SecureGOV Publications

Laying the IT Security Foundation: Key Steps to Preventing Cyber Attacks

Government systems are getting hit on a daily basis by new and ingenious external attacks. Federal, state and municipal agencies, plus government contractors, must find a way to adjust to this evolving threat landscape to prevent these threats from wreaking havoc. It is imperative that government organizations get back to the basics of security and lay a strong security foundation to weather these attacks by proactively addressing their root causes.

 


[Open or download attachment below to view white paper]

Attain Starts Out Strong as BearingPoint Successor

Attain LLC is less than a year old, but the professional services company already has gone through a name change and closed 20 new contracts and six follow-on awards worth a total of more than $13 million.

Founded last year as Eclat Consulting LLC, the company had an advantage unusual for startups: Attain was created from the parts of the public sector group at BearingPoint that Deloitte couldn't acquire.

 


[Open or download attachment below to view press release]

Secure Information Sharing: Protectively Marking CUI

  • Tim Upton, President & CEO, Titus Labs

HBGary Now Provides Deeper Threat Intelligence On Sophisticated Online Attacks

In an continuing effort to provide deeper, actionable threat intelligence on new attacks as well as the behavior, intent, origin – and operators – of today’s sophisticated online attacks by both nation-states and cybercriminals, HBGary, Inc. announced HBGary Responder Professional 2.0, an intuitive Windows physical memory and automated malware analysis platform that easily, quickly and cost-effectively analyzes all programs in memory including malware to obtain the threat intelligence needed to mitigate risk.

Full text available to GTRA Members only. To access downloads and other members-only content, login as an existing user or sign up for a free membership using the "Member Login/Signup" button in the upper right corner of this page.

Lumension Delivers Defense-In-Depth with New Antivirus Solution

As the sophistication of malware continues to increase, coupled with the expansion of Web 2.0 technologies and increased browser-based risk, malicious code is on the rise. More than 21 million unique instances of malware have been identified, and that number continues to grow exponentially. To combat this, organizations need a comprehensive endpoint protection strategy that employs multiple techniques to identify and block both known and unknown malware and zero-day exploits.

 

Full text available to GTRA Members only. To access downloads and other members-only content, login as an existing user or sign up for a free membership using the "Member Login/Signup" button in the upper right corner of this page.

Lumension Announces Data Protection Solution for Microsoft System Center

Lumension, a global leader in endpoint management and security, today announced the general availability of Lumension® Device Control for Microsoft System Center (DCSC) to enable users to protect corporate data while reducing operational

Full text available to GTRA Members only. To access downloads and other members-only content, login as an existing user or sign up for a free membership using the "Member Login/Signup" button in the upper right corner of this page.

Lumension Delivers End-to-End Endpoint Management Capabilities

Lumension, a global leader in endpoint management and security, today unveiled its new Lumension® Endpoint Management and Security Suite (LEMSS) that will be delivered as part of the Lumension® Endpoint Management Platform and enable organizations to optimize their security and compliance posture while achieving greater agility, performance and reduced TCO.

Full text available to GTRA Members only. To access downloads and other members-only content, login as an existing user or sign up for a free membership using the "Member Login/Signup" button in the upper right corner of this page.

Achieving Federal Desktop Core Configuration Compliance with Lumension Solutions

Change management is a well known IT concern and its importance is underscored by its presence within the ITIL9 and COBIT10 standard frameworks. Even further, “Research has shown that as much as 80% of system unavailability is caused by incorrectly

Full text available to GTRA Members only. To access downloads and other members-only content, login as an existing user or sign up for a free membership using the "Member Login/Signup" button in the upper right corner of this page.

Six Critical Elements to Achieve Economies in FISMA Compliance

For the past eight years, government agencies have struggled to comply with the requirements of the Federal Information Security Management Act of 2002 (FISMA). The question before federal agencies is: How can they meet the requirements of FISMA in a cost-efficient but effective manner? Achieving economies in FISMA compliance requires government agencies to take a risk-based approach to managing information security.

 


[Open or download attachment below to view white paper]

Full text available to GTRA Members only. To access downloads and other members-only content, login as an existing user or sign up for a free membership using the "Member Login/Signup" button in the upper right corner of this page.

The Great Balancing Act: Using USB Flash Drives in Government Environments

USB flash drives and other portable devices are valuable tools in the typical government staffer’s virtual toolkit. These handy devices allow workers to efficiently accomplish their duties and carry out their tasks for the public good. But left unchecked, the use of portable devices can also potentially infect public systems with malware, inadvertently expose classified information and/or citizens’ personally identifiable
information (PII), and otherwise breach the public’s trust.

 

Full text available to GTRA Members only. To access downloads and other members-only content, login as an existing user or sign up for a free membership using the "Member Login/Signup" button in the upper right corner of this page.

Cyber Security Mega Trends: Study of IT Leaders in the US Federal Government

What are the biggest security threats to U.S. federal organizations in terms of sensitive and confidential data, core information systems and critical infrastructure over the next few years? According to 217 senior-level IT executives located in various federal organizations, significant areas of information security risks include rapid growth in unstructured data assets, mobility of the federal workforce, cyber terrorism, outsourcing, cloud computing and much more.

 


[Open or download attachment below to view white paper]

Full text available to GTRA Members only. To access downloads and other members-only content, login as an existing user or sign up for a free membership using the "Member Login/Signup" button in the upper right corner of this page.

Government Cyber Security Priorities for 2010

A Keynote panel of Industry security executives moderated by Christopher Garcia, Director Cyber Security and Incident Response Center, FAA with Robert Lentz, Former Deputy Asst Secretary of Defense for Cyber, Identity and Information Assurance, DoD, Tim Upton, Founder, President & CEO, Titus Lab, and Charles Ross, Director, Sales Engineering Public Sector, McAfee focused on cyber security priorities for 2010 and gave the audience strategies for preemptive security measures.

 

Full text available to GTRA Members only. To access downloads and other members-only content, login as an existing user or sign up for a free membership using the "Member Login/Signup" button in the upper right corner of this page.

Mobility as a Service - Best Practices for Managing Mobile Work

Our lives are becoming more flexible and mobile, so are our work lives. But while business mobility initiatives enhance productivity and flexibility, they have a few drawbacks as well. So how can all of the mobile (and remote) devices that access the corporate network and resources such as Web-based applications be given the same level of attention as the wired world when it comes to connectivity, security, productivity and compliance?

 


[Open or download attachment below to view white paper]

Full text available to GTRA Members only. To access downloads and other members-only content, login as an existing user or sign up for a free membership using the "Member Login/Signup" button in the upper right corner of this page.

Top Reasons for Information Labeling

Identify the business value of data by tagging emails and documents. Labels add structure to volumes of unstructured data within large organizations. Consistent labels based on corporate policy include metadata to improve email management, prevent inadvertent disclosure, trigger encryption, and add intelligence to archival.

 


[Open or download attachment below to view white paper]

Full text available to GTRA Members only. To access downloads and other members-only content, login as an existing user or sign up for a free membership using the "Member Login/Signup" button in the upper right corner of this page.

Message and Document Classification Advantages for US DoD

Titus Labs has developed a complete family of classification solutions for Microsoft Outlook email and Microsoft Office documents. These message and document classification tools offer many advantages, as will be outlined in this whitepaper. Titus Labs’ classification solutions are interoperable – an important feature that is not available from any other vendor in the market and one that can be used to DoD’s advantage.

Full text available to GTRA Members only. To access downloads and other members-only content, login as an existing user or sign up for a free membership using the "Member Login/Signup" button in the upper right corner of this page.

Best Practices for the Implementation of Controlled Unclassified Information (CUI) for the U.S. Federal Government and Military

The CUI Memorandum standardizes practices around the sharing of CUI with a goal of improving the sharing of information within the executive departments of the Federal Government. The Memorandum specifically adopts, defines, and institutes CUI as the single designation for all information formerly referred to as SBU in the Information Sharing Environment (ISE). To meet the Presidential Directive all departments and agencies must take necessary and appropriate actions to safeguard sensitive but unclassified information related to America's homeland security.

Full text available to GTRA Members only. To access downloads and other members-only content, login as an existing user or sign up for a free membership using the "Member Login/Signup" button in the upper right corner of this page.

Optimizing Information Sharing

Sharing of information is critical to national and international security. To enable effective and secure information sharing, military organizations have historically relied on classification markings. These markings make it possible to quickly identify information sensitivity and determine proper handling. However, without a tool to enforce classification and automate the application of markings, users apply markings inconsistently and incorrectly. This hinders information sharing, and increases the risk of data spillage and inadvertent disclosure.

 

Full text available to GTRA Members only. To access downloads and other members-only content, login as an existing user or sign up for a free membership using the "Member Login/Signup" button in the upper right corner of this page.

Integrating Information Labeling and Microsoft Active Directory Rights Management Services

Today’s workplace is ever‐diversifying, and information is being accessed from both inside and outside the enterprise from a wide variety of locations and on a wide variety of devices: corporate laptops, corporate home office desktops, home computer, mobile devices, from the coffee shop or the airport departure lounge, etc.

Full text available to GTRA Members only. To access downloads and other members-only content, login as an existing user or sign up for a free membership using the "Member Login/Signup" button in the upper right corner of this page.

Fife Constabulary: Classifying Messages with Titus Labs

Fife Constabulary is one of eight Scottish Forces. It covers the region of Fife, which is situated to the north of Edinburgh. Responsible for a population of over 350,000, the constabulary typically deals with over 750 calls per day. The Force establishment currently sits at approximately 1,700, virtually all of whom are Microsoft Outlook email users. The communications and IT department within the organization is constantly striving to stay at the forefront of technology to ensure that the constabulary continues to operate effectively and securely.

 

Full text available to GTRA Members only. To access downloads and other members-only content, login as an existing user or sign up for a free membership using the "Member Login/Signup" button in the upper right corner of this page.

Department of Energy Nevada Office Site Selects Titus Labs for Information Risk Management

Titus Labs Inc., today announced that the U.S. Department of Energy's (DOE) Nevada Test Site Office has purchased Titus Labs Message Classification (TMC) and Titus Labs Document Classification (TDC) solutions. The organization will be using the solution for information risk management forcing data classification to prevent a consequence of loss including serious damage to National security.

 


[Open or download attachment below to view press release]

Full text available to GTRA Members only. To access downloads and other members-only content, login as an existing user or sign up for a free membership using the "Member Login/Signup" button in the upper right corner of this page.