NIST Seeking Feedback for a New Cybersecurity Framework and Supply Chain Guidance

This article has been indexed from

CySecurity News – Latest Information Security and Hacking Incidents

 

Addressing the SolarWinds disaster and other major third-party assaults targeting vital infrastructure, the National Institute of Standards and Technology is due to publish advice for securing organizations against supply chain breaches. [Special Publication 800-161] is the most important cybersecurity supply chain risk management guidance.’ Angela Smith of the National Institute of Standards and Technology (NIST) stated. 
Angela Smith of the NIST talked at an Atlantic Council session on Tuesday about initiatives to protect information and communications technology supply chains. The first big revised version will be released by the end of next week, so stay tuned if you haven’t already reviewed some of the public drafts. 
The NIST upgrade comes as the Biden administration tries to use the government’s procurement power to prod contractors such as IT management firm SolarWinds and other software vendors to improve the security of their environments. 
Vendors of the underlying information and communications technology are pitching in and the Cybersecurity and Infrastructure Security Agency consider expanding private-sector partnerships and taking a more comprehensive approach to tackling dangers to critical infrastructure. 
Future guidelines on trying to manage cybersecur

[…]
Content was cut in order to protect the source.Please visit the source for the rest of the article.

Read the original article:

Liked it? Take a second to support IT Security News on Patreon!
Become a patron at Patreon!