Cybersecurity

House lawmaker stumps for 5-year term for CISA's director

Rep. Lauren Underwood (D-Ill.) says House lawmakers will continue to push to enshrine in law 5-year terms for CISA directors, despite resistance in the Senate.

Cybersecurity

DHS panel says 2020 vote was 'most secure in American history'

The statement directly contradicts the most recent in a raft of conspiracy theories put forth by President Donald Trump stating that a voting machine vendor secretly changed votes.

Cybersecurity

Election Day is over, but threats to voting systems remain

Cyber threats to election systems remain a concern for the Department of Homeland Security well into December throughout the vote counting process.

Cybersecurity

National Guard taking expanded election support role in 2020

The National Guard has increased its election support duties, especially when it comes to cyber, since 2018. This year guardsmen will be on the keyboards and, in some areas, at the polls.

Cybersecurity

Solarium Commission looks to boot China from the tech supply chain

The Cyberspace Solarium Commission is looking to shore up security in the information and communications technology (ICT) sector by reducing dependency on suppliers from rival powers, especially China.

Cybersecurity

Group warns of gaps in election infrastructure

The security of voting infrastructure has come a long way since 2016, but it still depends on the state and local governments maintaining it, said a digital rights and election technology expert.

Cybersecurity

CISA confident on election cybersecurity

The Cybersecurity and Infrastructure Security Agency's efforts to help state and local governments secure their election critical infrastructure are in an intense home stretch for 2020, according to the agency's top risk manager.

Cybersecurity

PIV security frays under the crush of telework

Adversaries are adapting to the shifting identity authentication gaps on federal and commercial networks created by the remote work environment, according to federal security experts.

Cybersecurity

CISA orders agencies to patch dire Window flaw

The Cybersecurity and Infrastructure Security Agency alerted federal agencies of an authentication flaw in Microsoft server software in need of an immediate fix.

Cybersecurity

Shared services poised for adoption

Quality Service Management Offices shared service offerings move closer to reality for federal agencies.

Cybersecurity

CISA, White House release vulnerability disclosure policies

The Office of Management and Budget and the Cybersecurity and Infrastructure Security Agency have released a memorandum and Binding Operational Directive guiding federal agencies on how to set up their vulnerability research and disclosure programs.

Cybersecurity

CISA bug bounty directive awaits White House blessing

A draft policy from the Cybersecurity and Information Security Agency instructing agencies to create vulnerability disclosure programs to allow third-party bug hunters to flag security vulnerabilities in federal systems is all-but-completed, sources say.

Cybersecurity

Voice phishing attacks on the rise, CISA, FBI warn

An industry alert warns of an increasingly sophisticated social engineering campaign since July that is targeting VPNs and teleworkers.

Cybersecurity

CISA infrastructure chief Brian Harrell resigns

The assistant director, charged with helping to protect critical infrastructure from physical and cyber threats, will be returning to the private sector, the agency confirmed.

Cybersecurity

With the clock ticking, a House committee looks to election security

Election readiness, the cybersecurity fallout from COVID-induced telework and network monitoring and will be key areas of focus for House Homeland Security Democrats this year.

Cybersecurity

GAO: DHS acting secretary, top deputy were appointed illegally

Top acting officials at DHS were appointed without regard for laws in place governing agency succession, according to a Government Accountability Office legal opinion.

Digital Government

CISA's 'next frontier' around cyber data analytics

An official said the agency wants to spend the next five years quantifying the unquantifiable around collective cyber risk.

Cybersecurity

CISA chief wants younger, more experienced hackers in federal government

Professional experience and credentials don't have the same importance in cybersecurity, where teenagers can hack governments and multi-billion-dollar corporations.

Cybersecurity

CISA updates internet connection policies

Many of the changes to the core Trusted Internet Connection policies were in response to public feedback seeking new tech and additional architectural and security concepts.

Cybersecurity

NSA and CISA push guidance for BootHole fix

Federal agencies are moving to put out custom guidance for dealing with a widespread bootloader bug that can be complicated to patch due to software and firmware interdependencies.