AT&T Cybersecurity Policy Overview

Similar documents
Department of Homeland Security

National Cybersecurity & Communications Integration Center (NCCIC)

Preventing and Defending Against Cyber Attacks November 2010

National Health Information Sharing & Analysis Center. The National Health ISAC (NH-ISAC) NH-ISAC

Preventing and Defending Against Cyber Attacks June 2011

NICE and Framework Overview

Integrating Cybersecurity with Emergency Operations Plans (EOPs) for K-12 Education

The Comprehensive National Cybersecurity Initiative

NH!ISAC"ADVISORY"201.13" NATIONAL"CRITICAL"INFRASTRUCTURE"RESILIENCE"ANALYSIS"REPORT""

National Security & Homeland Security Councils Review of National Cyber Security Policy. Submission of the Business Software Alliance March 19, 2009

The U.S. Department of Homeland Security s Response to Senator Franken s July 1, 2015 letter

Integrating Cybersecurity with Emergency Operations Plans (EOPs) for Institutions of Higher Education (IHEs)

Partnership for Cyber Resilience

CYBERSECURITY RISK MANAGEMENT

Water Security in New Jersey: Partnership and Services

Why Cybersecurity Matters in Government Contracting. Robert Nichols, Covington & Burling LLP

Securing the Network: Cybersecurity Recommendations for Critical Infrastructure and the Global Supply Chain Telecommunications Industry Association

THE 411 ON CYBERSECURITY, INFORMATION SHARING AND PRIVACY

United States Coast Guard Cyber Command. Achieving Cyber Security Together. Homeland Security

[This page intentionally left blank]

Written Testimony. Dr. Andy Ozment. Assistant Secretary for Cybersecurity and Communications. U.S. Department of Homeland Security.

SDN Security Challenges. Anita Nikolich National Science Foundation Program Director, Advanced Cyberinfrastructure July 2015

MARYLAND. Cyber Security White Paper. Defining the Role of State Government to Secure Maryland s Cyber Infrastructure.

Actions and Recommendations (A/R) Summary

How To Write A National Cybersecurity Act

Middle Class Economics: Cybersecurity Updated August 7, 2015

CYBERSECURITY BEST PRACTICES FOR SMALL AND MEDIUM PENNSYLVANIA UTILITIES

(U) Appendix E: Case for Developing an International Cybersecurity Policy Framework

North American Electric Reliability Corporation (NERC) Cyber Security Standard

7 Homeland. ty Grant Program HOMELAND SECURITY GRANT PROGRAM. Fiscal Year 2008

What are you trying to secure against Cyber Attack?

National Communications System. December 6, 2007

Billing Code: 3510-EA

Cybersecurity Resources

THE WHITE HOUSE. Office of the Press Secretary. For Immediate Release February 12, February 12, 2013

CERT Collaboration with ISP to Enhance Cybersecurity Jinhyun CHO, KrCERT/CC Korea Internet & Security Agency

Capabilities for Cybersecurity Resilience

Cyber Security for Advanced Manufacturing Next Steps

Dean C. Garfield President & CEO, Information Technology Industry Council (ITI) Committee on Energy and Commerce

CYBER SECURITY GUIDANCE

Resources and Capabilities Guide

Department of Homeland Security

ITU National Cybersecurity/CIIP Self-Assessment Toolkit. Background Information for National Pilot Tests

Utility-Scale Applications of Microgrids: Moving Beyond Pilots Cyber Security

Docket No. DHS , Notice of Request for Public Comment Regarding Information Sharing and Analysis Organizations

DHS, National Cyber Security Division Overview

Federal Cybersecurity Programs

NH-ISAC. Cybersecurity Resilience Securing the Infrastructures that Secure Healthcare & Public Health. The National Health ISAC

El Camino College Homeland Security Spring 2016 Courses

The Computerworld Honors Program

National Initiative for Cyber Security Education

Statement of Objectives. Special Notice D15PS00295 Nationwide Public Safety Broadband Network (NPSBN)

CERT/CC Overview & CSIRT Development Team Activities

ENISA What s On? ENISA as facilitator for enhanced Network and Information Security in Europe. CENTR General Assembly, Brussels October 4, 2012

Introduction to NICE Cybersecurity Workforce Framework

December 8, Security Authorization of Information Systems in Cloud Computing Environments

( 4EC C11392)

Testimony of. Before the United States House of Representatives Committee on Oversight and Government Reform And the Committee on Homeland Security

ICS-CERT Year in Review. Industrial Control Systems Cyber Emergency Response Team. National Cybersecurity and Communications Integration Center

Remarks for Admiral David Simpson WTA Advocates for Rural Broadband Spring Meeting Cybersecurity Panel

U.S. Cyber Security Readiness

How To Improve Federal Network Security

Collaboration for the Detection, Prevention, Mitigation and Response to Cyber Attacks

A MULTIFACETED CYBERSECURITY APPROACH TO SAFEGUARD YOUR OPERATIONS

PREPUBLICATION COPY. More Intelligent, More Effective Cybersecurity Protection

How To Write A Cybersecurity Defense Assessment Report

TEXAS HOMELAND SECURITY STRATEGIC PLAN : PRIORITY ACTIONS

Strategic Plan September 2012

Transcription:

AT&T Cybersecurity Policy Overview Chris Boyer AVP Public Policy July 24, 2012 2011 AT&T Intellectual Property. All rights reserved. AT&T, the AT&T logo and all other AT&T marks contained herein are trademarks of AT&T Intellectual Property and/or AT&T affiliated companies.

The cyber security challenge What are we seeing everyday? Ever-expanding power of the global network and reliance on Information and Communications Technology increases the vulnerability to attacks Business trends impacting security needs Globalization Wide variety of threats growing more sophisticated Dynamics and complexity of technology/applications adding to threat Global in scope Increasingly difficult for systems administrators and users to manage complex security solutions Virtualization Mobility Cloud Driving increased complexity (including security challenges)

Addressing cybersecurity is a shared responsibility 3

Communications sector is part of the solution HOLISTIC: Premise & Network Internet & Intranet Fixed & Mobile CENTRALIZED: Integrated Management and Monitoring CURRENT: Updated and Timely Protection PROACTIVE: See Trouble and Stop It Before It Happens Headquarters Data Center Remote Worker VPN Remote Access Manage d FW Prem Based FW Portal Remote US Branch Security GNOC Global, and Regional IP Networks Reports Network Based FW Internet Int l Branch Site to Site VPN Mobile Worker VPN Remote Access Comprehensive, integrated, and resilient security frameworks designed and operated for highly competitive markets 4

AT&T Global Network Operations Center (GNOC) 5

Public private partnerships are the foundation for pubic policy addressing for cybersecurity Public-private partnerships have fostered information sharing and served as a foundation for U.S. critical infrastructure protection and cybersecurity policy for over a decade. During that time, the Federal government and the private sector have engaged in a number of forums on cybersecurity and information and communications infrastructure issues. - The White House Cyberspace Policy Review 6

Communications sector partnership NSTAC National Security Telecommunications Advisory Committee White House 60 Day Review National Strategic on Secure Online Transactions Promoted NCCIC Private Sector Info-Sharing Pilot CSCWG Cross Sector Cybersecurity Working Group CSCC Comms Sector Coordinating Council Project 12 (CNCI) National Cyber Incident Response Plan 7 DHS-NCCIC National Cybersecurity and Communications Integrated Center On call 24/7 Physical/Cyber Members of Cyber Unified coordination Group DOD Defense Industrial Base (DIB) Pilot CERT/CC (DARPA) Computer Emergency Response Team (Coordination Center)

Federal agency/public private partnership activity White House DHS Commerce FCC White House legislative proposal (2011) National Strategy for Trusted Identities in Cyberspace (NSTIC) - 2011 White House cybersecurity coordinator (2009) Cyberspace Policy Review 60 Day (2009) 2012 National Sector Risk Assessment (NSRA) Comms Sector Coordinating Council (C- SCC) 2012 National Level Exercise (MS-ISAC, State, Local and Tribal Territorial Government Coordinating Council) National Cyber Incident Response Plan (NCIRP) National Cybersecurity Integration Command Center (NCICC) National Security Telecommunications Advisory Committee (NSTAC) National Coordinating Center (C-ISAC) National Security Information Exchange (NSIE) DIB Pilot NTIA Internet Task Force Botnet RFI Industry Botnet Group (IBG) NTIA Cybersecurity RFI NTIA Green Paper RFI NIST National Initiative for Cybersecurity Education (NICE) Smart Grid Cybersecurity Working Group NSTIC Program Office Communications Security Reliability and Interoperability Council (CSRIC) FCC Cybersecurity Roadmap FCC Cybersecurity Certification NOI Network Reliability and Interoperability Council (NRIC) (Predecessor to CSRIC) 8

Sample Partnership and Collaborative Organizations 9

Policy Considerations for State Governments Engage Federal and state organizations in public/private partnership framework Leverage existing initiatives; e.g., MS-ISAC; State, Local Territorial and Tribal Coordinating Council; FEMA, National Level Exercise etc.) Organize state resources/coordinate response in the event of a major cyber incident; e.g., FEMA National Level Exercise, State EMOs, State CIOs, State Departments of Homeland Security etc.) Preserve private sector incentives for investment, innovation; and flexibility to respond to threats. There is no one-sized fits all solution to cybersecurity. Enhance and create awareness and education programs support National Cybersecurity Awareness Month, STOP THINK CONNECT, work to build computer security and digital citizenship into classroom curriculum at K-12 and university level. Increase support for law enforcement in pursuing cyber criminals Lead by example deploy cyber security solutions across state government systems

Thank You!