Cybersecurity in the President Trump Administration

Animoto = Automated Imagery PED

By G C Network | December 3, 2008

Over the past two days, I’ve spent quite a bit of time with Stevie Clifton, Co-founder & CTO of Animoto. Besides being one of the coolest things I’ve seen in…

World Summit of Cloud Computing 2008

By G C Network | December 1, 2008

Video by Animoto using cloud computing technology. (Done in 20 minutes for free)!! Follow me at https://Twitter.com/Kevin_Jackson

2008 World Summit of Cloud Computing

By G C Network | November 30, 2008

After a uneventful trip , I’m now in Israel for the World Summit. With over 500 people expected to attend, it promises to be an exciting time. Unfortunately, I arrived…

CloudCamp Federal ’08

By G C Network | November 28, 2008

| Get your Presentation Pack Follow me at https://Twitter.com/Kevin_Jackson

NCOIC Cloud Working Group

By G C Network | November 26, 2008

The NCOIC will be holding a cloud computing working group on December 10th during plenary session in Costa Mesa, CA. The session focus will be “Requirements for Enterprise Cloud Computing”.…

IBM Rating Clouds

By G C Network | November 25, 2008

According to Cloud Computing Journal, and Red Herring, IBM will now rate other cloud providers. Using the “Resilient Cloud Validation” program, IBM will validate their facilities, applications, data, staff, processes…

Cloud Computing vs. Cloud Services

By G C Network | November 24, 2008

In September, Frank Gens provided an excellent overview of the the new “Cloud Computing Era”. In preparing for an upcoming talk, I re-read the post and found myself appreciating it…

Inaugural “Inside the Cloud” Survey

By G C Network | November 21, 2008

Appistry and CloudCamp recently released results from the first “Inside the Cloud” survey. Key takeaways were: Amazon perceived as cloud leader, with twice as many votes as Google Infrastructure providers…

FIAC Presentation Mentions Cloud Computing

By G C Network | November 20, 2008

At the recent Federal Information Assurance Conference, Bob Gourley, CTO Crucial Point LLC, and former Defense Intelligence Agency CTO, recently provided his views on the state of Federal IT. His cloud…

Sun Cloud Czar

By G C Network | November 19, 2008

Earlier this week it was announced that, Sun, Senior Vice President, Dave Douglas, was appointed to lead the Company’s cloud computing efforts. A JDJ Article also stated that, in addition to becoming Sun’s…

From the rise of increasingly capable nation-states—like Iran and North Korea—conducting destructive attacks against American private sector companies, to the continuing pace of IP theft by China striking at the very heart of our innovation economy, the new team at the White House will have its hands full. And this doesn’t even account for ongoing efforts to infiltrate critical infrastructures by nation-state proxies and efforts to influence political, economic, and military conditions in the United States through cyber-enabled intelligence. Or recruitment activities, the reality of our aging federal cyber infrastructure, and the lack of serious federal government policies on joint public-private cyber defense and cyber deterrence.
Given this dizzying list of challenges, the likely limited bandwidth to address these issues in the first 100 days, and the urgency of the threat, one might ask what critical issues the new administration ought to tackle immediately after inauguration day. To that end, there are five key steps that the Trump Administration should—consistent with its policy platform—take that might have a useful impact on our nation’s cybersecurity in the near-term.
First, as we did in the Cold War, the new administration should define the scope of cyber activities that would provoke our nation to action. That list must include efforts to conduct destructive attacks on the property of any American government or corporate assets, regardless of where they are located; activities targeting American critical infrastructures, and activities directly affecting our body politic—including, but not limited to, efforts to influence our political process or to fundamentally undermine our economic capabilities, including through the theft of the American core corporate intellectual property.
Second, the administration must make clear that it will respond swiftly and severely to activities that cross the lines described above. If we are to have credibility, we must also be prepared to actually take action when such lines are crossed. For better or worse, today, American redlines largely go disrespected because of our prior failures to enforce them. We also ought to make clear that our responses will be calibrated to the threat and may not necessarily take place in cyberspace.
Third, the Trump Administration should incorporate technology infrastructure into its $1 trillion initiative to build roads, bridges, and buildings. As it encourages private sector investment through tax credits and other incentive programs, the administration must, likewise, encourage investment in technology infrastructure including the build-out of high-speed network access to underserved areas and the broad deployment of cloud infrastructure for public and private needs. In addition, the administration should encourage the use of American infrastructure technology domestically and abroad, even in the face of efforts by other nations—like China—to subsidize their industries through low-to-no interest loans and government-enabled IP theft.
Fourth, the Trump Administration needs to establish a White House mechanism for engaging the American private sector in national security decision-making. As the recent Commission on Enhancing National Cybersecurity recently recommended, the new administration should create a forum for top private sector executives from key infrastructure sectors to be regularly briefed on critical national security matters with a cybersecurity nexus and to provide their input directly to the President through the National Security Advisor.
Fifth, the Trump Administration should require the U.S. intelligence community to immediately begin providing classified threat information directly to American critical infrastructure companies in a machine usable format that protects intelligence sources and methods. While Congress recently passed threat sharing legislation, the reality is that both the federal government and the private sector have remained reticent to share the most useful information. The government ought to show good faith by being the first to give in this area and start sharing immediately.
Like any new administration, the Trump team will face a steep learning curve on the wide range of threats the nation faces around the world, particularly in cyberspace. However, there are some key steps that it can take in the near-term to have a significant impact on our cybersecurity posture. By establishing the conditions for a serious, workable deterrence system, treating technology as a core infrastructure component, and establishing a tight working relationship with the private sector, the Trump Administration can take the very ideas at the core of its electoral platform and apply them to good use in cybersecurity in the first 100 days.
About the author: Jamil Jaffer, a cybersecurity and national security expert at Dūcō, recently served as the Chief Counsel and Senior Advisor for the Senate Foreign Relations Committee, where he worked on key national security and foreign policy issues, including leading the drafting of the proposed Authorization for the Use of Military Force (AUMF) against ISIS in 2014 and 2015, the AUMF against Syria in 2013, and revisions to the 9/11 AUMF against al Qaeda.

This content is being syndicated through multiple channels. The opinions expressed are solely those of the author and do not represent the views of GovCloud Network, GovCloud Network Partners or any other corporation or organization.

Cloud Musings

( Thank you. If you enjoyed this article, get free updates by email or RSS – © Copyright Kevin L. Jackson 2016)

Follow me at https://Twitter.com/Kevin_Jackson
Posted in

G C Network