One trend that Congress can expect to see is requests for AI applications to automate cybersecurity processes, according to Thomas Jones, Federal systems engineer at Bay Dynamics. […]

Leading cybersecurity experts will come together on Wednesday, Sept. 20 at the Newseum in Washington, D.C., to discuss the changing cyber landscape and ways the private and public sectors can partner to strengthen a proactive cyber defense. MeriTalk’s sixth annual Cyber Security Brainstorm, “Cyber Everywhere: Collaboration, Automation and Integration,” will focus on keeping our nation’s government one step ahead of advancing adversaries. […]

After the credit monitoring company Equifax announced that it had detected a data breach affecting potentially 143 million U.S. consumers, Rep. Ted Lieu, D-Calif., is calling for a House Judiciary Committee hearing to investigate the breach. […]

The entire Federal government is feeling the pains of cyber workforce shortages. But the Department of Homeland Security, which is tasked with protecting national security without the cool factor of the FBI and National Security Agency, hurts more than most, according to testimony at a House Homeland Security Committee hearing on Sept. 7. […]

Government IT executives are finding that the IT modernization process is increasing security challenges, according to a recent Unisys survey. However, Unisys Federal President Venkatapathi “PV” Puvvada said that the journey to more modern, and therefore secure, IT can often make cybersecurity harder before it gets better. […]

Though new initiatives like the Cybersecurity Executive Order cover many of the same issues tackled by past administrations, the focus on IT modernization will make a big difference in actually improving cybersecurity, according to Barry West, senior adviser and senior accountable official for risk management at the Department of Homeland Security. […]

A hacker group named Dragonfly 2.0 has gained access to several companies that supply electricity to the U.S. power grid, according to Symantec. The new wave of cyberattacks could give attackers the means to severely disrupt affected operations centers in Europe and North America. Dragonfly 2.0 has been in operation since at least 2011 and is linked to the Russian government. […]

Research published by SecurityScorecard found that though Federal and state governments have improved their cybersecurity since the rating system’s last report, they still fall behind the rankings of most industries in the U.S. […]

The White House American Technology Council IT modernization report, released Aug. 30, emphasizes the need for updated IT infrastructure and shared services. The ATC said that the Federal government should invest in two to three cloud platforms to support all of the agencies. […]

American hack

Just after the president’s National Infrastructure Advisory Council published a report on the critical nature of the nation’s cybersecurity efforts, eight out of 28 members resigned. “You have given insufficient attention to the growing threats to the cybersecurity of the critical systems upon which all Americans depend, including those impacting the systems supporting our democratic election process,” said a collective resignation letter. […]

The National Institute of Standards and Technology and the Department of Homeland Security announced the next phase of the “Smart and Secure Cities and Communities Challenge,” a partnership to bring together Smart City initiatives and DHS’s security expertise and resources, at the Global City Teams Challenge Expo. […]

A recent study by the IBM X-Force Kassel, a research team that operates “massive spam honeypots” to examine the trends in unsolicited emails, has found that most spammers keep normal business hours and operate predominantly during the usual work week. […]

The United States needs to invest more resources in the security of election systems, Cook County (Ill.) Director of Elections Noah Praetz told the Election Assistance Commission. […]

The National Security Agency gave Columbus State University in Georgia a $174,000 grant to develop a cybersecurity training tool. “We are building a tool that people across the nation can use to develop cybersecurity training, which guarantees compliance with government and industry standards for cybersecurity workforce development,” said Shuangbao “Paul” Wang, a professor in CSU’s TSYS School of Computer Science. […]

DHS S&T announced Aug. 14 that it was awarding Metronome Software nearly $750,000 to strengthen the security of first responder sensor systems. Metronome Software, a software research and development company focused on working for the U.S. government, is  developing a technology to improve the security of first responders’ mobile device-based sensor systems. […]

Software patching can never be done quickly enough, but some initiatives are setting Federal agencies on the route to better patching policies, according to security experts. “The river’s gotten wider and deeper, and so as it’s moving more rapidly the problem is that a lot of the organizations haven’t been able to change how they’re structured to go with it,” said John Scott, president of Ion Channel. “Most organizations aren’t equipped to deal with it.” […]

Categories