Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • Department of War
    • Intelligence Community
    • DHS
    • Federal Civilian
    • Space
  • Cybersecurity
  • Technology
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • Department of War
    • Intelligence Community
    • DHS
    • Federal Civilian
    • Space
  • Cybersecurity
  • Technology
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
No Result
View All Result
Home Cybersecurity

CISA, NSA Detail Considerations for Remote Access VPN Selection Via Information Sheet

by Jane Edwards
December 5, 2022
in Cybersecurity, News
CISA, NSA Detail Considerations for Remote Access VPN Selection Via Information Sheet

The Cybersecurity and Infrastructure Security Agency (CISA) and the National Security Agency (NSA) have issued an information sheet meant to help organizations understand the risks and considerations for selecting a virtual private network (VPN).

Table of Contents

  • You might also like
  • CISA Seeks CIO to Lead Cybersecurity, IT & Communications Operations
  • White House Sends Navy Nominations of Hung Cao, William Toti, Richard Breckenridge to Senate
  • Troy Meink Details Air Force’s Continued Shift Toward Crewed-Uncrewed Force Design

You might also like

CISA Seeks CIO to Lead Cybersecurity, IT & Communications Operations

White House Sends Navy Nominations of Hung Cao, William Toti, Richard Breckenridge to Senate

Troy Meink Details Air Force’s Continued Shift Toward Crewed-Uncrewed Force Design

NSA said Tuesday that U.S. adversaries can target VPN servers since they can be used as entry points into protected networks and can access VPN devices by weaponizing common vulnerabilities and exposures.

“Exploitation of these CVEs can enable a malicious actor to steal credentials, remotely execute code, weaken encrypted traffic’s cryptography, hijack encrypted traffic sessions, and read sensitive data from the device,” the NSA notice reads.

The document offers guidance on choosing standards-based VPNs from reputable companies and hardening the VPN against breach by minimizing the VPN server’s attack surface through running strictly necessary features, monitoring and safeguarding access to and from the VPN and configuring strong authentication and cryptography.

NSA and CISA are advising organizations to refer to the National Information Assurance Partnership Product Compliant List for validated VPNs, ensure that products use FIPS-validated cryptographic modules and request and validate a product’s software bill of materials, among other recommendations.

Supply Chain Cybersecurity: Revelations and Innovations

ExecutiveBiz, sister site of GovConDaily and part of the Executive Mosaic digital media umbrella, will host a virtual event about securing the supply chain on Oct. 26th. Visit ExecutiveBiz.com to sign up for the “Supply Chain Cybersecurity: Revelations and Innovations” event.

Stay connected via Google News
Follow us for the latest travel updates and guides.
Add as preferred source on Google
Share5Tweet19
Previous Post

Senate Panel’s FY 2022 Defense Policy Bill Markup Adds Funds to Buy 6 More F-35s

Next Post

DOE Selects GE’s Research Unit, 4 Universities to Develop Manufacturing Efficiency, Security Processes

Recommended For You

Lt. Gen. David Berger Nominated for USMC Commandant Post

by Nichols Martin
March 28, 2019
Lt. Gen. David Berger Nominated for USMC Commandant Post

President Trump nominated Lt. Gen. David Berger for the U.S. Marine Corps commandant position. The nomination also includes Berger’s potential promotion to general. Berger serves as USMC's deputy commandant for combat...

Read moreDetails

Ashton Carter Talks DoD’s Budget Concerns, Continuing Resolution at Senate Committee Hearing

by Jane Edwards
September 23, 2016
Ashton Carter Talks DoD’s Budget Concerns, Continuing Resolution at Senate Committee Hearing

Ashton Carter Defense Secretary Ashton Carter has said budget instability, denial of necessary reforms and micromanagement are the three budget concerns the Defense Department faces, DoD News reported...

Read moreDetails

Richard Naylor, DCSA Senior Cyber Adviser & Deputy Director for Counterintelligence, to Serve as Panelist at Potomac Officers Club’s CMMC Forum 2020 on April 2nd

by William McCormick
July 14, 2020
Richard Naylor, DCSA Senior Cyber Adviser & Deputy Director for Counterintelligence, to Serve as Panelist at Potomac Officers Club’s CMMC Forum 2020 on April 2nd

Richard Naylor, senior cyber adviser and deputy director for counterIntelligence (cyber) at the Defense Counterintelligence and Security Agency (DCSA) will serve as a panelist at Potomac Officers Club’s CMMC Forum 2020 on...

Read moreDetails

NSF Invests in Ethical Development of Emerging Technologies

by Miles Jamison
September 24, 2024
NSF Invests in Ethical Development of Emerging Technologies

The U.S. National Science Foundation has awarded 44 multidisciplinary teams a combined total of more than $18 million under the NSF Responsible Design, Development and Deployment of Technologies, or...

Read moreDetails

VA Posts Enterprise Learning Management Solution RFP

by reynolitoresoor
June 25, 2024
Department of Veterans Affairs_272x270

The Department of Veterans Affairs’ Technology Acquisition Center is soliciting proposals to provide an Enterprise Learning Management Solution with the necessary software, hardware, licenses and services to support...

Read moreDetails
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Sponsors

About ExecutiveGov

ExecutiveGov, published by Executive Mosaic, is a site dedicated to the news and headlines in the federal government. ExecutiveGov serves as a news source for the hot topics and issues facing federal government departments and agencies such as Gov 2.0, cybersecurity policy, health IT, green IT and national security. We also aim to spotlight various federal government employees and interview key government executives whose impact resonates beyond their agency.

CATEGORIES

  • Acquisition & Procurement
  • Announcements
  • Articles
  • Artificial Intelligence
  • Australia
  • Awards
  • Big Data & Analytics News
  • C4ISR
  • C5ISR
  • Cloud
  • Contract Awards
  • Cybersecurity
  • Defense And Intelligence
  • Defense Security Cooperation
  • Department of War
  • DHS
  • Digital Assets
  • Digital Modernization
  • Events
  • Executive Moves
  • Executive Spotlights
  • Federal Civilian
  • Financial Reports
  • Foreign Military Sales
  • General News
  • GovCon Expert
  • Government Cloud
  • Government Technology
  • GSA
  • Healthcare IT
  • Industry News
  • Intelligence Community
  • Legislation
  • M&A Activity
  • Middle East
  • National Security
  • News
  • Policy Updates
  • Press Releases
  • Profiles
  • Space
  • Technology
  • Videos
  • Wash100
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Copyright 2026 Executive Mosaic. All Rights Reserved. Site Archive

No Result
View All Result
  • Home
  • Acquisition & Procurement
  • Agencies
    • Department of War
    • Intelligence Community
    • DHS
    • Federal Civilian
    • Space
  • Cybersecurity
  • Technology
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news

Copyright 2026 Executive Mosaic. All Rights Reserved. Site Archive

Get your free GovCon news!

Get your latest GovCon news and insights. Become a VIP and subscribe to the GovConWire Daily News.

Invalid email address
We promise not to spam you. You can unsubscribe at any time.
Thanks for subscribing!