Events in Europe have caused the Department of Defense to go on a high alert for cyberattacks. This wary posture has been emulated by civilian agencies as well. The question many federal information technology professionals are asking is: how can I keep my agency safe from cyberattacks in this increased threat environment?
Today’s panel answers this basic question from several perspectives. First, the subject matter experts look at the National Security Strategy and some of its top concerns. Then, they look at existential threats and solutions Finally, they deepen the discussion with specific recommendations to avoid trouble.
In case you think these attacks on federal systems are blown out of proportion, then visit the Cyberstructure & Infrastructure Security Agency (CISA) site and see the “Shields Up” for guidance. Because of malicious cyberactivity, you can see the latest updates as well as specific actions for all organizations.
Valecia Stocchetti, Centers for Internet Security, gives practical advice when she tells listeners where to start. She suggests looking at compromised passwords, and external facing sites, and then going back to the basics of patching systems.
She suggests that there are readily available lists of vulnerabilities that provide straightforward methods to protect your agency.
Shifting from “what” to “where” Josh Leiling from the GAO mentions that there is a noted increase in attacks on local and state governments. Normally, these organizations lack the staff to prepare for a cyber-attack.
CISA provides help for organizations with staffing challenges. Because so many consultants overuse the phrase “best practices,” CISA facetiously has a list of “bad” practices for improving your defense. Among these include weak password management, lack of multi-factor authentication, and depending on end-of-life software can be dangerous.
To view this webinar: Keeping Real-World Conflicts Out of IT Systems.
Featured Speakers:

Valecia Stocchetti
Senior Cybersecurity Engineer,
Center for Internet Security Inc.

Josh Leiling
Assistant Director, IT & CS
Mission Team, U.S. GAO

Thomas Millar
Senior Advisor, Cybersecurity
Vulnerability Management, CISA

Michael Moran
Special Agent, Criminal Investigative
Division, U.S. Secret Service

David Siles
Global Field CTO,
Rubrik

John Breeden (moderator)
Contributing Editor,
FedInsider
