OMB Issues Zero-Trust Strategy for Federal Agencies
Federal officials tout the strategy as a more proactive approach to securing government networks.
The US Office of Management and Budget (OMB) today published details of a government-wide strategy for adopting zero-trust architecture principles across federal agency networks.
Agencies are required to adopt specific standards and security practices by fiscal year 2024 that encompass the security of user identities, devices, networks, applications, and data. These include multifactor authentication, full accounting of all devices authorized for use in government, encrypting all DNS and HTTP traffic, regular security testing of all applications, and adoption of data categorization and cloud security services to monitor data access.
"This strategy is a major step in our efforts to build a defensible and coherent approach to our federal cyber defenses," said National Cyber Director Christopher Inglis in a statement. "We are not waiting to respond to the next cyber breach. Rather, this Administration is continuing to reduce the risk to our nation by taking proactive steps towards a more resilient society."
Details of the feds' new zero-trust strategy was issued in a memorandum by OMB.
About the Author
You May Also Like
Transform Your Security Operations And Move Beyond Legacy SIEM
Nov 6, 2024Unleashing AI to Assess Cyber Security Risk
Nov 12, 2024Securing Tomorrow, Today: How to Navigate Zero Trust
Nov 13, 2024The State of Attack Surface Management (ASM), Featuring Forrester
Nov 15, 2024Applying the Principle of Least Privilege to the Cloud
Nov 18, 2024