News & Analysis as of

Software National Security Cybersecurity

HaystackID

[Webcast Transcript] CFIUS Reviews: Strategies for Ensuring Compliance and Strategizing on Foreign Investments

HaystackID on

Editor’s Note: During a recent HaystackID webcast, expert panelists explored the role of the Committee on Foreign Investment in the United States (CFIUS) in protecting sensitive technologies, classified contracts, and other...more

Holland & Knight LLP

Commerce Department: Final Determination of Russia-Backed Cybersecurity, Antivirus Software

Holland & Knight LLP on

The U.S. Department of Commerce's Office of Information and Communications Technology and Services (OICTS) within the Bureau of Industry and Security (BIS) issued a Final Determination on June 20, 2024, pursuant to Executive...more

Robinson+Cole Data Privacy + Security Insider

Commerce Department Bans Kaspersky Software in US

In the Biden Administration’s continuing effort to reduce the risk of cybersecurity spyware from foreign adversaries, including Russia, the United States Department of Commerce (Commerce) issued a final rule (Rule) on June...more

PilieroMazza PLLC

CISA Unveils Final Self-Attestation Form for Software Producers Bidding on Federal Contracts

PilieroMazza PLLC on

In March 2024, the Cybersecurity and Infrastructure Security Agency (CISA) released the final version of its secure software development self-attestation common form (Form), requiring federal government contractors who...more

Ankura

Common Causes of CFIUS Agreement Non-Compliance and Enforcement Risk

Ankura on

Following the update to the Committee on Foreign Investment in the United States (“CFIUS” or the “Committee”) Enforcement and Penalty Guidelines, the Committee has continued to signal its intention to more heavily leverage...more

Nossaman LLP

Critical Infrastructure Organizations Warned to Upgrade Systems and Software

Nossaman LLP on

In one of the most clear-eyed and sobering assessments of the cyberthreat China poses to our nation’s critical infrastructure, the country’s foremost cybersecurity leaders recently testified that the Chinese Communist Party...more

Jones Day

Commerce Department Issues Final Rule on Information and Communications Technology Supply Chain

Jones Day on

On June 16, the U.S. Department of Commerce published a final rule, effective July 17, 2023, on Securing the Information and Communications Technology and Services ("ICTS") Supply Chain, signaling potential new actions on...more

Bradley Arant Boult Cummings LLP

How a Zero-Day Flaw in MOVEit Led to a Global Ransomware Attack

In an era where our lives are ever more intertwined with technology, the security of digital platforms is a matter of national concern. A recent large-scale cyberattack affecting several U.S. federal agencies and numerous...more

Fenwick & West LLP

UPDATE: Secure Software Development Attestation: A(nother) Government Requirement

Fenwick & West LLP on

As follow-on guidance to Office of Management and Budget’s (OMB) September 14, 2022 memo and the associated Executive Order on Improving the Nation’s Cybersecurity from May 2021, the Cybersecurity and Infrastructure Security...more

K&L Gates LLP

Secure Software Regulations and Self-Attestation Required for Federal Contractors

K&L Gates LLP on

Government contractors providing software across the federal government’s supply chain will be required later this year to comply with a new Secure Software Design Framework (SSDF). The SSDF requires software vendors to...more

Sheppard Mullin Richter & Hampton LLP

Biden Administration Releases Highly Anticipated National Cybersecurity Strategy

On March 2, 2023, the Biden Administration released its National Cybersecurity Strategy. The Strategy represents the latest push by the Administration to focus on cybersecurity concerns, following the release of Executive...more

Ankura

OMB Renews Commitment to EO14028 by Requiring SSDF Compliance in Federal Software Acquisition

Ankura on

On September 14, 2022, the Office of Management and Budget (OMB) issued much-anticipated guidance on the implementation of Secure Software Development Framework (SSDF) requirements for contractors (The “Guidance Memo”)...more

Pietragallo Gordon Alfano Bosick & Raspanti,...

Labeling Devices for Cybersecurity Protection

Takeaway: Security labels on internet-connected devices are on the horizon for companies that manufacture and want to sell such devices worldwide. On October 19, 2022, 50 representatives from different industries including...more

Husch Blackwell LLP

BIS Delays Implementation of New Cybersecurity Items Interim Final Rule

Husch Blackwell LLP on

In an October 21, 2021 interim final rule (“IFR”), the Bureau of Industry and Security (“BIS”) published long-awaited “cybersecurity items” controls in Categories 4 (Computers) and 5, Pt. 1 (Telecommunications) of the...more

McDermott Will & Emery

New Zero-Day Vulnerability for Log4j is the Next Cybersecurity Nightmare

McDermott Will & Emery on

On December 10, 2021, multiple media outlets, the Cybersecurity and Infrastructure Security Administration (CISA), and the director of cybersecurity at the National Security Agency (NSA) began alerting to a significant...more

Wilson Sonsini Goodrich & Rosati

Intrusion Preclusion: BIS Issues Long-Awaited Controls on Cybersecurity Items, Creates New License Exception

On October 21, 2021, the Department of Commerce’s Bureau of Industry and Security (BIS) issued an interim final rule (the rule) implementing expanded export controls on cybersecurity items based on the belief that these items...more

Stinson - Government Contracting Matters

Biden’s Executive Order on Protecting Americans’ Sensitive Data from Foreign Adversaries

Published on June 9, 2021, President Biden’s Executive Order on Protecting America’s Sensitive Data from Foreign Adversaries is the latest Executive Order seeking to strengthen national security by improving public and...more

Hogan Lovells

Biden Administration issues New Executive Order to protect Americans’ sensitive data

Hogan Lovells on

On January 9, 2021, the Biden Administration issued Executive Order (EO) 14034, to further address the declared national emergency with respect to the information and communications technology and services (ICTS) supply...more

Hogan Lovells

Key takeaways from NIST’s cyber executive order workshop

Hogan Lovells on

On June 2 and 3, the U.S. National Institute of Standards and Technology (NIST) held a workshop focused on the President’s recent Executive Order on Improving the Nation’s Cybersecurity (Order) during which government...more

Parker Poe Adams & Bernstein LLP

President Biden Issues Cybersecurity Order Impacting Federal Contractors

Beyond causing long lines and shortages at the gas pump, the cyberattack on the Colonial Pipeline this month may have important implications for federal contractors. As part of the federal government’s response, President Joe...more

Kramer Levin Naftalis & Frankel LLP

Executive Order Enhances Cybersecurity Requirements for Government Contractors

In response to increasing cybersecurity threats, including the SolarWinds and Colonial Pipeline attacks, President Biden issued an Executive Order on May 12, 2021, that enhances cybersecurity requirements for federal...more

Perkins Coie

President Biden’s Cybersecurity Executive Order Focuses on IT and Software Supply Chain Vulnerabilities

Perkins Coie on

On May 12, 2021, President Biden signed a sweeping Executive Order (EO) to protect federal government networks and software supply chains against increasing threats of attacks from malicious cyber actors, setting the stage...more

Holland & Knight LLP

Cybersecurity for All: President Biden Issues Sweeping Cybersecurity Executive Order

Holland & Knight LLP on

On May 12, 2021, President Joe Biden issued a comprehensive Executive Order (EO) on Improving the Nation's Cybersecurity that promises sweeping changes in federal contracts for information technology (IT), cloud services and...more

Bradley Arant Boult Cummings LLP

Executive Order on Cybersecurity Sets Aggressive Timeline

The Colonial Pipeline cyberattack prompted the issuance of a long-awaited executive order (EO) on improving U.S. cybersecurity. The EO mandates that, within six months, all federal agencies implement multi-factor...more

Oberheiden P.C.

When Do U.S. Companies and Institutions Need to Be Concerned about National Security?

Oberheiden P.C. on

In today’s world, companies in various industries are increasingly running into issues that have national security implications. Research universities and other academic institutions can face issues involving national...more

28 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide