On last.fm: Who's your favorite band?
BNET Business Network:
BNET
TechRepublic
ZDNet

By Rep. Zoe Lofgren
Posted on ZDNet News: Oct 21, 2004 7:39:00 PM

Commentary--Threats and vulnerabilities to our global computer networks and systems are growing faster than we can address them.

Malicious code--viruses and worms--is being created to exploit software flaws within days, when only a year ago it would have taken months for such code to appear. Our water supply, electric grid, nuclear energy system and other critical infrastructures are interconnected and interdependent, increasing the likelihood that a cyberattack could disrupt major services and cripple economic activity.

The government cannot be naive in its approach and must recognize the unique and cross-cutting nature of the cyberworld.
Indeed, if a cyberattack occurred at the same time as a physical attack, critical emergency response systems and communications operations could be taken out, increasing the confusion of an attack, and the number of casualties.

When the Department of Homeland Security was created, the president eliminated the position of senior advisor to the president on cybersecurity and delegated its responsibilities to the new department. For months, the department failed to assume this responsibility and did little on cybersecurity.

It was only after the private sector and technology companies told the government that it needed to provide leadership that the Department of Homeland Security created the National Cyber Security Division, an entity buried deep within the agency. Because the director of this division does not have a direct line to the president or to the secretary of homeland security, his or her effectiveness is limited.

Amit Yoran was hired to be the Director of the NCSD. He lasted in this position for only a year--largely because of the serious structural problems within the Department of Homeland Security.

It is unfortunate that the Department of Homeland Security has failed to realize the importance of elevating the cybersecurity czar's position.
As the ranking member of the congressional Subcommittee on Cybersecurity, Science, and Research & Development, I have had the opportunity to see up close the need to strengthen our country's cybersecurity. With Congressman Mac Thornberry, R-Texas, the chairman of the subcommittee, I have worked hard to address this issue.

We recently introduced bipartisan legislation in the House of Representatives to create an assistant secretary of cybersecurity within the Department of Homeland Security, legislation that later passed in the House of Representatives as a part of the 9/11 Recommendations Implementation Act. We are optimistic that this provision will survive the conference with the Senate and remain in the final version of the act.

If enacted, the creation of the assistant secretary position will elevate cybersecurity to a level that can coordinate with senior Department of Homeland Security personnel, other agencies and the private sector in a meaningful way. While it is true that the government must not develop plans for physical security and cybersecurity in a vacuum, it is equally true that the government cannot be naive in its approach and must recognize the unique and crosscutting nature of the cyberworld.

The assistant secretary of cybersecurity would sit next to an assistant secretary who deals with physical infrastructure protection. By creating this position, we can ensure that we are prepared for attacks on both our cyber and physical structures. Under the current structure, the Department of Homeland Security is simply not getting the job done.

On Oct. 13, The Washington Post reported that Secretary of Homeland Security Tom Ridge said the role of overseeing computer security and the Internet should have a higher profile in the Department of Homeland Security.

More specifically, he said a position of assistant secretary to be responsible for both cyber and telecommunications security would be created. Shortly after he made this statement, Homeland Security Spokesman Brian Roehrkasse clarified Ridge's statement. He said Ridge had misspoken and that the position would in fact be a deputy assistant secretary position.

That is simply just not good enough; a deputy assistant secretary position would only enhance the hierarchy and red tape within the department. It is unfortunate that the Department of Homeland Security has failed to realize the importance of elevating this position.

Securing our networks must be a priority in our country's overall homeland security strategy. It does not appear to be a priority for the Department of Homeland Security, as demonstrated by its outsourcing of our government's top cybersecurity position. Too much time has been wasted. We cannot wait for an "electronic 9/11" to happen before the Department of Homeland Security focuses its attention on preparing for and responding to threats to our computer networks.

biography
Rep. Zoe Lofgren is the ranking member of the ranking member of the House of Representatives' Subcommittee on Cybersecurity, Science, and Research & Development.

SponsoredWhite Papers, Webcasts, and Downloads

  • Talkback
  • Most Recent of 26 Talkback(s)
You bet I do...
Real threats, illegal trade across border including weapons, drugs, and contraband.

Maybe threats, I can't get on line for a few hours.... (Read the rest)
Posted by: No_Ax_to_Grind Posted on: 10/23/04 You are currently: a Guest | | Terms of Use
Maybe because there are MANY more important security issues.  No_Ax_to_Grind | 10/21/04
No disrespect but the Internet IS a REAL threat !  realitycheck101 | 10/21/04
spyware is big business  V Sanders | 10/21/04
Only if your foolish enough to allow it.  No_Ax_to_Grind | 10/21/04
half of all drugs are now grown or made in the usa  V Sanders | 10/21/04
Hold on  seosamh_z | 10/21/04
Your catching on...  No_Ax_to_Grind | 10/21/04
I think not  seosamh_z | 10/21/04
You bet I do...  No_Ax_to_Grind | 10/23/04
Tell me something I don't already know...  realitycheck101 | 10/21/04
More Sky Marshalls, less pie in the sky  Nigel Johnstone | 10/21/04
Yeah but  seosamh_z | 10/21/04
Stop for a moment  Nigel Johnstone | 10/21/04
Calm down  seosamh_z | 10/21/04
What was the death toll for MyDoom?  Nigel Johnstone | 10/21/04
Just to keep the party going  seosamh_z | 10/22/04
Worthless word games  Nigel Johnstone | 10/22/04
truely lacking in imagination  seosamh_z | 10/22/04
No flew a jet into skyscaper before 9/11  voska | 10/22/04
Cyber security is important  voska | 10/22/04
They're kidding, right?  Bill4 | 10/21/04
You never know  rpmyers1 | 10/21/04
I've seen it and it probably is  voska | 10/22/04
Wheel Turnin More Like It  ParadigmOdyssey | 10/21/04
Do you really want the Government providing "leadership"  Squawkbox | 10/21/04
Checks and Balences  Roger Ramjet | 10/22/04

What do you think?

advertisement
Premier Vendor Content Whitepapers, webcasts & resources from our Power Center Sponsors
Microsoft Dynamics CRM Online - Free Six-Month Trial for Eligible Organizations
Microsoft Dynamics CRM Online provides fast online access, simple contact management and better sales performance for a low monthly cost - the best value on the market today.
Learn more about the free, six-month trial offer>>
Reduce risk. Reduce complexity. Increase reliability.
A simplified IT environment isn't just less complex. It's also more reliable. Standardize on a single Linux platform with SUSE Linux Enterprise from Novell, and get the world's most interoperable Linux
Learn more >>
Reduce risk. Reduce complexity. Increase reliability.
A simplified IT environment isn't just less complex. It's also more reliable. Standardize on a single Linux platform with SUSE Linux Enterprise from Novell, and get the world's most interoperable Linux
Learn more >>
Learn more about tools to grow your business
The Business Essentials Guide provides you useful tools and templates to help grow your business and save you time with automated shipping solutions.
Save time with the UPS Business Essentials Guide
Keep Up With The Latest In Document Management with The DocuMentor.
Doc delivers the scoop on today's enterprise content management, printer maintenance, and all other issues related to document management. It's the DocuMentor Blog.
Learn more >>
New Online Dashboard for IT Leaders
Read about top issues IT decision-makers face every day, plus get cost-effective solutions to real-life IT problems.
Learn more >>
advertisement

White Papers, Webcasts, and Downloads