Cybersecurity

CISA Recommends Immediate Action for Microsoft Exchange Online Users

The recommendation is in line with Executive Order 14028, which requires federal agencies to implement multi factor authentication.

Cybersecurity

Congresswoman Promotes Cyber Insurance Amid Shifting Policy Landscape

The jury is still out on how using insurance policies to pay ransoms and re-establish systems after a cyberattack affects critical infrastructure organizations’ individual and collective resilience.

Cybersecurity

Allied Cybersecurity Agencies Advise Against Disabling Popular Tool for Cyberattackers

The Microsoft program—PowerShell—has granted malicious actors in major hacks remote command and control ability over victims, but, by the same token, it can improve cybersecurity management across an enterprise.

Cybersecurity

GAO: Potential Federal Cyber Insurance Program Should Avoid Moral Hazard

The government watchdog highlighted the need for specific security requirements in recommending other relevant agencies explore the possibility of providing federal assistance to private sector entities following a catastrophic event.

Cybersecurity

CISA Seeks Public Feedback on TIC 3.0 Cloud Use Case

Trusted Internet Connections use cases provide guidance on secure implementations of specific platforms, services and environments.

Cybersecurity

CISA Plans to Hire Chief People Officer to Boost Cyber Workforce

Agency advisors are set to vote on a host of draft recommendations which include reviewing the security clearance process for inefficiency.

Emerging Tech

TMF Announces $95 Million in New Funding Focused on Security and Networks

The Technology Modernization Fund is announcing a new set of investments to help three agencies meet White House cybersecurity objectives.

Digital Government

DHS is Making ‘Significant Reforms’ to the Employee Discipline Process

This comes after an outside oversight group alleged wrongdoing in the inspector general office, which the IG contests.

Cybersecurity

National Cyber Director: Mandates Coming to Secure Commercial Information Technology

An event hosted by the leading trade association for major tech vendors highlighted what has so far been an impasse between government and industry on cybersecurity policy.

Cybersecurity

China Compromised Telecom Firms Using Known Vulnerabilities, Federal Agencies Warn

The alert comes as the U.S. continues negotiations with countries like Russia and China on what constitutes “cybercrime” at the United Nations.

Cybersecurity

CISA is Seeking Cybersecurity Innovation Fellows

The Homeland Security Department’s cyber arm is looking for private sector talent to join the agency for up to four months.

Cybersecurity

U.S. National Guard’s Cyber Training Emphasizes Social Media, Supply Chain Protection

Ahead of the annual Cyber Shield exercise, military leaders will train National Guard and other military members to fight disinformation and protect critical infrastructure.

Digital Government

FEMA Region Seeks Data Scientist to Improve Equity in Disaster Aid

A region of the Federal Emergency Management Agency needs help sifting through messy federal data as part of its ongoing equity efforts.

Cybersecurity

CISA Solicits Feedback on Finer Points of Coming Software Transparency Requirement

The agency has identified four topics—including considerations for cloud and online applications—it wants to hear more about from stakeholders. 

Digital Government

After 7 Years, DHS's New Cyber Talent System Boasts Just One Hire

Officials at the Department of Homeland Security say that change management efforts will help scale the Cybersecurity Talent Management System

Cybersecurity

CISA, DOD Report Gaps for Agencies Assessing 5G Security Risks

Agency officials identified a lack of guiding standards for determining and mitigating risk from certain implementations of the technology and advised agencies to proceed with caution, employing penetration tests accordingly.

Cybersecurity

CISA Orders Agencies to Mitigate VMWare Vulnerabilities Under Deadline

Advanced adversaries appear to be exploiting the vulnerabilities to get around multifactor authentication.

Cybersecurity

Agencies Showcase Federal Cyber Progress, Outline Future Threats

Witnesses from CISA, NIST, and the GSA spoke before a House Homeland subcommittee on their current efforts to bolster the nation’s cyber defenses.