Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Attacks/Breaches

10/18/2016
04:00 PM
Kelly Sheridan
Kelly Sheridan
Slideshows
Connect Directly
Twitter
LinkedIn
Google+
RSS
E-Mail

7 Regional Hotbeds For Cybersecurity Innovation

These regions are driving cybersecurity innovation across the US with an abundance of tech talent, educational institutions, accelerators, incubators, and startup activity.
2 of 8

Washington, DC

Experts agree the Washington, DC metro area is among the hottest regions for cybersecurity innovation due to the strong presence of federal agencies and increase in security spend.

'This area is home to one of the most densely concentrated cyber workforces in the entire country,' says Tenable Network Security CFO Steve Vintz. Part of the reason is because DC's roots are in security. Bodies such as the federal government and NSA contribute to a security-focused culture driving opportunity in the area.

A wealth of talent is driving innovation in the DC region, says Sean Cunningham, managing director at Trident Capital Cybersecurity. This area may have a history of security, but many people leave their government careers to join startups and seed companies, where job opportunities are plentiful.

'The availability of talent and cost of doing business in DC is phenomenally positive,' Cunningham continues. 'Savvy people coming out of government with incredible experience; that adds instant juice to a startup.' This talent can be harnessed and applied to endpoint, cloud, network, IoT; all areas of security ripe for growth, adds Gordon.

The security culture is further strengthened by a plethora of educational institutions, including the University of Maryland, graduating trained cyber talent. Incubators and accelerators in the area such as Mach37 are creating opportunity for people who want to switch their careers into the cybersecurity space. Ackerman describes Maryland's DataTribe as a 'startup studio' created to work with technical entrepreneurs and build companies focused on cybersecurity, big data, and analytics. DataTribe brings the added skills many companies need to grow.

'There may be reservoirs of tech talent, but not as much commercial talent or business experience,' he says. 'Startups don't just emerge; they need commercial DNA to go with it.'

It's important to note quality of life also plays a factor in how DC will grow as a security hotspot. An educated workforce, history of innovation, economic opportunity, and job growth make DC a desirable area to live, attracting a larger pool of talent, says Vintz.

The region has been home to several security startups, including NetWitness (acquired by EMC), SourceFire (acquired by Cisco), Mandiant (acquired by FireEye), IronNet Cybersecurity, LookingGlass Cyber Solutions, and CrowdStrike.

Going forward, Gordon anticipates the 'center of mass' for cybersecurity innovation will be in DC as more people learn how to build companies, outside investors continue to fund them, and professionals continue to enter the private sector.

Image Source: Orhan Cam via Shutterstock

Washington, DC

Experts agree the Washington, DC metro area is among the hottest regions for cybersecurity innovation due to the strong presence of federal agencies and increase in security spend.

"This area is home to one of the most densely concentrated cyber workforces in the entire country," says Tenable Network Security CFO Steve Vintz. Part of the reason is because DC's roots are in security. Bodies such as the federal government and NSA contribute to a security-focused culture driving opportunity in the area.

A wealth of talent is driving innovation in the DC region, says Sean Cunningham, managing director at Trident Capital Cybersecurity. This area may have a history of security, but many people leave their government careers to join startups and seed companies, where job opportunities are plentiful.

"The availability of talent and cost of doing business in DC is phenomenally positive," Cunningham continues. "Savvy people coming out of government with incredible experience; that adds instant juice to a startup." This talent can be harnessed and applied to endpoint, cloud, network, IoT; all areas of security ripe for growth, adds Gordon.

The security culture is further strengthened by a plethora of educational institutions, including the University of Maryland, graduating trained cyber talent. Incubators and accelerators in the area such as Mach37 are creating opportunity for people who want to switch their careers into the cybersecurity space. Ackerman describes Maryland's DataTribe as a "startup studio" created to work with technical entrepreneurs and build companies focused on cybersecurity, big data, and analytics. DataTribe brings the added skills many companies need to grow.

"There may be reservoirs of tech talent, but not as much commercial talent or business experience," he says. "Startups don't just emerge; they need commercial DNA to go with it."

It's important to note quality of life also plays a factor in how DC will grow as a security hotspot. An educated workforce, history of innovation, economic opportunity, and job growth make DC a desirable area to live, attracting a larger pool of talent, says Vintz.

The region has been home to several security startups, including NetWitness (acquired by EMC), SourceFire (acquired by Cisco), Mandiant (acquired by FireEye), IronNet Cybersecurity, LookingGlass Cyber Solutions, and CrowdStrike.

Going forward, Gordon anticipates the "center of mass" for cybersecurity innovation will be in DC as more people learn how to build companies, outside investors continue to fund them, and professionals continue to enter the private sector.

Image Source: Orhan Cam via Shutterstock

2 of 8
Comment  | 
Print  | 
Comments
Newest First  |  Oldest First  |  Threaded View
futon45
50%
50%
futon45,
User Rank: Apprentice
10/20/2016 | 8:13:07 AM
futon mattress
Excellent blog

Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Current Issue
6 Emerging Cyber Threats That Enterprises Face in 2020
This Tech Digest gives an in-depth look at six emerging cyber threats that enterprises could face in 2020. Download your copy today!
Flash Poll
State of Cybersecurity Incident Response
State of Cybersecurity Incident Response
Data breaches and regulations have forced organizations to pay closer attention to the security incident response function. However, security leaders may be overestimating their ability to detect and respond to security incidents. Read this report to find out more.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-5292
PUBLISHED: 2020-03-31
Leantime before versions 2.0.15 and 2.1-beta3 has a SQL Injection vulnerability. The impact is high. Malicious users/attackers can execute arbitrary SQL queries negatively affecting the confidentiality, integrity, and availability of the site. Attackers can exfiltrate data like the users' and admini...
CVE-2020-7009
PUBLISHED: 2020-03-31
Elasticsearch versions from 6.7.0 to 6.8.7 and 7.0.0 to 7.6.1 contain a privilege escalation flaw if an attacker is able to create API keys. An attacker who is able to generate an API key can perform a series of steps that result in an API key being generated with elevated privileges.
CVE-2019-13495
PUBLISHED: 2020-03-31
In firmware version 4.50 of Zyxel XGS2210-52HP, multiple stored cross-site scripting (XSS) issues allows remote authenticated users to inject arbitrary web script via an rpSys.html Name or Location field.
CVE-2020-5291
PUBLISHED: 2020-03-31
Bubblewrap (bwrap) before version 0.4.1, if installed in setuid mode and the kernel supports unprivileged user namespaces, then the `bwrap --userns2` option can be used to make the setuid process keep running as root while being traceable. This can in turn be used to gain root permissions. Note that...
CVE-2019-14905
PUBLISHED: 2020-03-31
A vulnerability was found in Ansible Engine versions 2.9.x before 2.9.3, 2.8.x before 2.8.8, 2.7.x before 2.7.16 and earlier, where in Ansible's nxos_file_copy module can be used to copy files to a flash or bootflash on NXOS devices. Malicious code could craft the filename parameter to perform OS co...