Active Cyber™ Interviews Estefania Vergara-Cobos, Economist at the World Bank...
May 9, 2025 Early in 2024 I met Ms. Vergara-Cobos at a conference where we shared some information about our recent respective work activities. She disclosed to me about her work leading a research...
View ArticleGeorge Barnes, Former NSA Deputy Director, Reflects On Cybersecurity...
February 19, 2025 At the beginning of each year, for the past 10 or more years, I am excited to get the invite from my friend Larry Gordon to make the trek to the University of Maryland to attend the...
View ArticleActive Cyber™ Interview On Collaborative OneTier/Vantiq Zero Trust Solution
October 23, 2024 I received a call a while back from my good friend, Jim Rice, who wanted to introduce me to a company with whom he had been collaborating on a solution. Jim has a knack to be on top of...
View ArticleActive Cyber™ Takes a Fresh Look At Space Cyber Security
September 19, 2024 I have taken notice lately of the number of headlines that are discussing cyberspace threats in space. Well, not just threats in cyberspace space but also kinetic threats in space....
View ArticleLearn How New CISA Software Acquisition Guide Will Affect Your Software...
August 21, 2024 CISA has been working hard over the last 6 years to turn the tide on the never-ending stream of zero days and vulnerable systems that continue to plague our everyday lives. In 2018, it...
View ArticleActive Cyber™ Interviews Ron Perez, Intel Corporation Chief Security...
August 12, 2024 It seems that most of the emails, articles and webinar invites I receive lately have Gen AI and [in]security as part of the headlines. Also, I was reading some of the reports coming...
View ArticleAlison King, VP of Forescout Technologies, Talks About Government...
July 19, 2024 I have been interested in network access control technology since my days working on trusted computing and high assurance platform initiatives for different government entities. And...
View ArticleLearn How Ransomware Affects Government Agencies In This Active Cyber™...
July 10, 2024 I like returning each year to the AFCEA Technet Cyber Conference as it always has a lively exhibit hall and interesting panels and discussions. It is also focused quite a bit on...
View ArticleLearn How KDM Analytics Provides Automated and Continuous Risk Assessment For...
July 8, 2024 I remember making the case for automated and continuous risk assessment many years ago when the NIST Risk Management Framework (RMF) was first being drafted and put through some public...
View ArticleIARPA Issues Award for ReSCIND Program to SRI For Novel Network Defense...
Press Release – March 7, 2024 SRI chosen to deliver cyber-psychology-informed network defense technology for IARPA The innovative program will be centered around the psychology of cyber attackers....
View ArticleActive Cyber™ Explores the Future Landscape of Cyber and AI – Part 1
April 18, 2024 It is evident over the last few years that central national governments are applying tighter controls on the security of software and hardware products – from labels for IoT devices in...
View ArticleActive Cyber™ Explores the Future Landscape of Cyber and AI – Part 2
April 18, 2024 This is the second part of a two part series. You can find the first part of this feature at this link. It is evident over the last few years that central national governments are...
View ArticleLearn About SBOMs In This Active Cyber™ Interview with Dr. Jean Camp of...
April 2, 2024 Software Bill of Materials (SBOMs) have been a hot ticket even before they were listed as a key initiative for secure software development practices in the National Cybersecurity Strategy...
View ArticleLearn About the Evolution of Issues Involving Bug Bounty Programs in This...
February 29, 2024 One cybersecurity area that I tend to spotlight involves vulnerability management programs. From vulnerability discovery, disclosure, sharing, prioritization, and remediation, there...
View ArticleLooking at the AI Impacts on the Cyber Kill Chain Frameworks
January 15, 2024 Lately, I have been wondering about the emerging threat factors that are impacting the cyber kill chain and how the cyber kill chain and related frameworks [MITRE ATT&CK, Diamond]...
View ArticleLearn How Nucleus Security Takes Vulnerability Management To Next Level In...
November 15, 2023 Vulnerability management programs form the foundation of most managed security services and SOC efforts. Despite a plethora of scanning and discovery tools, I remember as a former SOC...
View ArticleActive Cyber™ Interviews Dr. Ben Harvey of AI Squared About Their Low Code/...
Artificial Intelligence / Machine Learning (AI/ML) are hot topics these days when it comes to politics, technology, and personal living. There is much discussion around the ethics, the threats, and the...
View ArticleActive Cyber™ Picks Top 3 Cybersecurity Challenges for 2023
As 2022 ended and we rolled into another year, I began to see the yearly editions of the top data breaches, top threats, and top privacy fines from different cyber and privacy companies. There were...
View ArticleActive Cyber™ Interviews Kelly Schulz – CEO of Maryland Tech Council – on...
I was delighted to see the recent appointment of Kelly Schulz as CEO for the Maryland Tech Council. Ms. Schulz has played a prominent role in Maryland politics for many years, most recently as a...
View ArticleCyber Readiness Needs a Holistic Assessment Approach at the Edge
I have been seeing quite a number of references lately to the terms “cyber ready” and “cyber readiness.” Some of these references reflect an enterprise view of readiness – defined as “…the state of...
View Article