Contracts

NIST issues new guidelines on protecting unclassified data in government systems

The framework considers the private sector’s increased role in helping the federal government in day-to-day operations and aims to reduce the risk of supply chain cyberattacks.

Companies

Tech firms pledge to release products with built-in security features

The Cybersecurity and Infrastructure Security Agency has been trying to get companies to agree to its "secure by design" paradigm for months.

Companies

CISA's proposed framework for cyber incident reporting rules includes subpoena power

The rules also require that covered entities that pay ransomware hackers to regain control of their systems and data must report such payments to the Cybersecurity and Infrastructure Security Agency.

Contracts

CISA rolls out secure software attestation form

A repository for software attestation submissions will be available later in March.

Contracts

IARPA makes awards in 4-year effort studying hacker psychology

The program greenlit research contracts for technologies that would use psychology to thwart hackers.