Important details about CIRCIA ransomware reporting

In March 2022, the Biden Administration signed into law the Cyber Incident Reporting for Critical Infrastructure Act of 2022 (CIRCIA). This landmark legislation tasks the Cybersecurity and Infrastructure Security Agency (CISA) to develop and implement regulations requiring covered entities to report covered cyber incidents and ransomware payments. The CIRCIA incident reports are meant to enable […]

The post Important details about CIRCIA ransomware reporting appeared first on Security Intelligence.

Continue reading Important details about CIRCIA ransomware reporting

Obtaining security clearance: Hurdles and requirements

As security moves closer to the top of the operational priority list for private and public organizations, needing to obtain a security clearance for jobs is more commonplace. Security clearance is a prerequisite for a wide range of roles, especially those related to national security and defense. Obtaining that clearance, however, is far from simple. […]

The post Obtaining security clearance: Hurdles and requirements appeared first on Security Intelligence.

Continue reading Obtaining security clearance: Hurdles and requirements

Updated SBOM guidance: A new era for software transparency?

The cost of cyberattacks on software supply chains is a growing problem, with the average data breach costing $4.45 million in 2023. Since President Biden’s 2021 executive order, software bills of materials (SBOMs) have become a cornerstone in protecting supply chains. In December 2023, the National Security Agency (NSA) published new guidance to help organizations […]

The post Updated SBOM guidance: A new era for software transparency? appeared first on Security Intelligence.

Continue reading Updated SBOM guidance: A new era for software transparency?

Roundup: Federal action that shaped cybersecurity in 2023

As 2023 draws to a close, it’s time to look back on our top five federal cyber stories of the year: a compilation of pivotal moments and key developments that have significantly shaped the landscape of cybersecurity at the federal level. These stories highlight the challenges federal agencies faced in securing digital infrastructure in the […]

The post Roundup: Federal action that shaped cybersecurity in 2023 appeared first on Security Intelligence.

Continue reading Roundup: Federal action that shaped cybersecurity in 2023

How the White House sees the future of safeguarding AI

On October 30, 2023, President Biden issued an executive order (EO) to set new standards for the safety and security of Artificial Intelligence (AI). The move sets out the government’s intentions to regulate and further advance the growth of AI technology in the years ahead. Yet the question remains if it goes far enough to […]

The post How the White House sees the future of safeguarding AI appeared first on Security Intelligence.

Continue reading How the White House sees the future of safeguarding AI

Cyber experts applaud the new White House cybersecurity plan

First, there was a strategy. Now, there’s a plan. The Biden Administration recently released its plan for implementing the highly anticipated national cybersecurity strategy published in March. The new National Cybersecurity Strategy Implementation Plan (NCSIP) lays out specific deadlines and responsibilities for the White House’s vision for cybersecurity. The plan is being managed by the […]

The post Cyber experts applaud the new White House cybersecurity plan appeared first on Security Intelligence.

Continue reading Cyber experts applaud the new White House cybersecurity plan

How NIST Cybersecurity Framework 2.0 Tackles Risk Management

The NIST Cybersecurity Framework 2.0 (CSF) is moving into its final stages before its 2024 implementation. After the public discussion period to inform decisions for the framework closed in May, it’s time to learn more about what to expect from the changes to the guidelines. The updated CSF is being aligned with the Biden Administration’s […]

The post How NIST Cybersecurity Framework 2.0 Tackles Risk Management appeared first on Security Intelligence.

Continue reading How NIST Cybersecurity Framework 2.0 Tackles Risk Management

Why keep Cybercom and the NSA’s dual-hat arrangement?

The dual-hat arrangement, where one person leads both the National Security Agency (NSA) and U.S. Cyber Command (Cybercom), has been in place since Cybercom’s creation in 2010. What was once touted as temporary 13 years ago now seems established. Will the dual-hat arrangement continue? Should it? Experts have discussed the pros and cons of both […]

The post Why keep Cybercom and the NSA’s dual-hat arrangement? appeared first on Security Intelligence.

Continue reading Why keep Cybercom and the NSA’s dual-hat arrangement?

The Pentagon’s 2023 cyber strategy: What you need to know

In May 2023, the Department of Defense (DoD) released an unclassified fact sheet detailing its latest cyber strategy. This latest update is another indication of the Pentagon’s intent to combat threat actors, coming fast on the heels of the 2022 National Security Strategy and the 2022 National Defense Strategy. A more complete summary of the […]

The post The Pentagon’s 2023 cyber strategy: What you need to know appeared first on Security Intelligence.

Continue reading The Pentagon’s 2023 cyber strategy: What you need to know

Will Commercial Spyware Survive Biden’s Executive Order?

On March 27, 2023, reports surfaced that 50 U.S. government employees had been targeted by phone spyware overseas. On the day of that report, President Joe Biden signed an executive order to restrict federal agencies’ use of commercial spyware. The timing of the order was linked to this specific phone-targeting exploit. But spyware infiltration of […]

The post Will Commercial Spyware Survive Biden’s Executive Order? appeared first on Security Intelligence.

Continue reading Will Commercial Spyware Survive Biden’s Executive Order?