Connect with us

Politics

House’s zero trust journey is more process than technology update

Published

on


The House of Representatives started its journey to push security to the edge by first looking internally.

With hundreds of end points in member offices across the country, House technology leaders had to take stock of what cyber tools they were already using.

Jamie Crotts, the chief information officer for the House of Representatives, said that initial assessment of its current state of cyber tools and how they fit into the zero trust model was the first step in their improving the overall cyber posture of the lower chamber of Congress.

Jamie Crotts is the chief information officer for the House of Representatives.

“We plan on a three-year technology roadmap cycle. So it’s about understanding which step is the next best step to get us the most benefit for the architecture and for our users. And from that point, we adjusted our roadmap and our planning,” Crotts said on Ask the CIO. “We began budgeting for some of the larger items that are going to be more long term, and we began implementing things that we could do immediately, that were more quick wins, if you will, and that’s still where we are.”

While the House doesn’t have to meet the executive branch mandates under zero trust, Crotts said the maturity models developed by the Cybersecurity and Infrastructure Security Agency and Defense Department are helping to guide their efforts.

The initial zero trust assessment mapped against their current IT roadmap, which is broader than just cybersecurity, led to some adjustments for current and future planning as well as where to invest its limited budget.

Crotts said that mapping led the team to realize that achieving initial capabilities under zero trust was as much as about adjusting the way they did cybersecurity as it was about new tools.

“Looking at it from the users, devices, applications and the network, every single layer of that, we examined how our efforts were going to be able to make improvements. When we looked at the assessment and we saw we can get better at, say, provisioning of devices for users, we can do things a little bit differently that will get a slightly more secure device in their hands in a slightly faster time frame. That is something that would be low hanging fruit for us,” he said. “If it’s as simple as adjusting the way we do imaging to make sure it’s inclusive of certain types of tools, we would be able to take care of that without having to plan for a long-term investment that wasn’t already there. We’re not buying a new tool. We’re adjusting an existing process, and that’s most of our quick wins.”

Flexibility remains key to meeting cyber needs

At the same time, Crotts said they are optimizing existing cyber tools to push them closer key areas of zero trust.

“We spend a lot of money on these tools, whether they be cyber tools, specifically, monitoring analysis tools or general IT productivity tools, applications and suites. But we rarely take the time after we have purchased and implemented it to step back and say, ‘Are there other toggles we could adjust that give us a bit more benefit?’ So, part of our assessment from the zero trust side did exactly that,” he said. “It pointed out that we have some investments in tools giving us a bit of an overlap, which can result in a cost savings. If we identify turning on this widget and this tool actually allows us to stop buying this other tool, that’s a win. That’s essentially how we spent the last year, looking at the tools that we’ve already invested in reducing technical debt is something everybody’s trying to do. So every quick win we can get is amazing.”

Like most IT organizations, the House budgets on a multi-year cycle, so Crotts said they do their best to guess what cyber tools or IT applications they will need in a few years. He said having flexibility in existing tools and processes helps close gaps that otherwise they would have to wait for funding to address.

One example is how the House implemented cloud access security broker (CASB) capabilities.

“It might not be doing exactly what we want it to be doing, or we want to look at the way we do our web access firewalls a little bit differently or routing traffic differently coming from the far edge, things like that take a little bit more time,” he said. “We have to do that thorough analysis. We have to make an investment once we pick the right tool that’s going to work for our architecture. That’s really how we chalked up all of those things, so not necessarily by the pillar that they naturally belong in, but across all the pillars, where can we actually have the most innovative benefit for the House?”

With some initial zero trust capabilities implemented, Crotts said the next focus area is around the data pillar.

Focusing on the data pillar of zero trust

He said his team is spending a lot of time understanding their data governance model.

“Data is data, but the importance of that data is unique to the organization that creates it. Nowhere is that more true than in the legislative branch, where we have different types of data that other people don’t have to deal with, things like legislation data that’s protected by the Speech and Debate Clause of the Constitution. Those types of non-traditional data governance problems, if you will, are things that we’re trying to wrap our minds around,” Crotts said. “How do you do proper tagging of that kind of data? How do you understand the flow of that data throughout your enterprise? When it’s not as simple as tagging a Social Security Number automatically because I know what that looks like, but for some of these more ethereal concepts, it takes a real understanding.”

Crotts added that means analyzing current and possibly future tools to help manage the data as well as creating schemas that let data move securely and efficiently through the network.

“A lot of good security practices come back to the fundamentals of, can you invoke it in a policy and actually enforce it? So once we understand the data types in the data flow, and we get sort of the organizational agreement on, ‘Yes, these are the things and this is the level at which we want to want and need to protect them,’” he said. “Then setting up that structure becomes the next challenge, if you will. A lot of best security practices can be put in play there, but like everything else, you need to define it first.”

Once the House can define and manage its data, then applying a more strict version of privileged access management to further protect systems and data will be possible.

At the same time, Crotts said his team has to understand their users’ needs, of which there are thousands of people on Capitol Hill and across 900 district offices that need access to systems and data, to balance their experience with the cybersecurity requirements.

“A proper security tool configured well does not have to interrupt workflow. And that’s really key to understanding those challenges,” he said. “Every time a user has to stop and log into something else or authenticate or pull up their token numbers and reauthenticate, you have lost them. They become upset with the process, even if it’s perfectly efficient, you’ve interrupted them. You should only do that as little as possible. But then you need to trust that once they are logged into that session, that you’ve got the other controls in place to make sure that the accesses prevent them from moving laterally to a place where they shouldn’t be. If you’ve got all that in place, then you can trust that login and you don’t have to go through all those other processes.”

The post House’s zero trust journey is more process than technology update first appeared on Federal News Network.

Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Politics

UPDATE: President Trump Announces Major Deal with Drugmaker AstraZeneca, Including $50 BILLION Investment

Published

on

By

President Trump on Friday announced another deal with UK-based pharmaceutical company AstraZeneca to lower drug costs for Americans on Medicaid. 

The drug manufacturer will now sell prescription drugs to patients at Most Favored Nations prices through TrumpRx.gov.

This comes after the President struck a deal with Pfizer to also provide Americans with heavily discounted prescription drugs at most-favored-nation prices.

President Trump Responds to TGP’s Conradson’s Question – SLAMS Biden for Stealing Credit for Insulin Price Cap After Announcing Major Drug Discount Deal (VIDEO)

Trump made the announcement on AstraZeneca in the Oval Office on Friday, where he touted his efforts to lower drug costs during his first term and announced Most Favored Nations pricing from "the largest pharmaceutical manufacturer in the United Kingdom."

"I had it going very well in my first term, but we were interrupted by rigged elections, so I was unable to carry it forward," the President noted.

Trump also highlighted AstraZeneca's plans to build a new plant in Charlottesville, Virginia, where they broke ground on Thursday, investing $50 billion in U.S. manufactuting, he said. "It's going to have 3,600 jobs just to begin with, and that's going to be a fantastic plant," Trump said.

Trump delivered remarks on the new deal and AstraZeneca's manufacturing plans in America for nearly seven minutes before taking questions from the press. AstraZeneca CEO Pascal Soriot, Health and Human Services Secretary Robert F. Kennedy Jr, CMS Administrator, Mehmet Oz, FDA commissioner Marty McCary, and Virginia Governor Glenn Youngkin joined the President and delivered remarks.

WATCH:

Trump: Today, I'm excited to announce another historic achievement in our quest to lower drug prices for all Americans. You know, prices have come way down. We've gotten prices way down for groceries, for oil, especially today, we broke $60/a barrel. We think the oil is going to be under $2 a gallon very soon. That's about 70% lower than what it was just a year ago. So, that's a big thing. And when the oil comes down, everything comes down. It's pretty beautiful to watch. AstraZeneca, the largest pharmaceutical manufacturer in the United Kingdom, is committing to offer Americans major discounts on their vast catalog of prescription drugs, one of the great companies by the way, and a most favored nation's pricing clause. So, most favored nation is 'reyou going to pay whatever the lowest price anywhere in the world is; that's what you're going to be paying.

And I was, I had it going very well in my first term, but we were interrupted by rigged elections, so I was unable to carry it forward. We started it, but this was something I— one of the reasons I wanted to run again was we had to have favored nations, where the world is not going to be paying just a fraction, just a tiny fraction, of what we were paying. I want to thank CEO Pascal Soriot, very highly respected, one of the most respected men in business and certainly in the industry, for joining us today, as well as Secretary Howard Lutnick, Secretary Robert F. Kennedy Jr., CMS Administrator, Mehmet Oz, FDA commissioner Marty McCary, and Virginia Governor— a man who's done an incredible job and good luck with the upcoming election. I know you're working very hard. I watch you, you're right there. He's out there working. He wants to see that young woman win, and the Attorney General, who I endorsed, etc., etc.— Glenn Youngkin. Thank you very much, Glenn, thank you for being here. For many years, Americans have paid the highest prices anywhere in the world for prescription drugs, by far, by far, many times the amount that other countries are paying. It’s ridiculous. Upon taking office, I signed an executive order to make sure that Americans pay no more for prescription medications than the lowest price for the same drug in other locations and developing nations.

Today, AstraZeneca is committing to offer all of their prescription medications to Medicaid at most favored nations prices. In other words, the lowest price anywhere in the world, that's what we get, a move that will save American taxpayers hundreds of millions of dollars each year. And I tell the story, Glenn, that in my first term, I had the honor of being the first president in 28 years to lower drug prices during the course of the year. And we actually did, and I was so proud of myself. We called a news conference, I announced it. It was 1/8 of 1%, 1/8 of 1%. Now, drug prices are going to be going down 100%, 400%, 600%, 1,000%, in some cases. But for 1/8 of a cent, Bobby, think of that, I was so proud because for 28 years, nobody had done it, and now it’s— I think back to that, I said, I shouldn't have had that news conference. But it’s just true, I was the only one that did it, but it was not very much, and now we're going to get, in Some cases, 1,000% reduction. This could have a huge impact on everything from Social Security to Medicare to Medicaid, anything where they're buying any prescription drugs, it’s going to have an incredible impact. It's going to lower itself greatly. AstraZeneca will also list many of their most popular drugs online at TrumpRX.gov, Trump, RX. I don't know why they put the name Trump. I did not tell him to do it, but I'm honored to let him do it. That's true actually. At heavily reduced most favored nations cost, Americans can expect discounts and, as I said, it could be, in many cases, way over 100%. And as an example, one particular drug that's hot, very hot, 654% on inhalers, COPD and asthma, as well as certain diabetics medications. They're going to be averaging about 654% reduction in price. You believe that one?

The Democrats will say, well, he should have gotten more. It's crazy. In addition, all medications AstraZeneca introduces to the American market, going forward, will also be sold at these heavily discounted rates. Furthermore, AstraZeneca will invest $50 billion in the United States over the next five years for research and development of new drugs and to onshore manufacturing facilities across the country, like the new plant that broke ground yesterday in Charlottesville, Virginia, where the governor attended and they had a tremendous group of people attending. It's going to have 3,600 jobs just to begin with, and that's going to be a fantastic plant. I saw a picture. It's going to be the best, right? Can't get any better. This is a tremendous victory for Virginia and for American patients and for everything, for the country. It's an amazing company to have coming over to the United States in such a big way. That's going to be a big part of the company. Presidents have promised for years to lower the cost of health care, but my administration is actually the first to do it and do it substantially, do it at numbers that nobody thought, even I thought, were not possible, when you think. Think of it, if you got a 1%, 2%, 5%, that's good. You did a good job. We're talking about 100, 200m 300, 500 700, in some cases, some big, big numbers. And the largest drug companies in the world are working with us to make this a reality. And so I look forward to being at your opening of that incredible facility. I hear something, and it's in a great location, one of the beautiful locations.

The post UPDATE: President Trump Announces Major Deal with Drugmaker AstraZeneca, Including $50 BILLION Investment appeared first on The Gateway Pundit.

Continue Reading

Politics

93% of Virginia Democrats Approve of Their Candidates Calling for the Murder of Republicans and Children Dying in Their Mothers’ Arms

Published

on

By

A poll sent out to Democrats this week in Virginia found that 93% of Democrats approved of Republican politicians being murdered and their children dying in their mother’s arms.

They don’t even hide their homicidal dreams anymore.

Democrats are no longer safe to be around. They offer nothing to the country but still want to kill you if you do not support them.

Via Wall Street Apes:

A poll was sent out to Democrat voters in Virginia

The poll asked if the texts sent out by Virginia Attorney General nominee Jay Jones that called for the murder of Republicans, their kids and police we’re disqualifying to run for AG

93% of Democrats responded NO

We cannot coexist with liberals. They literally want us dead

John Fredericks discussed this poll that shows how Virginia Democrats feel about Jay Jones’ texts that Republicans should be killed and their families will suffer.

John Fredericks: So I just got a poll. Just came out last night. Got it when I got up today. This is really going to not sit well with you. A poll was sanctioned by the John Reid for Lieutenant Governor campaign. So I got the insight on it. It hasn’t been released yet.

But here’s the one number that is going to make you sick to your stomach. Here’s the one number – When Democrats in Virginia were asked, did the text that Jay Jones sent to a colleague calling for the assassination of, at that time, Republican Speaker Todd Gilbert, his wife, his kids, hoping his kids would die in her arms so she could suffer, calling for police to die so he could get policy on qualified immunity. When asked the question, Are these texts disqualifying for your candidate for attorney general?

7% of Virginia Democrats said yes. 93 said no. Basically, if you’re a Virginia Democrat, you have no problem with your candidate for attorney general threatening his assassination of a speaker of the House, his wife, his kids, and want to see the kids die in her arms. We have to see cops die in Virginia.

Only 7% reject that.

Here is a copy of the text messages by Jay Jones on murdering Republicans. Jones is running for Attorney General in the state.
Text conversation discussing controversial opinions and personal feelings about political issues, highlighting tension and misunderstandings between participants.

Here is the video, via Wall Street Apes.

Here is the full tweet.

This is next level democracy.

Even the Democrat candidate for governor is OK with this murder talk.

Democrats want you dead.

The post 93% of Virginia Democrats Approve of Their Candidates Calling for the Murder of Republicans and Children Dying in Their Mothers’ Arms appeared first on The Gateway Pundit.

Continue Reading

Politics

BREAKING: Rabid Leftist Who Spat on Ed Martin and Kicked US Marshals Will Avoid Prison Time After Biden Judge Sentences Her to ‘Time Served’

Published

on

By

Emily Gabriella Sommer charged for assaulting Ed Martin

The rabid leftist who spat on DOJ official Ed Martin and kicked US Marshals will avoid prison time after a Biden-appointed federal judge sentenced her to ‘time served.’

The Justice Department sought 18 months in prison for Emily Sommer, the unhinged leftist who spat on Ed Martin and kicked US Marshals earlier this year.

Judge Jia Cobb, a Biden appointee, sentenced Sommer to four months time served. Sommer was sentenced to fourth months time served, home confinement and probation, rather than prison time.

Screenshot from video of senate judiciary committee confirmation hearing featuring Jia M. Cobb to be United States district judge for the district of Columbia. Photo from judiciary senate video

In May, the Justice Department charged Emily Gabriella Sommer for assaulting Ed Martin.

Sommer was charged with violation of 18 U.S.C. § 111 (Assaulting, resisting, or impeding certain officers and employees of the United States).

In June, the DOJ asked the Court to detain Emily Sommer pending trial because she threatened Ed Martin and Jeannine Pirro in a series of X posts.

Emily Sommer was put in a DC jail after threatening a neighbor with a crowbar. She also physically attacked US Marshals after being removed from the courtroom in May.

“Sommer became agitated during her initial appearance in court on May 22 upon learning the prosecutor’s office intended to seek a more serious version of the assault charge that requires forcible contact and carries a maximum sentence of up to 8 years in prison. While in holding after being removed from the courtroom, Sommer allegedly spit and kicked on two U.S. Marshals. A second superseding indictment was filed in June with two additional assault counts for the incident,” WUSA 9 reported.

Sommer pleaded guilty to three counts of assault for spitting on Ed Martin and assaulting US Marshals.

Sommer spat on then-Acting DC US Attorney Ed Martin earlier this year while he was interviewing with Newsmax.

“We need to stay focused,” Ed Martin said during an interview with Newsmax when he was interrupted by a leftist protester who approached him.

Ed Martin backed up as the woman became aggressive and spat on him.

“Whoa!” Ed Martin said.

“You’re a disgusting man!” the woman said as she walked away with her dog in tow.

In the uncensored version, the woman is heard screaming, “who the f*ck are you?! You are Ed Martin!” before spitting on him.

WATCH:

In a previous court filing, the DOJ said additional assault charges and a stalking charge would be added because of Sommer’s threats to Ed Martin and Jeanine Pirro.

The DOJ filing argued that Emily Sommer’s X posts threatening Ed Martin and Judge Pirro violated her probation.

“Fuck you, Ed… but since you’ve once again made me hostage in this city, I’ll make sure it eats you alive and spits you back out, like the felony “assault” you’ve alleged, wit your punk-ass-bitch-cuckold-neo-neo-neo-no-brained-Neanderthal (no shade to actual non-Sapiens) cracka ass, jive-turkey redneck from the Midwest,” Emily Sommer said in an X post.

Sommer issued a veiled threat to Judge Jeanine Pirro.

“And lmaoooooo @JudgeJeanine is the bish that took your job That’s gotta hurt. And she’s got so much trash talk comin her way too, don’t worry bish, you’ll get it too,” Sommer said.

The post BREAKING: Rabid Leftist Who Spat on Ed Martin and Kicked US Marshals Will Avoid Prison Time After Biden Judge Sentences Her to ‘Time Served’ appeared first on The Gateway Pundit.

Continue Reading

Trending