Cybersecurity in the President Trump Administration

Operation Golden Phoenix

By G C Network | July 22, 2008

This week, Dataline is participating in Operation Golden Phoenix. Operation Golden Phoenix is a four-day multi-agency collaborative training event designed to assist federal, state and local agencies with large and…

DISA Reaches out to Industry on Cloud Computing

By G C Network | July 21, 2008

In an interview with Computerworld , published in the New York Times, John Garing expanded on his goals for the DISA cloud computing initiative. Garing said that, “… he and…

Cloud Computing is $160B Market

By G C Network | July 18, 2008

According to the Financial Post, a Merrill Lynch Note estimates that cloud computing could be a $160B market by 2011. The companies that they see in the marketplace are shown…

SOA-R Educational Series: What is Cloud Computing

By G C Network | July 18, 2008

On July 16th, SOA-R held it’s first of six educational sessions on cloud computing for national security missions. Presenters during this first event were: Steven L Armentrout, PhDPresident & CEOParabon…

Gartner: Cloud Computing Fraught with Security Risks

By G C Network | July 17, 2008

Cloud computing is fraught with security risks, according to analyst firm Gartner. Smart customers will ask tough questions, and consider getting a security assessment from a neutral third party before…

The Definition of “Net-centric”

By G C Network | July 16, 2008

Last week, the Google Cloud Computing Group debated the definition of net-centric. The key thought was that net-centric was nothing more than internet-centric or basically “online” and therefore it really…

Cloud Computing Journal Launched

By G C Network | July 15, 2008

“The world’s first journal devoted to the delivery of massively scalable IT resources as a service using Internet technologies has been launched by SYS-CON Media. The all-new “Cloud Computing Journal”…

SOA-R First Session Presentations Announced

By G C Network | July 14, 2008

The presentations for the first session of the SOA-R Educational Series sesion have just been announced: Steven L Armentrout, PhDPresident & CEOParabon Grids, Clouds and Computation: Getting to Ground Truth…

Cloud Storage as a Service

By G C Network | July 14, 2008

In SAN vs cloud storage – a gray or silver lining? , Joseph Hunkins review last December’s observations of cloud storage by Chris Mellor of Techworld: “Google does not use…

Google: Model for the Systems Architecture of the Future

By G C Network | July 14, 2008

In December of 2005, Prof. Paul A. Strassmann of George Mason University, provided an excellent outline for cloud computing success in a netcentric environment: Network-Centric Requirements (2010)• Downtime ( 1…

From the rise of increasingly capable nation-states—like Iran and North Korea—conducting destructive attacks against American private sector companies, to the continuing pace of IP theft by China striking at the very heart of our innovation economy, the new team at the White House will have its hands full. And this doesn’t even account for ongoing efforts to infiltrate critical infrastructures by nation-state proxies and efforts to influence political, economic, and military conditions in the United States through cyber-enabled intelligence. Or recruitment activities, the reality of our aging federal cyber infrastructure, and the lack of serious federal government policies on joint public-private cyber defense and cyber deterrence.
Given this dizzying list of challenges, the likely limited bandwidth to address these issues in the first 100 days, and the urgency of the threat, one might ask what critical issues the new administration ought to tackle immediately after inauguration day. To that end, there are five key steps that the Trump Administration should—consistent with its policy platform—take that might have a useful impact on our nation’s cybersecurity in the near-term.
First, as we did in the Cold War, the new administration should define the scope of cyber activities that would provoke our nation to action. That list must include efforts to conduct destructive attacks on the property of any American government or corporate assets, regardless of where they are located; activities targeting American critical infrastructures, and activities directly affecting our body politic—including, but not limited to, efforts to influence our political process or to fundamentally undermine our economic capabilities, including through the theft of the American core corporate intellectual property.
Second, the administration must make clear that it will respond swiftly and severely to activities that cross the lines described above. If we are to have credibility, we must also be prepared to actually take action when such lines are crossed. For better or worse, today, American redlines largely go disrespected because of our prior failures to enforce them. We also ought to make clear that our responses will be calibrated to the threat and may not necessarily take place in cyberspace.
Third, the Trump Administration should incorporate technology infrastructure into its $1 trillion initiative to build roads, bridges, and buildings. As it encourages private sector investment through tax credits and other incentive programs, the administration must, likewise, encourage investment in technology infrastructure including the build-out of high-speed network access to underserved areas and the broad deployment of cloud infrastructure for public and private needs. In addition, the administration should encourage the use of American infrastructure technology domestically and abroad, even in the face of efforts by other nations—like China—to subsidize their industries through low-to-no interest loans and government-enabled IP theft.
Fourth, the Trump Administration needs to establish a White House mechanism for engaging the American private sector in national security decision-making. As the recent Commission on Enhancing National Cybersecurity recently recommended, the new administration should create a forum for top private sector executives from key infrastructure sectors to be regularly briefed on critical national security matters with a cybersecurity nexus and to provide their input directly to the President through the National Security Advisor.
Fifth, the Trump Administration should require the U.S. intelligence community to immediately begin providing classified threat information directly to American critical infrastructure companies in a machine usable format that protects intelligence sources and methods. While Congress recently passed threat sharing legislation, the reality is that both the federal government and the private sector have remained reticent to share the most useful information. The government ought to show good faith by being the first to give in this area and start sharing immediately.
Like any new administration, the Trump team will face a steep learning curve on the wide range of threats the nation faces around the world, particularly in cyberspace. However, there are some key steps that it can take in the near-term to have a significant impact on our cybersecurity posture. By establishing the conditions for a serious, workable deterrence system, treating technology as a core infrastructure component, and establishing a tight working relationship with the private sector, the Trump Administration can take the very ideas at the core of its electoral platform and apply them to good use in cybersecurity in the first 100 days.
About the author: Jamil Jaffer, a cybersecurity and national security expert at Dūcō, recently served as the Chief Counsel and Senior Advisor for the Senate Foreign Relations Committee, where he worked on key national security and foreign policy issues, including leading the drafting of the proposed Authorization for the Use of Military Force (AUMF) against ISIS in 2014 and 2015, the AUMF against Syria in 2013, and revisions to the 9/11 AUMF against al Qaeda.

This content is being syndicated through multiple channels. The opinions expressed are solely those of the author and do not represent the views of GovCloud Network, GovCloud Network Partners or any other corporation or organization.

Cloud Musings

( Thank you. If you enjoyed this article, get free updates by email or RSS – © Copyright Kevin L. Jackson 2016)

Follow me at https://Twitter.com/Kevin_Jackson
Posted in

G C Network