IT Compliance Advisor

Jan 25 2010   5:06PM GMT

Melissa Hathaway on managing cybersecurity, FISMA compliance reforms



Posted by: GuyPardon
compliance, cybersecurity, cyberwar, data breach, electronic privacy, federal data breach law, Federal Information Security Management Act of 2002, FISMA, FISMA compliance, privacy

In this podcast, former cybersecurity director Melissa Hathaway talks about emerging cybersecurity threats, reforms to FISMA compliance and corporate cyberespionage. Hathaway is a senior adviser at Harvard Kennedy School of Government’s Belfer Center for Science and International Affairs.

Melissa HathawayWhen you listen to the podcast, moderated by SearchCompliance.com associate editor Alexander B. Howard, you’ll hear Hathaway’s answers to the following questions and more:

  1. How could the potential FISMA compliance reforms — so-called “FISMA 2″ — affect the quality of cybersecurity readiness in U.S. government agencies and contractors? Does FISMA compliance need reform?
  2. Other elements of legislation would introduce certification for IT security professionals. Is that a positive outcome, if it happens? Why or why not?
  3. The U.S. House passed a national data breach notification bill before the holiday break. If it passes the Senate, there will be a national standard. What do you think of the prospect? Is such a breach notification bill needed to supplement HHS and FTC data breach regulations?
  4. One critical area in cybersecurity lies in the many data breaches of corporate intellectual property. How does that unfortunate trend relate to compliance? Will a federal data breach notification law help to at least expose the scope of the issue?
  5. There’s considerable concern in the defense community about electronic espionage. How can those entrusted with maintaining cybersecurity balance privacy issues, civil rights and the need to protect or defend critical infrastructure? What does privacy mean in the context of cyberwar?

Comment on this Post

Leave a comment: