Risk

7/14/2017
11:27 AM
Dark Reading
Dark Reading
Products and Releases
50%
50%

States Pledge to Meet Cyber Threats

Outgoing National Governors Association Chair Gov. McAuliffe Sunsets his Initiative, 38 Governors Sign Compact

PROVIDENCE, RI—Today National Governors Association (NGA) Chair Virginia Gov. Terry McAuliffe kicked off the 2017 NGA Summer Meeting with a discussion on how states continue to develop strategies to thwart cyber threats.

Over the last year, Gov. McAuliffe has spearheaded an effort to strengthen state cybersecurity through Meet the Threat: States Confront the Cyber Challenge, his NGA chair’s initiative.

“The goal of my initiative as NGA chair was to elevate the importance of cybersecurity on every governor’s agenda. To do that, we had to highlight why cybersecurity was more than just an information technology issue. I am proud that, throughout the last year, we have successfully engaged governors and their states on strengthening their cyber protocols and recognizing that cybersecurity is a technology issue, but it’s also a health issue, an education issue, a public safety issue, an economic issue and a democracy issue,” Gov. McAuliffe said.

Among the speakers joining him for the session were Matt Spence, partner at venture capital firm Andreesen Horowitz; Chris Bream, chief technology officer at IT company Tanium; and Wes Kremer, vice president of defense contractor Raytheon and president of Raytheon Integrated Defense Systems.

Gov. McAuliffe highlighted governors’ actions to boost cybersecurity defenses throughout the past year. “In New Mexico, Gov. Martinez signed legislation clarifying when the National Guard can be used during cyber events,” he said. “In Oregon, Gov. Brown signed an executive order to unify all cybersecurity efforts into one agency. Lastly, our incoming [NGA] chair, Gov. Sandoval, recently signed a bill to create a cyber defense center to lead all their cyber projects in Nevada.

“Since the launch of my initiative, more than 30 governors have signed an executive order, legislation or announced a cybersecurity initiative,” he continued, adding, “This has resulted in a dozen executive orders, 14 signed bills and 17 initiatives.”

Gov. McAuliffe also announced at the session that 38 governors across the country had signed on to a compact to improve state cybersecurity in which they pledged to enhance cybersecurity governance, prepare and defend their states from cybersecurity events and help grow the nation’s cyber workforce.

The work of Meet the Threat will live on, both in the Governor’s Guide to Cybersecurity, a comprehensive resource for state officials that outlines concrete steps they can take to bolster cybersecurity practices, and NGA’s Resource Center for State Cybersecurity, which Gov. McAuliffe co-chairs with Michigan Gov. Rick Snyder

Comment  | 
Print  | 
More Insights
Comments
Oldest First  |  Newest First  |  Threaded View
'Hidden Tunnels' Help Hackers Launch Financial Services Attacks
Kelly Sheridan, Staff Editor, Dark Reading,  6/20/2018
Tesla Employee Steals, Sabotages Company Data
Jai Vijayan, Freelance writer,  6/19/2018
Inside a SamSam Ransomware Attack
Ajit Sancheti, CEO and Co-Founder, Preempt,  6/20/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-7682
PUBLISHED: 2018-06-22
Micro Focus Solutions Business Manager versions prior to 11.4 allows a user to invoke SBM RESTful services across domains.
CVE-2018-12689
PUBLISHED: 2018-06-22
phpLDAPadmin 1.2.2 allows LDAP injection via a crafted server_id parameter in a cmd.php?cmd=login_form request, or a crafted username and password in the login panel.
CVE-2018-12538
PUBLISHED: 2018-06-22
In Eclipse Jetty versions 9.4.0 through 9.4.8, when using the optional Jetty provided FileSessionDataStore for persistent storage of HttpSession details, it is possible for a malicious user to access/hijack other HttpSessions and even delete unmatched HttpSessions present in the FileSystem's storage...
CVE-2018-12684
PUBLISHED: 2018-06-22
Out-of-bounds Read in the send_ssi_file function in civetweb.c in CivetWeb through 1.10 allows attackers to cause a Denial of Service or Information Disclosure via a crafted SSI file.
CVE-2018-12687
PUBLISHED: 2018-06-22
tinyexr 0.9.5 has an assertion failure in DecodePixelData in tinyexr.h.