ISG | September 16, 2022
State and municipal governments in the U.S., many still burdened by legacy systems and processes, are working with service providers to secure new cloud-based IT architectures amid major technology transitions, according to a new research report published today by Information Services Group (ISG) (Nasdaq: III), a leading global technology research and advisory firm.
The 2022 ISG Provider Lens™ Cybersecurity — Solutions and Services report for the U.S. Public Sector finds that governments and associated public organizations know they need to quickly overhaul both IT and cybersecurity to meet growing demand for remote work and online services to constituents. Most favor wholesale migration to cloud architectures and modern cybersecurity tools, but they need to overcome long-established procurement practices to succeed.
“Legacy platforms and processes have held many agencies back from offering better services and becoming more efficient, The new, more holistic approach to technology also extends to cybersecurity.”
-Nathan Frey, partner, ISG Public Sector.
The COVID-19 pandemic has intensified challenges governments in the U.S. have faced for decades, the report says. Lockdowns and work-from-home requirements forced agencies to offer more services online while ramping up IT support for suddenly remote workers. At the same time, a long-term exodus of older employees accelerated, making it even harder for organizations to catch up.
These factors have triggered a wave of IT modernization in the U.S. public sector, including projects to update IT security systems, especially identity and access management (IAM) and data loss/leakage prevention (DLP), ISG says. Advanced IAM systems let agencies offer more workers and constituents secure access to systems, while DLP provides better control of what data users can access in those systems and how they can use the data.
“Public agencies want more sophisticated security tools, with proper integration, so they can offer better services without increasing risk, Qualified service providers with public-sector experience are helping at every stage of the process.”
-Jan Erik Aase, partner and global leader, ISG Provider Lens Research.
More state and local governments are seeking technical security services for integration and implementation and engaging with managed security service providers for ongoing operations, ISG says. Some governments are also turning to strategic security service providers for help in developing an overall security vision spanning all departments and functions, often for the first time.
The 2022 ISG Provider Lens™ Cybersecurity — Solutions and Services report for the U.S. Public Sector evaluates the capabilities of 61 providers across five quadrants: Identity and Access Management (IAM); Data Leakage /Loss Prevention (DLP) and Data Security; Technical Security Services; Strategic Security Services, and Managed Security Services.
The report names IBM as a Leader in all five quadrants and Atos as a Leader in four quadrants. It names Accenture, Capgemini, Deloitte, EY and Infosys as Leaders in three quadrants each. Broadcom, Unisys and Verizon are named as Leaders in two quadrants each. ManageEngine, Microsoft, Okta, Palo Alto Networks, Proofpoint, RSA, Trend Micro, Varonis, Wipro and Zscaler are named as Leaders in one quadrant each.
About ISG Provider Lens™ Research:
The ISG Provider Lens™ Quadrant research series is the only service provider evaluation of its kind to combine empirical, data-driven research and market analysis with the real-world experience and observations of ISG's global advisory team. Enterprises will find a wealth of detailed data and market analysis to help guide their selection of appropriate sourcing partners, while ISG advisors use the reports to validate their own market knowledge and make recommendations to ISG's enterprise clients. The research currently covers providers offering their services globally, across Europe, as well as in the U.S., Canada, Brazil, the U.K., France, Benelux, Germany, Switzerland, the Nordics, Australia and Singapore/Malaysia, with additional markets to be added in the future.
ISG (Information Services Group) (Nasdaq: III) is a leading global technology research and advisory firm. A trusted business partner to more than 800 clients, including more than 75 of the world’s top 100 enterprises, ISG is committed to helping corporations, public sector organizations, and service and technology providers achieve operational excellence and faster growth. The firm specializes in digital transformation services, including automation, cloud and data analytics; sourcing advisory; managed governance and risk services; network carrier services; strategy and operations design; change management; market intelligence and technology research and analysis. Founded in 2006, and based in Stamford, Conn., ISG employs more than 1,300 digital-ready professionals operating in more than 20 countries—a global team known for its innovative thinking, market influence, deep industry and technology expertise, and world-class research and analytical capabilities based on the industry’s most comprehensive marketplace data.
Keeper Security | August 25, 2022
Keeper Security, the leading provider of zero-trust and zero-knowledge cybersecurity software protecting passwords, secrets, and connections, today announced that the company has obtained FedRAMP Authorization at the Moderate Impact Level for its Keeper Security Government Cloud (KSGC).
The KSGC password management and security solution has successfully completed the rigorous FedRAMP accreditation process. This highly sought-after and difficult to attain designation sets KSGC apart from its competitors as the best in class zero-trust and zero-knowledge security solution for government agencies to protect their passwords, data, and secrets. KSGC is hosted in AWS GovCloud (US), designed to host sensitive data, regulated workloads, and address the most stringent U.S. government security and compliance requirements.
To receive FedRAMP Authorization, organizations must implement controls from 17 different control families that originate from National Institute of Standards and Technology Special Publication 800-53. This alone can take organizations months or years, depending on the complexity of the system. Authorization can only be pursued by an organization through partnering with a federal agency or the Joint Authorization Board (JAB). Additionally, the system must be evaluated and assessed by an authorized independent third-party auditor prior to submitting for final review and authorization by the FedRAMP Program Management Office.
"Keeper is proud to bring its password management and cybersecurity platform to FedRAMP Authorized status," said Darren Guccione, CEO and Co-Founder of Keeper Security. "This authorization demonstrates Keeper's longstanding -- and, some would say, fanatical -- commitment to the highest standards of internal security controls and encryption. Keeper is prepared to help federal agencies protect their digital assets against ransomware, data breaches and other password-related cyberattacks."
"As a FedRAMP Authorized password management and security solution, KSGC will enable Carahsoft and our reseller partners to help federal agencies better secure their sensitive information and protect against password related breaches, Keeper's zero-knowledge, zero-trust architecture solves compliance and regulatory enforcement requirements, providing a trusted, reliable solution that meets government needs."
-Steve Jacyna, who leads the Keeper Security team at Carahsoft.
Today's attackers are advanced at using any breached username and password combination to run through analytics and bots to find any use or similar use combination. By leveraging password managers, a constant health check can be maintained for password diversification and security, said Jean-Paul Bergeaux, Federal Chief Technology Officer of GuidePoint Security. Enterprises cannot assume users are doing this and KSGC provides a way for government security teams to maintain password security while also significantly improving user experience throughout their work life.
The FedRAMP Authorized KSGC follows a White House Executive Order mandating zero-trust architecture and strong encryption, along with a draft memorandum by the Office of Management and Budget (OMB) and the Cybersecurity and Infrastructure Security Agency (CISA) mandating all federal agencies adopt a zero-trust security architecture by 2024. The memorandum specifically calls out password security requirements that KSGC facilitates, including strong password policies, the removal of a deprecated requirement to require special characters and regular password rotation, and the ability to compare user passwords against weak and breached data.
Keeper provides government agencies with a human-centric cybersecurity solution that promotes adoption of password best practices, like the use of MFA, by employees and contractors. Keeper also promotes secure collaboration with encrypted record sharing that allows system administrators to regulate privileged access to files, as well as masking credentials. Keeper's zero-knowledge system architecture provides the highest levels of security and privacy. Encryption and decryption of data always occurs locally on the user's device, and only the encrypted ciphertext is stored in KSGC.
About Keeper Security:
Keeper Security, Inc. ("Keeper") is transforming the way organizations and individuals protect their credentials, secrets, connections and sensitive digital assets to significantly reduce the risks of identity security-related cyber attacks while gaining visibility and control. Keeper is the leading provider of zero-trust and zero-knowledge security cloud services trusted by millions of people and thousands of organizations for password and secrets management, privileged access, secure remote infrastructure access and encrypted messaging.
Keeper's products are the highest-rated in the industry across G2, Trustpilot, PCMag and U.S. News & World Report. For the last several years, Keeper has received several InfoSec Awards from Cyber Defense Magazine for its cyber security enterprise software. Keeper is SOC 2 and ISO 27001 certified, and FIPS 140-2 validated, and Keeper is the only FedRAMP Authorized enterprise password management solution. Keeper is backed by Insight Partners, a leading venture capital and private equity firm with $90b AUM.
Carahsoft Technology Corp. is The Trusted Government IT Solutions Provider®, supporting Federal, State and Local Government and Education and Healthcare. As the Master Government Aggregator® for its vendor and reseller partners, Carahsoft delivers solutions for Cybersecurity, MultiCloud, DevSecOps, Big Data, Artificial Intelligence, Open Source, Customer Experience and Engagement, and more.
About GuidePoint Security:
GuidePoint Security provides cybersecurity solutions and services that help organizations make better decisions. GuidePoint Security's holistic approach enables organizations to identify threats, optimize resources, and integrate solutions that mitigate risk.
Federal Home Loan Bank of Chicago | June 30, 2022
The Federal Home Loan Bank of Chicago (FHLBank Chicago) and the Government National Mortgage Association (Ginnie Mae) announced that total issuance under the Mortgage Partnership Finance® Program (MPF®) recently surpassed $3 billion in mortgage-backed securities (MBS). The MPF Government MBS product resulted from a partnership forged by FHLBank Chicago and Ginnie Mae to issue securities guaranteed by Ginnie Mae and backed by mortgages originated by Federal Home Loan Bank member financial institutions. The MPF Government MBS product provides mortgage lenders, particularly smaller institutions, direct access to the secondary mortgage market and more mortgage loan solution options for their valued customers.
Ginnie Mae developed the first mortgage-backed security in 1970, by pooling loans into a security sold in the secondary market.
The MPF Program is an important partnership for making the Ginnie Mae MBS system accessible to small community banks and lender partners, and this $3 billion milestone demonstrates its value in the marketplace. This program advances our mission and commitment to ensure liquidity for government mortgage products and create more equitable and affordable homeownership opportunities for households across the country."
Alanna McCargo,Ginnie Mae President
Federal Home Loan Banks across the nation offer the MPF Government MBS product to their members.
"As the MPF Program celebrates 25 years of helping community lenders nationwide, achieving this milestone with Ginnie Mae is another testament to our continued strong partnership," said John Stocchetti, Executive Vice President of the MPF Program. "Our business model provides community lenders access to the secondary market, and our relationship with these lenders gives their communities access to affordable mortgage products."
The MPF Program's partnership with Ginnie Mae began in 2014 and continues to provide lenders a channel to the MBS marketplace.
About the MPF Program
The MPF Program allows eligible Federal Home Loan Bank members to sell conventional conforming and government loans to their Federal Home Loan Bank or other investors. To learn more visit fhlbmpf.com. "Mortgage Partnership Finance" and "MPF" are registered trademarks of the Federal Home Loan Bank of Chicago.
About Ginnie Mae
Ginnie Mae is a wholly owned government corporation that attracts global capital into the housing finance system to support homeownership for veterans and millions of homeowners throughout the country. Ginnie Mae MBS programs directly support housing finance programs administered by the Federal Housing Administration, the Department of Veterans Affairs, the Department of Housing and Urban Development's Office of Public and Indian Housing and the Department of Agriculture Rural Housing Service. Ginnie Mae is the only MBS to carry the explicit full faith and credit of the United States government.
Leidos | September 22, 2022
Leidos ( NYSE: LDOS), a FORTUNE® 500 science and technology leader, has been awarded a new Blanket Purchase Agreement (BPA) by the U.S. Department of Transportation (USDOT) to provide program and technical support to the Federal Highway Administration's (FHWA) Office of Policy and Governmental Affairs. The multiple-award BPA contract has a five-year base period of performance followed by a six-month option period. It holds an estimated value of $60 million. Work will be performed at multiple Leidos facilities.
"We look forward to working with the FHWA on this program to provide support in assessing data and increasing safety on our roads, This win reinforces our capabilities to provide critical, mission-focused policy support."
-Fran Hill, senior vice president of Leidos' Transportation Solutions.
Through this contract, Leidos will support FHWA efforts to develop highway and intergovernmental policy positions, analyze the impact of investment on transportation performance and the economy, and enhance the administration's strategic plan and performance management processes. This will enable expert consultation services on cutting-edge data acquisition and demand modeling.
The contract expands Leidos' work with the USDOT and FHWA. Leidos also supports FHWA's Office of Safety and Office of Operations with critical services that strengthen and protect our nation's infrastructure and ensure safe mobility to people and goods.
Leidos is a Fortune 500® technology, engineering, and science solutions and services leader working to solve the world's toughest challenges in the defense, intelligence, civil, and health markets. The company's 44,000 employees support vital missions for government and commercial customers. Headquartered in Reston, Virginia, Leidos reported annual revenues of approximately $13.7 billion for the fiscal year ended December 31, 2021.