Latest news

The bill is sponsored by the independent Connecticut senator Joe Lieberman, chairman of the Senate Homeland Security Committee, and four of his Democratic colleagues, and it focuses on building a public-private partnership that would enable a higher level of protection for critical infrastructure in this day and age where cyber attacks are omnipresent.
The Cybersecurity Act of 2012 was first introduced back in February, but because of harsh criticism from both politicians and civil society organizations, the bill was pulled back to be rewritten.
The Electronic Frontier Foundation (EFF) - the digital rights advocacy and legal organization based in San Francisco - analyzed the February proposal and identified a number of privacy-related issues and problems that would empower the rise of a digital Big Brother.
The initial bill was based on over three years of legislative preparations and countless hours of consultations between the members of the Senate, but it seems a couple of extra months were needed to make the proposed law more acceptable to a larger number of decision makers.
Some of the notable changes in the revised legislation include a better specification of the term "cybersecurity threat" (which prevents broad interpretations and in some way pleases organizations fighting for privacy and free speech online), the swap of the word “required“ with “voluntary” when talking about participation of critical infrastructure owners in cybersecurity programs, and making the reporting of cyber security incidents related to the systems in question mandatory, since attacks against them can lead to catastrophic consequences.
The bill’s sponsors hoped to come to a bi-partisan consensus on the proposal, but even with all the revisions a number of initial critics are still against it.
One of the most vocal critics of the bill is the Senate Armed Services Committee ranking member John McCain. As the majority of USA's critical infrastructure is owned by the private sector, he is against any type of State intervention in things like setting up security-related standards.
The bill’s sponsors are trying to push for a vote on the legislation as soon as possible - Senator Lieberman even said that the bill won't survive if the Senate doesn't consider it before the upcoming August recess. In a floor speech, Mr. McCain clearly objected to this pressure and added a remark that "it is not the right way to move forward with little or no opportunity for debate and amendments".
Spotlight

Is it time to professionalize information security?
Posted on 23 May 2013. | The issue of whether or not information security professionals should be licensed to practice has already been the topic of many a passionate debate.

Review: Logging and Log Management
Posted on 22 May 2013. | Every security practitioner should be aware of the overwhelming advantages of logging and perusing logs for discovering system intrusions. But logging and log management comes with its own set of difficulties.

Experts highlight top data breach vulnerabilities
Posted on 22 May 2013. | Hidden vulnerabilities lie in everyday activities that can expose personal information and lead to data breach, including buying gas with a credit card or wearing a pacemaker.

A closer look at Mega cloud storage
Posted on 21 May 2013. | Once a novelty, nowadays many cloud storage services are fighting for their piece of the market in the virtual world. Mega offers 50GB of free space with great pricing on Pro accounts.

The CSO perspective on healthcare security and compliance
Posted on 20 May 2013. | Randall Gamby is the CSO of the Medicaid Information Service Center of New York. In this interview he discusses healthcare security and compliance challenges and offers a variety of tips.
By subscribing to our early morning news update, you will receive a daily digest of the latest security news published on Help Net Security.
With over 500 issues so far, reading our newsletter every Monday morning will keep you up-to-date with security risks out there.





