Home / News / White House Cyber Chief Rob Joyce Calls for Transparency of Vulnerabilities Equities Process

White House Cyber Chief Rob Joyce Calls for Transparency of Vulnerabilities Equities Process

Rob Joyce

Rob Joyce, White House cybersecurity coordinator, has said the federal government should work to ensure the transparency of the Vulnerabilities Equities Process in order for U.S. citizens to have confidence in VEP’s integrity.

Joyce wrote in a blog post posted Wednesday VEP is an interagency process that seeks to determine whether to divulge cyber vulnerability data to vendors to facilitate patches or temporarily restrict that data in support of law enforcement and national security operations.

The newly released VEP Charter covers four groups of equity considerations designed to help decision makers assess the potential advantages and risks to national security of limiting or disclosing vulnerability data.

Those equity considerations include defensive equities; commercial equities; international partnership equities; and intelligence, law enforcement and operational equities.

Joyce noted that the public release of the VEP Charter aims to provide information on participants in the Equities Review Board, vulnerability categories that go through the process and federal agencies and departments that take part in VEP discussions.

The charter would also require the release of an annual report to offer information on VEP metrics and notify the public about the process and related outcomes.

Check Also

DoD: China Acquiring Tech for Military Modernization Through Legal and Illicit Means

The Defense Department said in a recent report that the Chinese government has been pursuing its military modernization goals through legal and illicit means, procuring foreign technology through legal means but also engaging in clandestine operations to gain access to regulated or export-restricted material, the DoD stated in its report to Congress.

Leave a Reply

Your email address will not be published. Required fields are marked *