Cybersecurity

Pentagon Acquisition Chief Clarifies Temporary Extension for Implementing Chinese Equipment Ban

A recent memo allows vendors additional time to comply with Section 889 for certain low-risk goods, but the department is not seeking mass extensions, Ellen Lord told reporters.

Cybersecurity

IRS Granted Tens of Thousands of Devices Network Access Without Proper Authentication

Most devices accessing the Internal Revenue Service’s internal network using wireless connections and virtual private networks weren’t authenticated, according to an audit. 

Cybersecurity

Commerce Expands Restrictions on Huawei

The department's Bureau of Industry and Security added another 38 Huawei affiliates to its Entity List.

Ideas

Political Trolls Adapt, Create Material to Deceive and Confuse the Public

What they posted shifted over time.

Cybersecurity

Pentagon Wants Contractor Feedback on Rule Change that Bans Certain Chinese Firms

A provision of the 2019 National Defense Authorization Act banning agencies from contracting with companies doing business with Chinese firms like Huawei and ZTE now takes effect.

Artificial Intelligence

What the Rest of Government Should Watch When the Defense Authorization Bill Goes to Conference

Overhauling FedRAMP is just one of a list of ways the NDAA could affect civilian government tech.

Cybersecurity

CISA Finalized Directive on Vulnerability Disclosure Policies, Congressman Says 

The binding operational directive would create a legal path for ethical hackers to report website vulnerabilities to government agencies.

Cybersecurity

Using Automated Security Protocols Reduce the Cost of Data Breaches, Report Says

U.S. agencies lead in adopting security automation and orchestration, an expert said.  

Ideas

How to Update Agency Security Operations Centers

Evolving IT environments require officials to plan for the next-generation SOCs.

Cybersecurity

More Federal Funds Could Help Small Jurisdictions With Technical Tools to Secure Elections, Expert Says

The potential for disinformation to disrupt the process casts a shadow on significant improvements made since 2016.

Cybersecurity

NTIA to Host Proof-of-Concept Summit in Software Transparency Effort

More agencies are starting to ask suppliers for a software bill of materials in building a foundation for better, faster cybersecurity.

Cybersecurity

EU’s First Cyber Sanctions Target Russian, North Koreans, Chinese Attackers

The EU singled out perpetrators that attacked British hospitals, Ukrainian infrastructure, and the Pyeongchang Olympics.

Modernization

CISA Releases Final TIC 3 Guidance

The agency plans to finalize the first two use cases for the Trusted Internet Connection program later this summer.

Cybersecurity

CMMC Official Backs Light-touch Option for Continuous Monitoring of Defense Contractors’ Cybersecurity

The Pentagon’s certification program is looking for a way to keep tabs on companies during the three-year intervals between independent audits.

Cybersecurity

Was the Pentagon’s Blacklist of Chinese Companies Justified?

An independent study of the list found China uses its favored companies to wipe out competition and spread economic influence.

Ideas

Racing the Clock on Election Security

There are less than 100 days left until the presidential election.

Ideas

A Test and Trace Strategy for Reconnecting to Government Networks

Agencies shifted to large-scale work from home operations but little thought has been given to how to secure these networks when workers return to the office. 

Cybersecurity

The Liability Plan to Hold Software Producers Accountable for Cybersecurity 

A key congressman explains one of the Cyberspace Solarium Commission’s loftier recommendations.

Cybersecurity

DISA to Release Zero-Trust Model This Year

Vice Adm. Nancy Norton said the Defense Department must take a data-centric approach to protecting its networks.

Ideas

Combatting Mobile Threats in a New Reality

Security starts with users understanding what types of attacks they will encounter and how to manage them.