Cybersecurity

Pentagon Wants Contractor Feedback on Rule Change that Bans Certain Chinese Firms

A provision of the 2019 National Defense Authorization Act banning agencies from contracting with companies doing business with Chinese firms like Huawei and ZTE now takes effect.

Cybersecurity

CISA Finalized Directive on Vulnerability Disclosure Policies, Congressman Says 

The binding operational directive would create a legal path for ethical hackers to report website vulnerabilities to government agencies.

Ideas

How to Update Agency Security Operations Centers

Evolving IT environments require officials to plan for the next-generation SOCs.

Cybersecurity

More Federal Funds Could Help Small Jurisdictions With Technical Tools to Secure Elections, Expert Says

The potential for disinformation to disrupt the process casts a shadow on significant improvements made since 2016.

Cybersecurity

NTIA to Host Proof-of-Concept Summit in Software Transparency Effort

More agencies are starting to ask suppliers for a software bill of materials in building a foundation for better, faster cybersecurity.

Cybersecurity

EU’s First Cyber Sanctions Target Russian, North Koreans, Chinese Attackers

The EU singled out perpetrators that attacked British hospitals, Ukrainian infrastructure, and the Pyeongchang Olympics.

Modernization

CISA Releases Final TIC 3 Guidance

The agency plans to finalize the first two use cases for the Trusted Internet Connection program later this summer.

Cybersecurity

CMMC Official Backs Light-touch Option for Continuous Monitoring of Defense Contractors’ Cybersecurity

The Pentagon’s certification program is looking for a way to keep tabs on companies during the three-year intervals between independent audits.

Cybersecurity

Was the Pentagon’s Blacklist of Chinese Companies Justified?

An independent study of the list found China uses its favored companies to wipe out competition and spread economic influence.

Ideas

Racing the Clock on Election Security

There are less than 100 days left until the presidential election.

Ideas

A Test and Trace Strategy for Reconnecting to Government Networks

Agencies shifted to large-scale work from home operations but little thought has been given to how to secure these networks when workers return to the office. 

Cybersecurity

The Liability Plan to Hold Software Producers Accountable for Cybersecurity 

A key congressman explains one of the Cyberspace Solarium Commission’s loftier recommendations.

Cybersecurity

DISA to Release Zero-Trust Model This Year

Vice Adm. Nancy Norton said the Defense Department must take a data-centric approach to protecting its networks.

Ideas

Combatting Mobile Threats in a New Reality

Security starts with users understanding what types of attacks they will encounter and how to manage them.

Cybersecurity

White House Cites Intel Sharing Efforts in NDAA Veto Threat

The related provisions would implement major recommendations from the Cyberspace Solarium Commission. 

Cybersecurity

Two Chinese Nationals Indicted for Stealing Trade Secrets, Coronavirus Research

Federal prosecutors allege the pair hacked into corporations and research institutions on behalf of the Chinese government.

Ideas

Cyber Hygiene is the Key to CMMC Compliance Preparedness

The challenge is that many contractors don’t have full visibility into their organization’s network and security.