By Rutrell Yasin
Fifteen months in the making, the classified report contains 34 recommendations for protecting telecommunications, electric power, transportation, oil and gas, banking and finance, water supply systems, emergency services, and government services.
The recommendations include doubling federal research on computer security to $500 million next year and increasing it by 20 percent in each subsequent year; increased sharing of information about computer-security breaches between industry and government; government compliance with security standards to be set by the National Institute of Standards and Technology and the National Security Agency; and the formation of a "national infrastructure advisory council," composed of CEOs of banks and utilities, which will meet regularly with U.S. cabinet officers.
The commission, which was established by the Clinton administration in July 1996, worked hard to get private-sector input for the report, according to Nancy Wong, a PCCIP commissioner. Wong is on leave from the Pacific Gas & Electric Co., where she is manager of the department of information assets and risk management.
Cyberawareness
"The protection of valuable assets is a shared responsibility between private industry and government," Wong said. "The government can lead by example by shoring up [security] on its own systems." But it can also define what needs to be protected and can learn from the experience of private industry, she said.
Security company executives said they are counting on the report to raise general awareness of the need for security policies and comprehensive tool sets.
"The report is a good start in addressing [the nation's] security needs. The increase in attacks is driven by the growth of the Internet," said Christopher Klaus, president and CEO of Internet Security Systems, a supplier of network-assessment and intrusion-detection tools. "A few years ago, it required skill [to break into a network]. Now, there are more GUI-driven attacks."
CryptoSoft GmbH
Feedback: webmaster@cryptosoft.com
Copyright ©1995-1998 Cryptosoft GmbH
All Rights Reserved