Cybersecurity

National Cyber Director Outlines Staffing Framework for 75-Person Office 

Chris Inglis is still trying to distinguish his role and responsibilities from other leading cyber officials.

Cybersecurity

Chris Inglis scopes out cyber turf

The newly installed National Cyber Director offered his take on the roles and responsibilities of his office, the Cybersecurity and Infrastructure Security Agency, the National Security Council and agency IT and security operations in responding to federal cyber incidents.

Digital Government

Education Department Updates Rules and Criminal Penalties for Accessing Agency Data

A new filing updates the department’s policies on who can access IT systems and data, as well as the fines and prison terms for unauthorized access or failing to secure data.

Cybersecurity

Report: Hackers Shift from Malware to Credential Hijacking

Cybersecurity firm CrowdStrike tracked record levels of cyber intrusion activity over the past year.

Cybersecurity

Pentagon preps JADC2 implementation plan

The Pentagon says it is weeks away from completing its implementation plan to achieve the Defense Department's goal of Joint All Domain Command and Control.

Cybersecurity

DHS makes awards in $3 billion financial systems software BPA

In the works since 2017, a plan to unify financial reporting across the highly federated Department of Homeland Security is getting closer to coming online.

Cybersecurity

Biden Administration Releases Draft Zero-Trust Guidance

The documents form a roadmap for agencies to deploy the cybersecurity architectures by the end of fiscal 2024.

Cybersecurity

White House hits the gas on zero trust

Newly released strategy and technical guidance documents covering zero trust and cloud security are open for comment as part of a federal push to improve federal government cybersecurity.

Cybersecurity

The Government's Software Transparency Journey Moves from Plan to Practice

Allan Friedman, the leader of a transparency initiative at the Commerce Department, is now at the Cybersecurity and Infrastructure Security Agency to realize the ultimate vision for a software bill of materials. 

Cybersecurity

CISA Urges Patching Atlassian Software Before Holiday Weekend

A vulnerability in collaboration software is undergoing “mass exploitation,” according to U.S. Cyber Command. 

Ideas

The Federal Government is Using 20th-Century Responses to a 21st-Century Problem

Policymakers have been working on implementing continuous monitoring of its human assets with access to top secret information for several years, and the government should do the same for its digital assets.

Emerging Tech

Air Force’s First Software Chief Steps Down

Leader of a Pentagon-wide DevSecOps initiative, Nicolas Chaillan cited lack of support from senior leadership as one reason for his  departure. 

Ideas

5 Steps to Protecting Federal Data Repositories in the Cloud

From ransomware to exfiltration, cybersecurity attacks are targeting sensitive government data. Here’s a reliable approach to protecting mission-critical information.

Cybersecurity

House panel passes 2022 NDAA with eye on cyber workforce

The House Armed Services Committee passed its version of the 2022 defense policy bill, 57-2.

Cybersecurity

Lawmaker to Propose Bill to Incentivize Industry Cybersecurity Cooperation Within Days

During congressional testimony, cybersecurity firm FireEye pushed for greater liability protections to be included in a draft cyber incident reporting bill.

Cybersecurity

House panel mulls mandatory disclosure bill

Industry reps at a hearing of the House Homeland Security Committee were supportive of new requirements to report hacks, but want more clarity on how to report and what constitutes a covered incident.

Cybersecurity

OMB Provides Tiered Instructions on Logging Requirements in Executive Order

A memo for agencies assigns criticality levels to monitoring activities along various categories and sets deadlines for compliance. 

Digital Government

CISA Opens Sign Up for the President’s Cup Cybersecurity Competition

Federal employees and service members can put their cyber chops to the test.