Close
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
Read Down
Sign in
Close
Welcome!Log into your account
Forgot your password?
Read Down
Password recovery
Recover your password
Close
Search
Logo
Subscribe
Logo
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
More
    Subscribe
    Home Cybersecurity
    • Cybersecurity

    Government Execs Stand By Industry-Led Cyber-Security

    Written by

    Paul F. Roberts
    Published February 14, 2006
    Share
    Facebook
    Twitter
    Linkedin

      eWEEK content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More.

      SAN JOSE, Calif.—Senior cyber-security officials defended the U.S. governments continued reliance on private sector initiatives to improve the security of the nations infrastructure, even as some experts raised questions about its effectiveness.

      Current and former officials from the Department of Homeland Security, the White House and the Federal Aviation Administration said that federal government was making progress on cyber-security, and is doing a better job of working with private sector partners and critical infrastructure owners, according to Andy Purdy, acting director of the U.S. Department of Homeland Securitys National Cyber Security Division.

      But the government is ignoring an epidemic of state-sponsored espionage and its reliance on voluntary cooperation by private sector companies and industries that are too slow to keep up with fast-moving cyber-threats, said Jim Lewis, a senior fellow and director of the Technology and Public Policy Program at CSIS (Center for Strategic and International Studies).

      Purdy and Lewis were speaking at the RSA Conference in San Jose, Calif. in a session called “The National Cyber Security Agenda: Where Have We Been and Where Are We Going?”

      They were joined by Dan Mehan, CIO of the FAA, and Howard Schmidt, until recently a CSO at eBay and deputy to former White House cyber-security czar Richard Clarke.

      Purdy said his agency and the federal government were making significant progress on cyber-security. The recent Cyber Storm exercise of private and public sector response to a simulated cyber-attack is one example of how the federal government is doing a better job of coordinating with cyber-security stake holders, Purdy said.

      “The range of stake holders and critical players [in Cyber Storm] is significant,” Purdy said.

      Cyber Storm tested the governments communications paths and processes in the event of an actual cyber-attack. The results of the exercise wont be available before the Summer, but the DHS is already planning changes to its response systems as a result of the exercise, Purdy said.

      But others raised a more cautionary note about the federal governments progress on cyber-security.

      “Are we making progress? Yes. But we have to hit the afterburners,” said Mehan.

      The government needs to improve network resilience in the wake of attacks and invest in research and development to create the next generation of security technologies, he said.

      “Id give [federal government agencies] a C+ … it was a flat F two years ago,” he said.

      /zimages/3/28571.gifOperation Cyber Storm deemed a success. Click here to read more.

      CSISs Lewis painted an even more dire picture, saying that the government and private sector are nearly blind to an epidemic of intellectual property theft and state sponsored cyber espionage, even as they make incremental progress in securing their networks.

      He said the federal government has mostly been ineffectual in getting the private sector to improve the security of products, and in securing its own IT resources.

      “How much worse off would we be without any [federal government] effort? I think the answer is mixed,” Lewis said.

      In some areas, such as the financial services industry, private sector initiative has improved cyber-security. However, in other areas, such as the nations electrical grid and software development, there has been less progress, he said.

      The federal governments need to centralize could spur change in recalcitrant sectors by passing regulations to require change, Lewis said.

      “Public-private partnerships work well for some problems, but theyre inadequate for others. We have to start thinking about areas where theyre not delivering,” he said.

      Schmidt and Mehan also backed calls for more basic research on computer security. However, calls for the government to use its purchasing power to force software makers to improve the security of their products received a lukewarm response.

      Purdy seemed puzzled by a question from an audience member about what software and security tools DHS was investing in, but noted the agencys efforts across a wide range of issues, from espionage to child endangerment online.

      DHS may be the wrong agency to spearhead the governments effort on cyber-security, Lewis said. The agency is too large and too slow moving to keep up with cyber-security threats, despite its recent sponsorship of Cyber Storm and an earlier exercise called LiveWire.

      “You cant win a NASCAR race with a Volkswagen,” he said.

      The federal government should offer incentives to companies that might not see it in their fiduciary interest to invest in mitigating risks, Mehan said.

      Alan Paller, director of research at The SANS Institute, added that the federal government is working with a flawed model in its reliance on private sector initiative on cyber-security.

      /zimages/3/28571.gifCheck out eWEEK.coms for the latest security news, reviews and analysis. And for insights on security coverage around the Web, take a look at eWEEK.com Security Center Editor Larry Seltzers Weblog.

      Paul F. Roberts
      Paul F. Roberts

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      MOST POPULAR ARTICLES

      Artificial Intelligence

      9 Best AI 3D Generators You Need...

      Sam Rinko - June 25, 2024 0
      AI 3D Generators are powerful tools for many different industries. Discover the best AI 3D Generators, and learn which is best for your specific use case.
      Read more
      Cloud

      RingCentral Expands Its Collaboration Platform

      Zeus Kerravala - November 22, 2023 0
      RingCentral adds AI-enabled contact center and hybrid event products to its suite of collaboration services.
      Read more
      Artificial Intelligence

      8 Best AI Data Analytics Software &...

      Aminu Abdullahi - January 18, 2024 0
      Learn the top AI data analytics software to use. Compare AI data analytics solutions & features to make the best choice for your business.
      Read more
      Latest News

      Zeus Kerravala on Networking: Multicloud, 5G, and...

      James Maguire - December 16, 2022 0
      I spoke with Zeus Kerravala, industry analyst at ZK Research, about the rapid changes in enterprise networking, as tech advances and digital transformation prompt...
      Read more
      Video

      Datadog President Amit Agarwal on Trends in...

      James Maguire - November 11, 2022 0
      I spoke with Amit Agarwal, President of Datadog, about infrastructure observability, from current trends to key challenges to the future of this rapidly growing...
      Read more
      Logo

      eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site’s focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

      Facebook
      Linkedin
      RSS
      Twitter
      Youtube

      Advertisers

      Advertise with TechnologyAdvice on eWeek and our other IT-focused platforms.

      Advertise with Us

      Menu

      • About eWeek
      • Subscribe to our Newsletter
      • Latest News

      Our Brands

      • Privacy Policy
      • Terms
      • About
      • Contact
      • Advertise
      • Sitemap
      • California – Do Not Sell My Information

      Property of TechnologyAdvice.
      © 2024 TechnologyAdvice. All Rights Reserved

      Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.