【24h】

State Notebook

机译:状态笔记本

获取原文
获取原文并翻译 | 示例
           

摘要

Governors need to establish a statewide governance structure to prepare for, respond to and preventncyberattacks, said the National Governors Association in a paper presented to Congress Sept. 27 (http:/bit.ly/19CNNUU). In many states, chief information security officers (CISOs) are responsible for developingnand carrying out information technology security policies, and they have limited responsibility overnstatewide cyber networks, said NGA. The sharing of cyberthreat information with the private sector andnlocal governments is handled by the state homeland security agencies, which is “further complicating thenoverall cybersecurity governance structure,” said NGA. Governors can grant their chief information officersnor CISOs the authority to “develop and steer a coordinated governance structure ... that can greatlynimprove coordination and awareness across agencies that operate statewide cybernetworks,” said the paper.nStates need to do risk assessments to identify information assets, "model different threats to those assets"nand allow for planning to conduct those threats, said NGA. Hands-on activities and exercises arenneeded as part of the assessments to establish “sound business practices and use existing resources,” saidnthe paper. States must monitor threats to mission-critical systems with technologies and business practicesnthat will “identify potential threats, track all stages of cyber attacks in real time, and offer mitigationntechniques and options for any resulting loss or damage,” said NGA. The NGA Resource Center for StatenCybersecurity will issue a series of reports on actions governors can take on critical areas in the mid andnlong term over the next year, said the paper. NGA will lead efforts through the Council of Governors toncollaborate with the departments of Defense and Homeland Security on how the National Guard can benused to protect both state and federal efforts.
机译:全国州长协会在9月27日提交给国会的论文(http:/bit.ly/19CNNUU)中说,州长需要建立全州的治理结构,以准备,应对和预防腐败袭击。 NGA表示,在许多州,首席信息安全官(CISO)负责制定和执行信息技术安全政策,并且在整个州范围的网络中承担有限的责任。 NGA说,与私营部门和地方政府共享网络威胁信息由州国土安全机构处理,这“使整个网络安全治理结构进一步复杂化”。该文件说,州长可以授予首席信息官或CISO权力,以“发展和指导协调的治理结构……这可以大大改善运营全州网络网络的机构之间的协调和意识。” n州需要进行风险评估以识别信息资产。 NGA表示,“对这些资产建立不同的威胁模型”,并允许进行计划来应对这些威胁。该论文说,动手活动和练习不需要作为评估的一部分,以建立“良好的商业惯例并使用现有资源”。 NGA说,国家必须使用技术和商业实践来监视对关键任务系统的威胁,这将“识别潜在威胁,实时跟踪网络攻击的所有阶段,并提供缓解技术和选项,以防止由此造成的损失或损害。”该文件称,NGA StatenCyber​​security资源中心将发布一系列报告,说明州长在明年中长期内可以在关键领域采取的行动。 NGA将通过理事会与国防和国土安全部门合作,共同领导如何修改国民警卫队以保护州和联邦政府的努力。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号