There are many who believe that it is not possible to adequately secure an e-voting transaction. Considering all of the other sensitive transactions that are conducted online, I don’t understand this perspective.
Many of the current issues surrounding BYOD are similar to the BYOD issues from ten, fifteen, or twenty years ago. Whether a floppy disk, USB drive or iPhone--it isn’t the device that needs to be managed, but the data stored within the device.
As of March 2012, the DoD was using the DoD Information Assurance Certification and Accreditation Process (DIACAP) and DoD-specific controls, which were issued in 2007 and 2003 respectively. It is time for these standards and guidelines to be updated.
As is the case with conventional warfare, there is a need for proactive intelligence gathering capabilities that allow organizations to “see over the horizon” and anticipate cybersecurity issues before they materialize as real problems within their network.
In the wake of the release of FedRAMP’s baseline security controls and the FedRAMP CONOPS, questions about customizing controls and leveraging cloud service providers (CSPs) abound.
It’s a common misconception that Agile development methodology is a no-documentation-little-planning-and-gung-ho-developers-on-the-loose style of project management compared to the traditional Waterfall methodology. With software development cycles getting shorter and shorter due to demand for faster time-to-market, Agile offers a project management style suited to the ever-changing software development environment.