News / Science & Technology

    Obama Administration Offers Companies Broad Standards to Improve Cybersecurity

    Reuters
    The U.S. government on Wednesday released the final version of standards meant to help companies in nationally critical industries better defend against cyber attacks, and officials now face the challenge of getting the private sector to adopt the voluntary measures.

    Criticized for being too vague and toothless, the so-called cybersecurity framework turned a vast amount of industry input into guidelines designed for 16 different sectors whose disruption could be devastating to the country.

    The release from the National Institute of Standards and Technology comes exactly one year after President Barack Obama issued an executive order directing the agency to compile voluntary minimum cybersecurity standards as one step to counter the lack of progress on cybersecurity law in Congress.

    “While I believe today's Framework marks a turning point, it's clear that much more work needs to be done to enhance our cybersecurity,” Obama said in a statement.

    “I again urge Congress to move forward on cybersecurity legislation that both protects our nation and our privacy and civil liberties,” he said. “Meanwhile, my Administration will continue to take action, under existing authorities, to protect our nation from this threat.”

    The framework, drafted by the nonregulatory government agency in consultation with thousands of industry experts, offers broad benchmarks for companies to measure the effectiveness of their cyber defenses.

    The Obama administration had faced intense pushback from the private sector on its earlier effort to mandate cyber defense standards, which contributed to stalled legislation. Now, the White House hopes companies voluntarily adopt the framework they have helped draft.

    “This voluntary Framework is a great example of how the private sector and government can, and should, work together to meet this shared challenge,” Obama said, and a senior administration official called the framework the beginning of a “continuing common-sense conversation” about protecting the nation's critical assets from cyber attacks.

    “I think that the NIST standards will become over the next year or two, while we are waiting for legislation, the de facto best practices, just because they are accessible and current,” said Jonathan Fairtlough, managing director at Kroll Advisory Solutions' cyber investigations practice.

    Will private sector adapt standards?

    Cybersecurity experts warn that relentless efforts to hack into U.S. banks and financial institutions, the power grid and other critical infrastructure, paired with instances of disruptive attacks abroad, pose a national security threat.

    The issue recently became a household topic after hackers stole about 40 million credit and debit card records and 70 million other records with personal customer data from the third-largest U.S. retailer, Target Corp.

    Many experts have expressed alarm about the lack of awareness or reluctance among some companies' leadership to spend more money on cyber defenses. The framework could force the issue into more executive suites, analysts say.

    “At a minimum, it's going to force this conversation up the food chain, out of the CEO office into the boardroom,” said Tom Kellermann, a former member of Obama's Commission on Cyber Security and software company executive now with professional services firm Alvarez & Marsal.

    But it is unclear whether the private sector, always concerned about liabilities attached to any standards, would widely adopt the voluntary framework.

    The departments of Homeland Security, Commerce and Treasury are reviewing potential incentives for adoption, though some companies worry that incentives will come with strings attached and prompt more regulatory oversight or threat of lawsuits.

    The White House has emphasized the voluntary nature of the framework and the need for companies to view cybersecurity as a business decision, part of its risk-management strategy.

    “We may not ever know how widely the framework has been adopted, because obviously there's not a requirement,” a second senior Obama administration official said on Wednesday. “There's an enlightened sense here that we're counting on.”

    Department of Homeland Security on Wednesday also launched a program called Critical Infrastructure Cyber Community that would help companies reach out to the government for assistance in adopting the framework, and that participation may help gage the popularity of the standards, the official said.

    Questions about effectiveness

    But it is also unclear how effective the framework will prove in practice.

    “At that high level, they got it right. ... Further down, it gets murky really fast,” said Andrew Ginter, vice president of industrial security at Waterfall Security Solutions, whose clients include power plants and water-treatment facilities.

    “The NIST framework never uses the word 'firewall.' It's that abstract,” he said, referring to a common standard component of network security.

    The framework offers sweeping categories such as “access control” or “data security” to evaluate how effectively a company identifies and protects network assets, and detects, responds to and recovers from breaches, on a one-to-four-tier scale for implementation.

    The categories then break into subcategories, such as keeping inventories of used software platforms and applications, ensuring that top executives know roles and responsibilities, and setting information security policies.

    The document also incorporates how the companies could do that while protecting privacy and civil liberties.

    The framework builds on and references existing regulations, many of which were developed for specific sectors, such as energy and financial services.

    “It can get really quite hard” studying and balancing various existing standards, said Dave Burg, who advises corporations on cybersecurity strategies at consultancy PricewaterhouseCoopers. “This framework will provide a very nice baseline against which companies can test themselves.”

    You May Like

    Top US General: Turkish Media Report ‘Absurd'

    General Dunford rejects ‘irresponsible' claims of coup involvement by former four-star Army General Campbell, who led NATO forces in Afghanistan before retiring earlier this year

    Video Saving Ethiopian Children Thought to Be Cursed

    'Omo Child' looks at efforts of one African man to stop killings of ‘mingi’ children

    Protests Over Western Troops Threaten Libyan 'Unity' Government

    Fears mount that Islamist foes of ‘unity' government plan to declare a revolutionaries' council in Tripoli

    This forum has been closed.
    Comments
         
    There are no comments in this forum. Be first and add one

    Featured Videos

    Your JavaScript is turned off or you have an old version of Adobe's Flash Player. Get the latest Flash player.
    London’s Financial Crown at Risk as Rivals Eye Brexit Opportunitiesi
    X
    VOA News
    July 25, 2016 5:09 PM
    By most measures, London rivals New York as the only true global financial center. But Britain’s vote to leave the European Union – so-called ‘Brexit’ – means the city could lose its right to sell services tariff-free across the bloc, risking its position as Europe’s financial headquarters. Already some banks have said they may shift operations to the mainland. Henry Ridgwell reports from London.
    Video

    Video London’s Financial Crown at Risk as Rivals Eye Brexit Opportunities

    By most measures, London rivals New York as the only true global financial center. But Britain’s vote to leave the European Union – so-called ‘Brexit’ – means the city could lose its right to sell services tariff-free across the bloc, risking its position as Europe’s financial headquarters. Already some banks have said they may shift operations to the mainland. Henry Ridgwell reports from London.
    Video

    Video Recycling Lifeline for Lebanon’s Last Glassblowers

    In a small Lebanese coastal town, one family is preserving a craft that stretches back millennia. The art of glass blowing was developed by Phoenicians in the region, and the Khalifehs say they are the only ones keeping the skill alive in Lebanon. But despite teaming up with an eco-entrepreneur and receiving an unexpected boost from the country’s recent trash crisis the future remains uncertain. John Owens reports from Sarafand.
    Video

    Video Migrants Continue to Risk Lives Crossing US Border from Mexico

    In his speech Thursday before the Republican National Convention, the party’s presidential candidate, Donald Trump, reiterated his proposal to build a wall along the U.S.-Mexico border if elected. Polls show a large percentage of Americans support better control of the nation's southwestern border, but as VOA’s Greg Flakus reports from the border town of Nogales in the Mexican state of Sonora, the situation faced by people trying to cross the border is already daunting.
    Video

    Video In State of Emergency, Turkey’s Erdogan Focuses on Spiritual Movement

    The state of emergency that Turkish President Recep Tayyip Erdogan has declared is giving him even more power to expand a purge that has seen an estimated 60,000 people either arrested or suspended from their jobs. VOA Europe correspondent Luis Ramirez reports from Istanbul.
    Video

    Video Calm the Waters: US Doubles Down Diplomatic Efforts in ASEAN Meetings

    The United States is redoubling diplomatic efforts and looking to upcoming regional meetings to calm the waters after an international tribunal invalidated the legal basis of Beijing's extensive claims in the South China Sea. VOA State Department correspondent Nike Ching has the story.
    Video

    Video Four Brother Goats Arrive in Brooklyn on a Mission

    While it's unusual to see farm animals in cities, it's become familiar for residents of Brooklyn, New York, to see a little herd of goats. Unlike gas-powered mowing equipment, goats remove invasive weeds quietly and without adding more pollution to the air. As Faiza Elmasry tells us, this is a pilot program and if it proves to be successful, the goat gardener program will be extended to other areas of New York. Faith Lapidus narrates.
    Video

    Video Scientists in Poland Race to Save Honeybees

    Honeybees are in danger worldwide. Causes of what's known as colony collapse disorder range from pesticides and loss of habitat to infections. But scientists in Poland say they are on track to finding a cure for one of the diseases. VOA’s George Putic reports.
    Video

    Video Wall Already Runs Along Parts of US-Mexico Border

    The Republican Party’s presidential nominee, Donald Trump, gained the support of many voters by saying he would build a wall to keep undocumented immigrants and drugs from coming across the border from Mexico. Critics have called his idea impractical and offensive to Mexico, while supporters say such a bold approach is needed to control the border. VOA’s Greg Flakus has more from the border town of Nogales, Arizona.
    Video

    Video New HIV Tests Emphasize Rapid Results

    As the global fight against AIDS intensifies, activists have placed increasing importance on getting people to know their HIV status. Some companies are developing new HIV testing methods designed to be quick, easy and accurate. Thuso Khumalo looks at the latest methods, presented at the International AIDS conference in Durban, South Africa.
    Video

    Video African Youth with HIV Urge More Support

    HIV, the virus that causes AIDS, is the top killer of teens in sub-Saharan Africa. But many youths say their experience with the virus is unique and needs to be addressed differently than the adult epidemic. VOA South African Correspondent Anita Powell reports.
    Video

    Video Pop-Up Art Comes to Your Living Room, Backyard and Elsewhere

    Around the world, independent artists and musicians wrestle with a common problem: where to exhibit or perform? Traditional spaces such as museums and galleries are reserved for bigger names, and renting a space is not feasible for many. Enter ArtsUp, which connects artists with venue owners. Whether it’s a living room, restaurant, office or even a boat, pop-up events are bringing music and art to unexpected places. Tina Trinh has more.
    Video

    Video Scotland’s Booming Whisky Industry Fears Brexit Hangover

    After Britain’s vote to leave the European Union, Scotland’s government wants to break away from the United Kingdom – fearing the nation’s exports are at risk. Among the biggest of these is whisky. Henry Ridgwell reports on a time of turmoil for those involved in the ancient art of distilling Scotland’s most famous product.

    Special Report

    Adrift The Invisible African Diaspora