Shows & Panels
- AFCEA Answers
- Ask the CIO
- The Big Data Dilemma
- Carrying On with Continuity of Operations
- Connected Government
- Constituent Servicing
- Continuous Monitoring: Tools and Techniques for Trustworthy Government IT
- The Cyber Imperative
- Cyber Solutions for 2013 and Beyond
- The Data Privacy Imperative: Safeguarding Sensitive Data
- Expert Voices
- Federal Executive Forum
- Federal IT Challenge
- Federal Tech Talk
- Mission-critical Apps in the Cloud
- The Modern Federal Threat Landscape
- The Path from Legacy Systems
- The Real Deal on Digital Government
- The Reality of Continuous Monitoring... Is Your Agency Secure?
- Veterans in Private Sector: Making the Transition
Shows & Panels
Search Tags: NIST
In addressing the importance of cyber security as a government priority in testimony before a Senate Homeland Security and Governmental Affairs subcommittee last fall, Vivek Kundra, the Federal Chief Information Officer, said:
"Our Nation's security and economic prosperity depend on the stability and integrity of our Federal communications and information infrastructure." Federal News Radio has reportedthat the federal government will spend $8.3 billion on computer security this year - marking a 60% increase in four years. As Federal information security decision-makers allocate dollars and resources to protect our infrastructure, it is important to prioritize the key challenges they face. These include:
- 1. Increased use of mobile devices.Mobile devices are becoming smaller and faster every day. Agencies face even more challenges as mobile applications have now become widely used and they are even looking to build their own mobile applications to increase their productivity in the field.
- 2. Continued movement of data into the cloud. Cloud computing has become a pervasive buzzword but in the end, risk stems from a matter of oversight and control. Agencies must rely on strong governance and compliance oversight of their service providers since they do not own or control the systems where their data resides.
- 3. Changing regulatory environment. NIST has undergone sweeping changes across their Special Publications by introducing a new Risk Management Framework and introducing new nomenclature such as "Security Authorization." OMB continues to press their performance metrics as a part of the FISMA reporting process and could see some changes in the next 9 months.
- 4. Application security. Attackers have now moved their focus from the network and infrastructure level to the application layer. We're seeing more attacks proliferated through applications such as Adobe and web browsers but some high profile data breaches stemmed from custom web applications through SQL injection attacks.
- 5. Developing/maturing offensive capabilities. "Understanding the offensive to build the defensive" has become the mantra for today's cyber security efforts. The ability to understand the mindset of an attacker and their methods becomes critical in building defenses that focus on these attack vectors.
Reigning in the changes can pose a difficult problem for several agencies but it ultimately comes down to understanding the threats to your particular agency and narrowing your defenses on those areas. Focus and prioritization become key in the constant battle.
The Dept. of Commerce has managed to reduce its water usage by 30 percent over the last two years.
The Baldrige Award was envisioned as a standard of excellence that would help U.S. organizations achieve world-class quality.
While vaccine supplies have fallen short of what the government promised, that information came from the companies making the inoculations.
OMB has launched new tool to automate FISMA reporting. This data will help populate a new cybersecurity dashboard, federal CIO Vivek Kundra says. OMB also wants to collect more specific data around how much and where agencies are spending money on IT security.
Tags: technology , cybersecurity , security , Vivek Kundra , John Streufert , Tom Carper , OMB , State , Senate Homeland Security and Governmental Affairs , DHS , CIO Council , metrics , FISMA , dashboard
After introducing the world to tiny robots with soccer skills, NIST is creating the next level of friendly competition designed to advance microrobotics.
New group is developing performance measures that are based on outcomes. OMB has set a November deadline for a draft of the metrics that will be reviewed by government and industry. DHS says the governmentwide focus to improve cybersecurity is on standards, metrics and authentication.
Many fundamentals are reiterated, while new threats are also identified.
Tags: Smart Grid , House Science Subcommittee on Energy and Environme , Patricia Hoffman , Department of Energy , George Arnold , National Institute of Standards and Technology , Paul De Martini , Jeff Ross , Michael Stoessl