CISA delivers new directive to agencies on securing cloud environments

The cyber agency’s SCuBA guidelines were developed after pilots with 13 agencies and continue a post-SolarWinds cloud strategy.

The post CISA delivers new directive to agencies on securing cloud environments appeared first on CyberScoop.

Continue reading CISA delivers new directive to agencies on securing cloud environments

CISA pitches updated cyber incident response plan as an ‘agile, actionable’ framework

The agency is seeking public comment on its much-anticipated draft update to 2016’s PPD-41.

The post CISA pitches updated cyber incident response plan as an ‘agile, actionable’ framework appeared first on CyberScoop.

Continue reading CISA pitches updated cyber incident response plan as an ‘agile, actionable’ framework

Treasury sanctions Chinese cyber company, employee for 2020 global firewall attack

The department’s Office of Foreign Assets Control said Guan Tianfeng used a zero-day exploit to deploy malware on 81,000 firewalls.

The post Treasury sanctions Chinese cyber company, employee for 2020 global firewall attack appeared first on CyberScoop.

Continue reading Treasury sanctions Chinese cyber company, employee for 2020 global firewall attack

Public and private sectors must partner to address generative AI’s interdependent energy and security requirements

Collaboration across government and industry is the only way to protect energy infrastructure in the generative AI age, a former ODNI official argues.

The post Public and private sectors must partner to address generative AI’s interdependent energy and security requirements appeared first on CyberScoop.

Continue reading Public and private sectors must partner to address generative AI’s interdependent energy and security requirements

Industry leaders on CISA’s secure-by-design pledge: A great program with some issues

House lawmakers and witnesses weighed in on secure-by-design incentives, subpar developers and the initiative’s future under new CISA leadership.

The post Industry leaders on CISA’s secure-by-design pledge: A great program with some issues appeared first on CyberScoop.

Continue reading Industry leaders on CISA’s secure-by-design pledge: A great program with some issues

Industry leaders on CISA’s secure-by-design pledge: A great program with some issues

House lawmakers and witnesses weighed in on secure-by-design incentives, subpar developers and the initiative’s future under new CISA leadership.

The post Industry leaders on CISA’s secure-by-design pledge: A great program with some issues appeared first on CyberScoop.

Continue reading Industry leaders on CISA’s secure-by-design pledge: A great program with some issues

Federal transportation officials aim to ‘bridge gaps’ in OT cybersecurity

In a post-Colonial Pipeline world, DOT and TSA leaders say they’re pursuing a cross-sector approach to protecting operational technology.

The post Federal transportation officials aim to ‘bridge gaps’ in OT cybersecurity appeared first on CyberScoop.

Continue reading Federal transportation officials aim to ‘bridge gaps’ in OT cybersecurity

Stronger cyber protections in health care targeted in new Senate bill

The bipartisan legislation from four senators is aimed at strengthening providers’ cyber defenses and protecting Americans’ health data.

The post Stronger cyber protections in health care targeted in new Senate bill appeared first on CyberScoop.

Continue reading Stronger cyber protections in health care targeted in new Senate bill

Vulnerability disclosure policy bill for federal contractors clears Senate panel

The Homeland Security and Governmental Affairs Committee on Wednesday also advanced legislation to strengthen the federal IT supply chain.

The post Vulnerability disclosure policy bill for federal contractors clears Senate panel appeared first on CyberScoop.

Continue reading Vulnerability disclosure policy bill for federal contractors clears Senate panel