article thumbnail

Federal Agencies Can Leverage Software Bills of Materials for Stronger Risk Management

FedTech Magazine

Modern software development is incredibly complex for federal technology managers, with products typically built from many different components from a variety of global software supply chain sources.

article thumbnail

Updated NIST cybersecurity framework adds core function, focuses on supply chain risk management

FedScoop

Govern” focuses on how an organization’s “cybersecurity risk management strategy, expectations and policy are established, communicated and monitored,” the framework stated, and is intended to address the implementation and oversight of a cybersecurity strategy.

professionals

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Trending Sources

article thumbnail

Guidehouse-AFERM Survey: Federal Agencies See Cybersecurity, Privacy as Top Risk Management Areas

ExecutiveBiz

A survey by Guidehouse and the Association for Federal Enterprise Risk Management has found that cybersecurity and privacy continue to top the list of risks that federal agencies anticipate to have the greatest impact on the strategic objectives of their organizations in the next three to five years.

article thumbnail

Former Federal CIO Suzette Kent Named to StackArmor’s AI Risk Management CoE

GovCon Wire

Suzette Kent, former federal chief information officer and a two-time Wash100 awardee, has joined the newly established Artificial Intelligence Risk Management Center of Excellence at StackArmor.

article thumbnail

Bringing Automation to Cloud Risk Management

FedInsider

Agenda Learning Objectives Complimentary Registration Live Captioning CART Agenda Join us as thought leaders from government and industry share their insights into ways to implement continuous cyber risk assessments for your systems and how to navigate the challenges of cyber configuration management.

article thumbnail

Disaster response and risk management using PNNL’s Aether framework on AWS

AWS Public Sector

CSMT characterizes risks associated with mass destruction in the Philippines by developing an on-site chemical inventory by facility and uses atmospheric dispersion modeling to quantify possible plume extents and impact on nearby populations and traffic.

article thumbnail

Understanding the Transition from Authorization to Operate to Continuous ATO

FedTech Magazine

Federal agencies have long followed the National Institute of Standards and Technology’s Risk Management Framework for Information Systems and Organizations to help agencies select the appropriate safeguards related to cybersecurity, privacy and supply chain risk management.