News Alerts and Breach Report for June 6, 2022

CISA Adds 21 Vulnerabilities to Catalog Last week, The Cybersecurity and Infrastructure Agency (CISA) alerted federal agencies to 75 new additions to its new Known Exploited Vulnerabilities Catalog. Affected software includes products from Cisco, Microsoft, Adobe and Oracle. A significant…

Read More

News Alerts and Breach Report for May 16, 2022

NIST Releases Cybersecurity Supply Chain Guidance The National Institute of Standards and Technology (NIST) released guidance on supply chain cybersecurity this week in response to the Biden administration’s Executive Order 14028—Improving the Nation’s Cybersecurity. The guidance, Software Supply Chain Security…

Read More
NIST

NIST Publishes Draft Security Criteria for Consumer Software

Consumer software providers will soon have the option to label their software as compliant with National Institute of Standards and Technology (NIST) standards for software security. On November 1, 2021, NIST published its initial draft of this standard in a white paper titled “DRAFT Baseline Criteria for Consumer Software Cybersecurity Labeling” (the White Paper). The…
Read More
Data Protection

Opinion: How the U.S. Government’s Efforts Can Improve Data Privacy and Protection in 2021

This year, cybersecurity incidents, such as data breaches, have led to the proliferation of identity theft and fraud, facilitated by a lack of digital identity verification credentials. Additionally, data privacy legislation has gained momentum at the state level and become a key area of concern for lawmakers and citizens alike. Meanwhile, artificial intelligence and blockchain…
Read More

NIST Releases New Guidance for Assessing Risk

On September 1, the National Institute of Standards and Technology (NIST) released a new report that outlines the need for determining risk priorities and outlines options for properly treating risk. NISTIR8286B; Prioritizing Cybersecurity Risk for Enterprise Risk Management describes how risk priority and response information should be added to a cybersecurity risk register (CSRR). The…
Read More
NIST

Implementing the NIST Privacy Framework – Govern Function

The National Institute of Standards and Technology (NIST) Privacy Framework is a widely known control set used to assist organizations in identifying privacy risks within their business environment and allocating resources to mitigate these risks. Our team previously published an article outlining the best ways to leverage the NIST Privacy (NIST-P) Framework to assess data…
Read More
Back To Top