Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • Department of War
    • Intelligence Community
    • DHS
    • Federal Civilian
    • Space
  • Cybersecurity
  • Technology
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • Department of War
    • Intelligence Community
    • DHS
    • Federal Civilian
    • Space
  • Cybersecurity
  • Technology
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
No Result
View All Result
Home Cybersecurity

Eric Goldstein: 3 Security Advisory Systems Can Help Advance Vulnerability Management Practices

by Jamie Bennet
November 15, 2022
in Cybersecurity, News
Eric Goldstein: 3 Security Advisory Systems Can Help Advance Vulnerability Management Practices

The Cybersecurity and Infrastructure Security Agency is working with government and private sector entities to advance and automate vulnerability management in all kinds of U.S. organizations, said Eric Goldstein, CISA’s executive assistant director for cybersecurity.

Table of Contents

  • You might also like
  • CISA Seeks CIO to Lead Cybersecurity, IT & Communications Operations
  • White House Sends Navy Nominations of Hung Cao, William Toti, Richard Breckenridge to Senate
  • Troy Meink Details Air Force’s Continued Shift Toward Crewed-Uncrewed Force Design

You might also like

CISA Seeks CIO to Lead Cybersecurity, IT & Communications Operations

White House Sends Navy Nominations of Hung Cao, William Toti, Richard Breckenridge to Senate

Troy Meink Details Air Force’s Continued Shift Toward Crewed-Uncrewed Force Design

In a blog post published Monday, Goldstein mentioned the Common Security Advisory Framework, the Vulnerability Exploitability eXchange security advisory, and Stakeholder Specific Vulnerability Categorization system as some elements of its strategy to help improve defenses against software and hardware weaknesses.

Goldstein recommended the expanded use of CSAF, a standard that enables machine-readable representation of information in security advisories. He said the framework will not only automate but also significantly shorten the time it takes to understand the impact of a newly identified vulnerability, formulate remediation processes and communicate the flaw to end users.

VEX, another form of security advisory, can detect if a particular product is affected by a system weakness. Goldstein suggested that vendors can help streamline vulnerability investigations by issuing VEX advisories that indicate whether an organization is at risk.

CISA is encouraging organizations to use SSVC as a guide for prioritizing a known system flaw and its corresponding remediation procedure. The agency created an SSVC webpage containing a decision tree, published a guide and set up a calculator to assist institutions in prioritization.

Stay connected via Google News
Follow us for the latest travel updates and guides.
Add as preferred source on Google
Share5Tweet19
Previous Post

GSA Creates Technology Law Unit as Part of Service Modernization Initiatives

Next Post

GAO: DOD Should Designate Entity to Oversee Cyber Incident Reporting

Recommended For You

US Govt Websites See Increase in Mobile Device-Driven Traffic

by Ramona Adams
August 17, 2017
US Govt Websites See Increase in Mobile Device-Driven Traffic

A report from the General Services Administration's Digital Analytics Program has shown that mobile devices accounted for 43 percent of all traffic on U.S. government websites in December 2016. Freddie...

Read moreDetails

House OKs Bill to Support Small Biz Cybersecurity Efforts

by Ramona Adams
September 27, 2016
House OKs Bill to Support Small Biz Cybersecurity Efforts

The House has passed a bipartisan bill that would provide small U.S. businesses access to tools, resources and expertise to address cyber threats. Rep. Richard Hanna (R-New York) introduced the Improving...

Read moreDetails

President Trump Eyes Nomination of Nathan Smington as FCC Member

by Matthew Nelson
September 17, 2020
President Trump Eyes Nomination of Nathan Smington as FCC Member

President Trump plans to nominate Nathan Simington, senior adviser at the National Telecommunications and Information Administration (NTIA), to serve as a member of the Federal Communications Commission (FCC)....

Read moreDetails

Report Examines Commercial Smallsat Industry’s Role in US Space Security

by Mary-Louise Hoffman
May 10, 2022
Report Examines Commercial Smallsat Industry's Role in US Space Security

An Atlantic Council report explores how the government can expand its relationship with the commercial small satellite industry to maintain operational security and superiority in the space domain.The...

Read moreDetails

NIST Releases Reference Tool for Updated Cybersecurity Framework

by Naomi Cooper
August 16, 2023
Cyber Workforce

The National Institute of Standards and Technology has released a reference tool for exploring the draft version of the updated NIST Cybersecurity Framework. The resource offers human and...

Read moreDetails
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Sponsors

About ExecutiveGov

ExecutiveGov, published by Executive Mosaic, is a site dedicated to the news and headlines in the federal government. ExecutiveGov serves as a news source for the hot topics and issues facing federal government departments and agencies such as Gov 2.0, cybersecurity policy, health IT, green IT and national security. We also aim to spotlight various federal government employees and interview key government executives whose impact resonates beyond their agency.

CATEGORIES

  • Acquisition & Procurement
  • Announcements
  • Articles
  • Artificial Intelligence
  • Australia
  • Awards
  • Big Data & Analytics News
  • C4ISR
  • C5ISR
  • Cloud
  • Contract Awards
  • Cybersecurity
  • Defense And Intelligence
  • Defense Security Cooperation
  • Department of War
  • DHS
  • Digital Assets
  • Digital Modernization
  • Events
  • Executive Moves
  • Executive Spotlights
  • Federal Civilian
  • Financial Reports
  • Foreign Military Sales
  • General News
  • GovCon Expert
  • Government Cloud
  • Government Technology
  • GSA
  • Healthcare IT
  • Industry News
  • Intelligence Community
  • Legislation
  • M&A Activity
  • Middle East
  • National Security
  • News
  • Policy Updates
  • Press Releases
  • Profiles
  • Space
  • Technology
  • Videos
  • Wash100
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Copyright 2026 Executive Mosaic. All Rights Reserved. Site Archive

No Result
View All Result
  • Home
  • Acquisition & Procurement
  • Agencies
    • Department of War
    • Intelligence Community
    • DHS
    • Federal Civilian
    • Space
  • Cybersecurity
  • Technology
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news

Copyright 2026 Executive Mosaic. All Rights Reserved. Site Archive

Get your free GovCon news!

Get your latest GovCon news and insights. Become a VIP and subscribe to the GovConWire Daily News.

Invalid email address
We promise not to spam you. You can unsubscribe at any time.
Thanks for subscribing!