Now on Demand Ransomware Resilience & Recovery Summit - All Sessions Available
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Security Infrastructure

DHS Publishes “Blueprint for a Secure Cyber Future”

DHS Guide Outlines Cybersecurity Strategy for the Homeland Security Enterprise

DHS Guide Outlines Cybersecurity Strategy for the Homeland Security Enterprise

The U.S. Department of Homeland Security released a guide on Monday that builds on the Department’s February 2010 “Quadrennial Homeland Security Review,” which established the safeguarding and securing of cyberspace as a critical mission of the DHS.

DHS Blueprint for a Secure Cyber FutureThe new guide, the “Blueprint for a Secure Cyber Future,” aims to provide a path to create a safe, secure, and resilient cyber environment for the homeland security enterprise.

“With this guide, stakeholders at all levels of government, the private sector, and our international partners can work together to develop the cybersecurity capabilities that are key to our economy, national security, and public health and safety,” noted DHS Secretary Janet Napolitano as she announced the new publication.

The DHS sees the Blueprint as a complement to the President’s International Strategy for Cyberspace, the National Strategy for Trusted Identities in Cyberspace and the recently released Department of Defense Strategy for Operating in Cyberspace.

The fifty-page document outlines an integrated approach to enable the homeland security community to leverage existing capabilities and promote technological advances that protect the government as well as the public and private sectors online.

Specific actions outlined in the strategy range from hardening critical networks and prosecuting cybercrime to raising public awareness and training a national cybersecurity workforce.

The two areas of action described in the Blueprint include: 

• Protecting our Critical Information Infrastructure Today

Advertisement. Scroll to continue reading.

• Building a Stronger Cyber Ecosystem for Tomorrow.

Furthermore, the guide lists four goals for protecting critical information infrastructure, including:

• Reduce Exposure to Cyber Risk

• Ensure Priority Response and Recovery

• Maintain Shared Situational Awareness

• Increase Resilience

These four goals are supported by nine objectives, with each dependent on a variety of capabilities that, when implemented, are designed to work in tandem to anticipate and respond to threats. Additionally, the guide lists four goals for strengthening the cyber ecosystem:

• Empower Individuals and Organizations to Operate Securely

• Make and Use More Trustworthy Cyber Protocols, Products, Services, Configurations and Architectures

• Build Collaborative Communities

• Establish Transparent Processes

The DHS says that Department’s cybersecurity activities will keep citizen’s privacy and civil liberties in mind. “We will support an open and interoperable cyberspace that enables individuals around the globe to seek, receive, and impart information and ideas,” the guide notes. “This free flow of information has proven essential to the rapid evolution and growth of the Internet. Cyberspace must continue to be a forum for free association and free speech.”

The DHS admits that while some of the capabilities described in the Blueprint are robust and at work today, others must be expanded, with some requiring further research and development before they can be put into action.

“As we implement this strategy, DHS will continue to work with partners across the homeland security enterprise to implement the goals outlined in the Blueprint,” Napolitano added.

The full “Blueprint for a Secure Cyber Future” is available here.

Written By

For more than 15 years, Mike Lennon has been closely monitoring the threat landscape and analyzing trends in the National Security and enterprise cybersecurity space. In his role at SecurityWeek, he oversees the editorial direction of the publication and is the Director of several leading security industry conferences around the world.

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

MSSP Dataprise has appointed Nima Khamooshi as Vice President of Cybersecurity.

Backup and recovery firm Keepit has hired Kim Larsen as CISO.

Professional services company Slalom has appointed Christopher Burger as its first CISO.

More People On The Move

Expert Insights

Related Content

Malware & Threats

The NSA and FBI warn that a Chinese state-sponsored APT called BlackTech is hacking into network edge devices and using firmware implants to silently...

Management & Strategy

Hundreds of companies are showcasing their products and services this week at the 2023 edition of the RSA Conference in San Francisco.

Security Infrastructure

Security vendor consolidation is picking up steam with good reason. Everyone wants to improve security efficiency and effectiveness while paying for less.

Cloud Security

The term ‘zero trust’ is now used so much and so widely that it has almost lost its meaning.

Security Infrastructure

Instead of deploying new point products, CISOs should consider sourcing technologies from vendors that develop products designed to work together as part of a...

Funding/M&A

Responding to Cyber Threats Against Critical Infrastructures: Wired Business Media Acquires Long Running ICS Cybersecurity Conference Series

Security Infrastructure

Comcast jumps into the enterprise cybersecurity business, betting that its internal security tools and inventions can find traction in an expanding marketplace.

Audits

The PCI Security Standards Council (SSC), the organization that oversees the Payment Card Industry Data Security Standard (PCI DSS), this week announced the release...