Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Attacks/Breaches

10/18/2016
04:00 PM
Kelly Sheridan
Kelly Sheridan
Slideshows
Connect Directly
Twitter
LinkedIn
Google+
RSS
E-Mail

7 Regional Hotbeds For Cybersecurity Innovation

These regions are driving cybersecurity innovation across the US with an abundance of tech talent, educational institutions, accelerators, incubators, and startup activity.
2 of 8

Washington, DC

Experts agree the Washington, DC metro area is among the hottest regions for cybersecurity innovation due to the strong presence of federal agencies and increase in security spend.

'This area is home to one of the most densely concentrated cyber workforces in the entire country,' says Tenable Network Security CFO Steve Vintz. Part of the reason is because DC's roots are in security. Bodies such as the federal government and NSA contribute to a security-focused culture driving opportunity in the area.

A wealth of talent is driving innovation in the DC region, says Sean Cunningham, managing director at Trident Capital Cybersecurity. This area may have a history of security, but many people leave their government careers to join startups and seed companies, where job opportunities are plentiful.

'The availability of talent and cost of doing business in DC is phenomenally positive,' Cunningham continues. 'Savvy people coming out of government with incredible experience; that adds instant juice to a startup.' This talent can be harnessed and applied to endpoint, cloud, network, IoT; all areas of security ripe for growth, adds Gordon.

The security culture is further strengthened by a plethora of educational institutions, including the University of Maryland, graduating trained cyber talent. Incubators and accelerators in the area such as Mach37 are creating opportunity for people who want to switch their careers into the cybersecurity space. Ackerman describes Maryland's DataTribe as a 'startup studio' created to work with technical entrepreneurs and build companies focused on cybersecurity, big data, and analytics. DataTribe brings the added skills many companies need to grow.

'There may be reservoirs of tech talent, but not as much commercial talent or business experience,' he says. 'Startups don't just emerge; they need commercial DNA to go with it.'

It's important to note quality of life also plays a factor in how DC will grow as a security hotspot. An educated workforce, history of innovation, economic opportunity, and job growth make DC a desirable area to live, attracting a larger pool of talent, says Vintz.

The region has been home to several security startups, including NetWitness (acquired by EMC), SourceFire (acquired by Cisco), Mandiant (acquired by FireEye), IronNet Cybersecurity, LookingGlass Cyber Solutions, and CrowdStrike.

Going forward, Gordon anticipates the 'center of mass' for cybersecurity innovation will be in DC as more people learn how to build companies, outside investors continue to fund them, and professionals continue to enter the private sector.

Image Source: Orhan Cam via Shutterstock

Washington, DC

Experts agree the Washington, DC metro area is among the hottest regions for cybersecurity innovation due to the strong presence of federal agencies and increase in security spend.

"This area is home to one of the most densely concentrated cyber workforces in the entire country," says Tenable Network Security CFO Steve Vintz. Part of the reason is because DC's roots are in security. Bodies such as the federal government and NSA contribute to a security-focused culture driving opportunity in the area.

A wealth of talent is driving innovation in the DC region, says Sean Cunningham, managing director at Trident Capital Cybersecurity. This area may have a history of security, but many people leave their government careers to join startups and seed companies, where job opportunities are plentiful.

"The availability of talent and cost of doing business in DC is phenomenally positive," Cunningham continues. "Savvy people coming out of government with incredible experience; that adds instant juice to a startup." This talent can be harnessed and applied to endpoint, cloud, network, IoT; all areas of security ripe for growth, adds Gordon.

The security culture is further strengthened by a plethora of educational institutions, including the University of Maryland, graduating trained cyber talent. Incubators and accelerators in the area such as Mach37 are creating opportunity for people who want to switch their careers into the cybersecurity space. Ackerman describes Maryland's DataTribe as a "startup studio" created to work with technical entrepreneurs and build companies focused on cybersecurity, big data, and analytics. DataTribe brings the added skills many companies need to grow.

"There may be reservoirs of tech talent, but not as much commercial talent or business experience," he says. "Startups don't just emerge; they need commercial DNA to go with it."

It's important to note quality of life also plays a factor in how DC will grow as a security hotspot. An educated workforce, history of innovation, economic opportunity, and job growth make DC a desirable area to live, attracting a larger pool of talent, says Vintz.

The region has been home to several security startups, including NetWitness (acquired by EMC), SourceFire (acquired by Cisco), Mandiant (acquired by FireEye), IronNet Cybersecurity, LookingGlass Cyber Solutions, and CrowdStrike.

Going forward, Gordon anticipates the "center of mass" for cybersecurity innovation will be in DC as more people learn how to build companies, outside investors continue to fund them, and professionals continue to enter the private sector.

Image Source: Orhan Cam via Shutterstock

2 of 8
Comment  | 
Print  | 
Comments
Threaded  |  Newest First  |  Oldest First
futon45
50%
50%
futon45,
User Rank: Apprentice
10/20/2016 | 8:13:07 AM
futon mattress
Excellent blog

Microsoft Patches Wormable RCE Vulns in Remote Desktop Services
Kelly Sheridan, Staff Editor, Dark Reading,  8/13/2019
The Mainframe Is Seeing a Resurgence. Is Security Keeping Pace?
Ray Overby, Co-Founder & President at Key Resources, Inc.,  8/15/2019
GitHub Named in Capital One Breach Lawsuit
Dark Reading Staff 8/14/2019
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Current Issue
7 Threats & Disruptive Forces Changing the Face of Cybersecurity
This Dark Reading Tech Digest gives an in-depth look at the biggest emerging threats and disruptive forces that are changing the face of cybersecurity today.
Flash Poll
The State of IT Operations and Cybersecurity Operations
The State of IT Operations and Cybersecurity Operations
Your enterprise's cyber risk may depend upon the relationship between the IT team and the security team. Heres some insight on what's working and what isn't in the data center.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2019-15237
PUBLISHED: 2019-08-20
Roundcube Webmail through 1.3.9 mishandles Punycode xn-- domain names, leading to homograph attacks.
CVE-2019-15228
PUBLISHED: 2019-08-20
FUEL CMS 1.4.4 has XSS in the Create Blocks section of the Admin console. This could lead to cookie stealing and other malicious actions. This vulnerability can be exploited with an authenticated account but can also impact unauthenticated visitors.
CVE-2019-15229
PUBLISHED: 2019-08-20
FUEL CMS 1.4.4 has CSRF in the blocks/create/ Create Blocks section of the Admin console. This could lead to an attacker tricking the administrator into executing arbitrary code via a specially crafted HTML page.
CVE-2019-15231
PUBLISHED: 2019-08-20
Webmin 1.890, in a default installation, contains a backdoor that allows an unauthenticated attacker to remotely execute commands. This is different from CVE-2019-15107. NOTE: as of 2019-08-19, the vendor reports that "at some point" malicious code was inserted into their build infrastruct...
CVE-2019-15232
PUBLISHED: 2019-08-20
Live555 before 2019.08.16 has a Use-After-Free because GenericMediaServer::createNewClientSessionWithId can generate the same client session ID in succession, which is mishandled by the MPEG1or2 and Matroska file demultiplexors.