Hybinette
November 2002 Newsletter

Friday, November 15, 2002 Issue 10   VOLUME 1 ISSUE 10  
HOME
LETTERS

There are no letters for this article. To post your own letter, click Post Letter.

[POST LETTER]
CONTENTS
NAS and SAN Explained
Protect Yourself from “Friendgreeting” E-Card Worm
Hybinette’s Alpha Upgrade Program is Practical and Economical
Opix Media City Enterprise Edition Available Now
Hybinette Briefs
R.R. Donnelley Gets Directory Contract
Russia could become one of the top 10 US oil suppliers
Feds Release Guidelines for Securing IT
Feds Release Guidelines for Securing IT

The federal government released for comment a new set of guidelines for securing computer systems and networks.

Although the guidelines are intended for use by government agencies, officials at the National Institute of Standards and Technology are hoping that enterprises will adopt them as well.

The guidelines spell out in detail the method that security specialists should use in assessing the overall security, integrity and availability of a system. It also lays out steps for selecting and deploying security controls.

Titled “Guidelines for the Security Certification and Accreditation of Federal Information Technology Systems,” the document enumerates three separate certification levels for federal systems: Security Certification Level 1 (SCL-1), SCL-2 and SCL-3. The levels are based on the amount of concern for security, confidentiality and availability that network operators have for a particular system.

Each level has its own verification techniques, ranging from a checklist-based independent security review and personnel interview for SCL-1 to a system design analysis, regression analysis and penetration testing for SCL-3.

NIST Is also planning to hold a meeting in early 2003 to consider developing a way to test the technical competence of third parties to conduct the security reviews spelled out in the new guidelines.

“This is a very significant step toward making the federal government’s computer systems more secure,” said Phillip Bond, undersecretary for technology at the Department of Commerce in Washington, which oversees NIST. “It gives agencies a comprehensive, yet flexible way to ensure that their computers are as safe as they should be.”

The guidelines are open for public comment through Jan. 31, and are available at http://csrc.nist.gov/publications/drafts.html .

Source: Taken from www.eweek.com


[PRINTER FRIENDLY VERSION]
Published by Hybinette, Inc.
Copyright © 2002 Hybinette, Inc.. All rights reserved.
Copyright 2001 All Rights Reserved.
TELL A FRIEND
Powered by iMakeNews.com