CyberThreats 2021 (2-4)
This discussion starts with an overview of cyber-attacks on federal targets, talks about risk management, and ends with observations about software design to improve cyber security.
Patrick Sullivan observes that many of the trends in cyber-attacks we see today began before COVID. However, the unique situation that demanded increased remote access may have accelerated the frequency of these attacks.
What is interesting is that these attacks are not necessarily classic attacks against a network. Of course, systems at NASA and the DoD get thousands of attacks a day, but Matt Swenson from DHS has seen an increase in cyber fraud because of COVID.
When it comes to understanding the motivation of malicious actors, Matt Swenson provides a unique perspective. Over the years, he has learned how they think. Based on his interaction, he says that malicious actors will review thousands of systems and only go after the weakest ones. If they encounter a site that is patched and compliant, they will just as easily go to the next target on the list. A parallel was drawn in residential neighborhoods. A house that is protected with lights, dogs, and surveillance will deter a burglar; they will go to the next house.
The trifecta for improving federal cybersecurity may be Zero Trust Architecture, Multi-Factor Authentication, and baking security during the development of the code.
Prevention can start as early as software development. Much of today’s software is subject to patches done reluctantly. There seems to be a systematic wariness that some federal technology managers apply to software patches and updates. Each change could bring with complicated maintenance issues with dependencies and compliance.
This is contrasted with newer approaches to software development. In a process like DevSecOps, developers are accustomed to changing on the fly and can flex with patches and changes easier.
To view this webinar: CyberThreats 2021: Federal Agencies Build on an Era of Trust.
Featured Speakers:

Matt Swenson
Chief of the Cyber Crimes Unit,
DHS HSI Cyber Crimes Center

Patrick Sullivan
CTO, Security Strategy,
Akamai

John Breeden
Moderator & Contributing Editor,
FedInsider
![FIDT-Logo-2020-Color[1]](https://www.fedinsider.com/wp-content/uploads/2020/03/FIDT-Logo-2020-Color1.png)
