FedRAMP and the new normal in cybersecurity
From: FCW
By Maria Horton
During the race to develop the first transatlantic radio system, Nikola Tesla described a new model of instant communication — one that involved gathering stock quotes and telegram messages, encoding them and assigning a new frequency for delivering them to a handheld device.
Simply put, Tesla — the inventor, engineer, futurist and arguably one of the greatest technology visionaries — was outlining the concept of personalized information delivery via a mobile device. It seems Tesla was leading the way to customized information delivery and use.
We have witnessed leaps in innovation since Tesla’s vision. Today, we are able to use personalized systems to gather and disseminate information, which consequently brings new challenges for protecting that data. Our thoughts now turn to a “new normal” of security that involves implementing effective and customized cybersecurity practices that also address user convenience and functionality.
Security is no longer about the network boundary or even the spoke-and-wheel communication models. Mobile devices are now among the most common endpoints of a network’s intelligence, and they are causing cultural, social and business shifts that render current security practices obsolete. The dynamic inputs to mobile devices continue to challenge agencies’ IT systems with security, standardization and data life cycle management issues.
This security transformation presents at least two new changes in secure and trusted computing that experts and practitioners must face: 1) Agencies can no longer assume that all security controls will lie within their corporate boundaries, and 2) collaboration and accountability must be integrated into the business practices of agencies and their solutions providers.
| Print article |