| 2025-01-10 |
CISA Releases the Cybersecurity Performance Goals Adoption Report
As the nation’s cyber defense agency, one of CISA’s most important roles is to understand the challenges facing organizations, both large and small, in order to make progress on the shared goal of reducing cyber risk to the critical infrastructure Americans rely on every day.
|
CISA
|
| 2024-12-31 |
CSI: Commercial National Security Algorithm Suite 2.0 (CNSA 2.0) FAQ (December 2024 Update)
This information may be useful more generally, especially for those who interact with NSS, DoD, or DIB systems. Future cryptographic algorithms Q: To whom are these requirements addressed? These are mainly addressed to the following audiences: National Security System (NSS) owners and operators, who need to know the requirements for their systems Vendors, who need to know what to implement to meet NSS requirements NSA is not using these req…
|
NSA
|
| 2024-05-22 |
CSI: Advancing Zero Trust Maturity Throughout the Application and Workload Pillar
Information Technology (IT) professionals are keenly aware of the security challenges facing applications, but workloads are every bit as important to consider in this domain. Workloads represent computational tasks, which encompass multiple programs or applications performing those tasks by utilizing computing, data, networking, and storage resources.
|
CISA
NSA
|
| 2024-04-09 |
CSI: Advancing Zero Trust Maturity Throughout the Data Pillar
This cybersecurity information sheet (CSI) provides recommendations for maturing data security and enforcing access to data at rest and in transit, ensuring that only those with authorization can access the data. It further discusses how these capabilities integrate into a comprehensive Zero Trust (ZT) framework, as described in Embracing a Zero Trust Security Model.
|
CISA
NSA
|
| 2024-03-05 |
CSI: Advancing Zero Trust Maturity Throughout the Network and Environment Pillar
The Zero Trust network and environment pillar curtails adversarial lateral movement by employing controls and capabilities to logically and physically segment, isolate, and control access (on-premises and off-premises) through granular policy restrictions.
|
CISA
NSA
|
| 2024-01-04 |
CSI: Recommendations for Software Bill of Materials (SBOM) Management (Jan 2024 Update)
Recommendations for Software Bill of Materials The dramatic increase in cyber compromises over the past five years, specifically of software supply chains, prompted intense scrutiny of measures to strengthen the resilience of supply chains for software used throughout government and critical infrastructure. Several policies and working groups at multiple levels within the U.S.
|
CISA
NSA
|