FedRAMP authorizes identity verification service

ID.me, an identity verification platform provider, has achieved a Federal Risk and Authorization Management Program moderate authorization to operate for its Identity Gateway, a shared service for citizen- and employee-facing authentication. The service achieved a FedRAMP-ready status in October 2017…

TSA tightens cyber rules for pipelines

A new directive issued by the Transportation Security Administration requires fuel pipeline operators to institute mitigation and recovery measures to protect against ransomware attacks and other known cybersecurity threats. This is the second directive issued by TSA in the wake…

Rural water utilities vulnerable to cyberattacks

Water utilities in some small and rural communities may be vulnerable to cybersecurity attacks because they are understaffed and haven’t been trained on compliance with federal regulations, state and local infrastructure advocates told a Senate panel. “People don’t see what’s…

CISA launches vulnerability disclosure platform

Federal civilian companies can now use a bug reporting system to assemble data on potential web site and software program vulnerabilities. Fielded as a shared service by the Cybersecurity and Infrastructure Safety Company, the brand new vulnerability disclosure platform is…

NSA outlines Wi-Fi security finest practices

To assist distant staff stay safe, the Nationwide Safety Company issued steerage on securing wi-fi gadgets in public. The July 30 steerage is directed at teleworkers within the nationwide safety system, the Division of Protection and the protection industrial base…