SECURITY LEGISLATION - Homeland Defense: New Rules of War after 9/11

By Elana Varon
Tue, January 15, 2002

CIO — The war against terrorism is forcing government and business to forge new alliances. Federal government actions since Sept. 11, including legislation enacted by Congress and policies issued by the White House, aim to broaden cooperation between the private sector and law enforcement officials charged with counter-terrorism efforts. Those actions include new ways companies can work with government using IT to thwart conventional attacks, and there are more to come. Every week brings new government proposals to get companies more involved in homeland defense.

Those new policies are al-ready reshaping the CIO’s job in many companies. Technology executives have been called on to install systems to help officials find terrorists, share more information about the weaknesses of their own IT infrastructures and help their CEOs advise the government on how to protect the nation from attacks on critical industries such as utilities and financial services. To help CIOs tackle these assignments more effectively, certain policies are promoting new technologies for both information and physical security, as well as giving companies tax breaks for upgrading network security.

CIOs are in the best position to help determine how these emerging rules of engagement will affect the way their company uses IT to conduct business in an increasingly less secure world. "It’s important [that CIOs] look at the government as a partner," says Michael Vatis, a former FBI official who is now director of the Institute for Security Technology Studies at Dartmouth College. In turn, he adds, government can share information about IT security threats and vulnerabilities that might be difficult for CIOs to learn on their own.

Vatis also cautions that government policy could have "potentially negative effects" on the CIO’s job. Therefore, it’s up to CIOs to play a strategic role in shaping the rules through as many channels as possible, including corporate lobbyists and government-industry committees formed to address homeland defense. At the very least, keeping an eye on emerging laws and regulations can help CIOs plan their own cyberdefense strategies and identify opportunities to cooperate with government agencies to protect both corporate and national interests. (See "A Sorry State," Page 46, to learn how IT will help the State Department cope with post-Sept. 11 challenges.)

There are several legislative categories, all under the auspices of homeland defense, wherein policies have already been or will soon be enacted. Here is a look at what is coming and how it may affect the CIO role.

Coordinating Cyberdefense

The high-profile task of advising the government on critical infrastructure protection and information security falls on the National Infrastructure Advisory Council, the corporate advisory board created in October by President Bush. This new council, which includes 30 CEOs and equivalent executives from the corporate world, academia, and state and local governments, will develop a national strategy for cybersecurity and suggest standards and best practices for putting it in place.

Continue Reading

Backup is one of the most frequently performed storage tasks; however, the perceived level of cost and complexity is rising dramatically for an activity that has been in practice for many decades. This Gartner research sponsored by HP + Intel details the challenges associated with the current state of backup and recovery, and presents the top best practices for improving the backup process.
This online eBook provides insight and advice on how to build an effective disaster recovery strategy in the evolving world of virtual infrastructures, while mitigating the impact of so-called 'Black Swan' events in the datacenter. Practical, how-to best practices, real customer success testimonials and links to additional resources.
This report outlines five trends that enterprises are architecting to better equip their DR solutions today including: secondary site configuration and separation, cloud recovery, tiers of applications and causes of disasters.
This paper breaks down attack sources into four categories: external, malicious insiders, accidental insiders, and unknown.
This paper covers power utilization, intelligent power management and industry best practices for energy efficiency. Extreme Networks® takes a lifecycle approach to power efficiency, management and recycling, offering savings to our customers and promoting a greener world.
With increasing data growth, comes increased need for data security.  The existing DLP model, with a focus on compliance/enforcement is not sufficient as the data discovery and classification capabilities are not granular enough.  Read this paper to find how you can efficiently and accurately manage your risk by rapidly inventorying and classifying your data and then developing remediation workflows that support business needs. 
A simple, cost-effective disaster-recovery solution for virtual environments is high on the agenda for IT organizations as they virtualize more business-critical applications with VMware. VMware vCenter™ Site Recovery Manager-the market-leading disaster-recovery product-ensures the simplest and most reliable disaster protection for all virtualized applications. VMware vCenter Site Recovery Manager provides centralized management of recovery plans, enables nondisruptive testing and automates site-failover processes.
Have you been looking to hear about customer's experiences with the new VMware vCenter Site Recovery Manager product? View this webcast to learn about VMware customer, Navicure, and their experiences testing and evaluating the recovery manager, their progress in implementing it in their environment and their advice other customers considering using vCenter.
Virtualizing business-critical applications is an essential step in your journey to the cloud. Microsoft SQL Server, Exchange and SharePoint, and Oracle applications, are often the backbone of business IT. The benefits of virtualizing these applications extend far beyond mere consolidation. Understanding how VMware improves quality of service and agility while reducing costs will help you make the case for taking virtualization to the next level in your company.
Applications are changing - they're increasingly web-oriented, global in nature and run from multiple device types. Additionally, the volume of data is growing exponentially every year. How do you ensure your applications have fast, accurate, up-to-date information in this new world? Modern applications are data-intensive; delivering data the old way using monolithic databases isn't working. What's needed is a modern approach to data. One that scales-out as needed and delivers predictable high performance, but without sacrificing data consistency or integrity.
Real-time, global data updates have become a critical business requirement for financial-services firms. Overnight or hourly batch jobs can cause erroneous results and missed opportunities. New regulatory requirements dictate real-time reporting of liquidity; traders want access to real-time market and risk positions; and the time windows for relevancy of cross-selling and marketing opportunities are getting shorter. To deal with these issues and new requirements, firms need to be able to react quickly to changes in data. Quick reactions require near-instant access to data, risk analysis and deeper computational analysis for effective decision making. View this webcast to learn how to achieve real-time awareness by managing ever-increasing data volumes and transaction rates.
This video webcast is designed to help those with little to no virtualization experience understand why virtualization and VMware are so important to driving down both capital and operational costs. The session will start with the introduction of the key concepts and technologies of virtualization, introduce the vSphere Hypervisor, and build up to an overview of VMware vSphere® 5, the world's most robust and complete virtualization platform. This session will also discuss new solutions such as the vSphere Storage Appliance and VMware GO that are making it easier than ever before to get started with virtualization.
Newsletter Sign-Up »

Receive the latest news test, reviews and trends on your favorite technology topics

Choose a newsletter
  1. View all Newsletters | Privacy Policy
Sponsored Links
Resource Center