«

»

Feb
23

The proper perspectives on defending against insider threats

From: FCW

By Dan Velez

***

It is unlikely that agencies are overrun with insider actors, but following a series of high profile insider threat-related breaches, enhancing insider threat-readiness is a top priority for an agency’s cyber posture. Accountability and deliverables have been outlined in several executive orders from NISPOM (the National Industrial Security Policy Operating Manual) to the National Insider Threat Policy. These policies have been enacted to strengthen the protection and safeguarding of classified information by establishing common expectations, institutionalizing best practices and enabling flexible implementation. As a result, agencies are investing significant resources to address insider threats and ensure compliance with these new regulations.

NISPOM conforming change #2 is particularly noteworthy, and incorporates minimum standards for insider threat and cyber intrusion reporting. It required that contractors with classified programs implement insider threat programs by Nov. 30, 2016 – recognizing the potential vulnerabilities of private companies supporting agency missions. One key requirement for contractors to pay attention to is to monitor employees for insider threat activities using the following tactics:

Read Complete Article

Leave a Reply

Please Answer: *