<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Information Defense</title>
	<atom:link href="http://www.cybersecurityinformation.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.cybersecurityinformation.com</link>
	<description>Cyber Security and Risk Management Blog</description>
	<lastBuildDate>Fri, 27 Aug 2010 13:53:16 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>Balancing The Information Security Program</title>
		<link>http://www.cybersecurityinformation.com/2010/08/27/balancing-the-information-security-program/</link>
		<comments>http://www.cybersecurityinformation.com/2010/08/27/balancing-the-information-security-program/#comments</comments>
		<pubDate>Fri, 27 Aug 2010 13:51:27 +0000</pubDate>
		<dc:creator>Information Defense Corporation</dc:creator>
				<category><![CDATA[Info D News Releases]]></category>
		<category><![CDATA[Information Security News]]></category>
		<category><![CDATA[Risk Management News]]></category>
		<category><![CDATA[cyber security risk assessment]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[information compromise]]></category>
		<category><![CDATA[Information Defense]]></category>
		<category><![CDATA[it & cyber security risk management]]></category>
		<category><![CDATA[vishing]]></category>

		<guid isPermaLink="false">http://www.cybersecurityinformation.com/?p=924</guid>
		<description><![CDATA[The ability to create, transmit, and store information far exceeds the ability to secure it.  The continued assault on information assets is being perpetrated through sophisticated scams devised by organized crime, foreign government espionage groups, employees, contractors and others. The largely accepted view and standard is that the protection of information assets is a technology [...]]]></description>
			<content:encoded><![CDATA[<p>The ability to create, transmit, and store information far exceeds the ability to secure it.  The continued assault on information assets is being perpetrated through sophisticated scams devised by organized crime, foreign government espionage groups, employees, contractors and others.</p>
<p>The largely accepted view and standard is that the protection of information assets is a technology function and hence in many organizations all &#8220;controls&#8221; are within the area of Information Technology.</p>
<p>While technology is an important aspect of any information security program strategy, it is at best only one of three legs of the footstool. Many information compromises start with threats that arise from weak procedures, and may include intentional or unintentional human acts.</p>
<p>Social engineering is the act of obtaining confidential information through the “art of deception”.  Most people have heard of or experienced phishing attacks through email.  The email entices the recipient to visit a website that downloads malicious software to the user PC or tricks the individual into providing sensitive information such as login credentials to business or personal accounts.</p>
<p>Vishing attacks, which are social engineering exploits delivered by phone, are frequently launched against customer service departments, help desks, and other business functions within corporations.  With caller identification easily spoofed and displaying the desired inbound number on the recipient’s display, the attacker poses as someone they are not in attempt to extract sensitive information.    The goal of the attacker may be to gain access to the company’s infrastructure, bank accounts, personal and private information or a variety of other reasons.  It is hard to image how technology can prevent such attacks if the employee is unaware and untrained.</p>
<p>Organizations that fail to look at risk to their information assets from a global perspective by analyzing business processes, identifying potential exposures, and determining the necessary controls to protect their information assets run a high risk of repeat and long-term compromise by both insiders and external attackers.</p>
<p>A well-balanced plan integrates risk management principles and focuses on a blend of preventative, detective and response measures across people, process and technology.   Establishing a plan starts with awareness at the business leadership level, analysis of the threats, and the development robust business-centric mitigation strategies.    While all compromises cannot be prevented, an organization that prepares will detect malicious activity sooner, limit exposure, protect its brand, and recover in a precise preplanned manner</p>
]]></content:encoded>
			<wfw:commentRss>http://www.cybersecurityinformation.com/2010/08/27/balancing-the-information-security-program/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Information Defense Interviewed by Reputation Communications</title>
		<link>http://www.cybersecurityinformation.com/2010/06/09/information-defense-interviewed-by-reputation-communicationsww/</link>
		<comments>http://www.cybersecurityinformation.com/2010/06/09/information-defense-interviewed-by-reputation-communicationsww/#comments</comments>
		<pubDate>Wed, 09 Jun 2010 21:53:30 +0000</pubDate>
		<dc:creator>Information Defense Corporation</dc:creator>
				<category><![CDATA[Info D News Releases]]></category>
		<category><![CDATA[Information Defense]]></category>
		<category><![CDATA[Information Defense Corporation]]></category>
		<category><![CDATA[Reputation Communications]]></category>

		<guid isPermaLink="false">http://www.cybersecurityinformation.com/?p=898</guid>
		<description><![CDATA[Mr. Marty Schmidt was interviewed by Reputation Communications for their monthly June 2010 Newsletter regarding &#8220;Protecting Your Online Privacy&#8221;.  Reputation Communications based in New York City is a leading organization that assists high profile individuals protect and maintain their online reputations.  A link to the interview can be found at: Reputation Communications June 2010 Newsletter]]></description>
			<content:encoded><![CDATA[<p>Mr. Marty Schmidt was interviewed by Reputation Communications for their monthly June 2010 Newsletter regarding &#8220;Protecting Your Online Privacy&#8221;.  Reputation Communications based in New York City is a leading organization that assists high profile individuals protect and maintain their online reputations.  A link to the interview can be found at:</p>
<p><a title="Reputation Communications June 2010 Newsletter" href="http://www.reputation-communications.com/newsletter/" target="_blank">Reputation Communications June 2010 Newsletter</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.cybersecurityinformation.com/2010/06/09/information-defense-interviewed-by-reputation-communicationsww/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>John Freebairn Joins InfoD Board of Advisors</title>
		<link>http://www.cybersecurityinformation.com/2010/05/24/john-freebairn-joins-information-defense-board-of-advisors/</link>
		<comments>http://www.cybersecurityinformation.com/2010/05/24/john-freebairn-joins-information-defense-board-of-advisors/#comments</comments>
		<pubDate>Mon, 24 May 2010 17:25:34 +0000</pubDate>
		<dc:creator>Information Defense Corporation</dc:creator>
				<category><![CDATA[Info D News Releases]]></category>
		<category><![CDATA[InfoD]]></category>
		<category><![CDATA[Information Defense]]></category>
		<category><![CDATA[Information Defense Corporation]]></category>
		<category><![CDATA[John Freebairn]]></category>

		<guid isPermaLink="false">http://www.cybersecurityinformation.com/?p=889</guid>
		<description><![CDATA[Information Defense Corporation “InfoD” is pleased to announce the addition of Mr. John Freebairn, President of Freebairn and Company, a full service marketing and branding firm based in Atlanta, Georgia to its Board of Advisors. Mr. Freebairn brings to us a wealth of expertise and experience, as well as a solid foundation of accountability, creativity [...]]]></description>
			<content:encoded><![CDATA[<p>Information Defense Corporation “InfoD” is pleased to announce the addition of Mr. John Freebairn, President of Freebairn and Company, a full service marketing and branding firm based in Atlanta, Georgia to its Board of Advisors.  Mr. Freebairn brings to us a wealth of expertise and experience, as well as a solid foundation of accountability, creativity and results, says Philip L. “Phil” Hayden, CEO of InfoD.  To attract the quality of individual that John represents, speaks volumes about our team, our values and our strategic direction.  John’s strengths in branding, messaging, business building, coupled with his strong principle based pragmatic approach, will add additional strength to our already exceptional team.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.cybersecurityinformation.com/2010/05/24/john-freebairn-joins-information-defense-board-of-advisors/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Information Defense at ASIS NYC Event</title>
		<link>http://www.cybersecurityinformation.com/2010/05/03/information-defense-at-asis-nyc-event/</link>
		<comments>http://www.cybersecurityinformation.com/2010/05/03/information-defense-at-asis-nyc-event/#comments</comments>
		<pubDate>Mon, 03 May 2010 13:28:43 +0000</pubDate>
		<dc:creator>Information Defense Corporation</dc:creator>
				<category><![CDATA[Info D News Releases]]></category>
		<category><![CDATA[ASIS NYC]]></category>
		<category><![CDATA[Information Defense]]></category>
		<category><![CDATA[Jacob Javits Security Events]]></category>

		<guid isPermaLink="false">http://www.cybersecurityinformation.com/?p=864</guid>
		<description><![CDATA[Mr. Marty Schmidt was a featured panel speaker at the ASIS NYC Chapter event meeting on April 30, 2010 at the Jacob Javits Center in New York.  Along with five other panel members each speaking on various topics from counterfeit pharmaceuticals to anti money laundering, Marty spoke about the threats that organizations are facing in [...]]]></description>
			<content:encoded><![CDATA[<p>Mr. Marty Schmidt was a featured panel speaker at the ASIS NYC Chapter event meeting on April 30, 2010 at the Jacob Javits Center in New York.  Along with five other panel members each speaking on various topics from counterfeit pharmaceuticals to anti money laundering, Marty spoke about the threats that organizations are facing in protecting their intellectual property.</p>
<p>&#8220;Organized crime, foreign government sponsored espionage, and employees with a growing sense of entitlement are all part of the growing menace that companies must recognize and address&#8221;, said Mr. Schmidt.  &#8221;In order to begin to move forward organizations must start with the engagement of their governance and executive management teams.  Risk management principles must apply beyond the standard technology purview&#8221;.</p>
<p>The event was well attended by ASIS security professionals and a larger variety of vendors.  The event was the ASIS NYC 20th annual event.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.cybersecurityinformation.com/2010/05/03/information-defense-at-asis-nyc-event/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>How Rootkits Are Threatening Smartphone Security</title>
		<link>http://www.cybersecurityinformation.com/2010/03/17/security-threats-for-cell-phone-users/</link>
		<comments>http://www.cybersecurityinformation.com/2010/03/17/security-threats-for-cell-phone-users/#comments</comments>
		<pubDate>Wed, 17 Mar 2010 14:33:33 +0000</pubDate>
		<dc:creator>Marty Schmidt</dc:creator>
				<category><![CDATA[Featured Videos]]></category>
		<category><![CDATA[cyber risk]]></category>
		<category><![CDATA[cyber security]]></category>
		<category><![CDATA[espionage]]></category>

		<guid isPermaLink="false">http://www.cybersecurityinformation.com/?p=849</guid>
		<description><![CDATA[Think your cell phone conversations are secure?  Think again&#8230;.computer scientists at Rutgers University have shown how a familiar type of personal computer security threat can now attack new generations of smart mobile phones,]]></description>
			<content:encoded><![CDATA[<p>Think your cell phone conversations are secure?  Think again&#8230;.computer scientists at Rutgers University have shown how a familiar type of personal computer security threat can now attack new generations of smart mobile phones,</p>
<p><object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" width="425" height="350" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0">
<param name="src" value="http://www.youtube.com/v/UZgf32wVTd4" /><embed type="application/x-shockwave-flash" width="425" height="350" src="http://www.youtube.com/v/UZgf32wVTd4"></embed></object></p>
]]></content:encoded>
			<wfw:commentRss>http://www.cybersecurityinformation.com/2010/03/17/security-threats-for-cell-phone-users/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Google and NSA an Unlikely Duo</title>
		<link>http://www.cybersecurityinformation.com/2010/02/20/google-nsa-unlikely-duo/</link>
		<comments>http://www.cybersecurityinformation.com/2010/02/20/google-nsa-unlikely-duo/#comments</comments>
		<pubDate>Sun, 21 Feb 2010 02:50:12 +0000</pubDate>
		<dc:creator>Marty Schmidt</dc:creator>
				<category><![CDATA[Featured Videos]]></category>
		<category><![CDATA[cyber threat risk mitigation]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[information compromise]]></category>
		<category><![CDATA[information security risk management]]></category>

		<guid isPermaLink="false">http://www.cybersecurityinformation.com/?p=820</guid>
		<description><![CDATA[According to the Associated Press the National Security Agency and Google are reportedly teaming up in an effort to combat cyber attacks.]]></description>
			<content:encoded><![CDATA[<p>According to the Associated Press the National Security Agency and Google are reportedly teaming up in an effort to combat cyber attacks.</p>
<p><object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" width="425" height="350" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0">
<param name="src" value="http://www.youtube.com/v/5WiD4NAsmow" /><embed type="application/x-shockwave-flash" width="425" height="350" src="http://www.youtube.com/v/5WiD4NAsmow"></embed></object></p>
]]></content:encoded>
			<wfw:commentRss>http://www.cybersecurityinformation.com/2010/02/20/google-nsa-unlikely-duo/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Rising Threat from Cyber Attacks</title>
		<link>http://www.cybersecurityinformation.com/2010/02/20/rising-threat-from-cyber-attacks/</link>
		<comments>http://www.cybersecurityinformation.com/2010/02/20/rising-threat-from-cyber-attacks/#comments</comments>
		<pubDate>Sat, 20 Feb 2010 21:04:32 +0000</pubDate>
		<dc:creator>Information Defense Corporation</dc:creator>
				<category><![CDATA[Cyber Crime News]]></category>
		<category><![CDATA[Risk Management News]]></category>
		<category><![CDATA[data theft]]></category>
		<category><![CDATA[electronic compromise]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[Security Breach]]></category>

		<guid isPermaLink="false">http://www.cybersecurityinformation.com/?p=792</guid>
		<description><![CDATA[The threat from cyber attacks is on the rise.  On Friday, the Wall Street Journal reported that 2,411 companies had been the victims of a hacking operation that was part of an 18-month global attack that exposed vast amounts of personal and corporate secrets and intellectual property to theft. The attacks, which originated in Europe [...]]]></description>
			<content:encoded><![CDATA[<p>The threat from cyber attacks is on the rise.  On Friday, the Wall Street Journal reported that 2,411 companies had been the victims of a hacking operation that was part of an 18-month global attack that exposed vast amounts of personal and corporate secrets and intellectual property to theft.</p>
<p>The attacks, which originated in Europe and China, targeted major corporations and government agencies including pharmaceutical giants Merck &amp; Co. and Cardinal Health.  The operation has affected some 75,000 computers in 196 countries.</p>
<p>Now is the time to examine your company’s business practices to make sure that your critical data and intellectual property are safe from complex electronic and socially initiated thefts.  Lapses in appropriate security measures can expose your company to major financial losses, both from theft and from civil lawsuits filed on behalf of clients or customers affected by the breach.</p>
<p>To protect your company and your shareholders from such losses or litigation, your company’s security practices must be up to date and in compliance with state and federal regulations.  Your IT security practices should also be part of your overall corporate governance, led by your general counsel so that this information is protected by attorney client privilege.</p>
<p>Information Defense Corporation and Interfor Inc. a leading global due diligence and investigations firm are partnered to offer our clients unique and<a href="http://www.cybersecurityinformation.com/2009/04/07/information-defense-corporation-and-interfor-inc-partner-to-enhance-cyber-investigations-and-preventative-solutions/"> comprehensive security solutions</a>.  From physical security, asset recovery and crisis management to risk based and technical assessments of electronic assets and controls, the team is positioned to work with your company’s legal and combined security personnel to keep your assets, personnel, intellectual property and trade secrets safe or to help restore the integrity of your operations with incident response and forensics and other measures following a security breach.</p>
<p>For more information on the services offered by our team effort please use our contact pages here:  <a href="http://www.cybersecurityinformation.com/contact-us/">Contact Us</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.cybersecurityinformation.com/2010/02/20/rising-threat-from-cyber-attacks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cyber Security Is First The Lawyer&#8217;s Responsibility To Corporate Clients</title>
		<link>http://www.cybersecurityinformation.com/2010/02/16/cyber-security-is-first-the-lawyers-responsibility-to-corporate-clients/</link>
		<comments>http://www.cybersecurityinformation.com/2010/02/16/cyber-security-is-first-the-lawyers-responsibility-to-corporate-clients/#comments</comments>
		<pubDate>Tue, 16 Feb 2010 17:09:01 +0000</pubDate>
		<dc:creator>Information Defense Corporation</dc:creator>
				<category><![CDATA[Risk Management News]]></category>
		<category><![CDATA[corporate governance cyber security]]></category>
		<category><![CDATA[cyber security]]></category>
		<category><![CDATA[cyber security compliance]]></category>

		<guid isPermaLink="false">http://www.cybersecurityinformation.com/?p=783</guid>
		<description><![CDATA[At first blush this proposition seems counterintuitive.  Isn&#8217;t cyber security the domain of the corporation&#8217;s CIO?  Let&#8217;s not be mistaken the CIO or CISO play major roles but the answer still is No. Three critical reasons why include: (1) the CIO can neither create nor maintain the attorney client privilege without general counsel&#8217;s direction of [...]]]></description>
			<content:encoded><![CDATA[<p>At first blush this proposition seems counterintuitive.  Isn&#8217;t cyber security the domain of the corporation&#8217;s CIO?  Let&#8217;s not be mistaken the CIO or CISO play major roles but the answer still is <strong>No</strong>.</p>
<p>Three critical reasons why include:</p>
<p>(1) the CIO can neither create nor maintain the attorney client privilege without general counsel&#8217;s direction of the corporation&#8217;s cybersecurity efforts;</p>
<p>(2) for the same reasons, general counsel, not the CIO, is responsible for corporate governance at large, and cyber security is first and foremost a corporate governance issue; and</p>
<p>(3) the role of interpreting and directing action to meet federal and state compliance statutes, covering a wide variety of legal mandates from privacy, to identity theft, to notifications requires legal counsel to direct actions that protect corporate interests and meet the legal obligations.</p>
<p>The consequences of information compromises present business issues that require legal planning and action to mitigate the risks to the corporation and its shareholders.</p>
<p>Now is the time to be proactive and lay the groundwork to protect legal interests, promote strong corporate governance, and reduce the potential of legal missteps, significant litigation and other actions arising from information compromise.</p>
<p>Please contact us to learn more about our comprehensive solutions that will appropriately position your organization to address the growing business risks created by information compromise.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.cybersecurityinformation.com/2010/02/16/cyber-security-is-first-the-lawyers-responsibility-to-corporate-clients/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Citibank Computers Hacked by Russian Cyber Gang</title>
		<link>http://www.cybersecurityinformation.com/2009/12/23/citibank-computers-hacked-by-russian-cyber-gang/</link>
		<comments>http://www.cybersecurityinformation.com/2009/12/23/citibank-computers-hacked-by-russian-cyber-gang/#comments</comments>
		<pubDate>Wed, 23 Dec 2009 16:29:52 +0000</pubDate>
		<dc:creator>Information Defense Corporation</dc:creator>
				<category><![CDATA[Cyber Crime News]]></category>
		<category><![CDATA[Information Security News]]></category>
		<category><![CDATA[Citibank]]></category>
		<category><![CDATA[Juval Aviv]]></category>

		<guid isPermaLink="false">http://www.cybersecurityinformation.com/?p=729</guid>
		<description><![CDATA[In additional cyber security news, the Wall Street Journal reported today that Citibank was the victim of a hack by what appears to be a Russian cyber gang that resulted in the loss of tens of millions of dollars. The attack also targeted two other entities, at least one of which is a government agency.  [...]]]></description>
			<content:encoded><![CDATA[<p><strong>In additional cyber security news, the Wall Street Journal reported today that Citibank was the victim of a hack by what appears to be a Russian cyber gang that resulted in the loss of tens of millions of dollars.</strong></p>
<p>The attack also targeted two other entities, at least one of which is a government agency.  The attack was discovered over the summer, but could have taken place as much as a year earlier.  The case is being investigated by the FBI with assistance from the NSA, the Department of Homeland Security and Citigroup which is partially owned by the US Government.</p>
<p>Citigroup denies that the hack took place and there has been no comment from any government agency, but the report further details that the hack was discovered when officials noticed suspicious internet traffic coming from email addresses known to be owned by the Russian Business Network, a gang that has sold software used to access US government systems.  The gang had been silent for two years, but is suspected in other recent attacks.</p>
<p>Beyond the stolen money, a major concern is that the hackers could destroy information, wreaking havoc on the banking system or that once they have infiltrated one bank that they could use that access to get into other banks.</p>
<p>This further illustrates the point that I was making in the previous article that cyber terrorism is a very real threat and that our banking, communications, government and military systems are currently under assault from gangs and even the governments of other countries.</p>
<p>Protecting these systems must be a priority, and the efforts to do so must be coordinated, not a variety of independent efforts directed my multiple agencies.</p>
<p><em><strong>By Juval Aviv, President &amp; CEO of <a href="http://www.interforinc.com/" target="_blank">Interfor Inc</a>, Strategic Partner of Info Defense</strong></em></p>
]]></content:encoded>
			<wfw:commentRss>http://www.cybersecurityinformation.com/2009/12/23/citibank-computers-hacked-by-russian-cyber-gang/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Obama Appoints Cyber Security Czar &#8211; Howard A Schmidt</title>
		<link>http://www.cybersecurityinformation.com/2009/12/23/obama-appoints-cyber-security-czar/</link>
		<comments>http://www.cybersecurityinformation.com/2009/12/23/obama-appoints-cyber-security-czar/#comments</comments>
		<pubDate>Wed, 23 Dec 2009 16:27:43 +0000</pubDate>
		<dc:creator>Information Defense Corporation</dc:creator>
				<category><![CDATA[Cyber Crime News]]></category>
		<category><![CDATA[Information Security News]]></category>
		<category><![CDATA[cyber security]]></category>
		<category><![CDATA[Cyber Security Czar]]></category>
		<category><![CDATA[Howard A Shmidt]]></category>
		<category><![CDATA[Juval Aviv]]></category>

		<guid isPermaLink="false">http://www.cybersecurityinformation.com/?p=727</guid>
		<description><![CDATA[Seven months into his term, President Obama has appointed Howard A. Schmidt to the role of cyber security chief.  He will report to the National Security Council and will have regular access to the President. Mr. Schmidt is an industry veteran who previously served the Bush White House.  He was formerly the chief information security [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Seven months into his term, President Obama has appointed Howard A. Schmidt to the role of cyber security chief.  He will report to the National Security Council and will have regular access to the President.</strong></p>
<p>Mr. Schmidt is an industry veteran who previously served the Bush White House.  He was formerly the chief information security officer at Ebay, the chief information officer at Microsoft and worked in computer security for the Air Force, the Army and the FBI.  The Obama administration is the first to promote this position to the level of a White House Director.</p>
<p>Cyber security has increasingly become a priority in the wake of a growing number of cyber attacks and reports of vulnerabilities in business and military computing systems.  Obama was brought face to face with the issue during his campaign for the presidency when his campaign’s computer security was breached exposing critical information ranging from policy positions to travel plans.</p>
<p>Mr. Schmidt will be facing long running turf wars being waged among the Pentagon, the <a href="http://topics.nytimes.com/top/reference/timestopics/organizations/n/national_security_agency/index.html?inline=nyt-org" target="_blank">National Security Agency</a>, the <a href="http://topics.nytimes.com/top/reference/timestopics/organizations/h/homeland_security_department/index.html?inline=nyt-org" target="_blank">Department of Homeland Security </a>and other agencies over the conduct of defensive cyberoperations.</p>
<p>He and others serving in cyber security positions will also be trying to work out how to conduct offensive cyberoperations, and what the rules and tactics should be.  One of the biggest fears in carrying out offensive attacks on computer systems is unintended consequences that damage civilian infrastructure.</p>
<p>In 2003 for example, the Bush administration had the technology to launch a cyber attack that would freeze the bank accounts of Saddam Hussein and cripple Iraq’s economy, giving Hussein no money for war supplies or to pay troops.  The attack never happened though because of the fear that the effects of the attack would not be limited to Iraq and would create world-wide financial havoc.  Attacks were carried out on Iraq’s military and government communications system, which resulted in cellular and satellite telephone service being shut off on the countries surrounding Iraq for several days.</p>
<p>I am heartened to see that the issue of cyber security is being taken more seriously by this administration and that attempts are finally being made to coordinate the efforts to protect our nation’s computer systems.  Cyber warfare has become a very clear and present danger, one that could have deadly consequences leading to a further destabilization of our country’s economy and even the loss of lives without one terrorist ever stepping foot on our soil.</p>
<p>The vulnerabilities of our banking, government and military computer systems, the Federal Aviation Administration systems as well as the systems that are used for general communication and e-commerce have not been addressed sufficiently to this point and those vulnerabilities have led to dangerous security breaches.</p>
<p>In my opinion, the one issue that must be addressed immediately, particularly for the military, is that only about 1/5 of computer chips are produced in secure American facilities.  Most computer chips, even those that are produced by American companies are produced overseas.</p>
<p>In fact only about 2% of the computer chips that are used in our military’s communications systems and weaponry are being produced in America.  This is a major cause for concern as chips produced in unsecured plants can be infected with malicious software or Trojan horses that allow computer criminals to pilfer information or to even take over control of the machine that is being powered by the infected chip.  Retired Army General Wesley Clark has referred to these types of infected chips as “the ultimate sleeper cell” and I agree.  Domestic production must be supported and encouraged if we are to make a serious effort at protecting vulnerable systems.</p>
<p>Clearly, Mr. Schmidt has his work cut out for him.  I wish him luck.</p>
<p><em><strong>By Juval Aviv, President &amp; CEO of <a href="http://www.interforinc.com" target="_blank">Interfor Inc</a>, Stategic Partner of Info Defense<br />
</strong></em></p>
]]></content:encoded>
			<wfw:commentRss>http://www.cybersecurityinformation.com/2009/12/23/obama-appoints-cyber-security-czar/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
