It's time for feds to share their ideas

For cybersecurity, information sharing must be a two-way street.

Everyone knows how hard homeland security officials have tried to get industry executives to talk about their cyber vulnerabilities — and how uncooperative companies have been.

But what if the federal government gave industry officials some incentives to open up? In an increasingly dangerous cyberworld, it is the federal government that can no longer afford to keep cybersecurity secrets.

The incentive is clear. Government officials are concerned that the nation's critical infrastructure is vulnerable to a large-scale and potentially devastating cyberattack, but much of that infrastructure — banks and financial institutions, telecommunications networks, electrical power plants — is privately owned and operated.

Nevertheless, government officials are generally unwilling to risk compromising their sources and methods by declassifying threat information and sharing it with industry, said Mark Gembicki, national managing director for critical infrastructure protection at BearingPoint.

Likewise, industry officials are fearful of disclosing information that could become public and damage their business. "They go out on a couple of dates, but they can't seem to get to the altar," he said.

Gembicki thinks critical infrastructure companies should be privy to the federal government's cyberthreat information. He also thinks agencies should share countermeasures for dealing with cyberattacks.

Such an idea has some merit, if it doesn't compromise the government's own security efforts, said Amit Yoran, former director of the Homeland Security Department's National Cyber Security Division. "If we're reluctant or incapable of doing that as a government," he added, "how do we expect to entice our private-sector counterparts to share information with us?"

The Fed 100

Save the date for 28th annual Federal 100 Awards Gala.

Featured

  • Social network, census

    5 predictions for federal IT in 2017

    As the Trump team takes control, here's what the tech community can expect.

  • Rep. Gerald Connolly

    Connolly warns on workforce changes

    The ranking member of the House Oversight Committee's Government Operations panel warns that Congress will look to legislate changes to the federal workforce.

  • President Donald J. Trump delivers his inaugural address

    How will Trump lead on tech?

    The businessman turned reality star turned U.S. president clearly has mastered Twitter, but what will his administration mean for broader technology issues?

  • Login.gov moving ahead

    The bid to establish a single login for accessing government services is moving again on the last full day of the Obama presidency.

  • Shutterstock image (by Jirsak): customer care, relationship management, and leadership concept.

    Obama wraps up security clearance reforms

    In a last-minute executive order, President Obama institutes structural reforms to the security clearance process designed to create a more unified system across government agencies.

  • Shutterstock image: breached lock.

    What cyber can learn from counterterrorism

    The U.S. has to look at its experience in developing post-9/11 counterterrorism policies to inform efforts to formalize cybersecurity policies, says a senior official.

Reader comments

Please post your comments here. Comments are moderated, so they may not appear immediately after submitting. We will not post comments that we consider abusive or off-topic.

Please type the letters/numbers you see above

More from 1105 Public Sector Media Group