Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Attacks/Breaches

10/18/2016
04:00 PM
Kelly Sheridan
Kelly Sheridan
Slideshows
Connect Directly
Twitter
LinkedIn
Google+
RSS
E-Mail

7 Regional Hotbeds For Cybersecurity Innovation

These regions are driving cybersecurity innovation across the US with an abundance of tech talent, educational institutions, accelerators, incubators, and startup activity.
2 of 8

Washington, DC

Experts agree the Washington, DC metro area is among the hottest regions for cybersecurity innovation due to the strong presence of federal agencies and increase in security spend.

"This area is home to one of the most densely concentrated cyber workforces in the entire country," says Tenable Network Security CFO Steve Vintz. Part of the reason is because DC's roots are in security. Bodies such as the federal government and NSA contribute to a security-focused culture driving opportunity in the area.

A wealth of talent is driving innovation in the DC region, says Sean Cunningham, managing director at Trident Capital Cybersecurity. This area may have a history of security, but many people leave their government careers to join startups and seed companies, where job opportunities are plentiful.

"The availability of talent and cost of doing business in DC is phenomenally positive," Cunningham continues. "Savvy people coming out of government with incredible experience; that adds instant juice to a startup." This talent can be harnessed and applied to endpoint, cloud, network, IoT; all areas of security ripe for growth, adds Gordon.

The security culture is further strengthened by a plethora of educational institutions, including the University of Maryland, graduating trained cyber talent. Incubators and accelerators in the area such as Mach37 are creating opportunity for people who want to switch their careers into the cybersecurity space. Ackerman describes Maryland's DataTribe as a "startup studio" created to work with technical entrepreneurs and build companies focused on cybersecurity, big data, and analytics. DataTribe brings the added skills many companies need to grow.

"There may be reservoirs of tech talent, but not as much commercial talent or business experience," he says. "Startups don't just emerge; they need commercial DNA to go with it."

It's important to note quality of life also plays a factor in how DC will grow as a security hotspot. An educated workforce, history of innovation, economic opportunity, and job growth make DC a desirable area to live, attracting a larger pool of talent, says Vintz.

The region has been home to several security startups, including NetWitness (acquired by EMC), SourceFire (acquired by Cisco), Mandiant (acquired by FireEye), IronNet Cybersecurity, LookingGlass Cyber Solutions, and CrowdStrike.

Going forward, Gordon anticipates the "center of mass" for cybersecurity innovation will be in DC as more people learn how to build companies, outside investors continue to fund them, and professionals continue to enter the private sector.

Image Source: Orhan Cam via Shutterstock

2 of 8
Comment  | 
Print  | 
Comments
Newest First  |  Oldest First  |  Threaded View
futon45
50%
50%
futon45,
User Rank: Apprentice
10/20/2016 | 8:13:07 AM
futon mattress
Excellent blog

COVID-19: Latest Security News & Commentary
Dark Reading Staff 7/9/2020
Omdia Research Launches Page on Dark Reading
Tim Wilson, Editor in Chief, Dark Reading 7/9/2020
Mobile App Fraud Jumped in Q1 as Attackers Pivot from Browsers
Jai Vijayan, Contributing Writer,  7/10/2020
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Special Report: Computing's New Normal, a Dark Reading Perspective
This special report examines how IT security organizations have adapted to the "new normal" of computing and what the long-term effects will be. Read it and get a unique set of perspectives on issues ranging from new threats & vulnerabilities as a result of remote working to how enterprise security strategy will be affected long term.
Flash Poll
The Threat from the Internetand What Your Organization Can Do About It
The Threat from the Internetand What Your Organization Can Do About It
This report describes some of the latest attacks and threats emanating from the Internet, as well as advice and tips on how your organization can mitigate those threats before they affect your business. Download it today!
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-15105
PUBLISHED: 2020-07-10
Django Two-Factor Authentication before 1.12, stores the user's password in clear text in the user session (base64-encoded). The password is stored in the session when the user submits their username and password, and is removed once they complete authentication by entering a two-factor authenticati...
CVE-2020-11061
PUBLISHED: 2020-07-10
In Bareos Director less than or equal to 16.2.10, 17.2.9, 18.2.8, and 19.2.7, a heap overflow allows a malicious client to corrupt the director's memory via oversized digest strings sent during initialization of a verify job. Disabling verify jobs mitigates the problem. This issue is also patched in...
CVE-2020-4042
PUBLISHED: 2020-07-10
Bareos before version 19.2.8 and earlier allows a malicious client to communicate with the director without knowledge of the shared secret if the director allows client initiated connection and connects to the client itself. The malicious client can replay the Bareos director's cram-md5 challenge to...
CVE-2020-11081
PUBLISHED: 2020-07-10
osquery before version 4.4.0 enables a priviledge escalation vulnerability. If a Window system is configured with a PATH that contains a user-writable directory then a local user may write a zlib1.dll DLL, which osquery will attempt to load. Since osquery runs with elevated privileges this enables l...
CVE-2020-6114
PUBLISHED: 2020-07-10
An exploitable SQL injection vulnerability exists in the Admin Reports functionality of Glacies IceHRM v26.6.0.OS (Commit bb274de1751ffb9d09482fd2538f9950a94c510a) . A specially crafted HTTP request can cause SQL injection. An attacker can make an authenticated HTTP request to trigger this vulnerabi...