Security
Your Security Strategy – Are You At Risk?
$7 Million Dollars – According to a recent study by IBM, that’s the average cost of a security breach. The overall brand damage can be catastrophic, huge financial losses and customer abandonment. Companies like Target and …
Monthly FED Roundup – November 2016
DISA’s November News The annual forecast event to industry was held in Baltimore, MD this month. NIST’s November News NIST Draft Releases: Draft Special Publication (SP) 800-187, Guide to LTE Security for public comment Draft …
Are Your Partners Putting Your IP at Risk?
What if your intellectual property was at risk and you weren’t even aware? In today’s highly competitive and often vulnerable world, the companies we choose to partner with play a large role in the security …
Monthly FED Roundup – October 2016
DISA’s October News Those trying to establish, re-accredit, or re-certify their connections to the Defense Information Systems Network (DISN) will not have access to training provided by DISA’s Risk Adjudication and Connection Division. NIST’s October News …
Monthly FED Roundup – September 2016
DISA’s September News The DoD’s tool to detect and counter known cyber attacks, The Host Based Security System (HBSS), will be combined with other solutions to create a holistic approach to protecting our nation’s critical …
Common Criteria Updates: Protection Profiles & Re-Evaluations
Full Drive Encryption v2.0 Collaborative Protection Profiles (FDE cPP) Published The Full Drive Encryption (FDE) international Technical Community (iTC) has published version 2.0 of the FDE Encryption Engine (EE) and FDE Authorization Acquisition (AA) cPPs …
Monthly FED Roundup – August 2016
DISA’s August News DISA releases its Three-Tiered Approach to Cloud Computing DISA assists DoD cloud service providers with the Cloud Provisional Authorization (PA) process NIST’s August News A release was published on Post-Quantum Cryptography – …
Update On NIST’S Post-Quantum Cryptography Requirements
After a great discussion in Japan at the 7th Annual Post-Quantum Crypto Conference (PQCrypto 2016) back in February, NIST has taken the next step and announced they are seeking additional input and comments on their draft proposal for “Post-Quantum Cryptography: Proposed Requirements …
Is Our Critical Infrastructure At Risk?
Everyday we rely on technology to ensure continuation of our routine day to day activities. Access to clean drinkable water, open roadways free of congestion and chaos, power to brighten our homes and businesses, and oil …
Corsec Discusses Product Security At BlackHat
BlackHat USA is on the horizon and product security enhancement is a huge focal point this year. Modern-day cryptography provides a level of security that was previously unimagined, but how do we ensure that the precautionary …
Monthly FED Roundup – July 2016
DISA’s July News DISA receives $9.7M in funds to help the American Warfighter from DOD Rapid Innovation Fund Program DISA PAC has new leadership – Col. Joseph E. Delaney COL Andrew S. McClelland assumes command of …
FIPS Inside: Is It Right For Me?
Implementing a FIPS 140-2 validation into your product is a great way to strengthen your solution, enhance your brand, and secure your bottom line. When pursuing FIPS, you will be faced with difficult and often confusing …
Monthly FED Roundup – June 2016
DISA’s June News Lessons Learned from the First DOD Applications Migrated to the Commercial Cloud DISA Vice Director Jack Wilmer speaks on benefits of cloud solutions, including increased speed, agility, and cost savings Big Data …
NTIS Appoints Avi Bender as New Director
The Department of Commerce’s National Technical Information Services (NTIS) has announced a few new changes that may very well shake up the way the government uses and shares information. NTIS has announced a new joint …
Cybersecurity Acquisition Vehicle Coming
The General Services Administration (GSA) has announced their intentions to add another SIN to the GSA Schedule 70 – “Highly Adaptive Cybersecurity Services (HACS)”. The new SIN will be broken down into three categories for security services — proactive, …
DHS funds Cyber Defense
The Department of Homeland Security (DHS) has approved $1.8 billion in funding to prevent cybersecurity attacks and protect critical infrastructure. The House Appropriations Subcommittee approved the bill last week in order to support the National Protection and …
Event Recovery and PIV Updates from NIST
NIST has released draft Special Publication (SP) 800-184, titled “Guide for Cybersecurity Event Recovery” – This draft is open to public comment until July, 11th, 2016 “The purpose of this document is to support federal agencies …
Poor Project Management Could Derail Your Certification Efforts
CMVP has new guidelines which went live last month via the release of Implementation Guidance (G.16). This update will affect product vendors that have not taken proper precautions with project management related to their FIPS 140-2 validations. During …
DISA Cloud Migration
In 2013, the Defense Informations Systems Agency (DISA) developed an on-premise cloud solution for the DoD – milCloud 1.0. DISA continues to operate and manage this solution, but since its inception, cloud based services have …