10.07.2015 Views

Kent Bressie and Madeleine Findley Analyze the Impact - Wiltshire ...

Kent Bressie and Madeleine Findley Analyze the Impact - Wiltshire ...

Kent Bressie and Madeleine Findley Analyze the Impact - Wiltshire ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

• Framework to Reduce CyberRisk to Critical Infrastructure.The Executive Order requiresNIST to work with industry todevelop a set of industry bestpractices (<strong>the</strong> “CybersecurityFramework”) to reduce cyberrisks to critical infrastructure.A preliminary version of <strong>the</strong>Cybersecurity Framework is duewithin 240 days of <strong>the</strong> ExecutiveOrder <strong>and</strong> a final version withinone year.11• Regulatory Review. TheExecutive Order directs federalagencies to review <strong>the</strong>irregulations <strong>and</strong> propose newauthority as needed to addresscurrent <strong>and</strong> projected cyberrisks to critical infrastructure.The PPD designates DHS as <strong>the</strong>sector-specific agency for <strong>the</strong>communications sector, subjectto consultations with <strong>the</strong> FCC.• IdentifyingCriticalInfrastructure. Within 150days, DHS must “identifycritical infrastructure wherea cybersecurity incidentcould reasonably result” incatastrophic consequences.DHS must confidentially notifyowners <strong>and</strong> operators of criticalinfrastructure that <strong>the</strong>y appearon <strong>the</strong> list, <strong>and</strong> listed entities willhave an opportunity to appeal<strong>the</strong>ir identification as high-riskcritical infrastructure.The PPD includes <strong>the</strong> following keyprovisions:• DHS to Take Lead Role. As in<strong>the</strong> Executive Order, <strong>the</strong> PPDdesignates DHS as <strong>the</strong> primaryauthority in coordinating <strong>the</strong>federal government’s actionsto improve <strong>the</strong> security ofcritical infrastructure. The PPDinstructs DHS to establish <strong>and</strong>operate two national criticalinfrastructure centers—one forphysical infrastructure <strong>and</strong> onefor cyber infrastructure.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!