How to secure the U.S. government’s technology supply chain

Fears of a full-on cyberattack, or more insidious scattered technical invasions, have escalated since the 2016 U.S. presidential election was found to be influenced by foreign hacking. More recently, unrest in the Middle East following U.S. threats of war against Iran, as well as the 2020 elections have fueled concerns about vulnerability in the American government’s technical supply chain. At the same time the U.S. government is working to prevent foreign telecommunications firms like China-based Huawei from building 5G networks in the United States, as well as for allies’ networks that they could breach, the country could face a more menacing risk from its own IT supply chain exposure.

Spotlight

NAHU

The National Association of Health Underwriters represents more than 100,000 licensed health insurance agents, brokers, consultants and benefit professionals through more than 200 chapters across America. NAHU members service the health insurance needs of large and small employers as well as people seeking individual health insurance coverage.

OTHER ARTICLES
Government Business

The State of Federal Thinking on Zero Trust

Article | July 14, 2022

As federal agencies continue to support large numbers of remote workers, IT leaders have started to evolve their thinking on zero-trust security architectures. Increasingly, they are becoming more comfortable with the concept and are seeking to lay the foundation for deployments. Zero trust represents a mindset shift in cybersecurity in which every transaction is verified before access is granted to users and devices. In the federal government, it is still a relatively nascent approach, with some pilot programs here and there. However, IT leaders seem to recognize that cybersecurity models are increasingly going to be defined by a zero-trust architecture.

Read More
Emerging Technology

Transit, mobility projects to play vital role in economic recovery

Article | July 16, 2022

As the country battles to recover from COVID-19, transit leaders are calling for the next federal relief package to appropriate substantial funding to allow public transit to play its critical part in the economy’s recovery. In the interim, many of these transit and mobility authorities throughout the nation are moving forward with capital improvement projects already in the pipeline and in various phases of development. They will soon be announcing large projects, especially in quickly growing regions, and their planning documents list upcoming initiatives that range from mid-size construction projects to sprawling billion-dollar programs that focus on aging infrastructure. The following are just a few examples of upcoming projects from tollway and mobility authorities. California Just east of San Francisco, the Tri-Valley-San Joaquin Valley Regional Rail Authority in late June approved $46.8 million in funding for the next stage in Valley Link, a 42-mile light-rail line. This project will connect a planned train station in North Lathrop to an existing station in Pleasanton. Another $13 million previously dedicated to the project paid for conceptual design work that is near completion. Also, elsewhere in the state, the Transportation Corridor Agencies, in coordination with Caltrans, is proposing a $180 million project to add a direct 241/91 Express Connector linking the northbound 241 Toll Road to the eastbound 91 Express Lanes and the westbound 91 Express Lanes to the southbound 241 Toll Road. The connector will alleviate traffic and improve access to toll lanes in Orange and Riverside counties. Texas The Central Texas Regional Mobility Authority has several forthcoming procurements and will be soliciting bids in early August for the third phase of the 183A extension project. This $180 million project will create a 6.6-mile extension of the busy tollway north from Leander to east of Liberty Hill. Construction is expected to begin in early 2021. New Jersey The New Jersey Turnpike Authority has $24 billion in various road and infrastructure projects in its Proposed 2020 Capital Improvement Program released in March 2020. The authority has outlined 24 projects that provide system solutions and upgrades. One of the largest initiatives is a $2.9 billion project to replace approximately 200 bridge decks. Another large undertaking, projected to cost about $1.4 billion, is described as raising a section of Garden State Parkway above a revised 100-year floodplain. Florida Florida’s 2021 budget earmarks $90 million for an ambitious tollway project spanning hundreds of miles. The Multi-use Corridors of Regional Economic Significance, or M-CORES, plan calls for construction of 340 miles of new toll roads by 2030. M-CORES outlines new road infrastructure for three corridors: the Suncoast Connector from Citrus County to Jefferson County; the Northern Turnpike Connector from the northern terminus of Florida’s Turnpike northwest to the Suncoast Parkway; and the Southwest-Central Florida Connector from Collier County to Polk County. Initiated by a state Senate bill in 2019, this is a $10 billion project. Kansas The city of Overland Park and the Kansas Turnpike Authority are conducting a study that could lead to a $300 million project for U.S. 69. City leaders turned to the Turnpike Authority for help with widening the highway which has become the most congested in the state. The collaborative effort would include widening the highway to six lanes, with two of them being tolled. Illinois The Illinois Tollway Authority is closing its bid filing period for a more than $100 million project to reconstruct a section of Interstate 294, and numerous other projects are slated to occur in the next several years. A project to reconstruct the northbound C-D Road has a cost projection of between $25 and $50 million. Another planned project includes demolishing and rebuilding the Southbound Mile Long Bridge with a cost of more than $100 million. Another interesting project outlined involves building ongoing ramps from 75th Street to Interstate 55 which will also cost approximately$100 million. Pennsylvania The Pennsylvania Turnpike Commission (PTC) released a request for information to determine how best to structure procurements to replace and enhance the commission’s tolling Customer Service Center system and customer service operations. A number of contracting opportunities will result from this initiative. The commission is inviting responses from software application development companies with innovative products in the customer relationship management, customer account management, and customer experience spaces. System integrators and/or software developers with expertise in CRM, customer account management, call centers, customer contact systems and CX, and transactional/financial processing and billing systems also are also encouraged to respond. PTC is also interested in input from customer service firms specializing in the design and integration of innovative customer contact systems with new or existing applications. In addition to construction and engineering projects, numerous tollway authorities are moving toward all-electronic toll collections. The Pennsylvania Turnpike Commission moved from toll collectors to all-electronic this year, and the Bay Area Toll Authority suspended in-person toll collecting in March because of COVID-19. This trend will provide numerous opportunities for IT companies in the near future as transit and mobility authorities search for technology solutions to modernize the driving experience on toll roads. Mary Scott Nabers is president and CEO of Strategic Partnerships Inc., a business development company specializing in government contracting and procurement consulting throughout the U.S. Her recently released book, Inside the Infrastructure Revolution: A Roadmap for Building America, is a handbook for contractors, investors and the public at large seeking to explore how public-private partnerships or joint ventures can help finance their infrastructure projects.

Read More

5 (free) things governments can do to reposition for the future

Article | May 27, 2021

Over the last year, we’ve all witnessed years of digital transformation in a matter of months. A recent survey from the Economist Intelligence Unit (EIU), sponsored by Microsoft, shows that government respondents were the second-most likely group (after financial services) to report increased investment in digital transformation since the start of the pandemic. As governments around the world continue to look to technology and innovation to respond to the challenges of today, here are five (free) things governments are doing to step-change the way they can achieve their economic, social, and sustainability objectives in the future.

Read More

Fiscal year 2021 prime for government contracts of every type

Article | August 26, 2020

In spite of a decline in contracting opportunities in state and local government, public officials are announcing dozens of new, large projects each week. The announcements usually include upcoming solicitations for new construction projects as well as renovation and upgrade projects. Because of population growth, many of the most recent announcements have expansion projects. Educational facilities need more classrooms, cities and counties need more office facilities, and economic development organizations have plans to develop more revenue-generating venues. Overall, it appears that contracting opportunities will not suffer much as a result of fewer solicitation documents that are anticipated over the near term. Here’s a sampling of what to anticipate in 2021. New York Broome County is planning a two-phase $180 million renovation project for the Floyd L. Maines Veterans Memorial Arena. The project will be a rather large one, and the first phase work has a projected cost of $58 million. That work will involve improvements and upgrades to the arena's current space. Phase two of the project carries an estimated cost of approximately $125 million. It will include construction of a second ice rink and a convention center, both of which will be linked to the current arena. The objective is to increase the number and type of activities that can be accommodated in this downtown. Accommodations will be made for e-sports, various types of tournaments and space for practice sessions by the American Hockey League Binghampton Devils. Phase two will also include another downtown hotel and a new park alongside the Susquehanna River. Formal solicitations for the project may be delayed until 2022, but interested contractors and/or partners will find no better time than now for positioning and pre-sales activities. Mississippi The Mississippi Legislature ended its yearly session with the approval of a bond bill in the amount of $291 million. This funding will be allocated for various types of projects. The sum of $13.5 million is earmarked for Mississippi Valley State University. The school will expand its student union building and upgrade other facilities. Another $13.5 million has been set aside for repairs to the state capitol building, grounds, and War Memorial building. Funding also will be provided to the city of Tupelo for repair, renovation, and expansion of the BancorpSouth Arena and Conference Center. Greene County will receive funding for the renovation and expansion of the county’s rural events center in Leakesville. Georgia The Georgia General Assembly’s final version of a $25.9 billion fiscal budget was adopted in June and it calls for making $70 million available for an expansion project related to the Savannah Convention Center. Another $10.24 million is allocated for infrastructure improvements to the Georgia World Congress Center in downtown Atlanta. The budget also will finance universities, colleges, and technical colleges. Specifically, $5 million is designated for renovations at the Driftmier Engineering Center at the University of Georgia’s main campus in Athens, $4.8 million for renovations to the Dublin Center and Library on the Dublin campus of Middle Georgia State University, and $4.5 million for renovations to the Memorial College Center on the Armstrong campus of Georgia Southern University in Savannah. Massachusetts An architecture firm will be selected to conduct a fast-tracked assessment of the Holyoke Soldier’s Home for an upcoming renovation and expansion project. The state of Massachusetts has designated 12 weeks for a firm to complete a needs assessment that will provide three scenarios for improvements that focus on infection control and needs of the residents. Planning for this project which is projected to cost approximately $116 million plan began years ago. The objective is to expand the facility with a five-story addition that provides 120 new private rooms. Oregon The Portland Public School Board plans to move forward with a $1.2 billion November bond election. If voters approve the bond package, there will be funding available for the modernization of Jefferson High School. Planning documents outline plans to fund design work and additional master planning. Initial implementation will include investments in the neighborhood schools surrounding Jefferson High School, pre-construction planning for the modernization of Cleveland and Wilson high schools, and final modernization of Benson Polytechnic High School. Indiana The Seymour ISD has announced plans to convert the Seymour Middle School Sixth Grade Center into an intermediate school for fifth- and sixth-grade students and also upgrade Seymour High School. Construction should begin in 2022 on this $52.45 million project. Objectives include the provision of additional classroom space, enhanced security, upgraded accessibility, and expansion opportunities for career and athletic programming. Enhancements and upgrades also will be made at the intermediate school. These include the construction of a new kitchen and cafeteria, administrative office, gymnasium, library, and band and choir rooms. The number of classrooms will be increased from 15 to 38. At the high school, a minimum of 25 new classrooms will be added and a corridor will be constructed to relieve congestion and create space for additional lockers. West Virginia The Greenbrier County Courthouse, built in 1837, is slated for an expansion project that will add approximately 22,000 square feet. The new annex, which will have an elevator, will be attached to the northern end of the current courthouse. The solicitation for construction is likely to begin in December. The construction project will include code upgrades and the upgrading of air conditioning equipment, sprinkler systems, and heating units. A secure elevator will be added in the existing courthouse to move prisoners. These projects are indicative of what can be found by researching upcoming contracting opportunities. Each new project also will require additional purchases related to technology, security, upgraded equipment, furniture, office supplies, landscaping, and numerous professional services. The government marketplace is still one of the hottest places to find abundant opportunities for private sector firms. Mary Scott Nabers is president and CEO of Strategic Partnerships Inc., a business development company specializing in government contracting and procurement consulting throughout the U.S. Her recently released book, Inside the Infrastructure Revolution: A Roadmap for Building America, is a handbook for contractors, investors and the public at large seeking to explore how public-private partnerships or joint ventures can help finance their infrastructure projects.

Read More

Spotlight

NAHU

The National Association of Health Underwriters represents more than 100,000 licensed health insurance agents, brokers, consultants and benefit professionals through more than 200 chapters across America. NAHU members service the health insurance needs of large and small employers as well as people seeking individual health insurance coverage.

Related News

Emerging Technology, Cybersecurity

Red River Secures Army ITES-3S Contract

Businesswire | March 23, 2023

Red River, a technology transformation company serving government and enterprise customers, today announced that it is now an authorized provider on the U.S. Army’s Information Technology Enterprise Solutions 3 Services (ITES-3S) contract. Awarded by the Computer Hardware, Enterprise Software and Solutions (CHESS) and the Army Contracting Command - Rock Island (ACC-RI), ITES-3S is a nine-year, $12.1 billion, indefinite delivery indefinite quantity (IDIQ) contract. The ITES-3S IDIQ will provide a broad range of enterprise information technology services and support to the U.S. Army and other authorized Federal Government agencies. Types of information technology services available through the ITES-3S IDIQ include Program Management; Cybersecurity/Information Assurance; Enterprise Design, Integration and Consolidation; Network/Systems Operation and Maintenance; Telecommunications; Supply Chain Management; Operation and Maintenance; Business Process Engineering; and Information Technology Education and Training. This award demonstrates Red River’s longstanding commitment to providing superior professional services to the U.S. Army and the opportunity to continue to serve and support the men and women in uniform at home and abroad. Red River has more than 25 years as a trusted technology and services provider to the U.S. government and Department of Defense (DoD). “We are excited to continue our longstanding history of supporting the technology services needs of the Army and other government agencies supported through this contract vehicle,” said Brian Roach, CEO for Red River. “We look forward to collaborating with DoD technology leaders to support their mission requirements in areas such as cybersecurity, managed services, cloud, infrastructure and collaboration. This is a significant addition to our contracts portfolio and strengthens our position as a leading technology and services provider to the DoD and the U.S. government as a whole.” About Red River Red River brings together the ideal combination of talent, partners and products to disrupt the status quo in technology and drive success for business and government in ways previously unattainable. Red River serves organizations well beyond traditional technology integration, bringing more than 25 years of experience and mission-critical expertise in managed services, cybersecurity, infrastructure, collaboration and cloud solutions.

Read More

Emerging Technology

New Iridium Certus Service Providers to Support U.S. Government Customers

Iridium Communications | October 13, 2022

Iridium Communications Inc. (Nasdaq: IRDM) announced today that Iridium partners MetOcean Telematics, NAL Research, and Trace Systems are now Iridium Certus® service providers for U.S. government customers, joining Satcom Direct, in this capacity. These unique, long-term deals will allow these companies to provide Iridium's secure global satellite broadband and midband connectivity for mobile voice and data services to the U.S. government through a dedicated gateway. By leveraging the inherent advantages of the Iridium® network, including truly global, on-the-move L-band connectivity, MetOcean Telematics, NAL Research, and Trace Systems are now able to deliver enhanced capabilities that meet Communications Security (ComSec) requirements for the Department of Defense (DoD) and warfighter. These capabilities include global and resilient voice, data and 1080 HD live-action video over satcom across all domains (land, maritime and air) on the move. The service also serves as the "ACE in PACE" – alternate, contingent or emergency communications link, supports early entry communications packages and command and control for autonomous or uncrewed systems and data backhaul. Whether in high-risk combat zones or during inclement weather events, the Iridium network provides uncompromising satellite communications that keeps users connected when it's needed most. Iridium Certus™ terminals enable U.S. government users to securely connect remote assets to respective command and control centers in the U.S. in a cost-effective and secure manner, from anywhere in the world. "Iridium Certus continues to provide mission-critical broadband and midband capabilities to the modern warfighter and we're excited to add new service providers to expand the distribution of these offerings, With the addition of Iridium Certus for the government, these partners will play a critical role in supporting DoD personnel as they utilize this value-added service." -Scott Scheimreif, Executive Vice President of Government Programs, Iridium. Unique in the satellite industry, Iridium Certus is the only broadband service that provides highly reliable, truly global, weather-resilient connectivity for on-the-move internet and high-quality voice access. Iridium Certus terminals are low-profile, compared to the competition, and capable of maintaining broadband connectivity in fast-paced, unpredictable environments on land, at sea, in the air — and can do it without landing in or passing through non-U.S. territories. Iridium Communications Inc: Iridium® is the only mobile voice and data satellite communications network that spans the entire globe. Iridium enables connections between people, organizations and assets to and from anywhere, in real time. Together with its ecosystem of partner companies, Iridium delivers an innovative and rich portfolio of reliable solutions for markets that require truly global communications. In 2019, the company completed a generational upgrade of its satellite network and launched its new specialty broadband service, Iridium Certus®. Iridium Communications Inc. is headquartered in McLean, Va., U.S.A., and its common stock trades on the Nasdaq Global Select Market under the ticker symbol IRDM.

Read More

Cybersecurity

One Year In, Cyber Executive Order Progress is Under Way, But Early Stage

MeriTalk | May 06, 2022

Ninety-one percent of Federal cybersecurity decision-makers say the 2021 Executive Order (EO) on Improving the Nation’s Cybersecurity has made U.S. data and critical infrastructure safer, but just 28 percent say significantly safer, according to Impact Assessment: Cyber EO Year One, a new study from MeriTalk, a public-private partnership focused on improving the outcomes of government information technology (IT). The report explores perspectives on progress against Cyber EO goals, identifies what successful agencies do differently, and finds the fault lines where agency cyber leaders say they need more help to succeed. Most Federal cyber decision-makers (78 percent) agree the steps outlined in the Cyber EO are necessary to protect our nation. Implementing software supply chain security and migrating to a zero-trust architecture are the two most important factors for national cybersecurity, the research highlights. And, while just 15 percent have seen tangible improvements because of EO efforts to date, a significant portion expects to see an impact within the next year. Federal cyber leaders confirm initial progress in areas including vulnerability detection, software supply chain security, vulnerability response, and investigative and remediation capabilities. Just over half confirm IT management and staff are placing increased priority on cybersecurity, and just over half are collecting more cyber data than in the past. But, across the board, progress against EO goals is still in the early stages. Fewer than half rate their agencies’ progress against key EO goals as “excellent.” For example, 36 percent rate progress toward creating a formal strategy as excellent; 34 percent rate progress toward investing in endpoint detection and response (EDR) as excellent; and, 33 percent rate progress migrating to secure cloud solutions, as excellent. When asked about the importance of zero trust, 82 percent agree that allocating staff and budget resources to zero trust is vital to national security and almost all, 96 percent, agree the Federal zero trust strategy is somewhat or very helpful. Despite the high priority, just 30 percent of Federal cyber decision-makers rate their zero trust progress as “excellent” and many, 67 percent, say the EO’s three-year window for implementing a zero trust architecture is not realistic. Zero Trust is the gold standard for cybersecurity, so we're encouraged to see the EO is prioritizing that approach. In addition, cloud-native endpoint detection and response capabilities can significantly strengthen the cybersecurity posture for the federal government, especially when integrated with other security capabilities including identity security, threat intelligence, and managed threat hunting. These concepts have become cybersecurity best practices for the private sector’s most technologically advanced businesses, and we encourage the public sector to continue to embrace these technologies and strategies.” Drew Bagley, vice president and counsel for Privacy and Cyber Policy, CrowdStrike “Getting to zero trust is not easy. The detail provided in the multi-step guidance from OMB provides a path, but there is no single box you can buy to meet the varied needs of the five zero trust pillars,” says Stephen Kovac, Chief Compliance Officer and Head of Global Government Affairs, Zscaler. “You need multiple solutions from varying vendors that work together with seamless integration to achieve true zero trust – it is a team sport. OMB has done a good job in helping to define those rules, with rule one being to keep users off the network. If they can’t reach you, they can’t breach you.” Funding is another roadblock. Just 14 percent report they have all funding needed to meet Cyber EO requirements. One-third say they have half, or less than half, of the funding needed. “The sea change is the focus on comprehensive cyber resiliency,” says Nicole Burdette, principal, MeriTalk. “The EO provided direction, and Federal cyber leaders are now doing the hard work. But progress requires sustained funding and resource commitment. The research shows the gaps.” “The U.S. federal government is taking important steps to improve the nation’s cybersecurity posture,” said Dave Levy, Vice President of U.S. Government, Nonprofit, and Healthcare at Amazon Web Services (AWS). “In the Cyber EO, the White House directs federal agencies to adopt security best practices, implement zero trust architectures, and accelerate migration to secure cloud services. Organizations of all sizes should consider similar principles and practices to enhance their cybersecurity and protect employees and sensitive data against cyberattack.” What are the leaders doing differently? Cyber EO champions (leaders who give their agency’s EO progress an A) are predictably more likely than their peers to say they have all the funding they need. They are also more likely to have their chief information officer (CIO) leading their zero-trust implementation (67 percent to 28 percent). When asked for perspectives on what’s needed to achieve cyber progress, the research identified the Federal wish list: Workforce training and expertise Stronger executive buy-in Detailed direction from agency IT leadership Centers of Excellence (COEs) in the government to lend expertise Three-fourths of Federal cyber decision-makers also say the EO should have been more authoritative with private-sector directives. The Impact Assessment: Cyber EO Year One report is based on an online survey of more than 150 Federal cybersecurity decision-makers familiar with their agencies’ cybersecurity initiatives, including zero trust strategies, in March 2022 and is underwritten by Amazon Web Services (AWS), CrowdStrike, and Zscaler. The report has a margin of error of ±7.7 percent at a 95 percent confidence level. About MeriTalk The voice of tomorrow’s government today, MeriTalk is a public-private partnership focused on improving the outcomes of government IT. Our award-winning editorial team and world-class events and research staff produces unmatched news, analysis, and insight. The goal: a more efficient, responsive, and citizen-centric government. MeriTalk connects with an audience of 160,000 Federal community contacts.

Read More

Emerging Technology, Cybersecurity

Red River Secures Army ITES-3S Contract

Businesswire | March 23, 2023

Red River, a technology transformation company serving government and enterprise customers, today announced that it is now an authorized provider on the U.S. Army’s Information Technology Enterprise Solutions 3 Services (ITES-3S) contract. Awarded by the Computer Hardware, Enterprise Software and Solutions (CHESS) and the Army Contracting Command - Rock Island (ACC-RI), ITES-3S is a nine-year, $12.1 billion, indefinite delivery indefinite quantity (IDIQ) contract. The ITES-3S IDIQ will provide a broad range of enterprise information technology services and support to the U.S. Army and other authorized Federal Government agencies. Types of information technology services available through the ITES-3S IDIQ include Program Management; Cybersecurity/Information Assurance; Enterprise Design, Integration and Consolidation; Network/Systems Operation and Maintenance; Telecommunications; Supply Chain Management; Operation and Maintenance; Business Process Engineering; and Information Technology Education and Training. This award demonstrates Red River’s longstanding commitment to providing superior professional services to the U.S. Army and the opportunity to continue to serve and support the men and women in uniform at home and abroad. Red River has more than 25 years as a trusted technology and services provider to the U.S. government and Department of Defense (DoD). “We are excited to continue our longstanding history of supporting the technology services needs of the Army and other government agencies supported through this contract vehicle,” said Brian Roach, CEO for Red River. “We look forward to collaborating with DoD technology leaders to support their mission requirements in areas such as cybersecurity, managed services, cloud, infrastructure and collaboration. This is a significant addition to our contracts portfolio and strengthens our position as a leading technology and services provider to the DoD and the U.S. government as a whole.” About Red River Red River brings together the ideal combination of talent, partners and products to disrupt the status quo in technology and drive success for business and government in ways previously unattainable. Red River serves organizations well beyond traditional technology integration, bringing more than 25 years of experience and mission-critical expertise in managed services, cybersecurity, infrastructure, collaboration and cloud solutions.

Read More

Emerging Technology

New Iridium Certus Service Providers to Support U.S. Government Customers

Iridium Communications | October 13, 2022

Iridium Communications Inc. (Nasdaq: IRDM) announced today that Iridium partners MetOcean Telematics, NAL Research, and Trace Systems are now Iridium Certus® service providers for U.S. government customers, joining Satcom Direct, in this capacity. These unique, long-term deals will allow these companies to provide Iridium's secure global satellite broadband and midband connectivity for mobile voice and data services to the U.S. government through a dedicated gateway. By leveraging the inherent advantages of the Iridium® network, including truly global, on-the-move L-band connectivity, MetOcean Telematics, NAL Research, and Trace Systems are now able to deliver enhanced capabilities that meet Communications Security (ComSec) requirements for the Department of Defense (DoD) and warfighter. These capabilities include global and resilient voice, data and 1080 HD live-action video over satcom across all domains (land, maritime and air) on the move. The service also serves as the "ACE in PACE" – alternate, contingent or emergency communications link, supports early entry communications packages and command and control for autonomous or uncrewed systems and data backhaul. Whether in high-risk combat zones or during inclement weather events, the Iridium network provides uncompromising satellite communications that keeps users connected when it's needed most. Iridium Certus™ terminals enable U.S. government users to securely connect remote assets to respective command and control centers in the U.S. in a cost-effective and secure manner, from anywhere in the world. "Iridium Certus continues to provide mission-critical broadband and midband capabilities to the modern warfighter and we're excited to add new service providers to expand the distribution of these offerings, With the addition of Iridium Certus for the government, these partners will play a critical role in supporting DoD personnel as they utilize this value-added service." -Scott Scheimreif, Executive Vice President of Government Programs, Iridium. Unique in the satellite industry, Iridium Certus is the only broadband service that provides highly reliable, truly global, weather-resilient connectivity for on-the-move internet and high-quality voice access. Iridium Certus terminals are low-profile, compared to the competition, and capable of maintaining broadband connectivity in fast-paced, unpredictable environments on land, at sea, in the air — and can do it without landing in or passing through non-U.S. territories. Iridium Communications Inc: Iridium® is the only mobile voice and data satellite communications network that spans the entire globe. Iridium enables connections between people, organizations and assets to and from anywhere, in real time. Together with its ecosystem of partner companies, Iridium delivers an innovative and rich portfolio of reliable solutions for markets that require truly global communications. In 2019, the company completed a generational upgrade of its satellite network and launched its new specialty broadband service, Iridium Certus®. Iridium Communications Inc. is headquartered in McLean, Va., U.S.A., and its common stock trades on the Nasdaq Global Select Market under the ticker symbol IRDM.

Read More

Cybersecurity

One Year In, Cyber Executive Order Progress is Under Way, But Early Stage

MeriTalk | May 06, 2022

Ninety-one percent of Federal cybersecurity decision-makers say the 2021 Executive Order (EO) on Improving the Nation’s Cybersecurity has made U.S. data and critical infrastructure safer, but just 28 percent say significantly safer, according to Impact Assessment: Cyber EO Year One, a new study from MeriTalk, a public-private partnership focused on improving the outcomes of government information technology (IT). The report explores perspectives on progress against Cyber EO goals, identifies what successful agencies do differently, and finds the fault lines where agency cyber leaders say they need more help to succeed. Most Federal cyber decision-makers (78 percent) agree the steps outlined in the Cyber EO are necessary to protect our nation. Implementing software supply chain security and migrating to a zero-trust architecture are the two most important factors for national cybersecurity, the research highlights. And, while just 15 percent have seen tangible improvements because of EO efforts to date, a significant portion expects to see an impact within the next year. Federal cyber leaders confirm initial progress in areas including vulnerability detection, software supply chain security, vulnerability response, and investigative and remediation capabilities. Just over half confirm IT management and staff are placing increased priority on cybersecurity, and just over half are collecting more cyber data than in the past. But, across the board, progress against EO goals is still in the early stages. Fewer than half rate their agencies’ progress against key EO goals as “excellent.” For example, 36 percent rate progress toward creating a formal strategy as excellent; 34 percent rate progress toward investing in endpoint detection and response (EDR) as excellent; and, 33 percent rate progress migrating to secure cloud solutions, as excellent. When asked about the importance of zero trust, 82 percent agree that allocating staff and budget resources to zero trust is vital to national security and almost all, 96 percent, agree the Federal zero trust strategy is somewhat or very helpful. Despite the high priority, just 30 percent of Federal cyber decision-makers rate their zero trust progress as “excellent” and many, 67 percent, say the EO’s three-year window for implementing a zero trust architecture is not realistic. Zero Trust is the gold standard for cybersecurity, so we're encouraged to see the EO is prioritizing that approach. In addition, cloud-native endpoint detection and response capabilities can significantly strengthen the cybersecurity posture for the federal government, especially when integrated with other security capabilities including identity security, threat intelligence, and managed threat hunting. These concepts have become cybersecurity best practices for the private sector’s most technologically advanced businesses, and we encourage the public sector to continue to embrace these technologies and strategies.” Drew Bagley, vice president and counsel for Privacy and Cyber Policy, CrowdStrike “Getting to zero trust is not easy. The detail provided in the multi-step guidance from OMB provides a path, but there is no single box you can buy to meet the varied needs of the five zero trust pillars,” says Stephen Kovac, Chief Compliance Officer and Head of Global Government Affairs, Zscaler. “You need multiple solutions from varying vendors that work together with seamless integration to achieve true zero trust – it is a team sport. OMB has done a good job in helping to define those rules, with rule one being to keep users off the network. If they can’t reach you, they can’t breach you.” Funding is another roadblock. Just 14 percent report they have all funding needed to meet Cyber EO requirements. One-third say they have half, or less than half, of the funding needed. “The sea change is the focus on comprehensive cyber resiliency,” says Nicole Burdette, principal, MeriTalk. “The EO provided direction, and Federal cyber leaders are now doing the hard work. But progress requires sustained funding and resource commitment. The research shows the gaps.” “The U.S. federal government is taking important steps to improve the nation’s cybersecurity posture,” said Dave Levy, Vice President of U.S. Government, Nonprofit, and Healthcare at Amazon Web Services (AWS). “In the Cyber EO, the White House directs federal agencies to adopt security best practices, implement zero trust architectures, and accelerate migration to secure cloud services. Organizations of all sizes should consider similar principles and practices to enhance their cybersecurity and protect employees and sensitive data against cyberattack.” What are the leaders doing differently? Cyber EO champions (leaders who give their agency’s EO progress an A) are predictably more likely than their peers to say they have all the funding they need. They are also more likely to have their chief information officer (CIO) leading their zero-trust implementation (67 percent to 28 percent). When asked for perspectives on what’s needed to achieve cyber progress, the research identified the Federal wish list: Workforce training and expertise Stronger executive buy-in Detailed direction from agency IT leadership Centers of Excellence (COEs) in the government to lend expertise Three-fourths of Federal cyber decision-makers also say the EO should have been more authoritative with private-sector directives. The Impact Assessment: Cyber EO Year One report is based on an online survey of more than 150 Federal cybersecurity decision-makers familiar with their agencies’ cybersecurity initiatives, including zero trust strategies, in March 2022 and is underwritten by Amazon Web Services (AWS), CrowdStrike, and Zscaler. The report has a margin of error of ±7.7 percent at a 95 percent confidence level. About MeriTalk The voice of tomorrow’s government today, MeriTalk is a public-private partnership focused on improving the outcomes of government IT. Our award-winning editorial team and world-class events and research staff produces unmatched news, analysis, and insight. The goal: a more efficient, responsive, and citizen-centric government. MeriTalk connects with an audience of 160,000 Federal community contacts.

Read More

Events