Privacy Digest

News that can impact your privacy.
Login/Register
What is OpenID?
  • Log in using OpenID
  • Cancel OpenID login
  • Create new account
  • Request new password
Home Blogs MacRonin's blog
    • FAQ
    • Wishlists
    • Contact
    • Categories/RSS

Bookmark Us

Bookmark Privacy Digest 
Bookmark This Page 

Syndicate

Syndicate content
more

Advertisements

Tracking System
Tracking System
Private Detectives
Quality Security Services in California
Fleet Management
Hosting

Popular content

Last viewed:

  • Facebook Fixes Search Glitch, Explains Privacy Strategy
  • Apps for America 2: The Data.gov Challenge
  • A Chronology of Data Breaches - Privacy Rights Clearinghouse
  • CDT Testimony Supports Draft Health Information Legislation
  • Iran's Web Spying Aided By Western Technology
  • Viacom Makes Its Case Against Yesterday's YouTube
  • EPIC Urges Congress to Adopt Privacy Safeguards for Locational Data

tags in Topics

Activists Alert Anonymity Companies Congress Copyright Court (US) Databases Data Mining Editorial EFF Entertainment Exploits Fourth Amendment Government Hmmm ID Infrastructure Law Enforcement Laws Politics Privacy Remember Reports Rights Security Spin Zone Surveillance Telecommunications Tracking
more tags

View blog authority
Congressional Research
Broadcast Flag

NSA Dominance of Cybersecurity Would Lead to 'Grave Peril', Ex-Cyber Chief Tells Congress

Submitted by MacRonin on March 10, 2009 - 10:31pm
  • Companies
  • Congress
  • Editorial
  • Government
  • Hmmm
  • Homeland Security
  • Infrastructure
  • NSA - National Security Agency
  • Privacy
  • Security
  • Surveillance

NSA Dominance of Cybersecurity Would Lead to 'Grave Peril', Ex-Cyber Chief Tells Congress: Via Wired: Threat Level.

The government's national cybersecurity efforts would be in "grave peril" if they were dominated by the intelligence community, said Amit Yoran, former head of the Department of Homeland Security's National Cyber Security Division.

Yoran told a House subcommittee on Tuesday that although the Department of Homeland Security, which currently oversees the government's cybersecurity efforts, has demonstrated "inefficiency and leadership failure" in those efforts, moving the cyber mission to the National Security Agency "would be ill-advised" due to the agency's lack of transparency.

Two weeks ago, Director of National Intelligence Admiral Dennis Blair told the House intelligence committee that the NSA should take over government cybersecurity duties, because the agency has the smarts and the skills for the job.

But Yoran, who served at one time as CEO of In-Q-Tel, the venture capital arm of the Central Intelligence Agency, said a cyber program overseen by the NSA would be over-classified and lack adequate oversight and review, which is needed to gain the trust of the public and private-sector partners who will be needed to secure the nation's infrastructure.

"One of the hard lessons learned from the Terrorist Surveillance Program is that such a limited review can lead to ineffective legal vetting of a program," Yoran said. "The cyber mission cannot be plagued by the same flaws as the TSP."

Yoran's comments echoed those made by Rod Beckstrom, the DHS' current cyber chief who tendered his resignation last week in part over concerns about the NSA assuming a leading role in the government's cybersecurity plan.

Yoran said the intelligence community's mission -- to collect information on adversaries -- is at odds with the mission to secure networks. Faced with a network compromise, the intelligence community's focus would be on counterintelligence activities targeted at the offender rather than working with the public and private sector to secure the network.

"Simply put, the intelligence community has always and will always prioritize its own collection efforts over the defensive and protection mission of our government's and nation's digital systems," he said.

Yoran also said that the intelligence community's tendency to over-classify information is anathema to the cybersecurity mission and would likely have "catastrophic consequences."

"High levels of classification prevent the sharing of information necessary to adequately defend our systems," he said. "It also creates insurmountable hurdles when working with a broad range of government IT staffs that do not have appropriate clearances, let alone when trying to work with, communicate and partner with the private sector. Classification cannot be used effectively as a cyber-defensive technique, only one for avoiding responsibility and accountability."

Scott Charney, vice president of the Trustworthy Computing division of Microsoft, agreed with Yoran's assessment of the NSA during his testimony to the committee.

Charney said that there was no question that the NSA was the government's center of technical expertise, but that to get the public "to trust that the networks are being secured well in a transparent fashion, the mission cannot reside in NSA."

Instead, he recommended that the DHS retain its lead operational role over cybersecurity but work with the NSA in a way that utilizes the agency's technical expertise.

Yoran, who currently is CEO of cybersecurity firm NetWitness, resigned from his DHS job after just a year in the position amid speculation that the DHS was not making cybersecurity a priority. Beckstrom expressed similar frustrations in a recent interview about the DHS's commitment to its cyber mission, following his resignation.

Yoran said DHS had demonstrated "inefficiency and leadership failure" in its cyber efforts and that "administrative incompetence and political infighting" had squandered its efforts to secure the nation's infrastructure for years.

The hearing was the first of three the subcommittee has scheduled to address the nation's cybersecurity issues and plans.

See also:

  • NSA Should Oversee Cybersecurity, Intel Chief Says
  • Cyber-Security Czar Quits Amid Fears of NSA Takeover
  • Outgoing DHS Cyber Chief Expands on Why He Resigned
  • NSA Chief Continues Bid to Take Over Cyberseucrity
  • Computer Malware the New 'Weapon of Mass Destruction'

Read Original Article (Via Wired: Threat Level.)

Bookmark/Search this post with:
  • Twitter Twitter
  • Digg Digg
  • StumbleUpon StumbleUpon
  • Technorati Technorati
  • del.icio.us del.icio.us
  • Facebook Facebook
  • Furl Furl
  • LinkedIn LinkedIn
  • Yahoo Yahoo
  • MacRonin's blog
  • Add new comment

Recent blog posts

  • In Bid to Sway Sales, Cameras Track Shoppers
  • Unprecedented 25-Year Sentence Sought for TJX Hacker
  • EFF Appeals Dismissal of Warrantless Wiretapping Case
  • Viacom Makes Its Case Against Yesterday's YouTube
  • Obama supports Senators draft plan to rework U.S. immigration policy - Includes National Biometric ID card for all.
  • Domain Names Can't Defend Themselves
  • Hacker Disables More Than 100 Cars Remotely
  • Judges Approves $9.5 Million Facebook ‘Beacon’ Accord
  • Hooking Up The Big Brother Machine... And Fighting It
  • Court: State Can Dump Non-Sex Offenders Into Registry
more

Performancing Metrics

Compilation © Copyright 1997-2010 Paul Hardwick, with Web Hosting provided by MacRonin.com.