Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
No Result
View All Result
Home Cybersecurity

Joint NSA-CISA Advisory Recommends Solutions to Top 10 Cybersecurity Misconfigurations; Eric Goldstein Quoted

by Jamie Bennet
October 6, 2023
in Cybersecurity, News
Eric Goldstein

Eric Goldstein

A joint advisory released by the National Security Agency and Cybersecurity and Infrastructure Security Agency listed 10 of the most common misconfigurations in enterprise IT defense and how to mitigate risks arising from such cases.

Table of Contents

  • You might also like
  • Office of Strategic Capital Commits Up to $820M Loan to Performance Drone Works for Domestic Component Manufacturing
  • Maureen Falvella Named NIH Chief Information Officer
  • New NASA Wind Tunnel Opens for Aircraft, Spacecraft Testing

You might also like

Office of Strategic Capital Commits Up to $820M Loan to Performance Drone Works for Domestic Component Manufacturing

Maureen Falvella Named NIH Chief Information Officer

New NASA Wind Tunnel Opens for Aircraft, Spacecraft Testing

The list includes default software and application configurations, improper user and administrator privilege separation and insufficient monitoring of internal networks, according to the advisory released Thursday.

NSA and CISA found that some organizations lack network segmentation, effective patch management and access control lists on shared networks and services. In other cases, system access controls are bypassed, multifactor authentication tools and user credentials are weak and code executions lack restrictions.

The agencies urged network defenders to strengthen configurations, implement access controls, prioritize patching of commonly exploited vulnerabilities and monitor and reduce administrative privileges.

For software manufacturers, the NSA and CISA Red and Blue Teams pushed for the adoption of secure-by-design and -default principles to reduce cyber threats and their burden on network defenders.

Eric Goldstein, CISA’s executive assistant director for cybersecurity, echoed the call for practicing secure-by-design tactics. “While enterprises can and must take steps to identify and address these misconfigurations, we know that scalable progress requires urgent action by software manufacturers, particularly by adopting Secure by Design practices where software is designed securely from inception to end-of-life and by taking ownership to improve security outcomes of their customers,” Goldstein wrote in a blog post.

On Nov. 15, the Potomoc Officers Club will gather homeland and national security officials and experts for the 2023 Homeland Security Summit in Virginia. Register now to participate in the event.

POC - 2023 Homeland Security Summit
Stay connected via Google News
Follow us for the latest travel updates and guides.
Add as preferred source on Google
Share5Tweet19
Previous Post

NASA Posts Draft Solicitation for Goddard Logistics Services Contract

Next Post

Atlantic Council Report Recommends Ways for Effective Implementation of Private-Sector Activities in Warfare

Recommended For You

Lockheed Martin Names Frank St. John as COO to Lead Strategy, Operations, Finance

by Sarah Sybert
March 16, 2020
Lockheed Martin Names Frank St. John as COO to Lead Strategy, Operations, Finance

Frank St. John, the current executive vice president of Lockheed Martin's Rotary and Mission Systems (RMS) business, was elected by the board to serve as chief operating officer...

Read moreDetails

Commerce Dept’s Bruce Andrews to Help Promote US Healthcare Products in China Via Trade Mission

by Jane Edwards
October 13, 2016
Commerce Dept’s Bruce Andrews to Help Promote US Healthcare Products in China Via Trade Mission

Bruce Andrews, deputy secretary at the Commerce Department, is scheduled to visit Beijing and Chongqing, China, for a six-day business development mission that is set to kick off Oct....

Read moreDetails

DHS S&T, Pacific Northwest National Laboratory Host Workshop for Airport Security

by Monica Jackson
October 26, 2018
DHS S&T, Pacific Northwest National Laboratory Host Workshop for Airport Security

The Department of Homeland Security’s Science and Technology Directorate and Pacific Northwest National Laboratory have facilitated a workshop focusing on the future of airport security.

Read moreDetails

Leidos Awarded $47M Contract to Provide Technical Support Services for U.S. Air Force; Ed Whitehouse Quoted

by William McCormick
October 21, 2019
Leidos Awarded $47M Contract to Provide Technical Support Services for U.S. Air Force; Ed Whitehouse Quoted

The U.S. Air Force has awarded Leidos a potential six-year, $47 million indefinite delivery/indefinite quantity contract to provide support services for the Air Force Technical Applications Center's (AFTAC)...

Read moreDetails

Report: Rep. Duncan Hunter Seeks UAV Acquisition Funds for Coast Guard

by Mary-Louise Hoffman
April 28, 2016
Report: Rep. Duncan Hunter Seeks UAV Acquisition Funds for Coast Guard

Rep. Duncan Hunter (R-California) wants to request funds for the U.S. Coast Guard to procure land-based unmanned aerial vehicles to support the service branch's surveillance missions, Navy Times reported Tuesday. Meghann...

Read moreDetails
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Sponsors

About ExecutiveGov

ExecutiveGov, published by Executive Mosaic, is a site dedicated to the news and headlines in the federal government. ExecutiveGov serves as a news source for the hot topics and issues facing federal government departments and agencies such as Gov 2.0, cybersecurity policy, health IT, green IT and national security. We also aim to spotlight various federal government employees and interview key government executives whose impact resonates beyond their agency.

CATEGORIES

  • Acquisition & Procurement
  • Announcements
  • Articles
  • Artificial Intelligence
  • Awards
  • Big Data & Analytics News
  • C4ISR
  • Civilian
  • Cloud
  • Contract Awards
  • Cybersecurity
  • Defense And Intelligence
  • Defense Security Cooperation
  • DHS
  • Digital Assets
  • Digital Modernization
  • DoD
  • Events
  • Executive Moves
  • Executive Spotlights
  • Federal Civilian
  • Financial Reports
  • Foreign Military Sales
  • General News
  • GovCon Expert
  • Government Cloud
  • Government Technology
  • GSA
  • Healthcare IT
  • Industry News
  • Intelligence
  • Legislation
  • M&A Activity
  • National Security
  • News
  • Policy Updates
  • Press Releases
  • Profiles
  • Space
  • Videos
  • Wash100
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Copyright 2026 Executive Mosaic. All Rights Reserved. Site Archive

No Result
View All Result
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news

Copyright 2026 Executive Mosaic. All Rights Reserved. Site Archive

Get your free GovCon news!

Get your latest GovCon news and insights. Become a VIP and subscribe to the GovConWire Daily News.

Invalid email address
We promise not to spam you. You can unsubscribe at any time.
Thanks for subscribing!