Letter to the editor

I have several thoughts in response to your editorial titled "From the ground up."

First, the National Association of State Chief Information Officers is not composed of state security officers. In fact most states do not have a designated security officer, they have designated security contacts that do that job in addition to everything else. NASCIO, to its credit, has been attempting to fill the gap, but security is an add-on, not a priority — and rightly so given the organization's mission.

Second, it is anticipated that the national cybersecurity strategy will not address state and local government issues. This has been one of the weakest links in the proposed strategy.

This past year, Colorado created an IT risk management division within its Office of Innovation and Technology (www.oit.state.co.us). This division houses the information security and privacy functions and is dedicated to managing and mitigating IT risk. This is a model that all levels of government should emulate, including the federal government.

In the meantime, the main issues holding up effective security/privacy initiatives in this country are leadership, governance and dedicated resources. To seriously address IT problems, security officers need enforcement and compliance authority and dedicated resources.

To date I know of no state that has the proper tools to do the job. And quite frankly, we must think outside of the box and be prepared to create innovative governance structures if we are going to deal effectively with cybersecurity and cyberwarfare.

No information security officer can successfully monitor his facilities, man the stations, investigate intrusions and try to figure out who's on first all at the same time.

Valerie McNevin
Denver

WRITE US

We welcome your comments. To send a letter to the editor, use this form.

Please check out the archive of Letters to the Editor for fellow readers' comments.

Featured

  • Defense
    Ryan D. McCarthy being sworn in as Army Secretary Oct. 10, 2019. (Photo credit: Sgt. Dana Clarke/U.S. Army)

    Army wants to spend nearly $1B on cloud, data by 2025

    Army Secretary Ryan McCarthy said lack of funding or a potential delay in the JEDI cloud bid "strikes to the heart of our concern."

  • Congress
    Rep. Jim Langevin (D-R.I.) at the Hack the Capitol conference Sept. 20, 2018

    Jim Langevin's view from the Hill

    As chairman of of the Intelligence and Emerging Threats and Capabilities subcommittee of the House Armed Services Committe and a member of the House Homeland Security Committee, Rhode Island Democrat Jim Langevin is one of the most influential voices on cybersecurity in Congress.

Stay Connected

FCW INSIDER

Sign up for our newsletter.

I agree to this site's Privacy Policy.