Top defense and intelligence officials shared this week the trends that worry them the most when it comes to the constantly evolving cyber threat landscape and what their top priorities are on the horizon given current world events and emerging cyber threat trends. […]

Rep. Ted Lieu, D-Calif., on Aug. 29 reintroduced his Improving Contractor Cybersecurity Act, which aims to require vendors that wish to do business with the United States government to maintain vulnerability disclosure policies (VDP) and programs. […]

Critical infrastructure

Although the Federal government has made progress in protecting U.S. critical infrastructure through a largely voluntary approach, Federal Chief Information Security Officer (CISO) Chris DeRusha today called for minimum cybersecurity requirements for critical infrastructure. […]

Jen Easterly, CISA

Cybersecurity and Infrastructure Security Agency (CISA) Director Jen Easterly called on Congress today to reauthorize the Chemical Facility Anti-Terrorism Standards (CFATS) program – which the cybersecurity chief said has resulted in improving the security posture of high-risk facilities by 60 percent. […]

The recently established Advanced Research Projects Agency for Health (ARPA-H), which is housed within the Department of Health and Human Services (HHS), has launched a new project to better protect the U.S. healthcare system’s IT infrastructure. […]

water, tap water, safe drinking water
cybersecurity
AI

As part of its broad efforts to foster a secure-by-design and -default technology ecosystem, the Cybersecurity and Infrastructure Security Agency (CISA) called on AI software makers last week to build security into systems from the outset. […]

The Cybersecurity and Infrastructure Security Agency (CISA) – alongside the National Security Agency (NSA) and National Institute of Standards and Technology (NIST) – released a joint factsheet today encouraging early planning for migration to post-quantum cryptographic standards by developing a Quantum-Readiness Roadmap. “Quantum-Readiness: Migration to Post-Quantum Cryptography” is urging organizations – especially those that support critical infrastructure […]

White House

Federal Chief Information Security Officer (CISO) Chris DeRusha explained today how the National Cybersecurity Strategy (NCS) and implementation plan released by the Office of the National Cyber Director (ONCD) earlier this year lines up nicely with the goals of improving Federal government cybersecurity, but also warned that the prevalence of legacy IT systems still being used by many Federal agencies continues to stand in the way of security improvements. […]

CISA

The Cybersecurity and Infrastructure Security Agency (CISA) has led a handful of identity security initiatives over the past year, and, according to a CISA official, is closing in on finalized guidance on recommended cybersecurity configuration baselines for select cloud products – like Microsoft 365 and Google Workspace. […]

IRS

The Internal Revenue Service (IRS) failed to review nearly 75 percent of IT security weaknesses within a timely manner in recent years due to staffing shortfalls, among other reasons, the Treasury Inspector General for Tax Administration (TIGTA) found in a recent report. […]

FCC
Jen Easterly

The head of the Cybersecurity and Infrastructure Security Agency (CISA) said this week that the United States needs to take a page out of Ukraine’s cyber playbook and build more resiliency into its critical infrastructure now. […]

White House

The Biden-Harris administration is launching a two-year competition that will leverage AI to protect the United States’ most important software – such as code that helps run the internet and critical infrastructure – senior White House officials announced at the opening of the Black Hat USA Conference in Las Vegas today. […]

NIST

The National Institute of Standards and Technology (NIST) is asking for public feedback on the draft version of a major update to its voluntary Cybersecurity Framework, which has become something close to a de facto baseline standard for security efforts in government and the private sector since it was launched in 2014 as a guide for critical infrastructure sectors. […]

cyber workforce

By Jim Richberg, Fortinet Public Sector Field CISO With an estimated 3.4 million people needed to fill the global cybersecurity workforce gap, it’s time for organizations to start turning to new ways to recruit and keep talented cyber professionals. The federal situation mirrors what’s happening globally, but the stakes are even higher with civilian, defense and IC […]

IRS

Cybersecurity technology provider CrowdStrike said in a report issued today that its Falcon OverWatch managed threat hunting unit saw a 40 percent year-over-year jump in “observed interaction intrusion volumes” for the year ended June 30. […]

Cybersecurity
CISA

The Cybersecurity and Infrastructure Security Agency (CISA) today debuted its cyber plan for the next three years, noting that the agency’s planning document builds on the White House’s National Cybersecurity Strategy released earlier this year. […]

The Cybersecurity and Infrastructure Security Agency (CISA), National Security Agency (NSA), the FBI, and international cybersecurity agencies issued a joint cybersecurity advisory on August 3 warning organizations of common vulnerabilities and exposures (CVEs) that were frequently exploited by malicious actors in 2022. […]

After two weeks of combing through nearly 1,000 amendments, the Senate late on Thursday night finally passed its version of the behemoth fiscal year 2024 National Defense Authorization Act (NDAA) – and it’s packed with Federal tech and cybersecurity provisions. […]

security

U.S. Immigration and Customs Enforcement (ICE) has failed to consistently implement effective controls to restrict access to its network and information technology (IT) systems, according to a Department of Homeland Security (DHS) inspector general (IG) report from last week. […]

In an effort to act on the initiatives assigned to it in the Biden-Harris administration’s National Cybersecurity Strategy Implementation Plan (NCSIP), the Department of Justice (DoJ) announced today that it is “supercharging” its cybercrime division by merging it with the National Cryptocurrency Enforcement Team (NCET). […]

1 3 4 5 6 7 10

Categories