<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>CTOvision.com &#187; DHS</title>
	<atom:link href="http://ctovision.com/tag/dhs/feed/" rel="self" type="application/rss+xml" />
	<link>http://ctovision.com</link>
	<description>News, analysis and context on enterprise technology for the CTO</description>
	<lastBuildDate>Thu, 09 Feb 2012 21:03:41 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
		<item>
		<title>Crying &#8220;Cyber Attack&#8221; in Illinois</title>
		<link>http://ctovision.com/2011/11/crying-cyber-attack-in-illinois/</link>
		<comments>http://ctovision.com/2011/11/crying-cyber-attack-in-illinois/#comments</comments>
		<pubDate>Tue, 29 Nov 2011 20:52:49 +0000</pubDate>
		<dc:creator>AlexOlesker</dc:creator>
				<category><![CDATA[CTO]]></category>
		<category><![CDATA[Cyber Security]]></category>
		<category><![CDATA[Cyberwar]]></category>
		<category><![CDATA[Cyberwarfare]]></category>
		<category><![CDATA[DHS]]></category>
		<category><![CDATA[Federal Bureau of Investigation]]></category>
		<category><![CDATA[Illinois]]></category>
		<category><![CDATA[Pump]]></category>
		<category><![CDATA[Russia]]></category>
		<category><![CDATA[SCADA]]></category>
		<category><![CDATA[Springfield Illinois]]></category>
		<category><![CDATA[United States]]></category>
		<category><![CDATA[wakeupcall]]></category>

		<guid isPermaLink="false">http://ctovision.com/?p=14686</guid>
		<description><![CDATA[Tweet Earlier this month, a pump burned out mysteriously at a water plant in Springfield, Illinois. Log data traced the problem back several months to a command from an IP address in Russia that forced the pump to turn on and off repeatedly until it broke. When this news was leaked to the media from [...]]]></description>
			<content:encoded><![CDATA[<div class="bottomcontainerBox" style="border:1px solid #808080;background-color:#F0F4F9;">
			<div style="float:left; width:85px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fctovision.com%2F2011%2F11%2Fcrying-cyber-attack-in-illinois%2F&amp;layout=button_count&amp;show_faces=false&amp;width=85&amp;action=like&amp;font=verdana&amp;colorscheme=light&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width=85px; height:21px;" allowTransparency="true"></iframe></div>
			<div style="float:left; width:80px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<g:plusone size="medium" href="http://ctovision.com/2011/11/crying-cyber-attack-in-illinois/"></g:plusone>
			</div>
			<div style="float:left; width:95px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<a href="http://twitter.com/share" class="twitter-share-button" data-url="http://ctovision.com/2011/11/crying-cyber-attack-in-illinois/"  data-text="Crying &#8220;Cyber Attack&#8221; in Illinois" data-count="horizontal" data-via="ctovision">Tweet</a>
			</div><div style="float:left; width:105px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;"><script type="in/share" data-url="http://ctovision.com/2011/11/crying-cyber-attack-in-illinois/" data-counter="right"></script></div>			
			<div style="float:left; width:85px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;"><script src="http://www.stumbleupon.com/hostedbadge.php?s=1&amp;r=http://ctovision.com/2011/11/crying-cyber-attack-in-illinois/"></script></div>			
			</div><div style="clear:both"></div><div style="padding-bottom:4px;"></div><p><a href="http://ctovision.com/wp-content/uploads/2011/11/water-plant.jpg"><img class="alignleft size-full wp-image-14687" style="margin: 4px;" title="water plant" src="http://ctovision.com/wp-content/uploads/2011/11/water-plant.jpg" alt="" width="300" height="168" /></a>Earlier this month, a pump burned out mysteriously at a water plant in Springfield, Illinois. Log data traced the problem back several months to a command from an IP address in Russia that forced the pump to turn on and off repeatedly until it broke. When this news was leaked to the media from a cyber expert convinced that we were under attack by Russian hackers, a media frenzy ensued that made it all the way to Congress. On MSNBC, Rep. Jim Langevin, the  founder of the Congressional Cybersecurity Caucus, lamented our state of preparedness and called the attack, allegedly the first against the United States with a kinetic effect, yet another &#8220;wakeup call.&#8221; The weakness of American supervisory control and data acquisition (SCADA) systems was referenced by an anonymous hacker on PasteBin, which some in the press believed to be a confession. The worst fears of cybersecurity experts had been confirmed, foreign hackers could cause damage to US critical infrastructure through the internet.</p>
<p>Except that wasn&#8217;t what happened in Illinois, which highlights the difficulty of forensics and attribution in cyberspace. The DHS and FBI, who were investigating the alleged attacks, denied from the beginning that there was any proof of intrusion on the SCADA logs and recently concluded the investigation, releasing the results. The failure was due to a faulty command inputted by a contractor several months ago who accessed the system remotely while travelling through Russia on personal business. Over time, his mistake caused greater and greater errors until, several months later, the pump failed. While, as the source who initially leaked the suspicious information noted to defend his claims, there is no proof that the water plant wasn&#8217;t hacked, it seems very unlikely given corroborating evidence of the mistake.</p>
<p>The overreaction and debunking of this attack hurts both the cybersecurity field and the cybersecurity of the nation, as in this case those for and against the claims were both right and wrong. As this incident illustrates, when attacks come in the form of data and commands rather than bombs and bullets, it&#8217;s difficult to tell an enemy action from friendly fire, another side of the attribution problem which is just as important as tracking criminals through cyberspace. And, given the prevalence of cyber yellow journalism and cries of &#8220;cyberwar&#8221; and &#8220;cyber Pear harbors&#8221;, overreactions like this hurt the credibility of cybersecurity researchers and solution providers. This is problematic as, at the other end of the spectrum, the constant need for &#8220;wakeup calls&#8221; shows that we are still lagging behind the threat. In this case, though no attack took place, the SCADA failure proves that one can easily be implemented. All it took was a command from a contractor&#8217;s computer on his or her own time to damage and shut down critical infrastructure in the United States. That means that a malicious actor can get unauthorized access to SCADA systems abroad to produce the same effects, perhaps by stealing a contractor&#8217;s credentials through a fishing attack. And, it would be difficult to tell a mistake from a malicious insider or a hijacked account.</p>
<p>Though this alleged attack turned out to be a false alarm, it still serves as a &#8220;wakeup call,&#8221; one that we&#8217;ve gotten many times before. Thus, rather than dismissing the kinetic effects of cyber because this attack never happened, we need to try out best to make sure that it never will.</p>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><img class="zemanta-pixie-img" style="border: none; float: right;" src="http://img.zemanta.com/pixy.gif?x-id=d64d6326-d751-4e08-829d-2a77a15d5f1e" alt="" /></div>

<div class="nr_clear"></div>	
	<div id="nrelate_related_1" class="nrelate nrelate_related nrelate_default nr_100"><h3 class="nr_title">You may also like -</h3><div class="nr_inner"><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/12/the-cybersecurity-wake-up-call-and-the-snooze-button/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/13cc48792dc9a5487e7f27e09d3a4451_thumb_GarfieldCTOVision.png" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">The Cybersecurity "Wake Up Call" and the Snooze Button</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/11/crying-%e2%80%9ccyber-attack%e2%80%9d-in-illinois/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/wave-open-sea.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Crying “Cyber Attack” in Illinois</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/11/il-water-system-pump-failure-not-cyber-attack/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/spiral-seashells-painted-gold.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">IL water system pump failure not cyber attack</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/12/the-cybersecurity-%e2%80%9cwake-up-call%e2%80%9d-and-the-snooze-button/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/sunrise-desktop.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">The Cybersecurity “Wake Up Call” and the Snooze Button</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/11/apparent-cyberattack-destroys-pump-at-ill-water-utility/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/variety-of-short-grass-on-field.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Apparent cyberattack destroys pump at Ill. water utility</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/12/america%e2%80%99s-critical-infrastructure-security-response-system-is-broken/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/background-blue-ad-white-strips.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">America’s critical infrastructure security response system is broken</span><span class="nr_source">CrucialPointLLC</span></span></a><div style="clear:both;"></div></div> <script type="text/javascript"> nRelate.getNrelatePosts("http://api.nrelate.com/rcw_wp/0.50.3/nr_load.php?tag=nrelate_related&keywords=Crying+%26%238220%3BCyber+Attack%26%238221%3B+in+Illinois&domain=ctovision.com&url=http%3A%2F%2Fctovision.com%2F2011%2F11%2Fcrying-cyber-attack-in-illinois%2F&nr_ad_number=0&nr_div_number=1");</script></div>
	<!--[if IE 6]>
		<script type="text/javascript">jQuery('.nrelate_default').removeClass('nrelate_default');</script>
	<![endif]-->
	<script type="text/javascript">nRelate.domain = "ctovision.com";nRelate.fixHeight("nrelate_related_1");nRelate.adAnimation("nrelate_related_1");nRelate.tracking("rc");</script>
	
<div class="nr_clear"></div>]]></content:encoded>
			<wfw:commentRss>http://ctovision.com/2011/11/crying-cyber-attack-in-illinois/feed/</wfw:commentRss>
		<slash:comments>6</slash:comments>
		</item>
		<item>
		<title>DHS CIO discusses 12 Cloud Services</title>
		<link>http://ctovision.com/2011/10/dhs-cio-discusses-12-cloud-services/</link>
		<comments>http://ctovision.com/2011/10/dhs-cio-discusses-12-cloud-services/#comments</comments>
		<pubDate>Sun, 30 Oct 2011 18:10:50 +0000</pubDate>
		<dc:creator>RyanKamauff</dc:creator>
				<category><![CDATA[Big Data]]></category>
		<category><![CDATA[Cloud Computing]]></category>
		<category><![CDATA[CTO]]></category>
		<category><![CDATA[Cyber Security]]></category>
		<category><![CDATA[DHS]]></category>
		<category><![CDATA[Federal Emergency Management Agency]]></category>
		<category><![CDATA[Management as a Service]]></category>
		<category><![CDATA[Microsoft Office Project Server]]></category>
		<category><![CDATA[Microsoft SharePoint]]></category>
		<category><![CDATA[United States Citizenship and Immigration Services]]></category>
		<category><![CDATA[United States Department of Homeland Security]]></category>

		<guid isPermaLink="false">http://ctovision.com/?p=14002</guid>
		<description><![CDATA[Tweet Richard Spires, CIO of DHS, provided written testimony on 12 services that they have moved to the cloud. The first service often moved to the cloud is email, which DHS has started by putting FEMA&#8217;s email to the cloud. They have 8 private clouds already set up, and 3 services in the public clouds. [...]]]></description>
			<content:encoded><![CDATA[<div class="bottomcontainerBox" style="border:1px solid #808080;background-color:#F0F4F9;">
			<div style="float:left; width:85px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fctovision.com%2F2011%2F10%2Fdhs-cio-discusses-12-cloud-services%2F&amp;layout=button_count&amp;show_faces=false&amp;width=85&amp;action=like&amp;font=verdana&amp;colorscheme=light&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width=85px; height:21px;" allowTransparency="true"></iframe></div>
			<div style="float:left; width:80px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<g:plusone size="medium" href="http://ctovision.com/2011/10/dhs-cio-discusses-12-cloud-services/"></g:plusone>
			</div>
			<div style="float:left; width:95px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<a href="http://twitter.com/share" class="twitter-share-button" data-url="http://ctovision.com/2011/10/dhs-cio-discusses-12-cloud-services/"  data-text="DHS CIO discusses 12 Cloud Services" data-count="horizontal" data-via="ctovision">Tweet</a>
			</div><div style="float:left; width:105px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;"><script type="in/share" data-url="http://ctovision.com/2011/10/dhs-cio-discusses-12-cloud-services/" data-counter="right"></script></div>			
			<div style="float:left; width:85px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;"><script src="http://www.stumbleupon.com/hostedbadge.php?s=1&amp;r=http://ctovision.com/2011/10/dhs-cio-discusses-12-cloud-services/"></script></div>			
			</div><div style="clear:both"></div><div style="padding-bottom:4px;"></div><p>Richard Spires, CIO of DHS, provided written testimony on 12 services that they have moved to the cloud. The first service often moved to the cloud is email, which DHS has started by putting FEMA&#8217;s email to the cloud. They have 8 private clouds already set up, and 3 services in the public clouds.</p>
<p>The private cloud services are below:</p>
<ul>
<li>SharePoint as a Service &#8211; &#8220;We are currently migrating Headquarters and United States Citizenship and Immigration Services (USCIS) users to our secure collaboration program.&#8221;</li>
<li>Development and Test as a Service &#8211; &#8220;Establishing development and test offerings in the cloud will have tremendous positive impact on DHS. Currently, DHS has multiple development environments spread across the department and industry locations.&#8221;</li>
<li>Infrastructure as a Service &#8211; &#8220;Complementary to the Development and Test as a Service offering is our Infrastructure as a Service offering to provide virtualized production services, including operating systems, network, and storage, that is consistent with new industry standards.&#8221;</li>
<li>Workplace as a Service &#8211; &#8220;We are working closely with the Department’s other line-of-business chiefs to modernize how DHS employees work. This offering will provide robust virtual desktop, remote access, and other mobile services over the next 24 months.&#8221;</li>
<li>Project Server as a Service &#8211; &#8220;This offering will provide a robust project management platform to publish project schedules that can more easily be shared across offices, divisions, and components.&#8221;</li>
<li>Authentication as a Service &#8211; &#8220;This service eliminated the need for duplicative authentication services, while significantly enhancing the department&#8217;s information sharing needs.&#8221;</li>
<li>Case and Relationship Management as a Service &#8211; &#8220;This offering, leveraging Enterprise License Agreements (ELAs), will better enable CRM and case workflows across DHS.&#8221;</li>
<li>Business Intelligence as a Service &#8211; &#8220;The department will leverage this current offering to enhance transparency into departmental programming and expenditures. By the end of FY12, we expect the department will have visibility to information sources across the investment lifecycle, including IT, financial, human resources, asset management, and other information sources.&#8221;</li>
</ul>
<div>The public cloud services are the following:</div>
<div>
<ul>
<li>Identity Proofing as a Service &#8211; &#8220;We successfully deployed an innovative identity proofing service in the cloud in March 2011.&#8221;</li>
<li>Enterprise Content Delivery as a Service &#8211; &#8220;For the past several years, DHS has used cloud service for Enterprise Content Delivery (ECD) to ensure our public-facing Web sites are always available.&#8221;</li>
<li>Web Content Management as a Service &#8211; &#8220;Within this offering, the Department will leverage open source software hosted in the public cloud and consolidate all public facing DHS Web sites.&#8221;</li>
</ul>
<div>DHS is also hard at work securing both public and private clouds. They are using continuous monitoring and migrating to common controls at DHS data centers. This offers them great visibility over their clouds, ensuring always-on services. DHS is realizing economies of scale through common controls and reducing workload on individual system owners.</div>
<div>DHS is applying FedRAMP controls to public clouds, attempting to cross the &#8220;visibility gap&#8221; that exists between provider and customer. A commitment to the cloud from DHS offers insight into how federal agencies are moving, and the true value of the cloud in the government. While only a few services are in the public cloud, greater FedRAMP controls and advancement will push more services toward public clouds. Public clouds offer greater maneuverability, cost savings and supplier flexibility than private clouds. They require fewer resources, yet come at the risk of visibility.</div>
<div>Check out the entire Richard Spires testimony <a href="http://homeland.house.gov/sites/homeland.house.gov/files/Testimony%20Spires%20%282%29.pdf">here</a>.</div>
</div>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><img class="zemanta-pixie-img" style="border: none; float: right;" src="http://img.zemanta.com/pixy.gif?x-id=f105b16f-4edd-43ed-ba0d-5eee095decf3" alt="" /></div>

<div class="nr_clear"></div>	
	<div id="nrelate_related_2" class="nrelate nrelate_related nrelate_default nr_100"><h3 class="nr_title">You may also like -</h3><div class="nr_inner"><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/04/the-cloud-and-cybersecurity/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/700c8717c268633701cd882a4a5a9058_thumb_CloudSecurity_1.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">The Cloud and Cybersecurity</span></span></a><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/09/fedcyber-com-cybersecurity-summit-on-wednesday-september-28/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/22f67ff1bc473d1363ba44d476bf8aab_thumb_FedCyber-Logo41.png" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">FedCyber.com Cybersecurity Summit on Wednesday, September 28</span></span></a><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/05/storm-clouds-on-the-horizon/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/f3e82658621122fb49e1a6d741637b2e_thumb_storm-clouds.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Storm Clouds on the Horizon?</span></span></a><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2010/05/live-from-the-gov-2-0-expo-finding-value-in-the-cloud/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/2ddf28ca4ed5c59ea07d8b189219baea_thumb_heading_department.gif" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Live from the Gov 2.0 Expo - Finding Value in the Cloud</span></span></a><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/11/myths-and-realities-of-cloud-security/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/1566bfe294df4cdcb855d28ec73cb69a_thumb_protect-e1319104550402.jpeg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Myths and realities of cloud security</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/10/dhs-cio-describes-%e2%80%98aggressive-stance%e2%80%99-on-cloud-migrations/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/mountains-dust.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">DHS CIO describes ‘aggressive stance’ on cloud migrations</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2012/01/what-you-need-to-know-about-fedramp/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/great-red-wood-circle-background.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">What You Need To Know About FedRAMP</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/11/is-the-healthcare-industry-on-life-support-without-the-cloud/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/sunset-free-wallpaper.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Is the Healthcare Industry on Life Support Without the Cloud?</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/11/agencies-using-cloud-to-de-clutter-it-systems/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/background-red.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Agencies using cloud to de-clutter IT systems</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/09/homeland-security-to-move-websites-to-cloud/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/background-blue-ad-white-strips.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Homeland Security To Move Websites To Cloud</span><span class="nr_source">CrucialPointLLC</span></span></a><div style="clear:both;"></div></div> <script type="text/javascript"> nRelate.getNrelatePosts("http://api.nrelate.com/rcw_wp/0.50.3/nr_load.php?tag=nrelate_related&keywords=DHS+CIO+discusses+12+Cloud+Services&domain=ctovision.com&url=http%3A%2F%2Fctovision.com%2F2011%2F10%2Fdhs-cio-discusses-12-cloud-services%2F&nr_ad_number=0&nr_div_number=2");</script></div>
	<!--[if IE 6]>
		<script type="text/javascript">jQuery('.nrelate_default').removeClass('nrelate_default');</script>
	<![endif]-->
	<script type="text/javascript">nRelate.fixHeight("nrelate_related_2");nRelate.adAnimation("nrelate_related_2");nRelate.tracking("rc");</script>
	
<div class="nr_clear"></div>]]></content:encoded>
			<wfw:commentRss>http://ctovision.com/2011/10/dhs-cio-discusses-12-cloud-services/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Interested in Cyber Security? Read (and support) the new Cybersecurity Legislative Proposal</title>
		<link>http://ctovision.com/2011/05/interested-in-cyber-security-read-and-support-the-new-cybersecurity-legislative-proposal/</link>
		<comments>http://ctovision.com/2011/05/interested-in-cyber-security-read-and-support-the-new-cybersecurity-legislative-proposal/#comments</comments>
		<pubDate>Fri, 13 May 2011 03:26:52 +0000</pubDate>
		<dc:creator>BobGourley</dc:creator>
				<category><![CDATA[Cyber Security]]></category>
		<category><![CDATA[Computer security]]></category>
		<category><![CDATA[Cyberspace]]></category>
		<category><![CDATA[DHS]]></category>
		<category><![CDATA[Howard Schmidt]]></category>
		<category><![CDATA[Policy Review]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[United States]]></category>
		<category><![CDATA[White House]]></category>

		<guid isPermaLink="false">http://ctovision.com/?p=12635</guid>
		<description><![CDATA[Tweet On 12 May 2011 the Obama Administration unveiled its cybersecurity legislative proposal. The entire proposal is available for your review at this link: cybersecurity legislative proposal. But I most strongly recommend you read the context provided by the government&#8217;s Cybersecurity Coordinator and Special Assistant to the President Howard Schmidt first. Howard provided a clear [...]]]></description>
			<content:encoded><![CDATA[<div class="bottomcontainerBox" style="border:1px solid #808080;background-color:#F0F4F9;">
			<div style="float:left; width:85px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fctovision.com%2F2011%2F05%2Finterested-in-cyber-security-read-and-support-the-new-cybersecurity-legislative-proposal%2F&amp;layout=button_count&amp;show_faces=false&amp;width=85&amp;action=like&amp;font=verdana&amp;colorscheme=light&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width=85px; height:21px;" allowTransparency="true"></iframe></div>
			<div style="float:left; width:80px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<g:plusone size="medium" href="http://ctovision.com/2011/05/interested-in-cyber-security-read-and-support-the-new-cybersecurity-legislative-proposal/"></g:plusone>
			</div>
			<div style="float:left; width:95px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<a href="http://twitter.com/share" class="twitter-share-button" data-url="http://ctovision.com/2011/05/interested-in-cyber-security-read-and-support-the-new-cybersecurity-legislative-proposal/"  data-text="Interested in Cyber Security? Read (and support) the new Cybersecurity Legislative Proposal" data-count="horizontal" data-via="ctovision">Tweet</a>
			</div><div style="float:left; width:105px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;"><script type="in/share" data-url="http://ctovision.com/2011/05/interested-in-cyber-security-read-and-support-the-new-cybersecurity-legislative-proposal/" data-counter="right"></script></div>			
			<div style="float:left; width:85px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;"><script src="http://www.stumbleupon.com/hostedbadge.php?s=1&amp;r=http://ctovision.com/2011/05/interested-in-cyber-security-read-and-support-the-new-cybersecurity-legislative-proposal/"></script></div>			
			</div><div style="clear:both"></div><div style="padding-bottom:4px;"></div><p><a href="http://ctovision.com/wp-content/uploads/2011/05/CNO-pic.jpg"><img class="alignleft size-full wp-image-12657" style="margin: 4px;" title="CNO pic" src="http://ctovision.com/wp-content/uploads/2011/05/CNO-pic.jpg" alt="" width="200" height="149" /></a>On 12 May 2011 the Obama Administration unveiled its cybersecurity legislative proposal.</p>
<p>The entire proposal is available for your review at this link:  <a href="http://www.whitehouse.gov/omb/legislative_letters">cybersecurity legislative proposal</a>. But I most strongly recommend you read the context provided by the government&#8217;s Cybersecurity Coordinator and Special Assistant to the President Howard Schmidt first. Howard provided a clear introduction to this legislation that includes a framework that will make the details easy to remember. The three thrusts to remember are that this proposal will:</p>
<ol>
<li>Help safeguard personal data and the right to know when your data has been compromised</li>
<li>Help protect national security by addressing threats to infrastrucure</li>
<li>Help protect federal systems while creating stronger privacy and civil liberties protections that keep pace with technology.</li>
</ol>
<p>That is a very short introduction to well thought out legislative proposal. Please dig deeper and read both Howard&#8217;s blog entry and the draft legislation. I have read it all, and I strongly support these very positive measures. Like many others who track these issues, I would have supported a package that did even more, but the fact is we have to move out now and this package of draft legislation is fantastic and deserves our support now. I would like to see it immediately passed and then we can all collectively work on ideas for future enhancements.</p>
<p>For more please start with Howard&#8217;s blog post here: <a href="http://www.whitehouse.gov/blog/2011/05/12/administration-unveils-its-cybersecurity-legislative-proposal" target="_blank">http://www.whitehouse.gov/blog/2011/05/12/administration-unveils-its-cybersecurity-legislative-proposal</a></p>
<p>The meat of his post is copied below:</p>
<blockquote>
<h2>The Administration Unveils its Cybersecurity Legislative Proposal</h2>
<div>Posted by Howard A. Schmidt on May 12, 2011 at 02:00 PM EDT</div>
<p>Today I am happy to announce that the Administration has transmitted a <a href="http://www.whitehouse.gov/omb/legislative_letters">cybersecurity legislative proposal</a> to Capitol Hill in response to Congress’ call for assistance on how best to address the cybersecurity needs of our Nation.  This is a milestone in our national effort to ensure secure and reliable networks for Americans, businesses, and government; fundamentally, <a href="http://www.whitehouse.gov/sites/default/files/fact_sheet-administration_cybersecurity_legislative_proposal.pdf">this proposal</a> strikes a critical balance between maintaining the government’s role and providing industry with the capacity to innovatively tackle threats to national cybersecurity.  Just as importantly, it does so while providing a robust framework to protect civil liberties and privacy.</p>
<p>When the President released his <a href="http://www.whitehouse.gov/assets/documents/Cyberspace_Policy_Review_final.pdf">Cyberspace Policy Review (pdf)</a> almost two years ago, he declared cyberspace as a key strategic asset for the United States and its security just as vital.  This legislative proposal is the latest achievement in the steady stream of progress we are making in securing cyberspace and completes <a href="http://www.whitehouse.gov/sites/default/files/fact_sheet-administration_cybersecurity_accomplishments.pdf">another near-term action item (pdf)</a> identified in the Cyberspace Policy Review.</p>
<p><strong>The Administration proposal helps safeguard your personal data and enhances your right to know when it has been compromised. </strong>In addition to educating you on how to protect yourself from cyber threats with the <a href="http://www.stopthinkconnect.org/">Stop. Think. Connect.</a> campaign, we believe organizations should inform you when your sensitive personal information may have been compromised.  This notice not only helps you to protect yourself against harms like identity theft, but also incentivizes organizations to have better data security in the first place.  Today, our country has a patchwork of 47 state notification laws.  Our proposal simplifies and strengthens this reporting requirement and reaches all Americans.</p>
<p><strong>It helps protect our national security by addressing threats to our power grids, water systems, and other critical infrastructure. </strong>These systems are the backbone of our modern economy; many are privately owned, but all merit our support in protecting them.  The Administration proposal advances the security of our increasingly “wired” critical infrastructure, strengthens the criminal penalties for hacking into the systems that control these vital resources, and clarifies the ability of companies and the government to voluntarily share information about cybersecurity threats and incidents in a privacy-protective manner.  This is behavior we want and need to promote.</p>
<p><strong>It helps the U.S. government protect our federal networks, while creating stronger privacy and civil liberties protections that keep pace with technology</strong>.  Since our Federal systems are under constant pressure by hackers, criminals and other threats, the government needs better tools to detect and prevent those threats.  Part of cybersecurity is about finding malicious programs, and stopping their spread before they have any impact.  This proposal allows the Department of Homeland Security (DHS) to implement intrusion detection and prevention systems that can help speed our response to these incidents.  The Administration proposal also designs a framework for protecting privacy and civil liberties that includes new oversight, reporting requirements, and annual certification to ensure that cybersecurity technologies are used for their intended purpose and nothing more.</p>
<p>The Administration’s proposal is one of a number of important steps we are taking towards achieving better cybersecurity.  We look forward to working with Congress as it moves forward on this issue.  Together, with a shared responsibility to enhance online safety and security, we can ensure cyberspace continues to be an area defined by growth and innovation.</p>
<ul>
<li><a href="http://www.whitehouse.gov/sites/default/files/fact_sheet-administration_cybersecurity_legislative_proposal.pdf">Read the fact sheet (pdf).</a></li>
<li><a href="http://www.whitehouse.gov/sites/default/files/fact_sheet-administration_cybersecurity_accomplishments.pdf">Read about the Administration’s Cybersecurity Accomplishments (pdf).</a></li>
<li><a href="http://www.whitehouse.gov/omb/legislative_letters">Read the text of the legislative proposal.</a></li>
</ul>
<p><em>Howard A. Schmidt is the Cybersecurity Coordinator and Special Assistant to the President</em></p>
<div><em><br />
</em></div>
</blockquote>
<h6 class="zemanta-related-title" style="font-size: 1em;">Related articles</h6>
<ul class="zemanta-article-ul">
<li class="zemanta-article-ul-li"><a href="http://www.informationweek.com/news/government/security/229500148?cid=RSSfeed_IWK_ALL">White House Releases Cybersecurity Plans</a> (informationweek.com)</li>
<li class="zemanta-article-ul-li"><a href="http://www.politico.com/news/stories/0511/54826.html">W.H. brings cybersecurity plan to Hill</a> (politico.com)</li>
<li class="zemanta-article-ul-li"><a href="http://www.whitehouse.gov/blog/2011/05/12/administration-unveils-its-cybersecurity-legislative-proposal">The Administration Unveils its Cybersecurity Legislative Proposal</a> (whitehouse.gov)</li>
<li class="zemanta-article-ul-li"><a href="http://www.huffingtonpost.com/2011/05/12/white-house-cyber-security_n_861107.html">White House Set To Unveil Cyber Security Plan: Sources</a> (huffingtonpost.com)</li>
<li class="zemanta-article-ul-li"><a href="http://emptywheel.firedoglake.com/2011/05/12/two-themes-from-obamas-cybersecurity-proposal-private-auditors-and-immunity/">Two Themes from Obama&#8217;s Cybersecurity Proposal: Private Auditors and Immunity</a> (emptywheel.firedoglake.com)</li>
<li class="zemanta-article-ul-li"><a href="http://seattletimes.nwsource.com/html/nationworld/2015030007_apuscybersecurity.html?syndication=rss">AP sources: White House set to unveil cyber plan</a> (seattletimes.nwsource.com)</li>
<li class="zemanta-article-ul-li"><a href="http://www.theglobeandmail.com/news/technology/tech-news/white-house-to-unveil-cybersecurity-proposal/article2019442/">White House to unveil cybersecurity proposal</a> (theglobeandmail.com)</li>
</ul>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><img class="zemanta-pixie-img" style="border: none; float: right;" src="http://img.zemanta.com/pixy.gif?x-id=d90c340e-e51d-4943-b93b-1517455c275c" alt="" /></div>

<div class="nr_clear"></div>	
	<div id="nrelate_related_3" class="nrelate nrelate_related nrelate_default nr_100"><h3 class="nr_title">You may also like -</h3><div class="nr_inner"><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/05/announcing-the-fedcyber-com-government-industry-computer-security-summit/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/bdb1264d865aba4646ce5114cc4c402c_thumb_15789_cyber.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Announcing the FedCyber.com Government-Industry Computer Security Summit</span></span></a><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/03/mature-models-for-healthy-and-resilient-cyber-systems/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/d9016ac7faff40a974f91c61bc0ccf10_thumb_Department-of-Homeland-Security-300x203.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Mature Models for Healthy and Resilient Cyber Systems</span></span></a><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/11/special-summary-enterprise-security-stories/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/a9eb3edce3d5c67a7bf299ecbc588db5_thumb_digitalglobe.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Special Summary: Enterprise security stories</span></span></a><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2012/01/federal-rd-priorities/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/374a6220632b469ef56ad107944f9496_thumb_NSTC.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Federal R&D Priorities</span></span></a><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/02/govsec-conference-is-march-29-31-2011/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/001468eb33ec5e4590e7ad40cff3c88d_thumb_govsec.png" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">GovSec conference is March 29-31 2011</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://www.bobgourley.com/2011/12/obama-appoints-privacy-board-members/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/background-red.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Obama Appoints Privacy Board Members</span><span class="nr_source">Bob Gourley</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2012/01/deputy-cyber-coordinator-leaving-the-white-house/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/water-wallpaper.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Deputy cyber coordinator leaving the White House</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2012/01/cybersecurity-receives-emphasis-in-state-of-the-union-address/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/background-old-wood.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Cybersecurity Receives Emphasis In State Of The Union Address</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2012/01/guardians-of-the-grid-agencies-unite-to-bulk-up-utility-cybersecurity/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/ice-background.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Guardians of the Grid: Agencies Unite to Bulk Up Utility Cybersecurity</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/11/white-house-congress-renew-cybersecurity-push/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/cloud-wallpaper.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">White House, Congress Renew Cybersecurity Push</span><span class="nr_source">CrucialPointLLC</span></span></a><div style="clear:both;"></div></div> <script type="text/javascript"> nRelate.getNrelatePosts("http://api.nrelate.com/rcw_wp/0.50.3/nr_load.php?tag=nrelate_related&keywords=Interested+in+Cyber+Security%3F+Read+%28and+support%29+the+new+Cybersecurity+Legislative+Proposal&domain=ctovision.com&url=http%3A%2F%2Fctovision.com%2F2011%2F05%2Finterested-in-cyber-security-read-and-support-the-new-cybersecurity-legislative-proposal%2F&nr_ad_number=0&nr_div_number=3");</script></div>
	<!--[if IE 6]>
		<script type="text/javascript">jQuery('.nrelate_default').removeClass('nrelate_default');</script>
	<![endif]-->
	<script type="text/javascript">nRelate.fixHeight("nrelate_related_3");nRelate.adAnimation("nrelate_related_3");nRelate.tracking("rc");</script>
	
<div class="nr_clear"></div>]]></content:encoded>
			<wfw:commentRss>http://ctovision.com/2011/05/interested-in-cyber-security-read-and-support-the-new-cybersecurity-legislative-proposal/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Mature Models for Healthy and Resilient Cyber Systems</title>
		<link>http://ctovision.com/2011/03/mature-models-for-healthy-and-resilient-cyber-systems/</link>
		<comments>http://ctovision.com/2011/03/mature-models-for-healthy-and-resilient-cyber-systems/#comments</comments>
		<pubDate>Mon, 28 Mar 2011 15:15:43 +0000</pubDate>
		<dc:creator>BobGourley</dc:creator>
				<category><![CDATA[Cyber Security]]></category>
		<category><![CDATA[Computer security]]></category>
		<category><![CDATA[cyber security]]></category>
		<category><![CDATA[DHS]]></category>
		<category><![CDATA[DoD]]></category>
		<category><![CDATA[information technology]]></category>
		<category><![CDATA[Phil Reitinger]]></category>
		<category><![CDATA[Research]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[United States]]></category>
		<category><![CDATA[United States Department of Homeland Security]]></category>

		<guid isPermaLink="false">http://ctovision.com/?p=12330</guid>
		<description><![CDATA[Tweet In February 2011 we reported on a Department of Homeland Security research agenda for cyber security, providing the opinion that this was &#8220;the most mature research agenda on the topic of cyber security.&#8221; That research agenda is fantastic and should help shape the future cyber ecosystem in very positive ways. Now in March 2011, DHS has [...]]]></description>
			<content:encoded><![CDATA[<div class="bottomcontainerBox" style="border:1px solid #808080;background-color:#F0F4F9;">
			<div style="float:left; width:85px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fctovision.com%2F2011%2F03%2Fmature-models-for-healthy-and-resilient-cyber-systems%2F&amp;layout=button_count&amp;show_faces=false&amp;width=85&amp;action=like&amp;font=verdana&amp;colorscheme=light&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width=85px; height:21px;" allowTransparency="true"></iframe></div>
			<div style="float:left; width:80px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<g:plusone size="medium" href="http://ctovision.com/2011/03/mature-models-for-healthy-and-resilient-cyber-systems/"></g:plusone>
			</div>
			<div style="float:left; width:95px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<a href="http://twitter.com/share" class="twitter-share-button" data-url="http://ctovision.com/2011/03/mature-models-for-healthy-and-resilient-cyber-systems/"  data-text="Mature Models for Healthy and Resilient Cyber Systems" data-count="horizontal" data-via="ctovision">Tweet</a>
			</div><div style="float:left; width:105px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;"><script type="in/share" data-url="http://ctovision.com/2011/03/mature-models-for-healthy-and-resilient-cyber-systems/" data-counter="right"></script></div>			
			<div style="float:left; width:85px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;"><script src="http://www.stumbleupon.com/hostedbadge.php?s=1&amp;r=http://ctovision.com/2011/03/mature-models-for-healthy-and-resilient-cyber-systems/"></script></div>			
			</div><div style="clear:both"></div><div style="padding-bottom:4px;"></div><p><a href="http://ctovision.com"><img class="alignleft size-medium wp-image-12332" style="margin: 4px;" title="Department-of-Homeland-Security" src="http://ctovision.com/wp-content/uploads/2011/03/Department-of-Homeland-Security-300x203.jpg" alt="" width="300" height="203" /></a>In February 2011 we reported on a <a href="http://www.dhs.gov/" target="_blank">Department of Homeland Security</a> research agenda for cyber security, providing the opinion that this was &#8220;<a href="http://ctovision.com/2011/02/the-most-well-thought-out-research-agenda-for-cyber-security-i-have-seen-to-date/" target="_blank">the most mature research agenda on the topic of cyber security.</a>&#8221; That research agenda is fantastic and should help shape the future cyber ecosystem in very positive ways.</p>
<p>Now in March 2011, DHS has produced another significant, positive, virtuous document on the topic of Cybersecurity that deserves the attention of leaders, planners and technologists from across the country. They have given us a white paper titled &#8220;<a href="http://ctovision.com/wp-content/uploads/2011/03/nppd-cyber-ecosystem-white-paper-03-23-2011.pdf" target="_blank">Building a Healthy and Resilient Cyber Ecosystem with Automated Collective Action</a>.&#8221; This paper flows from discussion, dialog and workshops that collegially fleshed out concepts. It is well worth a read and should help us all move towards a better IT environment.</p>
<p>Things I liked about this paper:</p>
<ul>
<li>It is collegial. It is not about &#8220;command and control,&#8221; it is about vision and collaboration.</li>
<li>It uses relevant models for complex systems like modern IT. Relevant models, like those based on life, can really help in our understanding of how to design for success.</li>
<li>It is well written, so it is easy to follow and fast to read</li>
<li>It focuses on the most critical threats, in my opinion. With no hype or hyperbole, it spells out clearly what the threat is and why we must rise to mitigate it.</li>
<li>It articulates &#8220;Resiliency,&#8221; an important emerging way of descirbing the state we need in IT that realizes attacks will always be with us.</li>
<li>It simply describes and moves out on concepts of healthy devices, strong authentication, automation, and interoperability.</li>
</ul>
<p>I hope that has been enough to grab your interest. I think the authors would like your review and would appreciate your feedback. They are clearly writers and thinkers with open minds, and the document contains contact information you can use to connect with them.</p>
<p>You can also read context by Phil Reitinger (Deputy Under Secretary, National Protection and Programs Directorate) on the DHS blog at: <a href="http://blog.dhs.gov/2011/03/enabling-distributed-security-in.html" target="_blank">http://blog.dhs.gov/2011/03/enabling-distributed-security-in.html</a></p>
<p><span style="font-weight: bold;">Related articles</span></p>
<ul class="zemanta-article-ul">
<li class="zemanta-article-ul-li"><a href="http://ctovision.com/2011/02/continued-evolution-of-dod-cyber-policy/">Continued Evolution of DoD Cyber Policy</a> (ctovision.com)</li>
<li class="zemanta-article-ul-li"><a href="http://www.informationweek.com/news/government/security/showArticle.jhtml?articleID=229400230&amp;cid=RSSfeed_IWK_ALL">DHS Outlines Cybersecurity Strategy</a> (informationweek.com)</li>
<li class="zemanta-article-ul-li"><a href="http://ctovision.com/2011/02/the-most-well-thought-out-research-agenda-for-cyber-security-i-have-seen-to-date/">The most well thought out research agenda for cyber security I have seen to date</a> (ctovision.com)</li>
<li class="zemanta-article-ul-li"><a href="http://www.informationweek.com/news/government/security/showArticle.jhtml?articleID=229200206&amp;cid=RSSfeed_IWK_ALL">DHS To Invest $40 Million On Cybersecurity Research</a> (informationweek.com)</li>
</ul>
<h6 class="zemanta-related-title" style="font-size: 1em;"></h6>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><img class="zemanta-pixie-img" style="border: none; float: right;" src="http://img.zemanta.com/pixy.gif?x-id=32cf347d-43b9-4a7b-8673-1960084ad2bf" alt="" /></div>

<div class="nr_clear"></div>	
	<div id="nrelate_related_4" class="nrelate nrelate_related nrelate_default nr_100"><h3 class="nr_title">You may also like -</h3><div class="nr_inner"><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/02/the-most-well-thought-out-research-agenda-for-cyber-security-i-have-seen-to-date/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/83f75632acd4334438d5e0390761a168_thumb_dhssnt-300x278.png" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">The most well thought out research agenda for cyber security I have seen to date</span></span></a><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/09/congrats-to-sony-corp-this-is-a-very-good-move/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/54dac2956db1669b0dfb06748c32613d_thumb_logo-sony.gif" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Congrats To Sony Corp! This is a very good move</span></span></a><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2010/06/cto-perspectives-on-cyber-security-bill-of-the-us-senate-homeland-security-and-governmental-affairs-comittee/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/c91e4caea6e3b96614f0ae61090ec4b3_thumb_hsgac-liberman-collins.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">CTO Perspectives on Cyber Security Bill</span></span></a><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/09/13680/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/2dae982a130c0daf978937209137165e_thumb_sinet20111.png" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Security Innovation Network (SINET) Workshop and Showcase 25-26 October 2011</span></span></a><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/06/cno-part-2-computer-network-defense/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/cc6fe48d12b60c63ef23bb40479eb42d_thumb_CND.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">CNO Part 2: Computer Network Defense</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2012/01/dhs-cyber-security-operations-see-leadership-changes/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/sunrise-desktop.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">DHS cyber security operations see leadership changes</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/12/dhss-national-cyber-security-division-and-idaho-national-laboratory-win-cybersecurity-award/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/blue-background.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">DHS’s National Cyber Security Division and Idaho National Laboratory win cybe ...</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://www.bobgourley.com/2011/12/security-researcher-details-new-scada-bugs/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/evening-in-marlborough-sounds.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Security Researcher Details New SCADA Bugs</span><span class="nr_source">Bob Gourley</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2012/01/dhs-disputes-memo-on-purported-railway-computer-breach/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/wave-open-sea.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">DHS disputes memo on purported railway computer breach</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2012/01/former-w-h-official-in-the-event-of-a-cyberwar-dont-call-dhs/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/variety-of-short-grass-on-field.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Former W.H. Official: In the Event of a Cyberwar, Don’t Call DHS</span><span class="nr_source">CrucialPointLLC</span></span></a><div style="clear:both;"></div></div> <script type="text/javascript"> nRelate.getNrelatePosts("http://api.nrelate.com/rcw_wp/0.50.3/nr_load.php?tag=nrelate_related&keywords=Mature+Models+for+Healthy+and+Resilient+Cyber+Systems&domain=ctovision.com&url=http%3A%2F%2Fctovision.com%2F2011%2F03%2Fmature-models-for-healthy-and-resilient-cyber-systems%2F&nr_ad_number=0&nr_div_number=4");</script></div>
	<!--[if IE 6]>
		<script type="text/javascript">jQuery('.nrelate_default').removeClass('nrelate_default');</script>
	<![endif]-->
	<script type="text/javascript">nRelate.fixHeight("nrelate_related_4");nRelate.adAnimation("nrelate_related_4");nRelate.tracking("rc");</script>
	
<div class="nr_clear"></div>]]></content:encoded>
			<wfw:commentRss>http://ctovision.com/2011/03/mature-models-for-healthy-and-resilient-cyber-systems/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>A look at General Alexander&#8217;s RSA Speech</title>
		<link>http://ctovision.com/2011/02/a-look-at-general-alexanders-rsa-speech/</link>
		<comments>http://ctovision.com/2011/02/a-look-at-general-alexanders-rsa-speech/#comments</comments>
		<pubDate>Mon, 28 Feb 2011 15:39:05 +0000</pubDate>
		<dc:creator>RyanKamauff</dc:creator>
				<category><![CDATA[Cyber Security]]></category>
		<category><![CDATA[Events]]></category>
		<category><![CDATA[cyber]]></category>
		<category><![CDATA[Cyber Command]]></category>
		<category><![CDATA[cyber conflict]]></category>
		<category><![CDATA[cyber security]]></category>
		<category><![CDATA[Cyberspace]]></category>
		<category><![CDATA[DHS]]></category>
		<category><![CDATA[DoD]]></category>
		<category><![CDATA[Keith Alexander]]></category>
		<category><![CDATA[NSA]]></category>
		<category><![CDATA[RSA]]></category>

		<guid isPermaLink="false">http://ctovision.com/?p=12161</guid>
		<description><![CDATA[Tweet Last week, General Alexander (director of NSA and commander, USCYBERCOM) spoke at the RSA conference in San Francisco. He pointed out the the explosion of technology over the past 10 years. That users went from an average of 250MB of personal files, to over 128GB. The fact that 70% of Americans online are on [...]]]></description>
			<content:encoded><![CDATA[<div class="bottomcontainerBox" style="border:1px solid #808080;background-color:#F0F4F9;">
			<div style="float:left; width:85px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fctovision.com%2F2011%2F02%2Fa-look-at-general-alexanders-rsa-speech%2F&amp;layout=button_count&amp;show_faces=false&amp;width=85&amp;action=like&amp;font=verdana&amp;colorscheme=light&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width=85px; height:21px;" allowTransparency="true"></iframe></div>
			<div style="float:left; width:80px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<g:plusone size="medium" href="http://ctovision.com/2011/02/a-look-at-general-alexanders-rsa-speech/"></g:plusone>
			</div>
			<div style="float:left; width:95px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<a href="http://twitter.com/share" class="twitter-share-button" data-url="http://ctovision.com/2011/02/a-look-at-general-alexanders-rsa-speech/"  data-text="A look at General Alexander&#8217;s RSA Speech" data-count="horizontal" data-via="ctovision">Tweet</a>
			</div><div style="float:left; width:105px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;"><script type="in/share" data-url="http://ctovision.com/2011/02/a-look-at-general-alexanders-rsa-speech/" data-counter="right"></script></div>			
			<div style="float:left; width:85px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;"><script src="http://www.stumbleupon.com/hostedbadge.php?s=1&amp;r=http://ctovision.com/2011/02/a-look-at-general-alexanders-rsa-speech/"></script></div>			
			</div><div style="clear:both"></div><div style="padding-bottom:4px;"></div><p><span style="font-family: arial;font-size: small;line-height: normal"> </span></p>
<div>
<div id="attachment_12162" class="wp-caption alignleft" style="width: 160px"><a rel="attachment wp-att-12162" href="http://ctovision.com/2011/02/a-look-at-general-alexanders-rsa-speech/dir_alexander/"><img class="size-full wp-image-12162 " style="margin: 2px" src="http://ctovision.com/wp-content/uploads/2011/02/dir_alexander.jpg" alt="" width="150" height="181" /></a><p class="wp-caption-text">General Alexander is keeping busy at NSA/CYBERCOM</p></div>
<p>Last week, General Alexander (director of NSA and commander, USCYBERCOM) spoke at the <a href="http://www.rsaconference.com/2011/usa/">RSA</a> conference in San Francisco. He pointed out the the explosion of technology over the past 10 years. That users went from an average of 250MB of personal files, to over 128GB. The fact that 70% of Americans online are on Facebook &#8211; that 600M users worldwide are as well. This, mixed with the huge advances in programming (Watson and Deep Blue) lets us know that we do have the capability to protect and defend our advanced networks.</p>
<p>General Alexander reminded us of attacks on Estonia (2007) and Georgia (2008) as well Latvia, Lithuania, Azerbaijan and Kyrgyzstan. His concern is that some of those attacks might be used on the 15K DoD networks. These networks are scanned over 1 million times a day, yet receive 20k email attacks a month, thousands of independent network assaults. The DoD is scanning 92TB+ and 150B+ packets every day.</p>
<p>The biggest problem is that our public/private infrastructure is the backbone to the network. Additionally, there is a need to secure the defense industrial base. This was made certain by the USB flash drive issues in 2008. General Alexander states, &#8221;Take combined talent and figure out how we secure the network.&#8221;  The &#8220;combined talent&#8221; is that in academia, private industry, and public servants.</p>
</div>
<div>He highlighted these needs for CYBERCOM;</div>
<div>
<ul>
<li>Need to operate in Cyber Domain</li>
<li>Active Defense &#8211; key change for military networks and how they operate</li>
<li>How to protect critical infrastructure and key resources &#8211; have to partner w/ DHS + industry to develop critical infrastructure and key resources</li>
<li>Create lasting partnerships across the globe &#8211; there is only one internet and we are all plugged into it</li>
<li>Leverage technical dominance &#8211; the US is innovating and needs to continue to use those innovations to stay technically dominant</li>
</ul>
</div>
<div>General Alexander feels that active defense is the key &#8211; we are facing an opponent that is performing guerrilla attacks on our networks. His vision of active defense has the following attributes;</div>
<div>
<ul>
<li>Dynamic &#8211; ability to change due to the threat profile</li>
<li>Customized &#8211; tailored to individual agencies and missions</li>
<li>Countermeasures - capability to turn</li>
<li>Team-Based &#8211; multiple systems and organizations working together
<ul>
<li>hunt inside networks for capabilities</li>
<li>how we work on boundaries</li>
<li>responsibility on military and IC for early-warning and indications (how can this be done?</li>
</ul>
</li>
<li>Needs to be more than anti-virus and patch management</li>
</ul>
</div>
<p>The general brought up needs to have widespread cyber education. For our citizens and our civil servants (military and government). The people need to be educated on their role in cyberspace and how they can be a factor in this domain.</p>
<p>Lastly, General Alexander focused on how important STEM + R&amp;D efforts will be to cyberspace dominance. STEM (Science, Technology, Engineering and Math) studies are needed to have educated work force.  R&amp;D spending drives innovation. This ties in with his thoughts on a public/private partnership &#8211; pushing STEM + R&amp;D needs to be done at academic, private and public levels, and must be concerted efforts.</p>

<div class="nr_clear"></div>	
	<div id="nrelate_related_5" class="nrelate nrelate_related nrelate_default nr_100"><h3 class="nr_title">You may also like -</h3><div class="nr_inner"><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/02/invincea-named-most-innovative-company-of-rsa-2011/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/9fe6015df380ab1e1194a6a60b177f97_thumb_Inivea1-300x199.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Invincea Named Most Innovative Company of RSA 2011</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/11/us-cyber-chief-says-cloud-computing-can-manage-serious-cyber-threats/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/background-blue-ad-white-strips.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">US cyber chief says cloud computing can manage serious cyber threats</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/09/cyber-attacks-are-becoming-lethal-warns-us-cyber-commander/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/background-blue-stripes.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Cyber attacks are becoming lethal, warns US cyber commander</span><span class="nr_source">CrucialPointLLC</span></span></a><div style="clear:both;"></div></div> <script type="text/javascript"> nRelate.getNrelatePosts("http://api.nrelate.com/rcw_wp/0.50.3/nr_load.php?tag=nrelate_related&keywords=A+look+at+General+Alexander%26%238217%3Bs+RSA+Speech&domain=ctovision.com&url=http%3A%2F%2Fctovision.com%2F2011%2F02%2Fa-look-at-general-alexanders-rsa-speech%2F&nr_ad_number=0&nr_div_number=5");</script></div>
	<!--[if IE 6]>
		<script type="text/javascript">jQuery('.nrelate_default').removeClass('nrelate_default');</script>
	<![endif]-->
	<script type="text/javascript">nRelate.fixHeight("nrelate_related_5");nRelate.adAnimation("nrelate_related_5");nRelate.tracking("rc");</script>
	
<div class="nr_clear"></div>]]></content:encoded>
			<wfw:commentRss>http://ctovision.com/2011/02/a-look-at-general-alexanders-rsa-speech/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>GovSec conference is March 29-31 2011</title>
		<link>http://ctovision.com/2011/02/govsec-conference-is-march-29-31-2011/</link>
		<comments>http://ctovision.com/2011/02/govsec-conference-is-march-29-31-2011/#comments</comments>
		<pubDate>Fri, 25 Feb 2011 00:06:57 +0000</pubDate>
		<dc:creator>BobGourley</dc:creator>
				<category><![CDATA[Events]]></category>
		<category><![CDATA[DHS]]></category>
		<category><![CDATA[Keynote]]></category>
		<category><![CDATA[Thad Allen]]></category>
		<category><![CDATA[United States Coast Guard]]></category>
		<category><![CDATA[United States Computer Emergency Readiness Team]]></category>
		<category><![CDATA[United States Department of Homeland Security]]></category>
		<category><![CDATA[Washington]]></category>

		<guid isPermaLink="false">http://ctovision.com/?p=12184</guid>
		<description><![CDATA[Tweet The folks organizing the GovSec 2011 Conference and Expo have just given me a code that will give you a 10% discount when you register for their event, and they would like me to share that with you. That&#8217;s nice of them isn&#8217;t it? I try to go to this conference every year.  When [...]]]></description>
			<content:encoded><![CDATA[<div class="bottomcontainerBox" style="border:1px solid #808080;background-color:#F0F4F9;">
			<div style="float:left; width:85px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fctovision.com%2F2011%2F02%2Fgovsec-conference-is-march-29-31-2011%2F&amp;layout=button_count&amp;show_faces=false&amp;width=85&amp;action=like&amp;font=verdana&amp;colorscheme=light&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width=85px; height:21px;" allowTransparency="true"></iframe></div>
			<div style="float:left; width:80px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<g:plusone size="medium" href="http://ctovision.com/2011/02/govsec-conference-is-march-29-31-2011/"></g:plusone>
			</div>
			<div style="float:left; width:95px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<a href="http://twitter.com/share" class="twitter-share-button" data-url="http://ctovision.com/2011/02/govsec-conference-is-march-29-31-2011/"  data-text="GovSec conference is March 29-31 2011" data-count="horizontal" data-via="ctovision">Tweet</a>
			</div><div style="float:left; width:105px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;"><script type="in/share" data-url="http://ctovision.com/2011/02/govsec-conference-is-march-29-31-2011/" data-counter="right"></script></div>			
			<div style="float:left; width:85px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;"><script src="http://www.stumbleupon.com/hostedbadge.php?s=1&amp;r=http://ctovision.com/2011/02/govsec-conference-is-march-29-31-2011/"></script></div>			
			</div><div style="clear:both"></div><div style="padding-bottom:4px;"></div><p><a href="http://ctovision.com"><img class="alignleft size-full wp-image-12186" title="govsec" src="http://ctovision.com/wp-content/uploads/2011/02/govsec.png" alt="" width="193" height="187" /></a>The folks organizing the GovSec 2011 Conference and Expo have just given me a code that will give you a 10% discount when you register for their event, and they would like me to share that with you. That&#8217;s nice of them isn&#8217;t it?</p>
<p>I try to go to this conference every year.  When I&#8217;m lucky they ask me to speak, but the decided instead this year to have interesting speakers. Oh well. Maybe next year. But I do plan on going and taking note to share with you my friendly readers.</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>The event is March 29-31 in Washington DC. Highlights of the event include:</p>
<ul>
<li> 30+ sessions in four tracks including cybersecurity topics and training.</li>
<li>Fantastic presentations on enterprise technology for security.</li>
<li>Expo Keynote Speakers Admiral Thad Allen, USCG (Retired), National Incident Commander, Deepwater Horizon oil spill and Nicholas Stein, series producer of &#8220;Border Wars&#8221;</li>
<li>Conference Keynote Speakers Randy Vickers, Director, United States Computer Emergency Readiness Team, National Cybersecurity Division, DHS and Greg Fowler, SAC New York Joint Terrorism Task Force, FBI</li>
<li>A free expo for qualified attendees.</li>
<li>Many more sessions.</li>
</ul>
<p>Register at <a href="http://bit.ly/GovSecRegCS" target="_blank">http://bit.ly/GovSecRegCS</a> with code CONF24 for a 10% discount off the Conference rate.</p>
<p>&nbsp;</p>
<h6 class="zemanta-related-title" style="font-size: 1em;">Related articles</h6>
<ul class="zemanta-article-ul">
<li class="zemanta-article-ul-li"><a href="http://ctovision.com/2011/02/continued-evolution-of-dod-cyber-policy/">Continued Evolution of DoD Cyber Policy</a> (ctovision.com)</li>
<li class="zemanta-article-ul-li"><a href="http://ctovision.com/2011/02/the-most-well-thought-out-research-agenda-for-cyber-security-i-have-seen-to-date/">The most well thought out research agenda for cyber security I have seen to date</a> (ctovision.com)</li>
<li class="zemanta-article-ul-li"><a href="http://www.informationweek.com/news/government/security/showArticle.jhtml?articleID=229200206&amp;cid=RSSfeed_IWK_ALL">DHS To Invest $40 Million On Cybersecurity Research</a> (informationweek.com)</li>
</ul>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><img class="zemanta-pixie-img" style="border: none; float: right;" src="http://img.zemanta.com/pixy.gif?x-id=43c656a3-9c7c-46f8-bbf9-518eb7c3a364" alt="" /></div>

<div class="nr_clear"></div>	
	<div id="nrelate_related_6" class="nrelate nrelate_related nrelate_default nr_100"><h3 class="nr_title">You may also like -</h3><div class="nr_inner"><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/12/us-cert-warns-about-security-flaw-affecting-millions-of-wireless-routers/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/wave-open-sea.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">US-CERT warns about security flaw affecting millions of wireless routers</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/09/ig-justice-cyber-operations-slow-to-report-incidents-lacking-critical-info/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/art-rhododendron-flower.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">IG: Justice cyber operations slow to report incidents, lacking critical info</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/11/fbi-no-evidence-of-water-system-hack-destroying-pump/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/background-macro-plant.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">FBI: No evidence of water system hack destroying pump</span><span class="nr_source">CrucialPointLLC</span></span></a><div style="clear:both;"></div></div> <script type="text/javascript"> nRelate.getNrelatePosts("http://api.nrelate.com/rcw_wp/0.50.3/nr_load.php?tag=nrelate_related&keywords=GovSec+conference+is+March+29-31+2011&domain=ctovision.com&url=http%3A%2F%2Fctovision.com%2F2011%2F02%2Fgovsec-conference-is-march-29-31-2011%2F&nr_ad_number=0&nr_div_number=6");</script></div>
	<!--[if IE 6]>
		<script type="text/javascript">jQuery('.nrelate_default').removeClass('nrelate_default');</script>
	<![endif]-->
	<script type="text/javascript">nRelate.fixHeight("nrelate_related_6");nRelate.adAnimation("nrelate_related_6");nRelate.tracking("rc");</script>
	
<div class="nr_clear"></div>]]></content:encoded>
			<wfw:commentRss>http://ctovision.com/2011/02/govsec-conference-is-march-29-31-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Continued Evolution of DoD Cyber Policy</title>
		<link>http://ctovision.com/2011/02/continued-evolution-of-dod-cyber-policy/</link>
		<comments>http://ctovision.com/2011/02/continued-evolution-of-dod-cyber-policy/#comments</comments>
		<pubDate>Wed, 16 Feb 2011 13:31:05 +0000</pubDate>
		<dc:creator>BobGourley</dc:creator>
				<category><![CDATA[Cyber Security]]></category>
		<category><![CDATA[Computer security]]></category>
		<category><![CDATA[cyber]]></category>
		<category><![CDATA[cyber conflict]]></category>
		<category><![CDATA[DHS]]></category>
		<category><![CDATA[DoD]]></category>
		<category><![CDATA[information technology]]></category>
		<category><![CDATA[Network Security]]></category>
		<category><![CDATA[San Francisco]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[United States]]></category>

		<guid isPermaLink="false">http://ctovision.com/?p=12116</guid>
		<description><![CDATA[Tweet The deputy secretary of Defense, the Honorable William J. Lynn III, delivered remarks at the RSA conference that captures a snapshot of DoD cyber policies. This is consistent with the continually improving path the department has been on for the last several years. I recommend a good read of the remarks and hope you [...]]]></description>
			<content:encoded><![CDATA[<div class="bottomcontainerBox" style="border:1px solid #808080;background-color:#F0F4F9;">
			<div style="float:left; width:85px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fctovision.com%2F2011%2F02%2Fcontinued-evolution-of-dod-cyber-policy%2F&amp;layout=button_count&amp;show_faces=false&amp;width=85&amp;action=like&amp;font=verdana&amp;colorscheme=light&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width=85px; height:21px;" allowTransparency="true"></iframe></div>
			<div style="float:left; width:80px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<g:plusone size="medium" href="http://ctovision.com/2011/02/continued-evolution-of-dod-cyber-policy/"></g:plusone>
			</div>
			<div style="float:left; width:95px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<a href="http://twitter.com/share" class="twitter-share-button" data-url="http://ctovision.com/2011/02/continued-evolution-of-dod-cyber-policy/"  data-text="Continued Evolution of DoD Cyber Policy" data-count="horizontal" data-via="ctovision">Tweet</a>
			</div><div style="float:left; width:105px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;"><script type="in/share" data-url="http://ctovision.com/2011/02/continued-evolution-of-dod-cyber-policy/" data-counter="right"></script></div>			
			<div style="float:left; width:85px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;"><script src="http://www.stumbleupon.com/hostedbadge.php?s=1&amp;r=http://ctovision.com/2011/02/continued-evolution-of-dod-cyber-policy/"></script></div>			
			</div><div style="clear:both"></div><div style="padding-bottom:4px;"></div><p><a href="http://ctovision.com"><img class="alignleft size-medium wp-image-12119" style="margin: 4px;" title="lynn" src="http://ctovision.com/wp-content/uploads/2011/02/lynn-240x300.jpg" alt="" width="240" height="300" /></a>The deputy secretary of Defense, <a href="http://www.defense.gov/bios/biographydetail.aspx?biographyid=171">the Honorable William J. Lynn III</a>, delivered remarks at the <a href="http://www.rsaconference.com/index.htm">RSA conference</a> that captures a snapshot of DoD cyber policies.</p>
<p>This is consistent with the continually improving path the department has been on for the last several years. I recommend a good read of the remarks and hope you share my excitement over the great work here.</p>
<p>I would only add that I continue to hear from practitioners of cyber security in the field that far more work is required, especially work in training and educating the middle and upper management of the Services. There is a great deal of hard work left to do. So, my recommendation: read the remarks delivered by the DepSecDef, but if you have ideas on how to continually enhance security and cyber threat awareness find ways to get them to DoD. Security related technologies remain critically important but also key are ways to teach at scale. Maybe the big need now is new ways to do automated computer based training that are not the old clunky industrial age computer based training programs currently in use. We need some way of really projecting threat and security info into the brains of senior and middle management and if the answer is that we should do more of the same maybe that isn&#8217;t the right answer. If you have thoughts there please share them.</p>
<p>But please do so after a review of current DoD policies, they are really looking up. There is a great deal we should be proud of here.</p>
<p>The following is from: <a id="rrtaa28" title="Web link for this Page" href="http://www.defense.gov/Speeches/Speech.aspx?SpeechID=1535">http://www.defense.gov/Speeches/Speech.aspx?SpeechID=1535</a></p>
<p>Remarks on Cyber at the RSA Conference</p>
<p><em>As Delivered by William J. Lynn, III, San Francisco, California, Tuesday, February 15, 2011</em></p>
<p>Thank you again to RSA for recognizing the Defense Department’s contributions to cyber policy.</p>
<p>This is without question the most technically sophisticated audience I have addressed.  So it is with some reservation that I stand before you today.</p>
<p>When it comes to information technology, I am of an “in-between” age.  I am not too old to have shunned technology altogether.  I use a computer, a blackberry, even an iPad.  But I lack the intuitive understanding of those who have grown up in the digital age.  In other words, I have no idea how these devices actually work.  I stopped my education at being able to program my VCR.</p>
<p>Fortunately, the young men and women who make up most of our military are much more adept than me.  They, like you, are digital natives.  And the information technologies that they operate have revolutionized how the military organizes, trains, and fights.  Information technologies are at the core of our most important military capabilities.  They give us the ability to navigate with accuracy, communicate with certainty, see the battlefield with clarity, and strike with precision.</p>
<p>But for all the wonderful capability technology enables in our military, it also introduces enormous vulnerabilities.  We learned the hard way in 2008 when a foreign intelligence agency used a thumb drive to penetrate our classified computer systems—something we thought was impossible.  It was our worst fear: a rogue program operating silently on our system, poised to deliver operational plans into the hands of an enemy.</p>
<p>Unfortunately, the cyber threat continues to mature, posing dangers to our security that far exceeds the 2008 breach of our classified systems.</p>
<p>Today I want to discuss the development of the cyber threat, how that threat might manifest itself, and, finally, how we—government and industry—can work together to keep America safe in the digital age.</p>
<p>To date, the most prevalent cyber threat has been exploitation of our networks.  By that, I mean the theft of information and data from both government and commercial networks.  On the government side, foreign intelligence services have ex-filtrated military plans and weapons systems designs.  Commercially, valuable source code and intellectual property has likewise been stolen from business and universities.  The recent intrusions in the oil and gas sector and at NASDAQ join those that occurred at Google as further, troubling instances of a widespread and serious phenomenon.</p>
<p>This kind of cyber exploitation does not have the dramatic impact of a conventional military attack.  But over the long term it has a deeply corrosive effect.  It blunts our edge in military technology and saps our competitiveness in the global economy.</p>
<p>More recently, a second threat has emerged—and that is disruption of our networks.  This is where an adversary seeks to deny or degrade the use of an important government or commercial network.  This happened in the denial of service attacks against Estonia in 2007 and Georgia in 2008.  And it occurred when the hacker group Anonymous targeted eBay and Paypal.  The effect is usually reversible.  But the resulting economic damage and loss of confidence may not be.</p>
<p>To this point, the disruptive attacks we have seen are relatively unsophisticated in nature, short in duration, and narrow in scope.  In the future, more capable adversaries could potentially immobilize networks on an even wider scale, for longer periods of time.</p>
<p>The third and most dangerous cyber threat is destruction, where cyber tools are used to cause physical damage. This development—which marks a strategic shift in the cyber threat—is only just emerging. But when you look at what tools are available, it is clear that this capability exists.  It is possible to imagine attacks on military networks or critical infrastructure—like our transportation system and energy sector—that cause severe economic damage, physical destruction, or even loss of life.</p>
<p>Of course, it is possible that destructive cyber attacks will never be launched.  Regrettably, however, few weapons in the history of warfare, once created, have gone unused.  For this reason, we must have the capability to defend against the full range of cyber threats.  This is indeed the goal of the Defense Department’s new cyber strategy, and it is why we are pursuing that strategy with such urgency.</p>
<p>Our cyber strategy recognizes that we are in the midst of a strategic shift in the cyber threat.  The threat is moving up a ladder of escalation, from exploitation to disruption to destruction.  As this threat continues to mature, there are several ways it may materialize.</p>
<p>Today, the highest levels of cyber capabilities reside in nation-states.  Thus far, nation-states have primarily deployed their capabilities to exploit adversaries’ networks, rather than to disrupt or destroy them.  More than 100 foreign intelligence agencies have attempted intrusions on our networks, but these intrusions are largely limited to exploitation.  Although we cannot dismiss the threat of a rogue state lashing out, most nations have no more interest in conducting a destructive cyber attack against us than they do a conventional military attack.  The risk for them is too great.  Our military power provides a strong deterrent.</p>
<p>So even though nation-states are the most capable actors, they are the least likely to initiate a catastrophic attack in current circumstances.  We nevertheless must prepare for the likelihood that cyber attacks will be part of any future conventional conflict.  We need cyber capabilities that will allow us to defend against the most skilled nation-state.</p>
<p>Of greater concern in the near term is the accidental release of toxic malware.  A destructive tool could inadvertently escape its creator and be let loose “in the wild.”  Certain types of malware can propagate worldwide in minutes.  The accidental spread of toxic malware may not cause as much damage as a pre-meditated attack, but it could nevertheless be a potential source of disruption for critical networks.  We have to take the accidental release scenario seriously.  To prevent something as trivial as a thumb drive stuck in the wrong computer from having a calamitous effect on the global economy, we need defenses that can stop toxic malware.</p>
<p>Perhaps the greatest concern in our judgment is a terrorist group that gains the level of disruptive and destructive capability currently possessed by nation-states.  Al Qaeda, which has vowed to unleash cyber attacks, has not yet done so.  But it is possible for a terrorist group to develop cyber attack tools on their own or to buy them on the black market.  As you know better than I, a couple dozen talented programmers wearing flip-flops and drinking Red Bull can do a lot of damage.  And with few tangible assets to lose in a confrontation, terrorists groups are difficult to deter.  We have to assume that if they have the means to strike, they will do so.</p>
<p>We stand at an important juncture in the development of cyber threats.  More destructive tools are being developed, but have not yet been used.  And the most malicious actors have not yet laid their hands on the most harmful capabilities.  But this situation will not hold forever.  Terrorist organizations or rogue states could obtain and use destructive cyber capabilities.  We need to develop stronger defenses before this occurs.  We have a window of opportunity—of uncertain length—in which to gird our networks against more perilous threats.</p>
<p>The Defense Department is moving aggressively to counter this evolving threat.  Over the past two years, we have deployed specialized active defenses to protect military networks.  We have established the U.S. Cyber Command to operate and defend our networks.  We have begun discussions with our allies on implementing shared cyber defenses.  And we are in the final stages of review of a comprehensive cyber strategy, called Cyber 3.0.</p>
<p>That strategy is based on five pillars.</p>
<p>First, the Defense Department has formally recognized cyberspace as a new domain of warfare—like land, air, sea and space.  Treating cyberspace as a domain means that the military needs to operate and defend its networks, which is why we established U.S. Cyber Command.   It also means that the military services need to organize, train, and equip forces to perform cyber missions.  Each of the services has recently created organizations to do just that.  In short, to maintain our national security, our military must be as capable in this new domain as it is in the more traditional domains.</p>
<p>Second, we have equipped our networks with active defenses.  It is not adequate to rely on passive defenses that employ only after-the-fact detection and notification.  We have developed and now employ a more dynamic approach to cyber defense.  Active defenses operate at network speed, using sensors, software, and signatures derived from intelligence to detect and stop malicious code before it succeeds.  Because sophisticated intrusions will not always be caught at the boundary, active defense also enables us to hunt on our own networks and to cordon and deflect malicious software.  Although no network will ever be 100 percent secure, active defenses have significantly enhanced the security of the .mil domain.</p>
<p>Third, we must ensure that the critical infrastructure on which our military relies is also protected.  The threats we face in cyberspace target much more than military systems.  Cyber intruders have already probed many government networks, our electrical grid, and our financial system.  Secure military networks will matter little if the power grid goes down or the rest of government stops functioning—which is why the Department of Homeland Security’s cyber mission is so crucial.</p>
<p>Secretary Napolitano spoke here last year about her Department’s efforts to protect the .com and .gov domains.  I am pleased to follow her this year to discuss how the military provides support to DHS in the cyber domain.</p>
<p>During a natural disaster, like a hurricane, military troops and helicopters are often used by FEMA to help deliver relief.  In a similar vein, the military’s cyber capabilities will be available to civilian leaders to help protect the networks that support government operations and critical infrastructure.  As with all cases of military support to civilian authorities, these resources will be under civilian control and used according to civil laws.</p>
<p>This is why we established a formal partnership with DHS in October 2010.  Through pilot programs like Einstein 3, military technologies—including active defenses—are being used by DHS to secure government networks.  We have also established a joint planning capability and exchange of personnel—including in our cyber watch centers.  These initiatives substantially enhance the federal government’s ability to confront cyber threats.</p>
<p>Fourth, we are building collective defenses with our allies.   Just as our air defenses are linked to those of our allies to provide warning of aerial attack, so too can we cooperatively monitor our computer networks for cyber intrusions.</p>
<p>The fifth pillar of our strategy is to marshal our country’s vast technological and human resources to ensure the United States retains its preeminent capabilities in cyberspace, as it does in other domains.  I want to spend the remainder of my time discussing this aspect of the strategy and its implications for private industry.</p>
<p>Cyber 3.0 is an important milestone for our Department.  But even if we execute it flawlessly, the fact is that the government cannot protect our nation alone.  Cyber defense is not a military mission, like defending our airspace, where the sole responsibility lies with the military.  The overwhelming percentage of our nation’s critical infrastructure—including the internet itself—is largely in private hands.  It is going to take a public-private partnership to secure our networks.</p>
<p>To be successful, I believe we need to pursue several avenues of industry-government cooperation.</p>
<p>The first is information sharing.  Telecommunications providers have unparalleled visibility into global networks.  They can detect attacks transiting their systems, and in many cases alert customers.  Often, they have the best operational capacity to respond.</p>
<p>We are working with key technology and defense companies to exchange information that improves cyber security practices and capabilities.  Senior executives now meet regularly with top officials from the Department of Defense, Department of Homeland Security, and the Director of National Intelligence.  This public-private partnership, called the Enduring Security Framework, not only helps identify vulnerabilities.  It also mobilizes government and industry expertise to address security risks before harm is done.</p>
<p>The second avenue of public-private cooperation involves working to reverse the current advantage held by intruders seeking to penetrate networks.</p>
<p>The internet was designed to be open, transparent, and interoperable.  It was designed to ensure the broad flow of information and the easy introduction of new technology.  Security and identity management were secondary objectives in system design.  These structural properties have endowed the internet with undeniable dynamism.  But they have also given attackers a built-in advantage.</p>
<p>You can see just how significant this advantage is by comparing anti-virus software to the malware it attempts to defeat.  Sophisticated anti-virus suites now run on about ten million lines of code.  This is up from one million lines ten years ago.  Yet malware written with as little as 125 lines of code has remained able to penetrate anti-virus software across this same period.</p>
<p>Because of this imbalance between offense and defense, we need the scientific community to help strengthen our network architecture.  We must embed higher levels of security and authentication in hardware, operating systems, and network protocols.  The National Strategy for Trusted Identities in Cyberspace, a White House initiative, will lay one building block of this more secure future.  Our digital infrastructure will not change overnight, but over the course of a generation we have a real opportunity to engineer our way out of some of the most problematic vulnerabilities of today’s technology.</p>
<p>To help spur this effort, the Department of Defense will add half a billion dollars in new research funds for cyber technologies, with a focus on areas like cloud computing, virtualization, and encrypted processing.  Through our “Cyber Accelerator” pilot, we are also providing seed capital for companies to develop dual-use technologies that serve our cyber security needs.</p>
<p>Of course, it is not enough just to develop innovative cyber technologies.  We must also accelerate the introduction of them inside the Department.</p>
<p>It currently takes the Pentagon 81 months to field a new computer system.  The iPhone was developed in just 24 months.  That is less time than it takes us to prepare a budget and receive Congressional approval for it.  This means I get permission to start a project at the same time Steve Jobs is talking on his new iPhone.  It’s not a fair trade.  We have to close this gap.  Silicon Valley can help us.</p>
<p>Today I am announcing our intent to expand the Information Technology Exchange Program.  This program, whose pilot is just getting underway, will allow for the exchange of IT and cyber security personnel between government and industry.  We want senior IT managers in the Department to incorporate more commercial practices.  And we want seasoned industry professionals to experience first-hand the unique challenges we face at DoD.   As we expand participation I hope many of you consider applying.  The Department, and the nation, need your expertise.</p>
<p>I am also announcing a program to better utilize cyber expertise within the National Guard and Reserve.  Our Department has many soldiers, sailors, airman, and marines who work in the civilian IT world, and who continue to serve their country in the National Guard or Reserves.  To make better and more systematic use of their specialized skills, we will increase the number of Guard and Reserve units that have a dedicated cyber mission.</p>
<p>A third and more challenging avenue of industry-government cooperation is how to extend the high level of protection afforded by active defenses to private networks that operate infrastructure crucial to our military and our economy.</p>
<p>Because of our intelligence capabilities, government has a deep and unique awareness of certain cyber threats.  This classified “threat-based” information, and the technology we have developed to employ it in network defense, can significantly increase the effectiveness of cyber security practices that industry is already carrying out.</p>
<p>We already share unclassified threat information on a limited scale with defense companies whose networks contain sensitive information.  How to share classified signatures and the technology to employ them across the full range of industrial sectors that support the military and underpin the economy is a pressing policy question.  Owners and operators of critical infrastructure could benefit from the protections that active defenses provide.  We have the technology and know-how to apply them in a civilian context.  The real challenge at this point is developing the legal and policy framework to do so.</p>
<p>It is clear that securing our networks will require unprecedented industry and government cooperation.  With the threats we face, working together is not only a national imperative.  It is also one of the great technical challenges of our time.</p>
<p>The Department of Defense is moving aggressively to protect our own networks and to support civil authorities as they defend our nation’s digital infrastructure.  Over the longer term, we must develop technology that reverses the present advantage held by those seeking to steal our secrets and cause us harm.</p>
<p>My hope is that by working together, we can replicate the success achieved over ten years ago, by the partnership between government and industry to address Y2K in advance of the year 2000.</p>
<p>The challenge we face today in cyber security is similar in several respects.  It is global in scope.  It involves nearly everything digital.  And it will require government working with industry at all levels.</p>
<p>But unlike Y2K, we now face malicious, adaptive actors, bent on harm, rather than inanimate computer code written without the millennium in mind.</p>
<p>In Y2K, we also had a known deadline to focus the nation’s attention and resources.</p>
<p>We have a deadline in today’s effort as well—preventing a destructive cyber attack.  We just don’t know when it is.</p>
<p>My sincere hope is that we can solve this problem before an incident happens, rather than needing an incident to get it solved.</p>
<p>With Y2K, we succeeded.  Our response was so well managed, and so effective, it left people wondering whether there was ever a problem at all.</p>
<p>That brings me to what you can do.</p>
<p>In the cyber domain, soldiers are not the only ones on the front lines.  Scientists, engineers, and innovators are too, including all the companies represented here today.</p>
<p>Whether by developing more secure technologies in labs and start-ups or by serving in our cyber workforce yourselves, there is an opportunity for each of us to lay our hands on the wheel of innovation, and to spin it faster and with greater purpose.</p>
<p>A keystroke can travel twice around the world to devastating effect in 300 milliseconds—literally the blink of an eye.  But if we harness the knowledge in industry to the resources in government, we can create defenses that act even faster.</p>
<p>Throughout American history, at moments of great challenge and crisis, industry and the private sector have stood up, partnered with government, and developed the capabilities to keep our country safe.  The incredible technologies that have resulted—including the internet itself—have made our military the most effective fighting force in the world, and our economy the most advanced of any nation.</p>
<p>I’m confident that, just like generation of innovators and pioneers before you, your talents, your expertise, your vision, can help keep our nation strong and prosperous for generations to come.</p>
<p>Thank you very much</p>
<h6 class="zemanta-related-title" style="font-size: 1em;">Related articles</h6>
<ul class="zemanta-article-ul">
<li class="zemanta-article-ul-li"><a href="http://ctovision.com/2011/01/attend-fedscoop-cybersecurity-summit/">Attend FedScoop CyberSecurity Summit</a> (ctovision.com)</li>
<li class="zemanta-article-ul-li"><a href="http://www.v3.co.uk/v3/news/2274805/rsa-department-defence">RSA: Government sees changes in cyber attacks</a> (v3.co.uk)</li>
<li class="zemanta-article-ul-li"><a href="http://www.informationweek.com/news/government/security/showArticle.jhtml?articleID=229100127&amp;cid=RSSfeed_IWK_ALL">DoD, NATO Huddle On Cybersecurity</a> (informationweek.com)</li>
<li class="zemanta-article-ul-li"><a href="http://www.wired.com/dangerroom/2011/02/gates-boosts-cash-to-darpa-for-cyber-tech-research/">Gates Boosts Cash to Darpa for Cyber Tech Research</a> (wired.com)</li>
<li class="zemanta-article-ul-li"><a href="https://365.rsaconference.com/blogs/rsa-conference-blog/2011/02/15/rsa-conference-2011-award-winners-announced">RSA Conference 2011 Award Winners Announced!</a> (365.rsaconference.com)</li>
<li class="zemanta-article-ul-li"><a href="http://mountainrunner.us/2011/02/Clauser_revising_strategic_communication_information_operations_at_defense.html">Revising Information Operations Policy at the Department of Defense</a> (mountainrunner.us)</li>
</ul>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><img class="zemanta-pixie-img" style="border: none; float: right;" src="http://img.zemanta.com/pixy.gif?x-id=1734b66a-64a2-4ff0-a1a4-fe127624bdb1" alt="" /></div>

<div class="nr_clear"></div>	
	<div id="nrelate_related_7" class="nrelate nrelate_related nrelate_default nr_100"><h3 class="nr_title">You may also like -</h3><div class="nr_inner"><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/07/deputy-secretary-of-defense-lynn-cyber-strategy%e2%80%99s-thrust-is-defensive/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/fa5ccb5775a00b753a4d3a3d6317d2a6_thumb_200px-2010-05-14-USCYBERCOM_Logo.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Deputy Secretary of Defense Lynn: Cyber Strategy’s Thrust is Defensive</span></span></a><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2010/09/jtf-cnd-to-jtf-cno-to-jtf-gno-to-cybercom/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/0a356c95fe882b318e7d87a475ce381e_thumb_300px-Jtf-gno1.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">JTF-CND to JTF-CNO to JTF-GNO to Cybercom</span></span></a><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/05/defense-intelligence-information-enterprise-conference-6-9-june-2011/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/1e5e05fa941a88e0303a50c95c5798fc_thumb_di2e.png" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Defense Intelligence Information Enterprise Conference 6-9 June 2011</span></span></a><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2010/05/2010-dodiis-worldwide-conference/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/19e6131b6d2ff09319fb2031d793a30a_thumb_300px-DIAC.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">2010 DoDIIS Worldwide Conference</span></span></a><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/09/fedcyber-com-cybersecurity-summit-on-wednesday-september-28/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/22f67ff1bc473d1363ba44d476bf8aab_thumb_FedCyber-Logo41.png" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">FedCyber.com Cybersecurity Summit on Wednesday, September 28</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://www.bobgourley.com/2011/10/evolving-approaches-to-cyber-threats/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/background-red.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Evolving Approaches to Cyber Threats</span><span class="nr_source">Bob Gourley</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/10/leadership-changes-in-dod-it-logistics-cyber/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/stone-wall-background.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Leadership changes in DoD IT, logistics, cyber</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/09/pentagon-dhs-probe-expanding-sharing-of-cyber-threat-intel-with-contractors/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/great-red-wood-circle-background.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Pentagon, DHS Probe Expanding Sharing of Cyber Threat Intel with Contractors</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/11/pentagon-cio%e2%80%99s-tech-revamp-4-priorities/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/great-red-wood-circle-background.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Pentagon CIO’s Tech Revamp: 4 Priorities</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://www.bobgourley.com/2011/12/cyber-conflict-studies-association-history-contest/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/background-blue-ad-white-strips.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Cyber Conflict Studies Association History Contest</span><span class="nr_source">Bob Gourley</span></span></a><div style="clear:both;"></div></div> <script type="text/javascript"> nRelate.getNrelatePosts("http://api.nrelate.com/rcw_wp/0.50.3/nr_load.php?tag=nrelate_related&keywords=Continued+Evolution+of+DoD+Cyber+Policy&domain=ctovision.com&url=http%3A%2F%2Fctovision.com%2F2011%2F02%2Fcontinued-evolution-of-dod-cyber-policy%2F&nr_ad_number=0&nr_div_number=7");</script></div>
	<!--[if IE 6]>
		<script type="text/javascript">jQuery('.nrelate_default').removeClass('nrelate_default');</script>
	<![endif]-->
	<script type="text/javascript">nRelate.fixHeight("nrelate_related_7");nRelate.adAnimation("nrelate_related_7");nRelate.tracking("rc");</script>
	
<div class="nr_clear"></div>]]></content:encoded>
			<wfw:commentRss>http://ctovision.com/2011/02/continued-evolution-of-dod-cyber-policy/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>The most well thought out research agenda for cyber security I have seen to date</title>
		<link>http://ctovision.com/2011/02/the-most-well-thought-out-research-agenda-for-cyber-security-i-have-seen-to-date/</link>
		<comments>http://ctovision.com/2011/02/the-most-well-thought-out-research-agenda-for-cyber-security-i-have-seen-to-date/#comments</comments>
		<pubDate>Thu, 03 Feb 2011 04:46:21 +0000</pubDate>
		<dc:creator>BobGourley</dc:creator>
				<category><![CDATA[Cyber Security]]></category>
		<category><![CDATA[Gov2.0]]></category>
		<category><![CDATA[CCSA]]></category>
		<category><![CDATA[Computer security]]></category>
		<category><![CDATA[cyber conflict]]></category>
		<category><![CDATA[cyber security]]></category>
		<category><![CDATA[DHS]]></category>
		<category><![CDATA[HSARPA]]></category>
		<category><![CDATA[Research and Development]]></category>
		<category><![CDATA[Software Assurance]]></category>
		<category><![CDATA[United States Department of Homeland Security]]></category>

		<guid isPermaLink="false">http://ctovision.com/?p=11959</guid>
		<description><![CDATA[Tweet Opinion: the most mature research agenda on the topic of cyber security is the one established by our nation&#8217;s Department of Homeland Security. I&#8217;m keeping an open mind, and would love to learn of other cyber security research agenda&#8217;s that might be as well defined. But I have to tell you I have seen [...]]]></description>
			<content:encoded><![CDATA[<div class="bottomcontainerBox" style="border:1px solid #808080;background-color:#F0F4F9;">
			<div style="float:left; width:85px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fctovision.com%2F2011%2F02%2Fthe-most-well-thought-out-research-agenda-for-cyber-security-i-have-seen-to-date%2F&amp;layout=button_count&amp;show_faces=false&amp;width=85&amp;action=like&amp;font=verdana&amp;colorscheme=light&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width=85px; height:21px;" allowTransparency="true"></iframe></div>
			<div style="float:left; width:80px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<g:plusone size="medium" href="http://ctovision.com/2011/02/the-most-well-thought-out-research-agenda-for-cyber-security-i-have-seen-to-date/"></g:plusone>
			</div>
			<div style="float:left; width:95px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<a href="http://twitter.com/share" class="twitter-share-button" data-url="http://ctovision.com/2011/02/the-most-well-thought-out-research-agenda-for-cyber-security-i-have-seen-to-date/"  data-text="The most well thought out research agenda for cyber security I have seen to date" data-count="horizontal" data-via="ctovision">Tweet</a>
			</div><div style="float:left; width:105px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;"><script type="in/share" data-url="http://ctovision.com/2011/02/the-most-well-thought-out-research-agenda-for-cyber-security-i-have-seen-to-date/" data-counter="right"></script></div>			
			<div style="float:left; width:85px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;"><script src="http://www.stumbleupon.com/hostedbadge.php?s=1&amp;r=http://ctovision.com/2011/02/the-most-well-thought-out-research-agenda-for-cyber-security-i-have-seen-to-date/"></script></div>			
			</div><div style="clear:both"></div><div style="padding-bottom:4px;"></div><p><a href="http://ctovision.com"><img class="alignleft size-medium wp-image-11961" style="margin: 4px;" title="DHS S&amp;T" src="http://ctovision.com/wp-content/uploads/2011/02/dhssnt-300x278.png" alt="" width="240" height="222" /></a><strong>Opinion:</strong> the most mature research agenda on the topic of cyber security is the one established by our nation&#8217;s <a href="http://www.dhs.gov/index.shtm" target="_blank">Department of Homeland Security</a>.</p>
<p>I&#8217;m keeping an open mind, and would love to learn of other cyber security research agenda&#8217;s that might be as well defined. But I have to tell you I have seen research programs associated with cyber for years and this one is impressive.</p>
<p>The details of the topic areas of this research activity are embedded in a Broad Area Announcement (BAA) posted on <a href="https://www.fbo.gov/index?s=opportunity&amp;mode=form&amp;id=3c71c829bc28fcea61aef3a5e0f58ffe&amp;tab=core&amp;tabmode=list&amp;=">FedBizOpps</a>. The PDF of the announcement is located here: <a href="http://ctovision.com/wp-content/uploads/2011/02/Cyber_Security_BAA_11-02-2.pdf">http://ctovision.com/wp-content/uploads/2011/02/Cyber_Security_BAA_11-02-2.pdf</a></p>
<p>You can also find info on this research agenda at:</p>
<p><a href="https://baa2.st.dhs.gov/portal/BAA/">https://baa2.st.dhs.gov/portal/BAA/</a></p>
<p>A summary of the agenda is pasted below for your review, but please visit review the details on the DHS site and at FedBizOpps for more info. And, if you know of any researcher who has an ability to contribute to the cyber mission needs outlined in this BAA, please get word of the BAA to the researcher. Our nation needs research into these topics, and it looks like DHS may be making some funding available for research into these topics.</p>
<p>I&#8217;d also recommend the DHS S&amp;T Topics for Cyber Research by reviewed by computer science students and teachers.  They should also be considered by IT firms large and small, even if the firms are not planning on responding to the DHS announcement.  Anyone doing any research on cyber anywhere would benefit from a review of this agenda, I believe.</p>
<p><strong>Summary from the DHS S&amp;T website:</strong></p>
<table align="center">
<tbody>
<tr>
<td><span style="text-decoration: underline;"><strong>Description</strong></span></td>
</tr>
<tr>
<td>The Department of Homeland Security (DHS) Science and Technology (S&amp;T) Homeland Security Advanced Research Projects Agency (HSARPA) Cyber Security Division&#8217;s (CSD) announce a Broad Agency Announcement (BAA) for Fiscal Year 2011 to improve the security in both Federal networks and the larger Internet. This Broad Agency Announcement (BAA) seeks ideas and proposals for Research and Development (R&amp;D) in 14 Technical Topic Areas (TTAs) related to CSD. The total estimated value of this acquisition is $40 million. Cyber attacks are increasing in frequency and impact. Even though these attacks have not yet had a significant impact on our Nation&#8217;s critical infrastructures, they have demonstrated that extensive vulnerabilities exist in information systems and networks, with the potential for serious damage. The effects of a successful cyber attack might include: serious consequences for major economic and industrial sectors, threats to infrastructure elements such as electric power, and disruption of the response and communications capabilities of first responders. The DHS S&amp;T mission is to conduct, for homeland security purposes, research, development, test and evaluation (RDT&amp;E) and timely transition of cyber security capabilities to operational units within DHS, as well as local, state, Federal and operational end users in critical infrastructure. Cyber security is defined in broad terms to encompass the usual attributes of security, as well as reliability, availability, and survivability in the face of adversary attack and accidental fault, while preserving privacy. DHS S&amp;T invests in programs offering the potential for revolutionary changes in technologies that promote homeland security and accelerate the prototyping and system prototype demonstration in an operational environment of technologies that reduce homeland vulnerabilities. A critical area of focus for DHS is the development and deployment of technologies to protect the nation&#8217;s cyber infrastructure, including the Internet and other critical infrastructures that depend on computer systems for their mission.</td>
</tr>
</tbody>
</table>
<table align="center">
<tbody>
<tr>
<td align="left">
<ul>
<li><span style="text-decoration: underline;"><strong>TTA 01</strong></span> &#8211; Software Assurance</li>
<li><span style="text-decoration: underline;"><strong>TTA 02</strong></span> &#8211; Enterprise-Level Security Metrics</li>
<li><span style="text-decoration: underline;"><strong>TTA 03</strong></span> &#8211; Usable Security</li>
<li><span style="text-decoration: underline;"><strong>TTA 04</strong></span> &#8211; Insider Threat</li>
<li><span style="text-decoration: underline;"><strong>TTA 05</strong></span> &#8211; Secure, Resilient Systems and Networks</li>
<li><span style="text-decoration: underline;"><strong>TTA 06</strong></span> &#8211; Modeling of Internet Attacks</li>
<li><span style="text-decoration: underline;"><strong>TTA 07</strong></span> &#8211; Network Mapping and Measurement</li>
<li><span style="text-decoration: underline;"><strong>TTA 08</strong></span> &#8211; Incident Response Communities</li>
<li><span style="text-decoration: underline;"><strong>TTA 09</strong></span> &#8211; Cyber Economics</li>
<li><span style="text-decoration: underline;"><strong>TTA 10</strong></span> &#8211; Digital Provenance</li>
<li><span style="text-decoration: underline;"><strong>TTA 11</strong></span> &#8211; Hardware-Enabled Trust</li>
<li><span style="text-decoration: underline;"><strong>TTA 12</strong></span> &#8211; Moving-Target Defense</li>
<li><span style="text-decoration: underline;"><strong>TTA 13</strong></span> &#8211; Nature-Inspired Cyber Health</li>
<li><span style="text-decoration: underline;"><strong>TTA 14</strong></span> &#8211; Software Assurance MarketPlace (SWAMP)</li>
</ul>
</td>
</tr>
</tbody>
</table>
<p>Summaries of these task areas:</p>
<table width="100%" bgcolor="#f7f7f7">
<tbody>
<tr>
<td>
<strong>TOPIC NUMBER: <a name="0">TTA 01</a></strong></p>
<p><strong>TITLE: </strong>Software Assurance</p>
<p><strong>DESCRIPTION: </strong></p>
<p>The nation&#8217;s critical infrastructure (energy, transportation, telecommunications, banking and finance, and others), businesses, and services are extensively and increasingly controlled and enabled by software. Vulnerabilities in that software put those resources at risk. The risk is compounded by software size and complexity, the ways in which software is developed and maintained, the use of software produced by unvetted suppliers, and the interdependence of software systems. Software quality addresses the presence of internal flaws and vulnerabilities in software threatening its correct or predictable operation and use. Software assurance deals with the root of the problem by improving software security.</td>
</tr>
<tr bgcolor="#ffffff">
<td></td>
</tr>
</tbody>
</table>
<table width="100%" bgcolor="#f7f7f7">
<tbody>
<tr bgcolor="#efefef">
<td></td>
</tr>
<tr>
<td>
<strong>TOPIC NUMBER: <a name="1">TTA 02</a></strong></p>
<p><strong>TITLE: </strong>Enterprise-Level Security Metrics</p>
<p><strong>DESCRIPTION: </strong></p>
<p>Defining effective information security metrics has proven difficult, even though there is general agreement that such metrics could allow measurement of progress in security measures and, at a minimum, rough comparisons of security between systems. Metrics underlie and quantify progress in many other system security areas. &#8220;You cannot manage what you cannot measure,&#8221; as the saying goes; the lack of sound and practical security metrics is severely hampering progress both in research and engineering of secure systems. However, general community agreement on meaningful metrics has been hard to achieve. This is due in part to the rapid evolution of IT, as well as the shifting locus of adversarial action.</td>
</tr>
<tr bgcolor="#ffffff">
<td></td>
</tr>
</tbody>
</table>
<table width="100%" bgcolor="#f7f7f7">
<tbody>
<tr bgcolor="#efefef">
<td></td>
</tr>
<tr>
<td>
<strong>TOPIC NUMBER: <a name="2">TTA 03</a></strong></p>
<p><strong>TITLE: </strong>Usable Security</p>
<p><strong>DESCRIPTION: </strong></p>
<p>Although the problem of achieving usable security is universal &#8211; it affects everyone, and everyone stands to benefit enormously if usability is successfully addressed as a core aspect of security &#8211; it affects different users in different ways, depending on applications, settings, policies, and user roles. The guiding principles may indeed be universal, but there is certainly no general one-size-fits-all solution.</td>
</tr>
<tr bgcolor="#ffffff">
<td></td>
</tr>
</tbody>
</table>
<table width="100%" bgcolor="#f7f7f7">
<tbody>
<tr bgcolor="#efefef">
<td></td>
</tr>
<tr>
<td>
<strong>TOPIC NUMBER: <a name="3">TTA 04</a></strong></p>
<p><strong>TITLE: </strong>Insider Threat</p>
<p><strong>DESCRIPTION: </strong></p>
<p>Cybersecurity measures are often focused on threats from outside an organization, rather than threats posed by untrustworthy individuals inside an organization. However, insider threats are the source of many losses in many critical infrastructure industries. In addition, well-publicized intelligence community moles such as Aldrich Ames have caused enormous and irreparable harm to national interests. This TTA focuses on insider threats to our cyber systems, and presents a high-impact research program that could aggressively curtail some aspects of this problem. At a high level, opportunities exist to mitigate insider threats through aggressive profiling and monitoring of users of critical systems, &#8220;fishbowling&#8221; suspects, &#8220;chaffing&#8221; data and services by users who are not entitled to access, and finally &#8220;quarantining&#8221; confirmed malevolent actors to contain damage and leaks while collecting actionable counter-intelligence and legally acceptable evidence.</td>
</tr>
<tr bgcolor="#ffffff">
<td></td>
</tr>
</tbody>
</table>
<table width="100%" bgcolor="#f7f7f7">
<tbody>
<tr bgcolor="#efefef">
<td></td>
</tr>
<tr>
<td>
<strong>TOPIC NUMBER: <a name="4">TTA 05</a></strong></p>
<p><strong>TITLE: </strong>Secure, Resilient Systems and Networks</p>
<p><strong>DESCRIPTION: </strong></p>
<p>Survivability is the capability of a system to fulfill its mission, in a timely manner, in the presence of attacks, failures, or accidents. Part of the survivability attribute of systems and networks includes being secure and resilient to attack. This is meaningful, in practice, only with respect to well-defined mission requirements against which the survivability can be evaluated and measured.</td>
</tr>
<tr bgcolor="#ffffff">
<td></td>
</tr>
</tbody>
</table>
<table width="100%" bgcolor="#f7f7f7">
<tbody>
<tr>
<td>
<strong>TOPIC NUMBER: <a name="5">TTA 06</a></strong></p>
<p><strong>TITLE: </strong>Modeling of Internet Attacks</p>
<p><strong>DESCRIPTION: </strong></p>
<p>This TTA researches, develops and applies modeling and analysis capabilities to predict the effects of cyber attacks on Federal Government and other critical infrastructures. Two main areas are identified: malware and botnets; and situational understanding and attack attribution.</td>
</tr>
<tr bgcolor="#ffffff">
<td></td>
</tr>
</tbody>
</table>
<table width="100%" bgcolor="#f7f7f7">
<tbody>
<tr>
<td>
<strong>TOPIC NUMBER: <a name="6">TTA 07</a></strong></p>
<p><strong>TITLE: </strong>Network Mapping and Measurement</p>
<p><strong>DESCRIPTION: </strong></p>
<p>The protection of cyber infrastructure depends on the ability to identify critical Internet resources, incorporating an understanding of geographic and topological mapping of Internet hosts and routers. A better understanding of connectivity richness among ISPs will help to identify critical infrastructure. Associated data analysis will allow better understanding of peering relationships, and will help identify infrastructure components in greatest need of protection. Improved router level maps (both logical and physical) will enhance Internet monitoring and modeling capabilities to identify threats and predict the cascading impacts of various damage scenarios.</td>
</tr>
<tr bgcolor="#ffffff">
<td></td>
</tr>
</tbody>
</table>
<table width="100%" bgcolor="#f7f7f7">
<tbody>
<tr>
<td>
<strong>TOPIC NUMBER: <a name="7">TTA 08</a></strong></p>
<p><strong>TITLE: </strong>Incident Response Communities</p>
<p><strong>DESCRIPTION: </strong></p>
<p>Cyber security incident response (CSIR) teams, individuals, and communities have historically consisted of people and organizations that have been &#8220;in the right place at the right time.&#8221; Only recently has the community begun to specify the skills, abilities, structures, and support to create an effective and sustained incident response capability. While there is a good understanding of the technologies involved in CSIRTs, the operational community has not adequately studied the characteristics of individuals, teams, and communities that distinguish the great CSIR responders from the average technology contributor. In other areas where individual contributions are essential to success, e.g., first responders, commercial pilots, and military personnel, there have studies of the individual and group characteristics essential to success. To optimize the selection, training, and organization of CSIR personnel to support the essential cyber missions of DHS, a much greater understanding and appreciation of these characteristics must be achieved.</td>
</tr>
<tr bgcolor="#ffffff">
<td></td>
</tr>
</tbody>
</table>
<table width="100%" bgcolor="#f7f7f7">
<tbody>
<tr bgcolor="#efefef">
<td></td>
</tr>
<tr>
<td>
<strong>TOPIC NUMBER: <a name="8">TTA 09</a></strong></p>
<p><strong>TITLE: </strong>Cyber Economics</p>
<p><strong>DESCRIPTION: </strong></p>
<p>Today cyber crime pays. So does cyber-espionage. The state of cyber security today is, and in the future will be, significantly affected by economic conditions and factors. Cyber crime and espionage are making their own economic markets today, having gone well beyond the &#8220;script kiddie&#8221; and &#8220;hacker&#8221; personas to mature into big business on a global level. Gaining an understanding of the incentive structure is key to getting stakeholders to behave in a way that will improve overall security. Current cyber-related illegal activities are economically attractive for several reasons.</td>
</tr>
<tr bgcolor="#ffffff">
<td></td>
</tr>
</tbody>
</table>
<table width="100%" bgcolor="#f7f7f7">
<tbody>
<tr>
<td>
<strong>TOPIC NUMBER: <a name="9">TTA 10</a></strong></p>
<p><strong>TITLE: </strong>Digital Provenance</p>
<p><strong>DESCRIPTION: </strong></p>
<p>Individuals and organizations routinely work with, and make decisions based on, data that may have originated from many different sources and also may have been processed, transformed, interpreted, and aggregated by numerous entities between the original sources and the consumers. Without good knowledge about the sources and intermediate processors of the data, it can be difficult to assess the data&#8217;s trustworthiness and reliability, and hence its real value to the decision-making processes in which it is used.</td>
</tr>
<tr bgcolor="#ffffff">
<td></td>
</tr>
</tbody>
</table>
<table width="100%" bgcolor="#f7f7f7">
<tbody>
<tr bgcolor="#efefef">
<td></td>
</tr>
<tr>
<td>
<strong>TOPIC NUMBER: <a name="10">TTA 11</a></strong></p>
<p><strong>TITLE: </strong>Hardware-Enabled Trust</p>
<p><strong>DESCRIPTION: </strong></p>
<p>Hardware can be the final sanctuary and foundation of trust in the computing environment, based on the technologies that can be developed in the area of hardware-enabled trust and security. With cyber threats steadily increasing in sophistication, hardware can provide a game-changing foundation upon which to build tomorrow&#8217;s cyber infrastructure. But today&#8217;s hardware still provides limited support for security and capabilities that do exist are often not fully utilized by software. The hardware of the future also must exhibit greater resilience to function effectively under attack.</td>
</tr>
<tr bgcolor="#ffffff">
<td></td>
</tr>
</tbody>
</table>
<table width="100%" bgcolor="#f7f7f7">
<tbody>
<tr>
<td>
<strong>TOPIC NUMBER: <a name="11">TTA 12</a></strong></p>
<p><strong>TITLE: </strong>Moving-Target Defense</p>
<p><strong>DESCRIPTION: </strong></p>
<p>In the current environment, our systems are built to operate in a relatively static configuration. For example, addresses, names, software stacks, networks, and various configuration parameters remain relatively static over relatively long periods of time. This static approach is a legacy of information technology system design for simplicity in a time when malicious exploitation of system vulnerabilities was not a concern.</td>
</tr>
<tr bgcolor="#ffffff">
<td></td>
</tr>
</tbody>
</table>
<table width="100%" bgcolor="#f7f7f7">
<tbody>
<tr>
<td>
<strong>TOPIC NUMBER: <a name="12">TTA 13</a></strong></p>
<p><strong>TITLE: </strong>Nature-Inspired Cyber Health</p>
<p><strong>DESCRIPTION: </strong></p>
<p>Today, weeks and months may elapse before successful network penetrations are detected through laborious forensic analysis. Despite their potential to function with intelligence, today&#8217;s typical network components have very limited understanding of what passes through them, coupled with a correspondingly short memory. In the future, network components must have heightened ability to observe and record what is happening to and around them. With this new awareness of the system health and safety, these &#8220;self-aware systems&#8221; enjoy a range of options: these system may take preventative measures, rejecting requests which do not fit the profile of what is good, a priori, for the network; these systems can build immunological responses to the malicious agents which they sense in real time; these systems may refine the evidence they capture for the pathologist, as a diagnosis of last resort, or to support the development of new prevention methods. In the future, system owners should be able to monitor and control such dynamic cyber environments.</td>
</tr>
<tr bgcolor="#ffffff">
<td></td>
</tr>
</tbody>
</table>
<table width="100%" bgcolor="#f7f7f7">
<tbody>
<tr bgcolor="#efefef">
<td></td>
</tr>
<tr>
<td>
<strong>TOPIC NUMBER: <a name="13">TTA 14</a></strong></p>
<p><strong>TITLE: </strong>Software Assurance MarketPlace (SWAMP)</p>
<p><strong>DESCRIPTION: </strong></p>
<p>Technical Topic Area #1 on Software Assurance describes the need to address threats throughout the software development process and called for new methods, services, and capabilities in build, test, and analysis phases in order to improve the quality and reliability of software used in the nation&#8217;s critical infrastructures. Specifically, TTA#1 solicits ideas for research and development of new tools and methods for software analysis, and for applying new and existing capabilities in test and evaluation activities. This TTA (#14) focuses on the research infrastructure necessary to enable these software quality assurance and related activities.</td>
</tr>
</tbody>
</table>
<p><strong>Related articles</strong></p>
<ul class="zemanta-article-ul">
<li class="zemanta-article-ul-li"><a href="http://ctovision.com/2011/01/attend-fedscoop-cybersecurity-summit/">Attend FedScoop CyberSecurity Summit</a> (ctovision.com)</li>
<li class="zemanta-article-ul-li"><a href="http://ctovision.com/2011/01/federal-cyber-security-missions-initiatives-opportunities-and-risks/">Federal Cyber Security: Missions, Initiatives, Opportunities and Risks</a> (ctovision.com)</li>
<li class="zemanta-article-ul-li"><a href="http://ctovision.com/2010/12/ponemon-institute-cost-of-cyber-crime-study/">Ponemon Institute Cost of Cyber Crime Study</a> (ctovision.com)</li>
<li class="zemanta-article-ul-li"><a href="http://www.informationweek.com/news/government/security/showArticle.jhtml?articleID=229200206&amp;cid=RSSfeed_IWK_ALL">DHS To Invest $40 Million On Cybersecurity Research</a> (informationweek.com)</li>
<li class="zemanta-article-ul-li"><a href="http://yro.slashdot.org/story/11/01/31/1559235/DHS-Offers-40M-For-Top-Cybersecurity-Research">DHS Offers $40M For Top Cybersecurity Research</a> (yro.slashdot.org)</li>
<li class="zemanta-article-ul-li"><a href="http://marienfeldt.wordpress.com/2010/12/14/enisa-smartphone-security-report/">ENISA smartphone cyber security report</a> (marienfeldt.wordpress.com)</li>
</ul>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><img class="zemanta-pixie-img" style="border: none; float: right;" src="http://img.zemanta.com/pixy.gif?x-id=d19c489c-1d9e-422d-bce4-e42bd7639a20" alt="" /></div>

<div class="nr_clear"></div>	
	<div id="nrelate_related_8" class="nrelate nrelate_related nrelate_default nr_100"><h3 class="nr_title">You may also like -</h3><div class="nr_inner"><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/03/mature-models-for-healthy-and-resilient-cyber-systems/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/d9016ac7faff40a974f91c61bc0ccf10_thumb_Department-of-Homeland-Security-300x203.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Mature Models for Healthy and Resilient Cyber Systems</span></span></a><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2010/09/what-is-the-cyber-conflict-studies-association/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/6375aac65b771cae8ca52a3a5c4b8914_thumb_ccsa-300x117.png" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">What is the Cyber Conflict Studies Association?</span></span></a><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/02/govsec-conference-is-march-29-31-2011/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/001468eb33ec5e4590e7ad40cff3c88d_thumb_govsec.png" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">GovSec conference is March 29-31 2011</span></span></a><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/07/the-fedcyber-com-cyber-security-summit/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/9864e85f16bbc4e2a15784df135f3be0_thumb_newseum.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">The FedCyber.com Cyber Security Summit</span></span></a><a class="nr_panel nr_rc_link nr_link nr_internal" href="http://ctovision.com/2011/07/deputy-secretary-of-defense-lynn-cyber-strategy%e2%80%99s-thrust-is-defensive/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/fa5ccb5775a00b753a4d3a3d6317d2a6_thumb_200px-2010-05-14-USCYBERCOM_Logo.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Deputy Secretary of Defense Lynn: Cyber Strategy’s Thrust is Defensive</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/11/darpa%e2%80%99s-cyber-fast-track-adds-agility-to-research-funding/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/background-macro-plant.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">DARPA’s Cyber Fast Track Adds Agility to Research Funding</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/12/cyber-conflict-studies-association-history-contest/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/weather-station-robe-south-australia.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Cyber Conflict Studies Association History Contest</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://www.bobgourley.com/2011/10/evolving-approaches-to-cyber-threats/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/water-wallpaper.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Evolving Approaches to Cyber Threats</span><span class="nr_source">Bob Gourley</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2012/01/former-w-h-official-in-the-event-of-a-cyberwar-dont-call-dhs/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/blue-background.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Former W.H. Official: In the Event of a Cyberwar, Don’t Call DHS</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://ctovision.com/2011/02/zafesoft-next-generation-content-security/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/image_cache/ctovision.com/18f83d7e9cabc7f89bd88cb17a17c5d8_thumb_cyber_security-300x300.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Zafesoft: Next Generation Content Security</span><span class="nr_source">CTOvision.com</span></span></a><div style="clear:both;"></div></div> <script type="text/javascript"> nRelate.getNrelatePosts("http://api.nrelate.com/rcw_wp/0.50.3/nr_load.php?tag=nrelate_related&keywords=The+most+well+thought+out+research+agenda+for+cyber+security+I+have+seen+to+date&domain=ctovision.com&url=http%3A%2F%2Fctovision.com%2F2011%2F02%2Fthe-most-well-thought-out-research-agenda-for-cyber-security-i-have-seen-to-date%2F&nr_ad_number=0&nr_div_number=8");</script></div>
	<!--[if IE 6]>
		<script type="text/javascript">jQuery('.nrelate_default').removeClass('nrelate_default');</script>
	<![endif]-->
	<script type="text/javascript">nRelate.fixHeight("nrelate_related_8");nRelate.adAnimation("nrelate_related_8");nRelate.tracking("rc");</script>
	
<div class="nr_clear"></div>]]></content:encoded>
			<wfw:commentRss>http://ctovision.com/2011/02/the-most-well-thought-out-research-agenda-for-cyber-security-i-have-seen-to-date/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>In-Q-Tel Technologies/Capabilities Highlighted</title>
		<link>http://ctovision.com/2010/11/in-q-tel-technologiescapabilities-highlighted/</link>
		<comments>http://ctovision.com/2010/11/in-q-tel-technologiescapabilities-highlighted/#comments</comments>
		<pubDate>Mon, 29 Nov 2010 19:18:42 +0000</pubDate>
		<dc:creator>BobGourley</dc:creator>
				<category><![CDATA[CTO]]></category>
		<category><![CDATA[CIA]]></category>
		<category><![CDATA[DHS]]></category>
		<category><![CDATA[In-Q-Tel]]></category>
		<category><![CDATA[Infinite Power Solutions]]></category>
		<category><![CDATA[Intelligence Community]]></category>
		<category><![CDATA[Radio-frequency identification]]></category>
		<category><![CDATA[ThingMagic]]></category>
		<category><![CDATA[Visible Technologies]]></category>

		<guid isPermaLink="false">http://ctovision.com/?p=11508</guid>
		<description><![CDATA[Tweet Forbes ran a nice piece on In-Q-Tel.  The article is worth reading in its entirety.  Here is a link: Startups Backed By The CIA. The In-Q-Tel mission is to identify, adapt and deliver innovative technology solutions to support the missions of the Central Intelligence Agency and the broader US Intelligence Community, including the Department [...]]]></description>
			<content:encoded><![CDATA[<div class="bottomcontainerBox" style="border:1px solid #808080;background-color:#F0F4F9;">
			<div style="float:left; width:85px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fctovision.com%2F2010%2F11%2Fin-q-tel-technologiescapabilities-highlighted%2F&amp;layout=button_count&amp;show_faces=false&amp;width=85&amp;action=like&amp;font=verdana&amp;colorscheme=light&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width=85px; height:21px;" allowTransparency="true"></iframe></div>
			<div style="float:left; width:80px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<g:plusone size="medium" href="http://ctovision.com/2010/11/in-q-tel-technologiescapabilities-highlighted/"></g:plusone>
			</div>
			<div style="float:left; width:95px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<a href="http://twitter.com/share" class="twitter-share-button" data-url="http://ctovision.com/2010/11/in-q-tel-technologiescapabilities-highlighted/"  data-text="In-Q-Tel Technologies/Capabilities Highlighted" data-count="horizontal" data-via="ctovision">Tweet</a>
			</div><div style="float:left; width:105px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;"><script type="in/share" data-url="http://ctovision.com/2010/11/in-q-tel-technologiescapabilities-highlighted/" data-counter="right"></script></div>			
			<div style="float:left; width:85px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;"><script src="http://www.stumbleupon.com/hostedbadge.php?s=1&amp;r=http://ctovision.com/2010/11/in-q-tel-technologiescapabilities-highlighted/"></script></div>			
			</div><div style="clear:both"></div><div style="padding-bottom:4px;"></div><p><a rel="attachment wp-att-11512" href="http://ctovision.com/2010/11/in-q-tel-technologiescapabilities-highlighted/cia1-2/"><img class="alignleft size-full wp-image-11512" style="margin: 4px;" title="cia1" src="http://ctovision.com/wp-content/uploads/2010/11/cia1.jpeg" alt="" width="208" height="205" /></a>Forbes ran a nice piece on <a href="http://www.iqt.org/" target="_blank">In-Q-Tel</a>.  The article is worth reading in its entirety.  Here is a link: <a href="http://www.forbes.com/2010/11/19/in-q-tel-cia-venture-fund-business-washington-cia.html" target="_blank">Startups Backed By The CIA</a>.</p>
<p>The In-Q-Tel mission is to identify, adapt and deliver innovative technology solutions to support the missions of the Central Intelligence Agency and the broader US Intelligence Community, including the Department of Homeland Security.</p>
<p>As a teaser till you get around to the article, here is a list of companies in the order written about there, including a short bullet of their capability and a hot-link to their site:</p>
<ul>
<li><a href="http://www.cleversafe.com/" target="_blank">Cleversafe</a> &#8211; Smart way to save your data in the cloud. Clever and Safe.</li>
<li><a href="http://www.adaptivenergy.com/" target="_blank">AdaptivEnergy</a> &#8211; Capture energy from vibrations.</li>
<li><a href="http://www.qynergy.com/" target="_blank">Qynergy</a> &#8211; New battery technology.</li>
<li><a href="http://www.infinitepowersolutions.com/" target="_blank">Infinite Power Solutions</a> &#8211; Thin-film batteries to power RFID.</li>
<li><a href="http://www.thingmagic.com/" target="_blank">ThingMagic</a> &#8211; Advanced RFID solutions.</li>
<li><a href="http://www.gainspan.com/" target="_blank">GainSpan</a> &#8211; WiFi enablement.</li>
<li><a href="http://www.imagetreecorp.com/">Image Tree Corp</a> &#8211; Figure out what is growing on the earth.</li>
<li><a href="http://www.fortiusone.com/">Fortius One</a> &#8211; Advanced, easy geospatial.</li>
<li><a href="http://www.geosemble.com/" target="_blank">Geosemble</a> &#8211; Map people, places, things using data from RSS feeds and tweets.</li>
<li><a href="http://www.lensvector.com/" target="_blank">LensVector</a> &#8211; Taking moving parts out of cameras.</li>
<li><a href="http://www.3vr.com/" target="_blank">3VR</a> &#8211; Video analytics.</li>
<li><a href="http://www.recordedfuture.com/">Recorded Future</a> &#8211; Gain knowledge of the future by looking for events mentioned on the net.</li>
<li><a href="http://www.visibletechnologies.com/">Visible Technologies</a> &#8211; Analysis.</li>
<li><a href="http://www.fmsasg.com/" target="_blank">FMS</a> &#8211; Analysis.</li>
<li><a href="http://www.streambase.com/" target="_blank">StreamBase</a> &#8211; Capture and analyze data in stream.</li>
<li><a href="http://destineergames.com/" target="_blank">Destineer Studios</a> &#8211; Advanced immersive environments.</li>
<li><a href="http://www.sonitusmedical.com/" target="_blank">Sonitus Medical</a> &#8211; hear from your teeth.</li>
<li><a href="http://www.basistech.com/">Basis Technology</a> &#8211; Search in multi-language.</li>
</ul>
<p>(These technologies (and others) are also listed on the <a href="http://ctovision.com/disruptive-it/" target="_blank">CTOvision.com Disruptive IT list</a>).</p>
<p>Congrats to all the companies mentioned here for the great write-up in Forbes.  And congrats to forward thinkers in the intelligence community for creating a structure that enables quicker discovery of technologies of interest to your mission.  This is a win-win-win.  A win for the intelligence community, a win for companies involved, and a win for national security.</p>
<h6 class="zemanta-related-title" style="font-size: 1em;">Related articles</h6>
<ul class="zemanta-article-ul">
<li class="zemanta-article-ul-li"><a href="http://www.forbes.com/2010/11/19/in-q-tel-cia-venture-fund-business-washington-cia.html">Startups Backed By The CIA</a> (forbes.com)</li>
<li class="zemanta-article-ul-li"><a href="http://blogs.forbes.com/kashmirhill/2010/11/24/how-the-c-i-a-perfects-its-social-media-monitoring-technologies/">How the C.I.A. Perfects its Social Media Monitoring Technologies</a> (blogs.forbes.com)</li>
<li class="zemanta-article-ul-li"><a href="http://www.informationweek.com/news/government/security/showArticle.jhtml?articleID=228000252&amp;cid=RSSfeed_IWK_ALL">CIA Invests In Cloud, Web Analytics Startups</a> (informationweek.com)</li>
<li class="zemanta-article-ul-li"><a href="http://yro.slashdot.org/story/10/10/28/0321255/CIA-Invests-In-Anti-Cybercrime-Startup">CIA Invests In Anti-Cybercrime Startup</a> (yro.slashdot.org)</li>
<li class="zemanta-article-ul-li"><a href="http://blogs.wsj.com/deals/2010/09/13/who-is-a-big-fan-of-arcsight-the-cia/">Who is A Big Fan of ArcSight? The CIA</a> (blogs.wsj.com)</li>
<li class="zemanta-article-ul-li"><a href="http://techcrunch.com/2010/10/27/cleversafe-raises-31-4-million-from-motorola-vc-firms-and-%25e2%2580%25a6-the-cia/">Cleversafe Raises $31.4 Million From Motorola, VC Firms And &#8230; The CIA?</a> (techcrunch.com)</li>
</ul>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><img class="zemanta-pixie-img" style="border: none; float: right;" src="http://img.zemanta.com/pixy.gif?x-id=724cdf94-4b96-4e1b-93b9-c6422b92eeec" alt="" /></div>

<div class="nr_clear"></div>	
	<div id="nrelate_related_9" class="nrelate nrelate_related nrelate_default nr_100"><h3 class="nr_title">You may also like -</h3><div class="nr_inner"><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/09/cia-invests-in-semantic-search-wireless-networking/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/art-rhododendron-flower.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">CIA Invests In Semantic Search, Wireless Networking</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://www.bobgourley.com/2011/11/disruptive-technology-of-the-week-%e2%80%93-republic-wireless/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/weather-station-robe-south-australia.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Disruptive Technology of the Week – Republic Wireless</span><span class="nr_source">Bob Gourley</span></span></a><div style="clear:both;"></div></div> <script type="text/javascript"> nRelate.getNrelatePosts("http://api.nrelate.com/rcw_wp/0.50.3/nr_load.php?tag=nrelate_related&keywords=In-Q-Tel+Technologies%2FCapabilities+Highlighted&domain=ctovision.com&url=http%3A%2F%2Fctovision.com%2F2010%2F11%2Fin-q-tel-technologiescapabilities-highlighted%2F&nr_ad_number=0&nr_div_number=9");</script></div>
	<!--[if IE 6]>
		<script type="text/javascript">jQuery('.nrelate_default').removeClass('nrelate_default');</script>
	<![endif]-->
	<script type="text/javascript">nRelate.fixHeight("nrelate_related_9");nRelate.adAnimation("nrelate_related_9");nRelate.tracking("rc");</script>
	
<div class="nr_clear"></div>]]></content:encoded>
			<wfw:commentRss>http://ctovision.com/2010/11/in-q-tel-technologiescapabilities-highlighted/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Twiki and Gov2.0: Innovative Open Architecture Platform and Solutions</title>
		<link>http://ctovision.com/2010/04/twiki-and-gov2-0-innovative-open-architecture-platform-and-solutions/</link>
		<comments>http://ctovision.com/2010/04/twiki-and-gov2-0-innovative-open-architecture-platform-and-solutions/#comments</comments>
		<pubDate>Tue, 13 Apr 2010 18:00:37 +0000</pubDate>
		<dc:creator>BobGourley</dc:creator>
				<category><![CDATA[CTO]]></category>
		<category><![CDATA[Gov2.0]]></category>
		<category><![CDATA[collaboration]]></category>
		<category><![CDATA[DHS]]></category>

		<guid isPermaLink="false">http://ctovision.com/?p=1892</guid>
		<description><![CDATA[Tweet I am so proud to be associated with Twiki.  Some of the personal reasons I enjoy working with them is an ability to interact with and learn from their CEO Jitendra Kavathekar (@JeetKavathekar) and their founder Peter Thoeny (@peterthoeny).  Both are enthusiastic teacher/leader/thinkers.  I also appreciate the opportunity to work with members of the [...]]]></description>
			<content:encoded><![CDATA[<div class="bottomcontainerBox" style="border:1px solid #808080;background-color:#F0F4F9;">
			<div style="float:left; width:85px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fctovision.com%2F2010%2F04%2Ftwiki-and-gov2-0-innovative-open-architecture-platform-and-solutions%2F&amp;layout=button_count&amp;show_faces=false&amp;width=85&amp;action=like&amp;font=verdana&amp;colorscheme=light&amp;height=21" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width=85px; height:21px;" allowTransparency="true"></iframe></div>
			<div style="float:left; width:80px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<g:plusone size="medium" href="http://ctovision.com/2010/04/twiki-and-gov2-0-innovative-open-architecture-platform-and-solutions/"></g:plusone>
			</div>
			<div style="float:left; width:95px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;">
			<a href="http://twitter.com/share" class="twitter-share-button" data-url="http://ctovision.com/2010/04/twiki-and-gov2-0-innovative-open-architecture-platform-and-solutions/"  data-text="Twiki and Gov2.0: Innovative Open Architecture Platform and Solutions" data-count="horizontal" data-via="ctovision">Tweet</a>
			</div><div style="float:left; width:105px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;"><script type="in/share" data-url="http://ctovision.com/2010/04/twiki-and-gov2-0-innovative-open-architecture-platform-and-solutions/" data-counter="right"></script></div>			
			<div style="float:left; width:85px;padding-right:10px; margin:4px 4px 4px 4px;height:30px;"><script src="http://www.stumbleupon.com/hostedbadge.php?s=1&amp;r=http://ctovision.com/2010/04/twiki-and-gov2-0-innovative-open-architecture-platform-and-solutions/"></script></div>			
			</div><div style="clear:both"></div><div style="padding-bottom:4px;"></div><p><a href="http://ctovision.com"><img class="alignleft size-full wp-image-1893" style="margin: 4px;" title="twiki" src="http://ctovision.com/wp-content/uploads/2010/04/twiki.jpg" alt="" width="109" height="50" /></a>I am so proud to be associated with Twiki.  Some of the personal reasons I enjoy working with them is an ability to interact with and learn from their CEO <a href="http://twiki.net/about.html" target="_blank">Jitendra        Kavathekar</a> (<a href="http://twitter.com/jeetkavathekar" target="_blank">@JeetKavathekar</a>) and their founder <a href="http://twiki.net/about.html" target="_blank">Peter Thoeny</a> (<a href="http://twitter.com/peterthoeny" target="_blank">@peterthoeny</a>).  Both are enthusiastic teacher/leader/thinkers.  I also appreciate the opportunity to work with members of the advisory board they have established.  <a href="http://en.wikipedia.org/wiki/Rod_Beckstrom" target="_blank">Rod Beckstrom</a> (<a href="http://twitter.com/rodbeckstrom" target="_blank">@RodBeckstrom</a>), <a href="http://hinchcliffeandcompany.com/" target="_blank">Dion Hinchcliffe</a> (<a href="http://twitter.com/dHinchcliffe" target="_self">@dhinchcliffe</a>) and <a href="http://www.applicology.com/Home" target="_blank">Bob Flores</a> (<a href="http://twitter.com/bobflores" target="_blank">@bobflores</a>) are good, enjoyable, mission-focused folks.</p>
<p>But Twiki is about far more than good technology and enjoyable technologists.  It is about a new ability to serve some very important missions in industry, academia and government and many important missions that span across all those domains.</p>
<p>Which is why I&#8217;m particularly excited about word of Twiki winning the Disaster Management Initiative (DMI) award for Gov2.0 solutions.  It is proof that there is something very important going on here.</p>
<p>Here is more about this award:</p>
<div id="story">
<div>April 13, 2010 09:05 AM Eastern Daylight Time</div>
<h1><strong>Twiki Inc. Wins Innovator Award for Gov 2.0 Solution; Presented  by        CMU and NASA</strong></h1>
<p><!-- start story body -->SUNNYVALE, Calif.&#8211;(BUSINESS  WIRE)&#8211;<a href="http://cts.businesswire.com/ct/CT?id=smartlink&amp;url=http%3A%2F%2Fwww.twiki.net&amp;esheet=6246880&amp;lan=en_US&amp;anchor=Twiki+Inc.&amp;index=1&amp;md5=a51916157b5a7088b1049948e97e98c4" target="_blank">Twiki        Inc.</a>, a leading provider of Enterprise 2.0 and Government 2.0        collaboration solutions, won the <a href="http://cts.businesswire.com/ct/CT?id=smartlink&amp;url=http%3A%2F%2Fwww.cmu.edu%2Fsilicon-valley%2Fnews-events%2Fnews%2F2010%2Fawards-announced.html&amp;esheet=6246880&amp;lan=en_US&amp;anchor=Disaster+Management+Initiative+%28DMI%29+Concept-Stage+Project+Innovator+Award&amp;index=2&amp;md5=2e29c9be8ba890ea91d49bb3e9f855b1" target="_blank">Disaster        Management Initiative (DMI) Concept-Stage Project Innovator Award</a> presented by <a href="http://cts.businesswire.com/ct/CT?id=smartlink&amp;url=http%3A%2F%2Fwww.cmu.edu%2Fsilicon-valley&amp;esheet=6246880&amp;lan=en_US&amp;anchor=Carnegie+Mellon+University+Silicon+Valley&amp;index=3&amp;md5=c69516b2fcd490d3d4a298fc5365345d" target="_blank">Carnegie        Mellon University Silicon Valley</a> in collaboration with <a href="http://cts.businesswire.com/ct/CT?id=smartlink&amp;url=http%3A%2F%2Fresearchpark.arc.nasa.gov%2F&amp;esheet=6246880&amp;lan=en_US&amp;anchor=NASA+Ames+Research+Center&amp;index=4&amp;md5=e06959a830fdc94d283eb58d3671213c" target="_blank">NASA        Ames Research Center</a>.</p>
<p>Twiki Inc. was recognized and awarded for demonstrating how Twiki        Enterprise Agility Platform can be used by disaster management        professionals to save lives and protect people. The platform was        recognized for its unique ability to bring together intelligence        gathering and visualization along with workflow for action in a  secure        and structured way.</p>
<p>“We are pleased to award Twiki Inc. the <a href="http://cts.businesswire.com/ct/CT?id=smartlink&amp;url=http%3A%2F%2Fwww.cmu.edu%2Fsilicon-valley%2Fdmi%2Findex.html&amp;esheet=6246880&amp;lan=en_US&amp;anchor=DMI&amp;index=5&amp;md5=b22643c021c74487241c6ba5d0d0035e" target="_blank">DMI</a> award and recognize them as a leading innovator. We applaud their        efforts in developing technology solutions that enhance  collaboration, a        critical factor when effectively dealing with a disaster  situation. We        value their understanding of issues related to technology,  collaboration        and crisis management. They are helping us in developing improved  mobile        and information technology solutions to manage an emergency,” said  Dr        Martin Griss, Director of Carnegie Mellon Silicon Valley.</p>
<p>“San Jose Water Company provides a critical service to the  community. In        a disaster situation it is vital for us to have a social  collaboration        tool like Twiki. It will help us combine critical information;  gathered        from diverse data sources to manage a crisis. It will provide us  with a        customized intelligent dashboard to visualize the situation and  rally        our forces. The ability to imbed our Common Operating Picture will  allow        us to get spatial and text data. I am pleased to congratulate  Twiki Inc.        on winning the Innovator award,” said Jim Wollbrinck, Security and         Emergency Preparedness Specialist, San Jose Water Co.</p>
<p>“Web 2.0 technologies can be very effectively deployed to manage        critical situations by breaking silo’s and sharing critical  intelligence        in a predictable and structured way. We are honored to be  recognized by        CMU SV and NASA for Twiki’s innovative open architecture and be a  part        of a community dedicated to protecting citizens,” said Jitendra        Kavathekar, President and CEO Twiki Inc.</p>
<p>The Twiki Enterprise Agility Platform is a certified, tested,        professionally supported, and used by many Fortune 500 companies,  with        more than 60,000 installations in 130 countries and 14 languages.  The        solution supports content creation, sharing, as well as  light-weight        applications, helping both enterprise and government execute more        efficiently.</p>
<p><!-- end story body --></p>
</div>
<p><!-- end story --> <!-- start contacts --></p>

<div class="nr_clear"></div>	
	<div id="nrelate_related_10" class="nrelate nrelate_related nrelate_default nr_100"><h3 class="nr_title">You may also like -</h3><div class="nr_inner"><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/10/nominations-solicited-for-the-2011-government-big-data-solutions-award/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/cloud-wallpaper.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Nominations Solicited for the 2011 Government Big Data Solutions Award</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2012/02/twiki-get-work-done/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/cloud-wallpaper.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Twiki: Get Work Done!</span><span class="nr_source">CrucialPointLLC</span></span></a><a class="nr_panel nr_rc_link nr_link nr_external" href="http://crucialpointllc.com/2011/09/nomination-period-underway-for-the-2011-government-big-data-solutions-award/"><span class="nr_img_div"><img class="nr_img" src="http://imgcdn.nrelate.com/common_wp/default_images/100_100/wave-open-sea.jpg" style="height:100px; width:100px;"/></span><span class="nr_text"><span class="nr_post_title">Nomination Period Underway for the 2011 Government Big Data Solutions Award</span><span class="nr_source">CrucialPointLLC</span></span></a><div style="clear:both;"></div></div> <script type="text/javascript"> nRelate.getNrelatePosts("http://api.nrelate.com/rcw_wp/0.50.3/nr_load.php?tag=nrelate_related&keywords=Twiki+and+Gov2.0%3A+Innovative+Open+Architecture+Platform+and+Solutions&domain=ctovision.com&url=http%3A%2F%2Fctovision.com%2F2010%2F04%2Ftwiki-and-gov2-0-innovative-open-architecture-platform-and-solutions%2F&nr_ad_number=0&nr_div_number=10");</script></div>
	<!--[if IE 6]>
		<script type="text/javascript">jQuery('.nrelate_default').removeClass('nrelate_default');</script>
	<![endif]-->
	<script type="text/javascript">nRelate.fixHeight("nrelate_related_10");nRelate.adAnimation("nrelate_related_10");nRelate.tracking("rc");</script>
	
<div class="nr_clear"></div>]]></content:encoded>
			<wfw:commentRss>http://ctovision.com/2010/04/twiki-and-gov2-0-innovative-open-architecture-platform-and-solutions/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

