Cybersecurity in the President Trump Administration

Cloud Migration Part 2: Classify your data

By G C Network | August 30, 2018

In my first post of this series, “Cloud migration part one: An overview,” I provided a high-level summary of how enterprises should migrate applications to the cloud. In this installment,…

Could Budget Sweeps Fix Your Cybersecurity Problem?

By G C Network | July 19, 2018

A recent roundtable discussion in Washington, DC with Federal IT and Cyber leaders focused on the business drivers, challenges and evolving strategies around cybersecurity in government.  After an opening presentation…

Cloud Migration Part 1: An Overview

By G C Network | July 17, 2018

Cloud Migration Part One: An Overview   Business is all about efficiency and effectiveness.  In today’s world, however, those twin goals almost always lead to cloud migration.  This anecdotal observation…

A Personal Technology for Good Redux: Call for Code

By G C Network | July 12, 2018

In 2013 I had the opportunity to manage a $2M demonstration of how cloud computing could be used to support natural disasters. In that NCOIC Geospatial Community Cloud (GCC) demonstration,…

A Path to Hybrid Cloud

By G C Network | May 31, 2018

Cloud computing is now an operational reality across every industry.  Organizations that fail to leverage this economic, operational and technology consumption model are merely consigning themselves to irrelevance.  The rapid…

Human-Led Collaboration with Machines

By G C Network | May 29, 2018

When charged with managing large and complex efforts, an overarching project management task is risk assessment. It involves documenting the current situation, comparing it to the past, and understanding the…

Sensomorphic

By G C Network | May 28, 2018

240 million results are returned in 1.06 seconds (as of May 28, 2018) when you search for cloud computing in a Google search. With that much information available, and that many…

Artificial Intelligence and the Project Manager

By G C Network | May 25, 2018

Organizations use teams to create wealth, market share, customer service, competitive advantage, and organizational success. Effective teams accomplish their assigned end goals by engaging in collaboration as a joint learning…

Building A Collaborative Team

By G C Network | May 18, 2018

Recently, Harvard Business Review cited some insightful research into team behavior at 15 multinational companies. It found that although these teams tended to be large, virtual, diverse, and composed of…

Welcome the New Project Manager!

By G C Network | May 18, 2018

According to CIO.com, the six traits of highly effective project managers are: Be a strategic business partner who can offer higher-level strategic leadership skills, not just technical management skills, provide…

From the rise of increasingly capable nation-states—like Iran and North Korea—conducting destructive attacks against American private sector companies, to the continuing pace of IP theft by China striking at the very heart of our innovation economy, the new team at the White House will have its hands full. And this doesn’t even account for ongoing efforts to infiltrate critical infrastructures by nation-state proxies and efforts to influence political, economic, and military conditions in the United States through cyber-enabled intelligence. Or recruitment activities, the reality of our aging federal cyber infrastructure, and the lack of serious federal government policies on joint public-private cyber defense and cyber deterrence.
Given this dizzying list of challenges, the likely limited bandwidth to address these issues in the first 100 days, and the urgency of the threat, one might ask what critical issues the new administration ought to tackle immediately after inauguration day. To that end, there are five key steps that the Trump Administration should—consistent with its policy platform—take that might have a useful impact on our nation’s cybersecurity in the near-term.
First, as we did in the Cold War, the new administration should define the scope of cyber activities that would provoke our nation to action. That list must include efforts to conduct destructive attacks on the property of any American government or corporate assets, regardless of where they are located; activities targeting American critical infrastructures, and activities directly affecting our body politic—including, but not limited to, efforts to influence our political process or to fundamentally undermine our economic capabilities, including through the theft of the American core corporate intellectual property.
Second, the administration must make clear that it will respond swiftly and severely to activities that cross the lines described above. If we are to have credibility, we must also be prepared to actually take action when such lines are crossed. For better or worse, today, American redlines largely go disrespected because of our prior failures to enforce them. We also ought to make clear that our responses will be calibrated to the threat and may not necessarily take place in cyberspace.
Third, the Trump Administration should incorporate technology infrastructure into its $1 trillion initiative to build roads, bridges, and buildings. As it encourages private sector investment through tax credits and other incentive programs, the administration must, likewise, encourage investment in technology infrastructure including the build-out of high-speed network access to underserved areas and the broad deployment of cloud infrastructure for public and private needs. In addition, the administration should encourage the use of American infrastructure technology domestically and abroad, even in the face of efforts by other nations—like China—to subsidize their industries through low-to-no interest loans and government-enabled IP theft.
Fourth, the Trump Administration needs to establish a White House mechanism for engaging the American private sector in national security decision-making. As the recent Commission on Enhancing National Cybersecurity recently recommended, the new administration should create a forum for top private sector executives from key infrastructure sectors to be regularly briefed on critical national security matters with a cybersecurity nexus and to provide their input directly to the President through the National Security Advisor.
Fifth, the Trump Administration should require the U.S. intelligence community to immediately begin providing classified threat information directly to American critical infrastructure companies in a machine usable format that protects intelligence sources and methods. While Congress recently passed threat sharing legislation, the reality is that both the federal government and the private sector have remained reticent to share the most useful information. The government ought to show good faith by being the first to give in this area and start sharing immediately.
Like any new administration, the Trump team will face a steep learning curve on the wide range of threats the nation faces around the world, particularly in cyberspace. However, there are some key steps that it can take in the near-term to have a significant impact on our cybersecurity posture. By establishing the conditions for a serious, workable deterrence system, treating technology as a core infrastructure component, and establishing a tight working relationship with the private sector, the Trump Administration can take the very ideas at the core of its electoral platform and apply them to good use in cybersecurity in the first 100 days.
About the author: Jamil Jaffer, a cybersecurity and national security expert at Dūcō, recently served as the Chief Counsel and Senior Advisor for the Senate Foreign Relations Committee, where he worked on key national security and foreign policy issues, including leading the drafting of the proposed Authorization for the Use of Military Force (AUMF) against ISIS in 2014 and 2015, the AUMF against Syria in 2013, and revisions to the 9/11 AUMF against al Qaeda.

This content is being syndicated through multiple channels. The opinions expressed are solely those of the author and do not represent the views of GovCloud Network, GovCloud Network Partners or any other corporation or organization.

Cloud Musings

( Thank you. If you enjoyed this article, get free updates by email or RSS – © Copyright Kevin L. Jackson 2016)

Follow me at https://Twitter.com/Kevin_Jackson
Posted in

G C Network