Six Lessons Learned from the CrowdStrike Outage Disaster

CrowdStrike IT Outage

The recent CrowdStrike outage reminds us of our digital infrastructure’s fragility. As 8.5 million devices crashed and critical services were disrupted worldwide, we must rethink our approach to IT resilience. What can federal agencies learn from this teachable moment? Read our complete analysis.

Demystifying the Meaning of Controlled Unclassified Information (CUI)

What is Controlled Unclassified Information (CUI)?

Art Clomera Vice President, Operations What is Controlled Unclassified Information (CUI)? The era of CUI before Executive Order 13556 was fragmented, haphazard, and far leakier than it is today.   Each agency had its own rules and procedures for handling unclassified information, leading to a complex, confusing jumble of policies. Sharing information across multiple government […]

Securing the Future: Exploring the Cybersecurity National Action Plan (CNAP)

Cybersecurity National Action Plan

Art Clomera Vice President, Operations On February 9, 2016, the Obama Administration released the Cybersecurity National Action Plan (CNAP), marking the high point of a seven-year effort built upon prior lessons learned from cybersecurity trends, threats, and intrusions.    Many experts applauded its comprehensive approach and initiatives to improve federal cybersecurity practices, investing in research, and […]

What are the NIST Special Publications (SPs) 800 Series? 

NIST Special Publications (SPs)

Art Clomera Vice President, Operations The NIST Special Publication 800 series provides a comprehensive framework for managing the security of federal information systems and the private sector. In federal agencies, these procedural frameworks serve as the very cornerstone of the nation’s cybersecurity, offering guidance to establishing baseline requirements for information security across all agency operations […]

From Risk to Authorization: Understanding What ATO Means in Cybersecurity

ATO in Cybersecurity

Art Clomera Vice President, Operations The Authorization to Operate (ATO) is crucial for the US Federal Government and the Department of Defense (DoD). It represents an official management decision granted by a senior organizational official. The ATO Cybersecurity decision authorizes the operation of an information system and explicitly acknowledges the associated risks to agency operations, […]

Mastering NIST 800-30: A Guide to Effective Risk Assessments

NIST 800-30

Art Clomera Vice President, Operations In the aftermath of several high-profile breaches and attacks on federal agencies this year, NIST 800-30 helps to translate the intricate vulnerabilities and countermeasures in ways that executive leadership overseeing the agency’s policy implementation can understand. Sharing information enables decision-makers to understand the full extent of the threat landscape in […]

Common Cybersecurity Threats and How to Protect Your Government Agency

Shawn Elliott, President, Federal Solutions Cyber threats have become mainstays in the modern news feed. Nearly every day we learn about the latest ingenious digital tool that maliciously exploits its victims to steal their information or money and disrupt legitimate activities. The frequency and severity of these threats are increasing. Cybersecurity sensors recorded approximately 5.3 […]