Policy & Regulation: Page 15


  • CISA Director Jen Easterly
    Image attribution tooltip

    Center for Strategic and International Studies

    Image attribution tooltip

    CISA director bullish on private sector cooperation toward cybersecurity goals

    Jen Easterly urged U.S. companies to embrace the agency’s efforts to raise cybersecurity performance, create resilient products and share more information. 

    By Nov. 3, 2022
  • An image of the White House.
    Image attribution tooltip
    Vacclav/iStock via Getty Images
    Image attribution tooltip

    US ransomware payments surge to $1.2B in 2021: Treasury

    The evidence of the rapid increase comes as the White House concluded an international summit with a pledge to strengthen anti-ransomware cooperation.

    By Nov. 2, 2022
  • Chegg boxes of textbook rentals
    Image attribution tooltip
    Sarah Kerver/Getty Images via Getty Images
    Image attribution tooltip

    FTC slams Chegg for chronic, ‘careless security’

    The online tutoring and book rental company suffered four data breaches between 2017 and 2020, one of which exposed personal information on about 40 million customers.

    By Nov. 1, 2022
  • Anne Neuberger, deputy national security advisor for cyber and emerging technology, speaks at the White House.
    Image attribution tooltip
    Drew Angerer via Getty Images
    Image attribution tooltip

    White House convenes dozens of countries to fight ransomware

    The second international summit follows a series of high profile attacks against CommonSpirit Health and the Los Angeles Unified School District. 

    By Oct. 31, 2022
  • High voltage towers in the dusk of the evening
    Image attribution tooltip
    yangphoto via Getty Images
    Image attribution tooltip

    CISA aims for target rich, resource poor sectors in rollout of security basics

    Officials hope new cybersecurity performance goals will serve as a roadmap to strengthen the resilience of local providers like schools, hospitals and utilities. 

    By Oct. 28, 2022
  • A group of co-workers surround a computer screen
    Image attribution tooltip
    Yuri Arcurs via Getty Images
    Image attribution tooltip

    How cybersecurity experts are reacting to CISA’s security goals

    Federal authorities describe the cross-sector guidance as “a floor, not a ceiling.” 

    By Oct. 28, 2022
  • CISA, cybersecurity, agency
    Image attribution tooltip
    Photo illustration by Danielle Ternes/Cybersecurity Dive; photograph by yucelyilmaz via Getty Images
    Image attribution tooltip

    Explore CISA’s 37 steps to minimum cybersecurity

    The agency placed a premium on low cost, high impact security efforts, which account for more than 40% of the goals.

    By Naomi Eide • Oct. 28, 2022
  • CISA Director Jen Easterly, RSA Conference 2022
    Image attribution tooltip
    Matt Kapko/Cybersecurity Dive
    Image attribution tooltip

    CISA releases long-awaited cybersecurity performance goals for critical infrastructure

    The goals are meant to apply to every critical infrastructure, focusing on security basics such as requiring unique credentials and asset inventory.

    By Oct. 27, 2022
  • A row of desks sit empty in a classroom with the desk in the forefront having a notebook and pencil sitting on top.
    Image attribution tooltip
    diane39 via Getty Images
    Image attribution tooltip

    GAO to feds: More coordination needed to strengthen K-12 cybersecurity

    The government watchdog said the Ed Department and CISA have “little to no interaction” with other agencies and the K-12 community on cybersecurity.

    By Anna Merod • Oct. 25, 2022
  • Image attribution tooltip
    Justin Sullivan via Getty Images
    Image attribution tooltip

    FTC orders Drizly to tighten data security practices as 2.5M consumers exposed

    The Uber subsidiary must implement a comprehensive information security program, while the CEO will be held to similar requirements in the future. 

    By Oct. 25, 2022
  • Training and upskilling in data science and analytics
    Image attribution tooltip
    shironosov via Getty Images
    Image attribution tooltip

    Help wanted for 3.4M jobs: Cyber workforce shortage is an acute, worldwide problem

    Research from (ICS)2 shows an ongoing skills gap in the information security space is under greater pressure than before.

    By Oct. 24, 2022
  • A lightbulb with a cycle circle around it.
    Image attribution tooltip
    Permission granted by Gartner
    Image attribution tooltip
    Sponsored by Gartner Peer Insights

    Cybersecurity quarterly benchmarks: Q1, 2022

    Gartner Peer Insights data and opinions run the gamut on cybersecurity maturity, budgets, and initiatives.

    Oct. 24, 2022
  • Green lights show behind plugged-in cables.
    Image attribution tooltip
    gorodenkoff/iStock via Getty Images
    Image attribution tooltip

    White House plans IoT security labeling program for spring 2023

    Major connected device manufacturers, retailers and industry groups back efforts to boost cyber awareness.

    By Oct. 21, 2022
  • Mandiant CEO Kevin Mandia and CISA Director Jen Easterly speak at the mWISE Conference.
    Image attribution tooltip

    mWISE Conference/ Mandiant

    Image attribution tooltip

    CISA’s priority sectors for 2023: water, hospitals, K-12

    The industries slated for emphasis are “target-rich, resource-poor entities,” CISA Director Jen Easterly said. They’re also heavily targeted by ransomware.

    By Oct. 21, 2022
  • Two men sit on stage in front of a logo of the executive office of the president national cyber director.
    Image attribution tooltip
    Permission granted by Mandiant
    Image attribution tooltip

    National cybersecurity strategy to debut within months, White House official says

    The Biden administration’s strategy will have extensive collaboration with the private sector, National Cyber Director Chris Inglis says.

    By Oct. 20, 2022
  • TSA rolls out long-anticipated cyber directive for freight, passenger rail systems

    The directive is part of a wider administration effort to build resilience across a series of critical infrastructure sites nationwide.

    By Oct. 19, 2022
  • Brian Gattoni speaking on stage.
    Image attribution tooltip
    Roberto Torres/Cybersecurity Dive
    Image attribution tooltip

    Cyber defense is not IT’s job alone, CISA CTO says

    While tech executives must provide critical tools and procedures to lower cyber risk, the whole organization is responsible for fending off attackers.

    By Roberto Torres • Oct. 19, 2022
  • A closeup up a car dashboard with a a driver's hand. A phone is on a mount to the right of the steering wheel.
    Image attribution tooltip
    Drew Angerer via Getty Images
    Image attribution tooltip

    Uber ex-CSO verdict raises thorny issues of cyber governance and transparency

    The former chief security officer of the ride-sharing firm is seen by many as a scapegoat for an unsupervised and unaccountable corporate culture.

    By Oct. 19, 2022
  • Woman speaks at a White House podium in the distance, seen through a blurred out crowd.
    Image attribution tooltip
    Alex Wong via Getty Images
    Image attribution tooltip

    White House to raise cyber standards for healthcare, water and emergency communications

    CISA will also roll out minimum security standards by late October that can apply to organizations across sectors.

    By Naomi Eide • Oct. 14, 2022
  • Concept digital technology 4.0,wireless network 5G signal,CCTV camera surveillance,intelligent of artificial systems,and display screen,to monitor road safety and city.
    Image attribution tooltip
    phuttaphat tipsana via Getty Images
    Image attribution tooltip

    White House to roll out Energy Star-like ratings for IoT

    The labeling plan is part of a long-sought effort to boost security and transparency in commonly used technology products. 

    By Oct. 12, 2022
  • Image attribution tooltip
    Sean M. Haffey via Getty Images
    Image attribution tooltip

    Cybersecurity needs a statewide approach, report finds

    Research from Deloitte and state CIOs shows cities often hesitate to work with states on cybersecurity to protect their autonomy, but local government cyber grants could change that. 

    By Michael Brady • Oct. 10, 2022
  • CISA, cybersecurity, agency
    Image attribution tooltip
    Photo illustration by Danielle Ternes/Cybersecurity Dive; photograph by yucelyilmaz via Getty Images
    Image attribution tooltip

    CISA orders federal IT overhaul with automated asset inventory, software scanning

    Civilian agencies will be required to check for vulnerabilities in a push to gain better visibility into IT networks.

    By Oct. 4, 2022
  • Technologist shows two customers how to use enterprise software at desktop computer
    Image attribution tooltip
    gilaxia via Getty Images
    Image attribution tooltip

    Strict security rules could push open source community out of federal work, expert says

    Agency CISOs and development experts say federal agencies need to work collaboratively with open source community contributors.

    By Sept. 27, 2022
  • The dome of U.S. Capitol is seen framed by trees.
    Image attribution tooltip
    Dan Zukowski/Cybersecurity Dive
    Image attribution tooltip
    Opinion

    6 things businesses need to know about the changing privacy landscape

    New bills are proposed every day, and while only a few will become official policy, there may be important trends that impact businesses.

    By Ryan P. Blaney • Sept. 26, 2022
  • Cell phone or mobile service tower in forested area of West Virginia providing broadband service
    Image attribution tooltip
    BackyardProduction via Getty Images
    Image attribution tooltip

    How common telecom cyber risks snowball in cloud, open source

    Public cloud plays a central role in the modernization of wireless networks. But more open source software, vendors and vulnerabilities could spell trouble.

    By Sept. 23, 2022