• COVID-19
  • About Us
  • Contact Us
  • Events
  • Industries
  • Partners
  • Products & Services
  • Contribute
  • Webinars

Aerospace

  • Québec’s CloudOps Will Build Telesat LightSpeed’s Cloud Network
  • Myriota and Goanna Ag Team Up on IoT Agriculture Solutions
  • Fleet Picks Swissto12 to Deliver Additively Manufactured All-Metal Patch Antennas

Chemical

  • POWER magazine and Chemical Engineering magazine announce Eastman Chemical as the Host Chemical Process Industries (CPI) Sponsor for the 5th annual Connected Plant Conference
  • Evonik deepens partnership with IBM to accelerate AI implementation
  • Achieving Plant Efficiency – the Digital Way

Cybersecurity

  • House Passes Eight Bipartisan Cyber, Homeland Security Bills
  • Biden Administration Targets Electric Utilities For Cybersecurity Protections
  • White House Attributes SolarWinds Hack To Russian Agency

Healthcare

  • CISA Services In High Demand Related To COVID Vaccine Response
  • AI tool detects COVID-19 by listening to patients’ coughs
  • Printing Wearable Sensors Directly onto Skin

Oil & Gas

  • Globalstar Wins Asset Tracking Order from Brazilian Oil and Gas Company
  • Cybersecurity: Continuous Vigilance Required
  • Repsol and Microsoft renew partnership developing AI-powered digital solutions

Power

  • POWER magazine and Chemical Engineering magazine announce Eastman Chemical as the Host Chemical Process Industries (CPI) Sponsor for the 5th annual Connected Plant Conference
  • Self-Tuning Artificial Intelligence Improves Plant Efficiency and Flexibility
  • How to Put the Power Grid to Work to Prevent Wildfires

Transportation

  • Swarm CEO Sara Spangelo Sets Disruptive Pricing on New Satellite IoT Service
  • Trump Issues Cyber Security Plan For Maritime Transportation System
  • Sabic Launches New Compounds for Automotive Radar Sensors

Webinars

  • Anticipating the Unknowns: Accelerating Incident Response Without Losing Control
  • Industrial Endpoint Protection in Operational Technology
  • Known and Unknown: Putting a Stop to OT and IT Threats Before they Act

Sign up today for our free weekly e-letter

sign up
CONNECTING INNOVATIONS
WITH INSIGHT
SIGN UP
LOG IN
  • Aerospace
    Québec's CloudOps Will Build Telesat LightSpeed's Cloud Network
    Read story View all articles
  • Chemical
    POWER magazine and Chemical Engineering magazine announce Eastman Chemical as the Host Chemical Process Industries (CPI) Sponsor for the 5th annual Connected Plant Conference
    Read story View all articles
  • Cybersecurity
    House Passes Eight Bipartisan Cyber, Homeland Security Bills
    Read story View all articles
  • Healthcare
    CISA Services In High Demand Related To COVID Vaccine Response
    Read story View all articles
  • Oil & Gas
    Globalstar Wins Asset Tracking Order from Brazilian Oil and Gas Company
    Read story View all articles
  • Power
    POWER magazine and Chemical Engineering magazine announce Eastman Chemical as the Host Chemical Process Industries (CPI) Sponsor for the 5th annual Connected Plant Conference
    Read story View all articles
  • Transportation
    Swarm CEO Sara Spangelo Sets Disruptive Pricing on New Satellite IoT Service
    Read story View all articles
Cybersecurity
November 13 2020 10:16 pm

Panel Advises DHS Procurement To Focus On Securing Unclassified ICT Supply Chain

C

Cal Biesecker

The Department of Homeland Security should create "stringent guidelines" for securing its information and communications technology (ICT) supply chain for its purchases of unclassified systems given threats from China and other nations to the hardware, software and support services used by the department, says a new report by and advisory panel.

"As disruption of unclassified systems could potentially hinder the execution of the department's critical missions at any time, DHS should focus supply chain security initiatives and procurement processes on developing stringent guidelines for unclassified systems," says the report, prepared by the Homeland Security Advisory Council (HSAC) ICT Risk Reduction Subcommittee.

A risk management framework would account for potential consequences of successful attacks on the ability of DHS to carry-out its missions, vulnerability assessments of its ICT systems from "supply chain corruption," and identify the most significant threats to unclassified ICT supply chains, says the report, which was approved by the HSAC last Thursday for consideration by Acting Homeland Security Secretary Chad Wolf.

The report also says that DHS should map out its ICT supply chains for vendors, subcontractors, parts, components and software and conduct red team exercises to assess the performance of ICT systems under stress.

Another recommendation calls a joint National Supply Chain Intelligence Center (NSCIC) Center of Excellence within DHS that would allow the government to share information about suppliers that pose a national security risk with the private sector and for industry to share information about potential technology vulnerabilities with the government. The NSCIC would also enable sharing of ICT supply chain risks across the government.

"By cutting through private sector norms of corporate competitiveness and IC norms of intelligence control, the NSCIC would build trust between government and industry, as well as broaden government understanding of risks and technology trends," says the subcommittee's 41-page report.

The panel also recommends that a review be done of the DHS procurement office's authorities to minimize ICT risks but doesn't address what additional authorities may be needed.

"DHS should therefore endeavor to assess gaps in the present procurement authorities that are related to ICT specifically," the report says.

In an interview with DHS Chief Procurement Officer Soraya Correa in April, she told the subcommittee that the the ICT supply chain for classified systems is mostly secure given "robust security consideration" and "acquisition rules favor the government's discretion." This is not the same on the unclassified side, she said.

The panel also suggests that the DHS procurement office have access to better data on potential vulnerabilities of the products and services the department is buying or considering buying.

"In fact, DHS has no consistent way of knowing which vendors have been identified as compromised or under investigation by U.S. intelligence agencies," the report says. "Insights and conclusions gained from acquisition authorities in one department of the government regarding potential ICT risks and threats across the public and private ICT ecosystem must be shared with other departments."

Sign up today for our free weekly e-letter

sign up

Aerospace

Chemical

Cybersecurity

Healthcare

Oil & Gas

Power

Quiz

Transportation

Webinars

About Us

IIoT Connection delivers the latest news, trends, insights, events and research surrounding the dynamic and disruptive Industrial Internet of Things (IIoT) marketplace. Brought to you by the publisher of must-read publications Defense Daily, OR Manager, POWER and Chemical Engineering, as well as the conference producers of SATELLITE, Global Connected Aircraft Summit, Connected Plant Conference and ELECTRIC POWER, IIoT Connection is committed to providing the most comprehensive compilation of products and services dedicated to the Industrial Internet of Things. Key verticals with associated products and services include: aerospace, chemical, cybersecurity, healthcare, oil & gas, power, and transportation.


Advertise

  • Privacy Policy
© 2021 Access Intelligence, LLC - All Rights Reserved.
  • × UPS Partners with Wingcopter to Develop, Certify Drone Delivery Fleet
    Read story View all articles
  • × How Industrial Managers Can Identify and Prevent Failures in Facilities
    Read story View all articles
  • × Federal Agencies Partner To Improve Cyber Security Cooperation In Energy Sector
    Read story View all articles
  • × New service lines can create opportunities for ORs
    Read story View all articles
  • × Equinor and Shell to collaborate on digital solutions
    Read story View all articles
  • × Dobroflot to Manage Fuel Savings With IOT Solution By Orange Business Services
    Read story View all articles
  • × The Future of 5G & IoT Technologies in the Transportation Industry
    Read story View all articles
  • ×
    Read story View all articles
  • ×
    Read story View all articles
  • ×
    Read story View all articles
  • ×
    Read story View all articles
  • ×
    Read story View all articles
  • ×
    Read story View all articles
  • ×
    Read story View all articles
  • ×
    Read story View all articles
  • ×
    Read story View all articles
  • ×
    Read story View all articles