Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
No Result
View All Result
Home Cybersecurity

Eric Goldstein: 3 Security Advisory Systems Can Help Advance Vulnerability Management Practices

by Jamie Bennet
November 15, 2022
in Cybersecurity, News
Eric Goldstein: 3 Security Advisory Systems Can Help Advance Vulnerability Management Practices

The Cybersecurity and Infrastructure Security Agency is working with government and private sector entities to advance and automate vulnerability management in all kinds of U.S. organizations, said Eric Goldstein, CISA’s executive assistant director for cybersecurity.

Table of Contents

  • You might also like
  • DOW, L3Harris Ink Deals to Expand PAC-3 MSE, THAAD Propulsion Production
  • GAO Urges DHS to Address Cybersecurity, Disaster Response Recommendations
  • USSPACECOM Issues Space Warfighting Environment 2040 for Joint Force Space Operations

You might also like

DOW, L3Harris Ink Deals to Expand PAC-3 MSE, THAAD Propulsion Production

GAO Urges DHS to Address Cybersecurity, Disaster Response Recommendations

USSPACECOM Issues Space Warfighting Environment 2040 for Joint Force Space Operations

In a blog post published Monday, Goldstein mentioned the Common Security Advisory Framework, the Vulnerability Exploitability eXchange security advisory, and Stakeholder Specific Vulnerability Categorization system as some elements of its strategy to help improve defenses against software and hardware weaknesses.

Goldstein recommended the expanded use of CSAF, a standard that enables machine-readable representation of information in security advisories. He said the framework will not only automate but also significantly shorten the time it takes to understand the impact of a newly identified vulnerability, formulate remediation processes and communicate the flaw to end users.

VEX, another form of security advisory, can detect if a particular product is affected by a system weakness. Goldstein suggested that vendors can help streamline vulnerability investigations by issuing VEX advisories that indicate whether an organization is at risk.

CISA is encouraging organizations to use SSVC as a guide for prioritizing a known system flaw and its corresponding remediation procedure. The agency created an SSVC webpage containing a decision tree, published a guide and set up a calculator to assist institutions in prioritization.

Stay connected via Google News
Follow us for the latest travel updates and guides.
Add as preferred source on Google
Share5Tweet19
Previous Post

GSA Creates Technology Law Unit as Part of Service Modernization Initiatives

Next Post

GAO: DOD Should Designate Entity to Oversee Cyber Incident Reporting

Recommended For You

Federal CIO Suzette Kent on Technology Modernization Fund

by Jane Edwards
November 11, 2019
Federal CIO Suzette Kent on Technology Modernization Fund

Suzette Kent, federal chief information officer and a 2019 Wash100 Award recipient, discussed at a conference the Technology Modernization Fund and how the federal government funds information technology transformation initiatives...

Read moreDetails

DHS Deploys User Verification Tool by Johns Hopkins APL-Queralt Team for Data Sharing

by Jane Edwards
April 8, 2016
DHS Deploys User Verification Tool by Johns Hopkins APL-Queralt Team for Data Sharing

The Department of Homeland Security has begun to deploy a new system designed to help DHS facilitate data sharing and collaboration with other federal agencies and organizations through...

Read moreDetails

DHS, Army Develop Wildland Firefighter Garment System to Address Heat Exhaustion Risk

by Ramona Adams
August 17, 2016
DHS, Army Develop Wildland Firefighter Garment System to Address Heat Exhaustion Risk

The Department of Homeland Security's science and technology directorate has partnered with the U.S. Army Natick Soldier Research, Development and Engineering Center to create a garment system for...

Read moreDetails

NSA Releases Report on 2020 Cybersecurity Initiatives; Anne Neuberger Quoted

by Brenda Marie Rivers
June 6, 2024
Anne Neuberger

The National Security Agency (NSA) has issued its 2020 Cybersecurity Report that details progress on the agency's initiatives focused on integrating threat intelligence, cryptographic knowledge, vulnerability analysis, defensive operations...

Read moreDetails

Navy Survey Vessel Completes Maiden Voyage; Nick Vincent Comments

by Jay Clemens
June 10, 2016
Navy Survey Vessel Completes Maiden Voyage; Nick Vincent Comments

The U.S. Navy has transported its newest oceanographic survey vessel to Port Everglades near Florida to its construction site Pascagoula, Mississippi in the ship's first voyage. The Naval Oceanographic Office’s civilian...

Read moreDetails
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Sponsors

About ExecutiveGov

ExecutiveGov, published by Executive Mosaic, is a site dedicated to the news and headlines in the federal government. ExecutiveGov serves as a news source for the hot topics and issues facing federal government departments and agencies such as Gov 2.0, cybersecurity policy, health IT, green IT and national security. We also aim to spotlight various federal government employees and interview key government executives whose impact resonates beyond their agency.

CATEGORIES

  • Acquisition & Procurement
  • Announcements
  • Articles
  • Artificial Intelligence
  • Awards
  • Big Data & Analytics News
  • C4ISR
  • Civilian
  • Cloud
  • Contract Awards
  • Cybersecurity
  • Defense And Intelligence
  • Defense Security Cooperation
  • DHS
  • Digital Assets
  • Digital Modernization
  • DoD
  • Events
  • Executive Moves
  • Executive Spotlights
  • Federal Civilian
  • Financial Reports
  • Foreign Military Sales
  • General News
  • GovCon Expert
  • Government Cloud
  • Government Technology
  • GSA
  • Healthcare IT
  • Industry News
  • Intelligence
  • Legislation
  • M&A Activity
  • National Security
  • News
  • Policy Updates
  • Press Releases
  • Profiles
  • Space
  • Videos
  • Wash100
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Copyright 2026 Executive Mosaic. All Rights Reserved. Site Archive

No Result
View All Result
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news

Copyright 2026 Executive Mosaic. All Rights Reserved. Site Archive

Get your free GovCon news!

Get your latest GovCon news and insights. Become a VIP and subscribe to the GovConWire Daily News.

Invalid email address
We promise not to spam you. You can unsubscribe at any time.
Thanks for subscribing!