Events in Europe have caused the Department of Defense to go on a high alert for cyberattacks. This wary posture has been emulated by civilian agencies as well. The question many federal information technology professionals are asking is: how can I keep my agency safe from cyberattacks in this increased threat environment?

Today’s panel answers this basic question from several perspectives. First, the subject matter experts look at the National Security Strategy and some of its top concerns. Then, they look at existential threats and solutions Finally, they deepen the discussion with specific recommendations to avoid trouble.

In case you think these attacks on federal systems are blown out of proportion, then visit the Cyberstructure & Infrastructure Security Agency (CISA) site and see the “Shields Up” for guidance. Because of malicious cyberactivity, you can see the latest updates as well as specific actions for all organizations.

Valecia Stocchetti, Centers for Internet Security, gives practical advice when she tells listeners where to start. She suggests looking at compromised passwords, and external facing sites, and then going back to the basics of patching systems.

She suggests that there are readily available lists of vulnerabilities that provide straightforward methods to protect your agency.

Shifting from “what” to “where” Josh Leiling from the GAO mentions that there is a noted increase in attacks on local and state governments. Normally, these organizations lack the staff to prepare for a cyber-attack.

CISA provides help for organizations with staffing challenges.  Because so many consultants overuse the phrase “best practices,” CISA facetiously has a list of “bad” practices for improving your defense. Among these include weak password management, lack of multi-factor authentication, and depending on end-of-life software can be dangerous.

To view this webinar: Keeping Real-World Conflicts Out of IT Systems.

Featured Speakers:

Valecia Stocchetti, Senior Cybersecurity Engineer, Center for Internet Security Inc.
Valecia Stocchetti
Senior Cybersecurity Engineer,
Center for Internet Security Inc.
Josh Leiling, Assistant Director, Information Technology & Cybersecurity Mission Team, U.S. GAO
Josh Leiling
Assistant Director, IT & CS
Mission Team, U.S. GAO
Thomas Millar, Senior Advisor, Cybersecurity Vulnerability Management, CISA
Thomas Millar
Senior Advisor, Cybersecurity
Vulnerability Management, CISA
Michael Moran, Special Agent, Criminal Investigative Division, U.S. Secret Service
Michael Moran
Special Agent, Criminal Investigative
Division,
U.S. Secret Service
David Siles, Global Field CTO, Rubrik
David Siles
Global Field CTO,
Rubrik
John Breeden (Moderator) Contributing Editor, FedInsider
John Breeden (moderator)
Contributing Editor,
FedInsider