11:27 AM
Dark Reading
Dark Reading
Products and Releases

States Pledge to Meet Cyber Threats

Outgoing National Governors Association Chair Gov. McAuliffe Sunsets his Initiative, 38 Governors Sign Compact

PROVIDENCE, RI—Today National Governors Association (NGA) Chair Virginia Gov. Terry McAuliffe kicked off the 2017 NGA Summer Meeting with a discussion on how states continue to develop strategies to thwart cyber threats.

Over the last year, Gov. McAuliffe has spearheaded an effort to strengthen state cybersecurity through Meet the Threat: States Confront the Cyber Challenge, his NGA chair’s initiative.

“The goal of my initiative as NGA chair was to elevate the importance of cybersecurity on every governor’s agenda. To do that, we had to highlight why cybersecurity was more than just an information technology issue. I am proud that, throughout the last year, we have successfully engaged governors and their states on strengthening their cyber protocols and recognizing that cybersecurity is a technology issue, but it’s also a health issue, an education issue, a public safety issue, an economic issue and a democracy issue,” Gov. McAuliffe said.

Among the speakers joining him for the session were Matt Spence, partner at venture capital firm Andreesen Horowitz; Chris Bream, chief technology officer at IT company Tanium; and Wes Kremer, vice president of defense contractor Raytheon and president of Raytheon Integrated Defense Systems.

Gov. McAuliffe highlighted governors’ actions to boost cybersecurity defenses throughout the past year. “In New Mexico, Gov. Martinez signed legislation clarifying when the National Guard can be used during cyber events,” he said. “In Oregon, Gov. Brown signed an executive order to unify all cybersecurity efforts into one agency. Lastly, our incoming [NGA] chair, Gov. Sandoval, recently signed a bill to create a cyber defense center to lead all their cyber projects in Nevada.

“Since the launch of my initiative, more than 30 governors have signed an executive order, legislation or announced a cybersecurity initiative,” he continued, adding, “This has resulted in a dozen executive orders, 14 signed bills and 17 initiatives.”

Gov. McAuliffe also announced at the session that 38 governors across the country had signed on to a compact to improve state cybersecurity in which they pledged to enhance cybersecurity governance, prepare and defend their states from cybersecurity events and help grow the nation’s cyber workforce.

The work of Meet the Threat will live on, both in the Governor’s Guide to Cybersecurity, a comprehensive resource for state officials that outlines concrete steps they can take to bolster cybersecurity practices, and NGA’s Resource Center for State Cybersecurity, which Gov. McAuliffe co-chairs with Michigan Gov. Rick Snyder

Comment  | 
Print  | 
More Insights
Threaded  |  Newest First  |  Oldest First
The Case for Integrating Physical Security & Cybersecurity
Paul Kurtz, CEO & Cofounder, TruSTAR Technology,  3/20/2018
A Look at Cybercrime's Banal Nature
Curtis Franklin Jr., Senior Editor at Dark Reading,  3/20/2018
City of Atlanta Hit with Ransomware Attack
Dark Reading Staff 3/23/2018
Register for Dark Reading Newsletters
White Papers
Current Issue
How to Cope with the IT Security Skills Shortage
Most enterprises don't have all the in-house skills they need to meet the rising threat from online attackers. Here are some tips on ways to beat the shortage.
Flash Poll
[Strategic Security Report] Navigating the Threat Intelligence Maze
[Strategic Security Report] Navigating the Threat Intelligence Maze
Most enterprises are using threat intel services, but many are still figuring out how to use the data they're collecting. In this Dark Reading survey we give you a look at what they're doing today - and where they hope to go.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
Published: 2017-05-09
NScript in mpengine in Microsoft Malware Protection Engine with Engine Version before 1.1.13704.0, as used in Windows Defender and other products, allows remote attackers to execute arbitrary code or cause a denial of service (type confusion and application crash) via crafted JavaScript code within ...

Published: 2017-05-08
unixsocket.c in lxterminal through 0.3.0 insecurely uses /tmp for a socket file, allowing a local user to cause a denial of service (preventing terminal launch), or possibly have other impact (bypassing terminal access control).

Published: 2017-05-08
A privilege escalation vulnerability in Brocade Fibre Channel SAN products running Brocade Fabric OS (FOS) releases earlier than v7.4.1d and v8.0.1b could allow an authenticated attacker to elevate the privileges of user accounts accessing the system via command line interface. With affected version...

Published: 2017-05-08
Improper checks for unusual or exceptional conditions in Brocade NetIron 05.8.00 and later releases up to and including 06.1.00, when the Management Module is continuously scanned on port 22, may allow attackers to cause a denial of service (crash and reload) of the management module.

Published: 2017-05-08
Nextcloud Server before 11.0.3 is vulnerable to an inadequate escaping leading to a XSS vulnerability in the search module. To be exploitable a user has to write or paste malicious content into the search dialogue.