SC World Congress: Invest in cybersecurity

The United States is falling behind other nations in terms of cyberdefense because security providers are focusing on creating features instead of innovating, a leading information assurance expert said this week at SC World Congress in New York.

Not nearly enough money is being spent on research and development, said Richard Marshall, senior information assurance representative for the Office of Legislative Affairs at the National Security Agency. Instead, providers and end-users are caught up in "feature-itis" and don't demand inherently robust solutions.

To stem the tide, government, industry and academia must collaborate to fund emerging cybersecurity technologies, Marshall said.

"We're polishing stones instead of creating stones," he said. "If we don't do something in the near term, there won't be a long term. We are running out of time."

One way to promote better data security recognition is by organizations better valuing their information assets, said Kirsten Bay Francissen, Marshall's partner on the panel, titled "Building a trusted information supply chain: Lessons learned from the global financial crisis."

Francissen, who is principal of professional services firm KBF Ltd., said businesses must implement strong risk management and corporate governance programs.

Sign up to our newsletters

More in News

House Intelligence Committee OKs amended version of controversial CISPA

House Intelligence Committee OKs amended version of controversial ...

Despite the 18-to-2 vote in favor of the bill proposal, privacy advocates likely will not be satisfied, considering two key amendments reportedly were shot down.

Judge rules hospital can ask ISP for help in ID'ing alleged hackers

Judge rules hospital can ask ISP for help ...

The case stems from two incidents where at least one individual is accused of accessing the hospital's network to spread "defamatory" messages to employees.

Three LulzSec members plead guilty in London

Ryan Ackroyd, 26; Jake Davis, 20; and Mustafa al-Bassam, 18, who was not named until now because of his age, all admitted their involvement in the hacktivist gang's attack spree.