{"id":2091,"date":"2023-11-21T20:32:00","date_gmt":"2023-11-21T20:32:00","guid":{"rendered":"https:\/\/cyberscoop.com\/?p=78098"},"modified":"2023-11-21T20:32:00","modified_gmt":"2023-11-21T20:32:00","slug":"security-trends-public-sector-leaders-are-watching","status":"publish","type":"post","link":"https:\/\/ddi.mohflo.net\/index.php\/2023\/11\/21\/security-trends-public-sector-leaders-are-watching\/","title":{"rendered":"Security trends public sector leaders are watching"},"content":{"rendered":"<div><img data-recalc-dims=\"1\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2023\/11\/security-trends-public-sector-leaders-are-watching.png?w=640&#038;ssl=1\" class=\"ff-og-image-inserted\"><\/div>\n<p>Cyber threats against public sector organizations continue to evolve, and security strategies need to keep pace in an ongoing game of cat-and-mouse. According to industry and government security leaders, threat trends to pay attention to include artificial intelligence-enabled attacks and defensive measures, an increase in persistence in the network and risks associated with software supply chain and open-source technology.<\/p>\n<p>These reflections were shared in a recent interview series, produced by Scoop News Group, for CyberScoop, and underwritten in part by Google Cloud and Mandiant.<\/p>\n<p><strong>Improving security resilience with AI<\/strong><\/p>\n<p>\u201cAI is going to provide a tremendous amount of opportunities on the cybersecurity defender side,\u201d said <a href=\"https:\/\/fedscoop.com\/accelerating-the-mission-with-ai-and-security\/#stacyomara\">Stacy O\u2019Mara, government strategy, policy and partnerships with Google Public Sector<\/a>, \u201cit\u2019s about being as smart and safe and transparent as possible when you\u2019re thinking about those entities that are developing AI capabilities and government entities who might be procuring them.\u201d<\/p>\n<p>Several leaders in the series echoed a similar view \u2014 that the degree to which the government will regulate artificial intelligence will decide the effectiveness of its adoption.<\/p>\n<p><a href=\"https:\/\/fedscoop.com\/accelerating-the-mission-with-ai-and-security#katiesavage\">Secretary of Information Technology for the State of Maryland, Katie Savage<\/a>, touched on how her state works to ensure it has appropriate guardrails to develop responsible, ethical and secure AI capabilities. She is leaning on the White House\u2019s AI Bill of Rights for guidance.<\/p>\n<p>\u201cWe also want to work together to think about a series of pilots for how [the state] might actually deploy AI in the wild and get after some of the larger problems, new constituent services and cybersecurity needs,\u201d she stated.<\/p>\n<p>\u201cThere are tremendous amounts of data that we\u2019re looking at. Not just for security, but that enables the citizens themselves to be better protected or better informed,\u201d added <a href=\"https:\/\/fedscoop.com\/accelerating-the-mission-with-ai-and-security#jonford\">Jon Ford, senior practice leader with Mandiant<\/a>. He spoke about AI being used by cities to leverage new capabilities that help to protect and serve the citizenry and touched on how generative AI can be used to extend access to information for those citizens who don\u2019t speak English as a first language.<\/p>\n<p><strong>Rising to the challenge of new threats<\/strong><\/p>\n<p>Leaders discussed some of the biggest challenges the public sector faces in combating evolving cyber threats.<\/p>\n<p>Stressing the criticality of zero trust, Savage shared that when states like Maryland share resources and data with executive agencies \u2014 such as the Department of Labor and the Department of Health \u2014&nbsp;it is incumbent upon the states to ensure those endpoints are protected.<\/p>\n<p>\u201cWe\u2019re taking a really hard look right now at how our enterprise IT teams and our cybersecurity team can work together more seamlessly to better manage identity and access management, for example, and mobile device management,\u201d she said of Maryland\u2019s efforts to improve its security posture.<\/p>\n<p>Strengthening zero-trust security must continue to evolve, echoed <a href=\"https:\/\/fedscoop.com\/accelerating-the-mission-with-ai-and-security#bergeaux\">Jean-Paul Bergeaux, CTO, federal with GuidePoint Security<\/a>. Government agencies, he explained, have to bridge complexity divides and silos and start to consolidate the number of security tools and technologies they are managing. He stressed the importance of a \u201cholistic architecture\u201d where tools and capabilities work together within a zero-trust framework.<\/p>\n<p><a href=\"https:\/\/fedscoop.com\/accelerating-the-mission-with-ai-and-security#ronbushar\">Google Public Sector\u2019s Head of Mandiant Government Solutions, Ron Bushar<\/a>, added that moving to a zero-trust posture and complying with the various executive orders on security modernization are extensive and complicated efforts that will require reengineering entire parts of the infrastructure. The result will be a valuable payout from a risk, security and resiliency perspective. However, in the meantime, leaders also need to focus on a reality: they are still fighting against threats every day to protect their assets.<\/p>\n<p>Several leaders also distinguished the challenges for federal versus state government agencies, with Ford stating that funding is a big driver for what can or can\u2019t be accomplished. He shared a trend among state and local governments to centralize security operations center (SOC) operations that enable cities, localities and counties to roll up into a larger cybersecurity ecosystem.<\/p>\n<p>Overall, each leader underlined the importance of using the resources and frameworks available to further develop their security posture.<\/p>\n<p>O\u2019Mara explained that the sophistication of threat actors is constantly moving, which requires a posture shift from defenders.<\/p>\n<p>\u201cI think we\u2019re moving away from one-off cyberattacks and really focused on how to get after long-term persistent campaigns from nation-state actors, which could really have tremendous impacts on security [and] our economy,\u201d she said.<\/p>\n<p><a href=\"https:\/\/fedscoop.com\/accelerating-the-mission-with-ai-and-security#jeremycorey\">Jeremy Corey, principal cybersecurity strategist for August Schell<\/a>, echoed that sentiment, adding that the adversary is no longer focused on a \u201cfull frontal assault.\u201d Rather, they are targeting weaknesses in government alliances and partnerships among industry partners and exploiting a growing reliance on open-source technologies.<\/p>\n<p><em><a href=\"https:\/\/fedscoop.com\/accelerating-the-mission-with-ai-and-security\/\">This video series<\/a> was produced by Scoop News Group, for CyberScoop, and sponsored in part by Google Cloud and Mandiant.<\/em><\/p>\n<footer class=\"single-article__footer\">\n<div class=\"single-article__tags-container\">\n<h4 class=\"single-article__tags-title\">In This Story<\/h4>\n<\/p><\/div>\n<\/footer>\n<p> <a href=\"https:\/\/cyberscoop.com\/security-trends-public-sector-leaders-are-watching\/\">Source<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Cyber threats against public sector organizations continue to evolve, and<\/p>\n","protected":false},"author":11,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[235,1215,78,1224,1221,1218,612,1219,1216,1217,1222,646,1225,1214,712,1220,1223],"tags":[236,1227,86,1236,1233,1230,617,1231,1228,1229,1234,650,1237,1226,717,1232,1235],"class_list":["post-2091","post","type-post","status-publish","format-standard","hentry","category-ai","category-august-schell","category-cybersecurity","category-google-cloud","category-google-for-government-2023","category-guidepoint-security","category-insights","category-jean-paul-bergeaux","category-jeremy-corey","category-jon-ford","category-katie-savage","category-mandiant","category-maryland","category-ron-bushar","category-sponsored-content","category-stacy-omara","category-video-campaign","tag-ai","tag-august-schell","tag-cybersecurity","tag-google-cloud","tag-google-for-government-2023","tag-guidepoint-security","tag-insights","tag-jean-paul-bergeaux","tag-jeremy-corey","tag-jon-ford","tag-katie-savage","tag-mandiant","tag-maryland","tag-ron-bushar","tag-sponsored-content","tag-stacy-omara","tag-video-campaign"],"featured_image_urls":{"full":"","thumbnail":"","medium":"","medium_large":"","large":"","1536x1536":"","2048x2048":"","chromenews-featured":"","chromenews-large":"","chromenews-medium":""},"author_info":{"display_name":"Cyber Scoop","author_link":"https:\/\/ddi.mohflo.net\/index.php\/author\/cyberscoop\/"},"category_info":"<a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/ai\/\" rel=\"category tag\">AI<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/august-schell\/\" rel=\"category tag\">August Schell<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/cybersecurity\/\" rel=\"category tag\">Cybersecurity<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/google-cloud\/\" rel=\"category tag\">Google Cloud<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/google-for-government-2023\/\" rel=\"category tag\">Google for Government 2023<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/guidepoint-security\/\" rel=\"category tag\">GuidePoint Security<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/insights\/\" rel=\"category tag\">Insights<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/jean-paul-bergeaux\/\" rel=\"category tag\">Jean-Paul Bergeaux<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/jeremy-corey\/\" rel=\"category tag\">Jeremy Corey<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/jon-ford\/\" rel=\"category tag\">Jon Ford<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/katie-savage\/\" rel=\"category tag\">Katie Savage<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/mandiant\/\" rel=\"category tag\">Mandiant<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/maryland\/\" rel=\"category tag\">Maryland<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/ron-bushar\/\" rel=\"category tag\">Ron Bushar<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/sponsored-content\/\" rel=\"category tag\">Sponsored Content<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/stacy-omara\/\" rel=\"category tag\">Stacy O'Mara<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/video-campaign\/\" rel=\"category tag\">video campaign<\/a>","tag_info":"video campaign","comment_count":"0","jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/2091","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/users\/11"}],"replies":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/comments?post=2091"}],"version-history":[{"count":0,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/2091\/revisions"}],"wp:attachment":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media?parent=2091"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/categories?post=2091"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/tags?post=2091"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}