Melissa Hathaway: Compelling action along a broad front

With this note I want to provide a three excerpts from writings of one of our nation's greatest cyber strategists, Melissa Hathaway. Melissa has been involved in national security issues at the highest levels of government and is known globally as a cyber thought leader for good reason.  Her actions and vision for continued progress in the cyber domain are compelling.  The work she did on the Comprehensive National Cyber Initiative (CNCI) is still … [Read more...]

CTOs: Keep your focus on security and functionality

Technologists of all sort have been closely tracking events associated with cyber security, and most have been watching the many activities associated with White House efforts to enhance our ability to trust our digital infrastructure. In my view, technologists from academia, startups, IT providers, integrators and large enterprises (including the federal space) need to understand that security and functionality are not two different concepts. They are … [Read more...]

White House Cyber Policy Review: And a Cyber Czar

I enjoyed listening to the President today as he provided an update on where we are in our efforts to enhance our freedom of action in cyberspace.  All the details are on the White House website and I hope you visit there yourself to download the 60-day cyberspace policy review. Details are here: http://www.whitehouse.gov/CyberReview/ I have been reading the report already-- and will also read all the papers and studies referenced there. So far I have … [Read more...]

Melissa Hathaway speaks at Intelligence and National Security Alliance

INSA, the Intelligence and National Security Alliance, is a group of professionals from academia, industry and government who seek to enhance innovation, discussion, debate and progress on key national security issues.  I've been involved as a member for years and get the pleasure of interacting with folks from a wide swath of the community. One of the many services INSA provides the community is providing a venue for speakers and community leaders to … [Read more...]

The Cyber Defense Perimeter: Good report by Shane Harris

There is so much FUD on cyber security issues these days, it is actually rare to read a well grounded, well researched article on the topic.  If you would like to see one that I think captures the situation please see Shane Harris's just written National Journal Magazine article titled "The Cyber Defense Perimeter."  His sources include Robert Lentz, the deputy assitant secretary of defense for information assurance, and James Lewis, a fellow at the … [Read more...]

Triumfant real-time malware detection and remediation

As I've previously noted I'm on the advisory board for Trimufant (I'm at this page).  I'm hoping all CTO types will check out this company (and I'm also hoping you don't mind me blogging about a company I'm advising.  After all, I'm associated with them because I believe they are a world-class outfit with a great capability). In this post I want to bring your attention to a Triumfant press release .  It is an announcement that Triumfant now provides … [Read more...]

My Opinion: NYT wants cyber security to be a divisive issue.

I just read an article that seems designed to keep spreading FUD (Fear, Uncertainty, Doubt) about the US government and the NSA.   The article is titled "Control of Cybersecurity Becomes Divisive Issue ".  It starts with an assertion stated as if it were a fact that says "The National Security Agency has been campaigning to lead the government's rapidly growing cybersecurity programs". I bump into all sorts of people in the beltway, and there is a … [Read more...]

Responding Strategically to Cyber Attacks

The last 12 months has seen a significant amount of progress in our nation's awareness of cyber threats and in our collective actions to address the security of our IT systems.  However, a huge amount of work remains to be done. In a cyber context, the situation is a little like the one Winston Churchill described when he said: "This is not the end.  It is not even the beginning of the end.  But it is, perhaps, the end of the beginning." We in … [Read more...]

White House Conducting Review of Cyber

Followers of the cyber initiative and its related work have been strongly encouraged by the kickoff of a 60 day study tasked by the White House and led by Melissa Hathaway.  Melissa was named by President Obama to conduct this review.   As has been reported here in previous posts Melissa is one of the most effective, efficient senior executives in public service, and I have no doubt she will execute this task in a way that benefits the nation. As an … [Read more...]

Enhancing Security and Functionality At The Same Time

Have you ever been sucked into the false debate over how much IT spending should be spent on security?  I used to all the time.  Some folks point to a rule of thumb that goes something like "ten percent of the IT budget should be applied to security."  That old school formula may well be part of the reason we got into the mess we are currently in.  It contributes to thoughts that lead you to think security can be separated.  By my way of thinking, … [Read more...]