Cybersecurity
'Evolving' CISA program helped agencies quickly respond to recent cyber incidents
CISA’s Continuous Diagnostics and Mitigation program uses close collaboration with federal agencies to identify and respond to cyber threats, including last month’s MOVEit breach.
Cybersecurity
CISA is growing up, CIO says
CISA's Bob Costello talks top priorities, challenges and growing pains and progress for a CIO office in a relatively young federal agency.
Acquisition
CISA teases industry day for operational strategy support
The cybersecurity agency is planning to field a multiple award schedule contract for consultant services to help shape its operational strategy.
Digital Government
White House looks to shore up public trust in government websites
Federal agencies need to use 'memorable' and succinct domain names for government websites, per guidance issued on Wednesday.
Cybersecurity
Hackers used legit remote monitoring software to hack agency networks
Guidance from the National Security Agency and the Cybersecurity and Infrastructure Security Agency describe a phishing attack on a federal employee that used fake help desk domains to gain access to at least two federal civilian executive branch networks.
Cybersecurity
CDM team helped define cyber directives
Governmentwide cyber hygiene orders are increasingly taking into account the capabilities of Continuous Diagnostics and Mitigation tools.
Cybersecurity
CISA sets voluntary cyber performance targets for critical infrastructure
A new set of documents and resources from the agency is designed to help critical infrastructure operators manage the basics of cybersecurity.
Cybersecurity
CISA orders agencies to conduct weekly scans of networks and digital assets
The Cybersecurity and Infrastructure Security Agency is taking a major step towards increasing its visibility into the risks facing federal networks.
Cybersecurity
CISA launches DNS resolution shared service
The nation's cyber defense agency is launching a new shared service offering for all federal civilian agencies to bolster governmentwide cybersecurity and help thwart emerging internet traffic threats.
Cybersecurity
CISA's cyber info sharing program didn't always deliver, watchdog says
The Cybersecurity and Infrastructure Security Agency did not always provide more than 300 participants of a public-private cyber threat partnership with actionable information to address potential vulnerabilities, according to an oversight report.
Cybersecurity
Cyber Safety Review Board staffs up
The chair of the Cyber Safety Review Board has ambitious goals for the organization following its public review of the Log4j software vulnerability.
Cybersecurity
Former CISA chief wants a new, cross-cutting new agency to lead federal cyber
Chris Krebs wants to establish a new agency to focus on privacy, data and cyber risks facing the U.S., or to pull the Cybersecurity and Infrastructure Security Agency from under the Department of Homeland Security.
Cybersecurity
CISA’s first international office set to open later this month in London
CISA’s planned international attaché office will help promote the agency’s first-ever global strategy announced last year.
Cybersecurity
CISA expands Joint Cyber Defense Collaborative
The JCDC is gaining over a dozen new experts focused on enhancing the cybersecurity posture for industrial control systems and operational technology as CISA ramps up security efforts around critical infrastructure.
Modernization
CISA releases finalized IPv6 guidance for agencies
The network guidance document is years in the making.
Cybersecurity
NSA to get binding operational directive authority under new cyber policy
A new memo signed by President Biden outlines how the May 2021 executive order on cybersecurity applies to national security systems.
Digital Government
Biden's CX order puts new momentum behind longtime efforts, leaders say
Officials at an ACT-IAC event explained how a recent White House executive order on customer experience is helping to unify disparate CX efforts across government.
Cybersecurity
FTC warns of legal risks of failing on Log4j mitigation
The Federal Trade Commission issued a warning this week urging companies to take "reasonable steps" to mitigate known software vulnerabilities or face potential legal consequences, recalling the $700 million settlement Equifax paid for a major breach in 2017.
Cybersecurity
The legacy of the Cyberspace Solarium Commission
The Cyberspace Solarium Commission is officially sunsetting after more than two years, dozens of recommendations and a slew of legislative changes. But since there’s more to be done, the panel is rebooting its efforts as a non-profit.
Cybersecurity