Policy & Regulation: Page 6


  • A sunlit New York Stock Exchanges is seen with 6 columns and 3 American flags with people walking by in shadow.
    Image attribution tooltip
    Drew Angerer via Getty Images
    Image attribution tooltip

    SEC cyber rules ignite tension between reputation and security risk

    The rules, which take effect Sept. 5, encountered mixed reactions. Some champion board-level cyber accountability. Others say the rules are too big of a lift.

    By Aug. 15, 2023
  • Close up of Gary Gensler speaking during a senate hearing
    Image attribution tooltip
    Kevin Dietsch/Getty Images via Getty Images
    Image attribution tooltip

    Chamber of Commerce urges SEC to delay cyber rule implementation

    The SEC has “chosen speed over accuracy” while ignoring important business community concerns in pushing out the new regulations, the U.S. Chamber of Commerce says.

    By Alexei Alexis • Aug. 15, 2023
  • Dark servers data center room with computers and storage systems.
    Image attribution tooltip
    sdecoret via Getty Images
    Image attribution tooltip

    Microsoft, cloud security under the microscope with federal cyber review

    The federal Cyber Safety Review Board will examine issues related to the state-linked hack of Microsoft Exchange and larger concerns tied to identity management and authentication.

    By Aug. 14, 2023
  • The LG widescreen display in the Mercedes-Benz EQS electric sedan.
    Image attribution tooltip
    Courtesy of LG Electronics
    Image attribution tooltip

    Automotive data privacy under scrutiny in California

    The California Privacy Protection Agency’s enforcement division is examining how automakers handle data collected from internet-connected vehicles.

    By Michael Brady • Aug. 14, 2023
  • Acting National Cyber Director Kemba Walden speaking at Black Hat 2023.
    Image attribution tooltip
    Matt Kapko/Cybersecurity Dive
    Image attribution tooltip

    Why Walden thinks this national cybersecurity strategy will work

    The acting national cyber director, armed with more talent at the federal level and an implementation plan, is striving for lasting impact.

    By Aug. 11, 2023
  • CISA Director Jen Easterly speaks at Carnegie Mellon University urging the tech industry to embrace secure-by-design product development.
    Image attribution tooltip
    Permission granted by Carnegie Mellon University
    Image attribution tooltip

    White House wants input on open source security, memory-safe languages

    Federal agencies put out a request for information Thursday, building on Biden administration priorities to help secure open source post-Log4j.

    By Aug. 11, 2023
  • three adults stand on a stage in front of a yellow curtain. One adult is standing at a podium and speaking.
    Image attribution tooltip
    Kara Arundel/Cybersecurity Dive, data from White House
    Image attribution tooltip

    3 best practices from the White House K-12 cybersecurity summit

    School leaders must take prevention seriously and know who to call when an attack happens, government officials and educators said.

    By Kara Arundel • Aug. 11, 2023
  • Woman in a black suit stands behind a podium with a sign that reads "enhancing cybersecurity protecting New Yorkers."
    Image attribution tooltip
    Courtesy of Darren McGee/ Office of Governor Kathy Hochul
    Image attribution tooltip

    New York rolls out statewide cybersecurity strategy

    The strategy follows previous steps to enhance local cybersecurity and protect critical infrastructure across the state.

    By Aug. 10, 2023
  • U.S. President Joe Biden waves toward visitors watching the departure as he walks to Marine One on the South Lawn of the White House July 28, 2023 in Washington, DC.
    Image attribution tooltip
    Drew Angerer via Getty Images
    Image attribution tooltip

    White House launches AI cyber competition to fix software vulnerabilities

    In partnership with OpenAI, Anthropic, Google and Microsoft, participants will have access to top AI companies’ technology for designing new cybersecurity solutions.

    By Lindsey Wilkinson • Aug. 9, 2023
  • The United States Capitol Building seen at a distance.
    Image attribution tooltip
    Win McNamee via Getty Images
    Image attribution tooltip

    NIST releases draft overhaul of its core cybersecurity framework

    It marks the first major update to federal risk guidance since 2014 and incorporates new issues, including supply chain security and threats to small business.

    By Aug. 9, 2023
  • AWS logo on display at AWS Summit New York, July 26, 2023.
    Image attribution tooltip
    Courtesy of AWS
    Image attribution tooltip

    AWS pledges $20M to K-12 cyber training, incident response

    The cloud services provider is participating in a broad White House plan to build additional protection to defend schools against ransomware and other threats.

    By Aug. 7, 2023
  • Teenage students are walking up and down a staircase in a school hallway.
    Image attribution tooltip
    monkeybusinessimages via Getty Images
    Image attribution tooltip

    White House rolls out millions in funding to combat K-12 cyberattacks

    Federal officials are meeting with key administrators and technology providers to address a surge in ransomware and other malicious activity facing K-12 schools.

    By Aug. 7, 2023
  • CISA Director Jen Easterly
    Image attribution tooltip

    Center for Strategic and International Studies

    Image attribution tooltip

    CISA seeks to address visibility, resilience in 3-year strategic plan

    The agency outlined a major push to recognize and respond to immediate cyberthreats and make secure development practices a priority.

    By Aug. 7, 2023
  • IT Programer Working on Desktop Computer in Data Center System Control Room
    Image attribution tooltip
    iStock / Getty Images Plus via Getty Images
    Image attribution tooltip

    Broad SBOM adoption takes root as businesses watch their supply chains

    Research from Sonatype shows major companies are increasingly mandating outside vendors to account for the security of their applications.

    By Aug. 4, 2023
  • U.S. President Joe Biden delivers remarks alongside Vice President Kamala Harris at the Congressional Picnic on the South Lawn of the White House on July 19, 2023 in Washington, DC.
    Image attribution tooltip
    Kevin Dietsch via Getty Images
    Image attribution tooltip

    White House looks to close massive cyber skills gap

    The Biden administration is moving to address a yearslong shortage of qualified IT security and technology industry workers.

    By Aug. 1, 2023
  • A wall showing a Merck & Co. logo in Kenilworth, New Jersey
    Image attribution tooltip
    Courtesy of Merck & Co.
    Image attribution tooltip

    New Jersey Supreme Court to hear Merck insurance dispute over NotPetya attack

    The pharmaceutical giant previously won lower court rulings regarding war exclusion language. 

    By July 28, 2023
  • Image attribution tooltip
    Drew Angerer via Getty Images
    Image attribution tooltip

    TSA revises security directives for oil and gas pipelines to test resilience

    The updated requirements come amid heightened threats and security incidents, including the recent attack against Suncor Energy in Canada.

    By July 27, 2023
  • Close up photo of a man in a suit.
    Image attribution tooltip
    Chip Somodevilla via Getty Images
    Image attribution tooltip

    SEC votes to overhaul disclosure rules for material cyber events

    After a fierce debate, the agency voted to require companies to come clean on material breaches and attacks within four business days of determination.

    By July 26, 2023
  • A photo of the White House.
    Image attribution tooltip
    PorqueNoStudios/iStock via Getty Images
    Image attribution tooltip

    To execute the national cyber strategy, it’s going to take the whole US government

    Experts applaud the desired outcomes, but the tasks and responsibilities now assigned to agencies underscore the challenges that lie ahead.

    By July 25, 2023
  • Aerial view with Lower Manhattan skyline at sunset
    Image attribution tooltip
    Ultima_Gaina via Getty Images
    Image attribution tooltip

    New York cyber lead warns of what states face in critical infrastructure defense

    Government agencies and the private sector must work collaboratively to combat increasingly sophisticated threat activity, Colin Ahern said.

    By July 25, 2023
  • U.S. President Joe Biden delivers remarks alongside Vice President Kamala Harris at the Congressional Picnic on the South Lawn of the White House on July 19, 2023 in Washington, DC.
    Image attribution tooltip
    Kevin Dietsch via Getty Images
    Image attribution tooltip

    White House secures safety commitments from 7 AI companies

    OpenAI, Microsoft and Google are among the companies committing to robust testing and investments in cybersecurity safeguards to defend AI models prior to release.

    By Lindsey Wilkinson • July 21, 2023
  • Password input field
    Image attribution tooltip
    Getty via Getty Images
    Image attribution tooltip

    US government plays catchup on phishing-resistant MFA

    Security tools have evolved to include more accessible protocols that meet stringent authentication requirements. The government wants to embrace that.

    By July 20, 2023
  • Microsoft logo on buidling
    Image attribution tooltip
    Drew Angerer / Staff via Getty Images
    Image attribution tooltip

    Microsoft offers free security logs amid backlash from State Department hack

    Federal officials and rivals blasted the company for charging customers for additional security features.

    By July 19, 2023
  • A building is seen from a parking lot with a sign that reads "UKG."
    Image attribution tooltip

    Photo: Obtained by Industry Dive

    Image attribution tooltip

    UKG agrees to pay up to $6M in lawsuit tied to 2021 breach

    The payroll services provider reached an agreement to settle a class action lawsuit tied to a ransomware attack that targeted its Kronos Private Cloud service.

    By July 18, 2023
  • Green lights show behind plugged-in cables.
    Image attribution tooltip
    gorodenkoff/iStock via Getty Images
    Image attribution tooltip

    White House unveils consumer labeling program to strengthen IoT security

    The voluntary program is designed to protect millions of consumers and remote workers amid increased threat activity against smart home and IoT devices.

    By July 18, 2023