James Burd has taken over the role of Chief Privacy Officer (CPO) at the Cybersecurity and Infrastructure Security Agency (CISA). […]
The Cybersecurity and Infrastructure Security Agency (CISA) needs to update its milestones and fully implement its plans related to CISA Act of 2018 in order to provide more effective cybersecurity for the United States, the Federal government’s chief watchdog agency said. […]
In the wake of the recent SolarWinds and Microsoft Exchange hacks, the Cybersecurity and Infrastructure Security Agency (CISA) is emphasizing the need to shore up supply chain integrity, adopt a zero trust security concepts mindset, and direct more resources to best address vulnerabilities. […]
The House voted today to approve the Senate’s version of President Biden’s $1.9 trillion American Rescue Plan Act – and in the process release billions of new funding for Federal IT modernization and security improvements. […]
The Cybersecurity and Infrastructure Security Agency (CISA) announced that it will begin overseeing the .gov top-level domain (TLD) in April 2021, with a mandate to enhance security for the domain which is considered critical infrastructure. […]
The Cybersecurity and Infrastructure Security Agency (CISA) announced that it has awarded the Center for Infrastructure Assurance and Security (CIAS) at The University of Texas at San Antonio a $1.2 million grant to launch a pilot program to help state, local, tribal, and territorial governments identify high value assets (HVA) in order to prioritize resources and planning. […]
The Senate voted March 6 to approve the $1.9 trillion American Rescue Plan Act after a lengthy amendment and debate process that pushed the vote into the weekend. […]
The Cybersecurity and Infrastructure Security Agency (CISA) on March 3 issued an emergency directive to Federal civilian agencies to patch a critical vulnerability in Microsoft Exchange on-premises products. The agency said that cloud services such as Microsoft 365 and Azure systems “are not known to be affected by this vulnerability.” […]
The Technology Modernization Fund (TMF) would get a $1 billion funding increase in President Biden’s $1.9 trillion American Rescue Act, according to a preliminary draft of the Senate version of the legislation obtained from sources by MeriTalk. The Senate will debate its version of the legislation this week. […]
Department of Homeland Security (DHS) Secretary Alejandro Mayorkas announced today that DHS will increase the required minimum spend on cybersecurity through the Federal Emergency Management Agency (FEMA) grant awards from 5 percent to 7.5 percent – approximately a $25 million increase across the country. […]
The Cybersecurity and Infrastructure Security Agency (CISA) named Matt Hartman the deputy executive assistant director of cybersecurity at the agency this month, confirmed by Hartman’s LinkedIn profile. […]
While it’s no secret that the healthcare sector became a major target for ransomware attacks during the COVID-19 pandemic, former Cybersecurity and Infrastructure Security Agency (CISA) Director Chris Krebs is shedding new light on the tone of CISA’s efforts to bite back against health-sector threats. […]
The Cybersecurity and Infrastructure Security Agency (CISA) has unveiled three key leadership appointments including the agency’s deputy director, and two covering hot-button security posts. […]
Officials from the Defense Department (DoD) and the Cybersecurity and Infrastructure Security Agency (CISA) said today that creating more effective defenses against sophisticated cyberattacks of the type used in the SolarWinds Orion hack may require further adoption of zero trust security concepts. […]
The Cybersecurity and Infrastructure Security Agency (CISA) announced the establishment of an international strategy, CISA Global. […]
What’s the biggest lesson to be learned from the recent thwarting of an attempt by cyber criminals to poison the water supply in Oldsmar, Fla.?
According to the Cybersecurity and Infrastructure Security Agency (CISA), the hackers likely took advantage of an outdated operating system to gain access, and the agency said “continuing to use any operating system within an enterprise beyond the end of life status may provide cyber criminals access into computer systems.” […]
As agencies are scrambling to recover and build up their cybersecurity from the Russia-backed hack of thousands of government and private-sector networks via SolarWinds Orion products, Federal agency leaders say it will not be easy. […]
Sens. Mark Warner, D-Va., chairman of the Senate Intelligence Committee, and Marco Rubio, R-Fla., the committee’s ranking member, are urging the Biden administration to “assign a clear leader” to lead the United States’ response to the Russia-backed hack of thousands of government and private-sector networks via SolarWinds Orion products. […]
The Cybersecurity and Infrastructure Security Agency (CISA) has extended by six months the term of its Information and Communications Technology (ICT) Supply Chain Task Force, which was set up by the agency two years ago as a venue for government and industry to develop consensus strategies to improve ICT supply chain security. […]
Strengthening cloud service capabilities over the past year has been an important step for Federal agencies to both deal with pandemic-era network service demands, and bolster cybersecurity by meeting requirements of the Cybersecurity and Infrastructure Security Agency’s (CISA) Continuous Diagnostics and Mitigation (CDM) program while using cloud services. […]
The Department of Homeland Security’s (DHS) Cybersecurity and Infrastructure Security Agency (CISA) is looking to obtain information from industry on providing a secure work management tracking system to better secure the Federal IT enterprise. […]
In a Senate Homeland Security Committee hearing, Alejandro Mayorkas, President-elect Joe Biden’s nominee for Secretary of the Department of Homeland Security (DHS), laid out his vision for the nation’s cybersecurity and promised to make it a priority if confirmed. […]
The costs and consequences of the Russia-backed hack of government and private sector networks via a breach of SolarWinds Orion products are continuing to grow more than a month after the exploit was publicly disclosed, a senior official with the Cybersecurity and Infrastructure Security Agency (CISA) said today. […]
A broad economic recovery plan released late today by President-elect Joe Biden proposes a whopping $9 billion increase to the Technology Modernization Fund (TMF), along with a host of other funding measures to upgrade Federal government technology and improve IT security following the Russian hack of thousands government and private sector networks that came to light last month. […]
Faced with evolving technologies, increased use of hybrid cloud infrastructures, and the continuing need to provide widescale telework capabilities, all Federal agencies should be looking at migrating to zero trust security concepts, experts from two agencies said this week. […]
Kevin Cox, Continuous Diagnostics and Mitigation (CDM) program manager, said today that he could not directly address the Russian government hack of thousands of government and private sector networks that came to light in December, but emphasized the importance of network resilience to quickly recover from intrusions and breaches. […]
The Cybersecurity and Infrastructure Security Agency (CISA) late Friday issued a new alert – stemming from the Russian hack of SolarWinds Orion products – in which CISA warns it has uncovered evidence of post-hack advanced persistent threat (APT) activity in the cloud environment. […]
The Cybersecurity and Infrastructure Security Agency (CISA) released a new round of supplemental guidance on Jan. 6 to the emergency directive that the agency issued on Dec. 13, 2020, providing remediation guidance in response to the Russia-backed hack of more than 18,000 government and private sector systems via SolarWinds Orion products. […]
Federal law enforcement and intelligence agencies said today they believe that “fewer than ten” Federal agencies have been targeted by “follow-on” activity after initial breaches in the Russia-directed hacking of government networks via SolarWinds Orion products. […]
A bill introduced on Dec. 11 by Sens. Gary Peters, D-Mich., and Rob Portman, R-Ohio, would require Federal agencies to report to Congress within seven days about any cyber attacks they have faced that would cause significant harm to national security or agency operations. […]