Cybersecurity in the President Trump Administration

The Endpoint Imperative: Global Security Compliance. Are you ready?

By G C Network | November 12, 2017

    China has its Cybersecurity Law. Next May, the General Data Protection Regulation – or GDPR –goes into effect for the European Union. Research shows most organizations just aren’t…

The Endpoint Imperative: IT Spending: Setting Priorities in a Volatile World

By G C Network | November 5, 2017

  Fast-evolving trends are changing the way IT thinks about security. To stay secure and productive, IT operations must excel at the fundamentals: PC refreshes for security, and optimizing end-user…

Top 1000 Tech Bloggers

By G C Network | October 24, 2017

The Rise “Top 1000 Tech Bloggers” leaderboard recognizes the most inspiring Tech journalists and bloggers active on social media. They use Klout scores (50%) and the blogger’s twitter conversations on…

IBM – The Power of Cloud Brokerage

By G C Network | October 14, 2017

Hybrid cloud adoption is now mainstream and you are making decisions every day about how to transform application and infrastructure architectures, service delivery, DevOps, production operations and governance. With Cloud…

More SMB Love Needed

By G C Network | September 29, 2017

    In a recent post, titled “10 Surprising Facts About Cloud Computing and What It Really Is”, Zac Johnson highlighted some interesting facts about cloud computing in the SMB…

ATMs Are IT Too!

By G C Network | September 5, 2017

That world of homogenous IT technology managed entirely by the internal IT organization has long disappeared.  Operations today require efficient and global management of technologically heterogeneous environments. The challenges and…

Digital Transformation Asset Management

By G C Network | August 30, 2017

Today’s businesses run in the virtual world. From virtual machines to chatbots to Bitcoin, physical has become last century’s modus operandi.  Dealing with this type of change in business even…

The Game of Clouds 2017

By G C Network | July 30, 2017

The AWS Marketplace is growing at breakneck speed, with 40% more listings than last year! This and more insights were revealed when CloudEndure used their custom tool to quickly scan the…

Managing Your Hybrid Cloud

By G C Network | July 14, 2017

Photo credit: Shutterstock   Runaway cloud computing cost may be causing an information technology industry crisis.  Expanding requirements, extended transition schedules and misleading marketplace hype have made “Transformation” a dirty word. …

American Airlines Adopts Public Cloud Computing

By G C Network | June 30, 2017

Did you know that the reservations systems of the biggest carriers mostly run on a specialized IBM operating system known as Transaction Processing Facility (TPF). Designed by IBM in the…

From the rise of increasingly capable nation-states—like Iran and North Korea—conducting destructive attacks against American private sector companies, to the continuing pace of IP theft by China striking at the very heart of our innovation economy, the new team at the White House will have its hands full. And this doesn’t even account for ongoing efforts to infiltrate critical infrastructures by nation-state proxies and efforts to influence political, economic, and military conditions in the United States through cyber-enabled intelligence. Or recruitment activities, the reality of our aging federal cyber infrastructure, and the lack of serious federal government policies on joint public-private cyber defense and cyber deterrence.
Given this dizzying list of challenges, the likely limited bandwidth to address these issues in the first 100 days, and the urgency of the threat, one might ask what critical issues the new administration ought to tackle immediately after inauguration day. To that end, there are five key steps that the Trump Administration should—consistent with its policy platform—take that might have a useful impact on our nation’s cybersecurity in the near-term.
First, as we did in the Cold War, the new administration should define the scope of cyber activities that would provoke our nation to action. That list must include efforts to conduct destructive attacks on the property of any American government or corporate assets, regardless of where they are located; activities targeting American critical infrastructures, and activities directly affecting our body politic—including, but not limited to, efforts to influence our political process or to fundamentally undermine our economic capabilities, including through the theft of the American core corporate intellectual property.
Second, the administration must make clear that it will respond swiftly and severely to activities that cross the lines described above. If we are to have credibility, we must also be prepared to actually take action when such lines are crossed. For better or worse, today, American redlines largely go disrespected because of our prior failures to enforce them. We also ought to make clear that our responses will be calibrated to the threat and may not necessarily take place in cyberspace.
Third, the Trump Administration should incorporate technology infrastructure into its $1 trillion initiative to build roads, bridges, and buildings. As it encourages private sector investment through tax credits and other incentive programs, the administration must, likewise, encourage investment in technology infrastructure including the build-out of high-speed network access to underserved areas and the broad deployment of cloud infrastructure for public and private needs. In addition, the administration should encourage the use of American infrastructure technology domestically and abroad, even in the face of efforts by other nations—like China—to subsidize their industries through low-to-no interest loans and government-enabled IP theft.
Fourth, the Trump Administration needs to establish a White House mechanism for engaging the American private sector in national security decision-making. As the recent Commission on Enhancing National Cybersecurity recently recommended, the new administration should create a forum for top private sector executives from key infrastructure sectors to be regularly briefed on critical national security matters with a cybersecurity nexus and to provide their input directly to the President through the National Security Advisor.
Fifth, the Trump Administration should require the U.S. intelligence community to immediately begin providing classified threat information directly to American critical infrastructure companies in a machine usable format that protects intelligence sources and methods. While Congress recently passed threat sharing legislation, the reality is that both the federal government and the private sector have remained reticent to share the most useful information. The government ought to show good faith by being the first to give in this area and start sharing immediately.
Like any new administration, the Trump team will face a steep learning curve on the wide range of threats the nation faces around the world, particularly in cyberspace. However, there are some key steps that it can take in the near-term to have a significant impact on our cybersecurity posture. By establishing the conditions for a serious, workable deterrence system, treating technology as a core infrastructure component, and establishing a tight working relationship with the private sector, the Trump Administration can take the very ideas at the core of its electoral platform and apply them to good use in cybersecurity in the first 100 days.
About the author: Jamil Jaffer, a cybersecurity and national security expert at Dūcō, recently served as the Chief Counsel and Senior Advisor for the Senate Foreign Relations Committee, where he worked on key national security and foreign policy issues, including leading the drafting of the proposed Authorization for the Use of Military Force (AUMF) against ISIS in 2014 and 2015, the AUMF against Syria in 2013, and revisions to the 9/11 AUMF against al Qaeda.

This content is being syndicated through multiple channels. The opinions expressed are solely those of the author and do not represent the views of GovCloud Network, GovCloud Network Partners or any other corporation or organization.

Cloud Musings

( Thank you. If you enjoyed this article, get free updates by email or RSS – © Copyright Kevin L. Jackson 2016)

Follow me at https://Twitter.com/Kevin_Jackson
Posted in

G C Network