Posts Tagged: Security

I am looking for an Executive Position as I transition out of civil service, why would I want to attend a career event?

(As I teach classes at many of the local government agencies on career search and social media, from time to time I get questions from professionals who are in their career transition. I just got this question this morning from someone in one of my classes about their attendance to our upcoming Cleared Job Fair.Read… Read more »

Cities and States Not Prepared for Cyber Attacks, FBI Surveillance Backdoors, and More

Here is today’s federal cybersecurity and information technology news: The State Department‘s Bureau of International Narcotics and Law Enforcement Affairs plans to provide the Mexican Public Security Secretariat with the Mexico Technical Surveillance System to intercept and analyze communications. More here. In the National Preparedness Report released by the Federal Emergency Management Agency found thatRead… Read more »

Security Clearance Reciprocity

At a recent briefing by the Office of the National Counterintelligence Executive (ONCIX) and the Office of the Director of National Intelligence (ODNI) at the Government Technology & Services Coalition (GTSC), Charlie Sowell, ODNI Deputy Assistant Director, shared some of the efforts that ODNI is making toward enforcing security clearance reciprocity. What Reciprocity As manyRead… Read more »

FedRAMP 3PAO Program – Have we Heard of this Idea Before?

In a packed auditorium in 2006, I recall sitting in the “Red Auditorium” at NIST to participate in a workshop hosted by the Computer Security Division. The goal of the workshop was to discuss the implementation of Phase II of the FISMA Implementation Project. At the time, the Phase read like this: “The second phaseRead… Read more »

Cybersecurity Legislation is Revisited by Lawmakers.

Authored by Doug Kruger and originally posted to Blue Coat’s Federal Blue Print blog. There has been a lot of conversation around the new cybersecurity legislation and several bills have been circulating in Congress as lawmakers are faced with the growing reality of cyber attacks that should cripple critical infrastructure such as water, electricity orRead… Read more »

Online IT Security Awareness Materials

We are looking at the possibility of developing an in-house online security awareness training program for our employees. We currently contract out with a hosted solution, however, it is pricey. I was looking around on the web, found very few online training programs that were short. I think one I found was like a 10-hourRead… Read more »

FOSE Cloud Keynote: Cloud Security – A Business Transformation Nirvana or Security Nightmare?

I attended the cloud conference keynote by Ryan Berg, a Senior Architect for Security Research at IBM. The presentation, titled “Cloud Security – A Business Transformation Nirvana or Security Nightmare?” examined the move towards the cloud and the associated implications and opportunities for security. Berg began his presentation by looking at the environment in whichRead… Read more »

Selecting a 3PAO with assessors that have the Certificate of Cloud Security Knowledge (CCSK)

The CCSK is NOT meant to be a substitute for other certifications in information security, audit and governance. The CCSK augments other credentialing programs like the CISSP, CAP, CSSLP, etc. However, the CCSK does provide a valuable selector for organizations such as federal agencies, cloud service providers (CSPs), and even cloud customers seeking to evaluateRead… Read more »