CINXE.COM
Security – Digital.gov
<!-- Welcome to Digital.gov — our goal is to transform how government learns, builds, delivers and measures digital services in the 21st century. Learn more https://digital.gov/about Get in touch: digitalgov@gsa.gov Follow us on Twitter: @digital_gov ======= We edit in the open at https://workflow.digital.gov/ Built by the Digital.gov team in the GSA, using modern development practices. See the full source code: https://github.com/GSA/digitalgov.gov Built using HUGO. Hosted on cloud.gov Pages https://cloud.gov/pages/ --> <!DOCTYPE html> <html lang="en-US" itemscope itemtype="http://schema.org/WebSite" prefix="og: http://ogp.me/ns#" > <head profile="http://gmpg.org/xfn/11"> <meta http-equiv="X-UA-Compatible" content="IE=edge" /> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <script async type="text/javascript" id="_fed_an_ua_tag" src="https://dap.digitalgov.gov/Universal-Federated-Analytics-Min.js?agency=GSA&subagency=TTS" ></script> <!-- Google Tag Manager Data Layer --> <script> dataLayer = [ { "content-type": "resource+page", topics: "design, analytics, Tag+Manager", }, ]; </script> <!-- Google Tag Manager --> <script> (function (w, d, s, l, i) { w[l] = w[l] || []; w[l].push({ "gtm.start": new Date().getTime(), event: "gtm.js" }); var f = d.getElementsByTagName(s)[0], j = d.createElement(s), dl = l != "dataLayer" ? "&l=" + l : ""; j.async = true; j.src = "https://www.googletagmanager.com/gtm.js?id=" + i + dl; f.parentNode.insertBefore(j, f); })(window, document, "script", "dataLayer", "GTM-MZCKZPQ"); </script> <!-- End Google Tag Manager --> <!-- Page Title --> <title>Security – Digital.gov</title> <!-- Meta Description --> <meta name="description" content="To protect sensitive information while maintaining access for authorized users, prioritize the implementation of security and management controls. The responsibility, however, to ensure website safety extends beyond technology. Publicly share your security protocols and establish a clear channel for users to report any suspicious activity. By making security a collaborative effort, you’ll build trust, protect sensitive information, and ensure that your website functions securely." /> <meta name="keywords" content="digital, government, technology, civic-tech" /> <!-- Start of Facebook Open Graph --> <meta property="og:title" content="Security" /> <meta property="og:description" content="To protect sensitive information while maintaining access for authorized users, prioritize the implementation of security and management controls. The responsibility, however, to ensure website safety extends beyond technology. Publicly share your security protocols and establish a clear channel for users to report any suspicious activity. By making security a collaborative effort, you’ll build trust, protect sensitive information, and ensure that your website functions securely." /> <meta property="og:type" content="website" /> <meta property="og:url" content="https://digital.gov/topics/security/" /> <meta property="og:site_name" content="Digital.gov" /> <meta name="robots" content="index, follow" /> <meta property="og:locale" content="en_US" /> <meta property="og:image" content="https://s3.amazonaws.com/digitalgov/topics-og-primary-image.jpg" /> <meta property="og:image:alt" content=" " /> <meta property="fb:admins" content="100000569454928" /> <meta property="article:publisher" content="https://www.facebook.com/digitalgov" /> <!-- End of Facebook Open Graph --> <!-- Start of Twitter Card --> <meta name="twitter:card" content="summary_large_image" /> <meta name="twitter:site" content="@Digital_Gov" /> <meta name="twitter:creator" content="@Digital_Gov" /> <meta name="twitter:image:src" content="https://s3.amazonaws.com/digitalgov/topics-og-primary-image.jpg" /> <meta property="twitter:description" content="To protect sensitive information while maintaining access for authorized users, prioritize the implementation of security and management controls. The responsibility, however, to ensure website safety extends beyond technology. Publicly share your security protocols and establish a clear channel for users to report any suspicious activity. By making security a collaborative effort, you’ll build trust, protect sensitive information, and ensure that your website functions securely." /> <meta property="twitter:title" content="Security" /> <!-- End of Twitter --> <!-- RSS Feed --> <link href="/topics/security/index.xml" rel="feed" type="application/rss+xml" /> <!-- JSON Feed --> <link href="https://digital.gov/topics/security/index.json" data-proofer-ignore rel="alternate" type="application/json" title="Digital.gov" /> <!-- Sitemap--> <link rel="sitemap" type="application/xml" title="Digital.gov Sitemap" href="https://digital.gov/sitemap.xml" /> <meta name="theme-color" content="#656bd7" /> <meta name="msvalidate.01" content="A662823C2F59EB4F55F752CC752AC299" /> <!-- CSS --> <link rel="stylesheet" href="https://digital.gov/dist/styles.css" type="text/css" media="all" /> <script src="https://digital.gov/dist/js/uswds-init.min.js"></script> <!-- Favicons & Icons --> <link rel="apple-touch-icon" sizes="180x180" href="https://digital.gov/img/icons/apple-touch-icon.png?v=3" /> <link rel="icon" type="image/png" sizes="32x32" href="https://digital.gov/img/icons/favicon-32x32.png?v=3" /> <link rel="icon" type="image/png" sizes="16x16" href="https://digital.gov/img/icons/favicon-16x16.png?v=3" /> <link rel="manifest" href="https://digital.gov/img/icons/site.webmanifest?v=3" /> <link rel="mask-icon" href="https://digital.gov/img/icons/safari-pinned-tab.svg?v=3" color="#0076d6" /> <link rel="shortcut icon" href="https://digital.gov/img/icons/favicon.ico?v=3" /> <meta name="msapplication-TileColor" content="#0076d6" /> <meta name="theme-color" content="#ffffff" /> <meta name="viewport" content="width=device-width,initial-scale=1" /> </head> <body class="topics term"><!-- Google Tag Manager (noscript) --><noscript ><iframe src="https://www.googletagmanager.com/ns.html?id=GTM-MZCKZPQ" height="0" width="0" style="display:none;visibility:hidden" ></iframe ></noscript> <!-- End Google Tag Manager (noscript) --> <div class="paper"><a class="usa-skipnav" href="#main-content">Skip to main content</a> <section class="usa-banner gov-banner" aria-label="Official website of the United States government" > <div class="usa-accordion"> <header class="usa-banner__header"> <div class="usa-banner__inner"> <div class="grid-col-auto"><img aria-hidden="true" class="usa-banner__header-flag" src="/uswds/img/us_flag_small.png" alt="" width="16" height="11" /> </div> <div class="grid-col-fill tablet:grid-col-auto" aria-hidden="true"> <p class="usa-banner__header-text"> An official website of the United States government </p> <p class="usa-banner__header-action">Here’s how you know</p> </div> <button type="button" class="usa-accordion__button usa-banner__button" aria-expanded="false" aria-controls="gov-banner-default-default" > <span class="usa-banner__button-text">Here’s how you know</span> </button> </div> </header> <div class="usa-banner__content usa-accordion__content" id="gov-banner-default-default" > <div class="grid-row grid-gap-lg"> <div class="usa-banner__guidance tablet:grid-col-6"><img class="usa-banner__icon usa-media-block__img" src="/uswds/img/icon-dot-gov.svg" role="img" alt="" aria-hidden="true" /> <div class="usa-media-block__body"> <p> <strong>Official websites use .gov</strong> <br /> A <strong>.gov</strong> website belongs to an official government organization in the United States. </p> </div> </div> <div class="usa-banner__guidance tablet:grid-col-6"><img class="usa-banner__icon usa-media-block__img" src="/uswds/img/icon-https.svg" role="img" alt="" aria-hidden="true" /> <div class="usa-media-block__body"> <p> <strong>Secure .gov websites use HTTPS</strong><br />A <strong>lock</strong> ( <span class="icon-lock"> <svg xmlns="http://www.w3.org/2000/svg" width="52" height="64" viewBox="0 0 52 64" class="usa-banner__lock-image" role="img" aria-labelledby="banner-lock-description-default" focusable="false" > <title id="banner-lock-title-default">Lock</title> <desc id="banner-lock-description-default"> Locked padlock </desc> <path fill="#000000" fill-rule="evenodd" d="M26 0c10.493 0 19 8.507 19 19v9h3a4 4 0 0 1 4 4v28a4 4 0 0 1-4 4H4a4 4 0 0 1-4-4V32a4 4 0 0 1 4-4h3v-9C7 8.507 15.507 0 26 0zm0 8c-5.979 0-10.843 4.77-10.996 10.712L15 19v9h22v-9c0-6.075-4.925-11-11-11z" /> </svg> </span >) or <strong>https://</strong> means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites. </p> </div> </div> </div> </div> </div> </section> <section class="dg-site-alert usa-site-alert usa-site-alert--info " aria-label="Site alert" > <div class="usa-alert"> <div class="usa-alert__body"> <h3 class="usa-alert__heading">Hurricane guidance for U.S. government websites and social media</h3> <ul class="usa-list"> <li><a href="/hurricane-helene">digital.gov/hurricane-helene</a></li> <li><a href="/hurricane-milton">digital.gov/hurricane-milton</a></li> </ul> </div> </div> </section> <script type="text/javascript"> const links = document.querySelectorAll(".dg-site-alert a"); links.forEach((link) => link.classList.add("usa-link")); </script> <div class="usa-overlay"></div> <header class="usa-header usa-header--extended" role="banner"> <div class="usa-navbar"> <div class="usa-logo" id="extended-logo"> <em class="usa-logo__text"> <a href="https://digital.gov/" title="Digital.gov Home" aria-label="Digital.gov Home" > <img class="logo-black" src="https://digital.gov/img/digitalgov-logo.svg" alt="Digital.gov Logo" width="220" height="36" /> </a> </em> <p class="sub-head display-none">Guidance on building better digital services in government</p> </div> <button class="usa-menu-btn"> <svg class="usa-icon dg-icon dg-icon--standard margin-bottom-2px" aria-hidden="true" focusable="false" role="img" > <use xlink:href="/uswds/img/sprite.svg#menu"></use> </svg> Menu </button> </div> <nav aria-label="Primary navigation" class="usa-nav"> <div class="usa-nav__inner"> <button class="usa-nav__close"> <img src="/uswds/img/close.svg" alt="close" /> </button><ul class="usa-nav__primary usa-accordion"><li class="usa-nav__primary-item " > <a class="usa-nav__link" href="/news/" ><span>Blogs</span></a > </li><li class="usa-nav__primary-item " > <a class="usa-nav__link" href="/events/" ><span>Events</span></a > </li><li class="usa-nav__primary-item " > <a class="usa-nav__link" href="/resources/" ><span>Resources</span></a > </li><li class="usa-nav__primary-item " > <a class="usa-nav__link" href="/communities/" ><span>Communities</span></a > </li><li class="usa-nav__primary-item " > <a class="usa-nav__link" href="/guides/" ><span>Guides</span></a > </li><li class="usa-nav__primary-item " > <a class="usa-nav__link" href="/job-board/" ><span>Job board</span></a > </li></ul> <div class="usa-nav__secondary"> <ul class="usa-nav__secondary-links"> <li class="usa-nav__secondary-item"> <a href="/subscribe" ><span>Subscribe to our newsletter</span></a > </li> </ul> <form accept-charset="UTF-8" action="https://find.digitalgov.gov/search" id="search_form" method="get" class="usa-search usa-search--small" > <input name="utf8" type="hidden" value="✓" /> <input id="affiliate" name="affiliate" type="hidden" value="digitalgov" /> <div role="search"> <label class="usa-sr-only" for="query">Search small</label> <input class="usa-input" id="query" type="search" name="query" /> <button class="usa-button" name="commit" type="submit"> <img src="/uswds/img/usa-icons-bg/search--white.svg" class="usa-search__submit-icon" alt="Search" /> </button> </div> </form> </div> </div> </nav> </header> <main role="main" id="main-content"> <div class="grid-container-desktop"><nav class="usa-breadcrumb usa-breadcrumb--wrap" aria-label="Breadcrumb"> <ol class="usa-breadcrumb__list"> <li class="usa-breadcrumb__list-item"> <a href="https://digital.gov/" class="usa-breadcrumb__link"> <span>Home</span> </a> </li> <li class="usa-breadcrumb__list-item"> <a href="https://digital.gov/topics/" class="usa-breadcrumb__link" aria-label="Back to Topics" > <span> Topics</span> </a> </li> <li class="usa-breadcrumb__list-item usa-current" aria-current="page"> <span> Security</span> </li> </ol> </nav> </div> <header class="grid-container-desktop"> <h1 class=" dg-topic__header-title--collection " >Security</h1> <p class="dg-topic__deck margin-0"> Secure websites and a secure online presence foster trust between the public and government. </p> </header> <div class="grid-container-desktop margin-top-2"> <div class="grid-row desktop:grid-gap-4"> <div class="desktop:grid-col margin-bottom-4"> <p class="usa-intro text-light">To protect sensitive information while maintaining access for authorized users, prioritize the implementation of security and management controls. The responsibility, however, to ensure website safety extends beyond technology. Publicly share your security protocols and establish a clear channel for users to report any suspicious activity. By making security a collaborative effort, you'll build trust, protect sensitive information, and ensure that your website functions securely.</p> </div> <div class="desktop:grid-col"> <div class="dg-card-legislation"> <div class="usa-card__container usa-card-group usa-card--flag"> <div class="usa-card__header"> <h2 class="dg-featured-resource__text-kicker">Related Policy</h2> <h2 class="usa-card__heading"> Federal Information Security Modernization Act of 2014 (FISMA) (Public Law 113-283) (PDF, 265 KB, 16 Pages) </h2> </div> <div class="usa-card__media"> <div class="usa-card__img"> <img src="https://s3.amazonaws.com/digitalgov/legislative-stamp-card-logo-600.png" alt="Federal Information Security Modernization Act of 2014 (FISMA) (Public Law 113-283) (PDF, 265 KB, 16 Pages)" /> </div> </div> <div class="usa-card__footer"> <a href="https://www.gpo.gov/fdsys/pkg/PLAW-113publ283/pdf/PLAW-113publ283.pdf" class="usa-button">Explore policy</a> </div> </div> </div> </div> </div> </div> <div class="dg-topic__featured grid-container-desktop"> <div class="dg-featured-resource"> <a href="/resources/an-introduction-to-security/" class="dg-featured-resource__body"> <div class="dg-featured-resource__text"> <p class="dg-featured-resource__kicker">Featured Resource</p> <h2 class="dg-featured-resource__text-title">An introduction to web security</h2> <p class="dg-featured-resource__text-description">Guidance on meeting security requirements for federal websites.</p> </div> </a> </div> <div class="dg-featured-resource"> <a href="/communities/web-content-managers/" class="dg-featured-resource__body"> <div class="dg-featured-resource__text"> <p class="dg-featured-resource__kicker">Communities of Practice</p> <h2 class="dg-featured-resource__text-title">Join the Web Managers</h2> <p class="dg-featured-resource__text-description">Create a better online experience for the public alongside government web content managers.</p> </div> </a> </div> </div> <div class="grid-container-desktop usa-section"> <div class="dg-collection"> <h2 class="dg-collection__header" > Resources on Security </h2> <ul class="usa-collection"> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/img/digit-50.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="/resources/prepare-recovery-respond-social-media-cyber-vandalism-toolkit/" title="Social media cyber-vandalism toolkit">Social media cyber-vandalism toolkit</a> </h3> <p class="usa-collection__description"> Cyber-vandalism presents a serious challenge to online-based communication tools. This resource provides information for agency practitioners to prepare for, recover from, and respond to cyber-vandalism. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/logos/doj-icon.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="https://www.justice.gov/opcl/overview-privacy-act-1974-2020-edition" title="Overview of the Privacy Act of 1974 (2020 Edition)">Overview of the Privacy Act of 1974 (2020 Edition)</a> </h3> <p class="usa-collection__description"> This overview, prepared by the Department of Justice’s Office of Privacy and Civil Liberties (OPCL), covers various provisions of the Privacy Act, as addressed by court decisions in cases involving the Act’s disclosure prohibition, its access and amendment provisions, and its agency record-keeping requirements. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/img/digit-50.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="/resources/an-introduction-to-security/" title="An introduction to web security">An introduction to web security</a> </h3> <p class="usa-collection__description"> Guidance on meeting security requirements for federal websites. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/img/digit-50.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="/resources/an-introduction-to-ato/" title="An introduction to ATOs">An introduction to ATOs</a> </h3> <p class="usa-collection__description"> What is an Authorization to Operate? Before you use software in government, you need to make sure it is allowed. You should know what an ATO is, and when you need one. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/img/digit-50.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="/resources/an-introduction-to-security-and-privacy-controls/" title="An introduction to security and privacy controls">An introduction to security and privacy controls</a> </h3> <p class="usa-collection__description"> What do the control families of NIST 800-53 mean? Here’s an overview of the control families that create the foundation of federal security compliance. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/img/digit-50.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="/resources/privacy-preserving-collaboration-using-cryptography/" title="Privacy-Preserving Collaboration Using Cryptography">Privacy-Preserving Collaboration Using Cryptography</a> </h3> <p class="usa-collection__description"> In conjunction with her May 2020 presentation, Dr. Emily Shen outlines her work on Secure multi-party computation (MPC), a type of cryptography that allows parties to jointly analyze their data without disclosing it. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/img/digit-50.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="/resources/m-19-17-enabling-mission-delivery-through-improved-identity-credential-and-access-management/" title="M-19-17 Enabling Mission Delivery through Improved Identity, Credential, and Access Management">M-19-17 Enabling Mission Delivery through Improved Identity, Credential, and Access Management</a> </h3> <p class="usa-collection__description"> This 2019 memorandum sets forth the federal government’s Identity, Credential, and Access Management (ICAM) policy. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/logos/ciocouncil-icon.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="https://cloud.cio.gov/strategy/" title="Cloud Smart: Federal Cloud Computing Strategy">Cloud Smart: Federal Cloud Computing Strategy</a> </h3> <p class="usa-collection__description"> Founded on three key pillars of successful cloud adoption—security, procurement, and workforce—the Cloud Smart strategy includes 11 action items from the Chief Information Officers (CIO) Council. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/logos/whitehouse-icon.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="https://www.whitehouse.gov/wp-content/uploads/legacy_drupal_files/omb/circulars/A130/a130revised.pdf" title="OMB Circular A-130">OMB Circular A-130</a> </h3> <p class="usa-collection__description"> Managing Information as a Strategic Resource </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/img/digit-50.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="/resources/an-introduction-to-domain-management/" title="An introduction to domain management">An introduction to domain management</a> </h3> <p class="usa-collection__description"> A .gov domain instantly conveys credibility and trustworthiness, and proper domain management practices ensure that your website is secure and accessible. </p> </div> </li> </ul> </div> <div class="dg-collection"> <h2 class="dg-collection__header" > Tools and Services </h2> <ul class="usa-collection"> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="https://www.google.com/s2/favicons?domain=https://www.DigitalDashboard.gov/" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="https://www.DigitalDashboard.gov/" title="Digital Dashboard">Digital Dashboard</a> </h3> <p class="usa-collection__description"> Measures how U.S. government domains are following best practices for federal websites. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="https://www.google.com/s2/favicons?domain=https://www.cloud.gov/" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="https://www.cloud.gov/" title="Cloud.gov">Cloud.gov</a> </h3> <p class="usa-collection__description"> A FedRAMP approved cloud hosting platform that makes it easy for federal agencies to get on the cloud by simplifying procurement, security, and compliance. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="https://www.google.com/s2/favicons?domain=https://www.fedramp.gov/" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="https://www.fedramp.gov/" title="FedRAMP">FedRAMP</a> </h3> <p class="usa-collection__description"> The Federal Risk and Authorization Management (FedRAMP) is a process that authorizes cloud products and services. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/logos/logingov-icon.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="https://www.login.gov/" title="Login.gov">Login.gov</a> </h3> <p class="usa-collection__description"> An identity management service that provides secure and private online access to participating government programs. </p> </div> </li> </ul> </div> <div class="dg-collection"> <h2 class="dg-collection__header" > Join a Community of Practice </h2> <ul class="usa-collection"> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/img/digit-50.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="/communities/web-content-managers/" title="Join the Web Managers">Join the Web Managers</a> </h3> <p class="usa-collection__description"> Create a better online experience for the public alongside government web content managers. </p> </div> </li> </ul> </div> </div> <section class="dg-stream usa-section"> <div class="grid-container-desktop"> <h2>Security events</h2> <article class="card card-event card-event--past card-linked" aria-labelledby="federal-source-code-summit-towards-a-source-code-community" > <div class="card-event__main"> <div class="card-event__header"><h2 class="card-event__title" id="federal-source-code-summit-towards-a-source-code-community"> <a href="https://digital.gov/event/2020/10/08/federal-source-code-summit-building-coding/" title="Federal Source Code Summit: Towards a Source Code Community" rel="bookmark" >Federal Source Code Summit: Towards a Source Code Community</a > </h2> </div> <div class="card-event__body"><div class="card-event__summary"> This summit brings together the federal community to share success stories and best practices for utilizing federal source code and open source software, and examine the implementation of the Federal Source Code policy. </div> </div> </div> <div class="card-event__aside"> <div class="card-event__date"> <time class="card-event__datetime" datetime="2020-10-08"> <span class="card-event__datetime-month" >Oct</span > <span class="card-event__datetime-day" >08<span class="card-event__datetime-comma">,</span> </span> <span class="card-event__datetime-year--mobile" >2020</span > </time> <span class="card-event__date-label"> <span class="card-event__datetime-year" >2020</span > </span> </div> </div> </article> <article class="card card-event card-event--past card-linked" aria-labelledby="10x-project-lightning-talks-2020" > <div class="card-event__main"> <div class="card-event__header"><div class="flex-align-end card-event__kicker"> <span>10x</span> </div><h2 class="card-event__title" id="10x-project-lightning-talks-2020"> <a href="https://digital.gov/event/2020/06/30/10x-project-lightning-talks-2020/" title="10x Project Lightning Talks: 2020" rel="bookmark" >10x Project Lightning Talks: 2020</a > </h2> </div> <div class="card-event__body"><div class="card-event__summary"> 10x project teams will demonstrate their work to date and provide brief overviews of each project. We hope that these talks will highlight some of the most interesting work happening in government today and inspire others to submit ideas to 10x. </div><div class="card-event__watch-label"> <svg class="usa-icon dg-icon dg-icon--large margin-bottom-05" aria-hidden="true" focusable="false" > <use xlink:href="/uswds/img/sprite.svg#youtube" ></use> </svg> Watch Video </div> <div class="authors-list authors-list--inline"> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://digital.gov/img/digit-light.png" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/alicia-rouault/ " title="Posts by Alicia Rouault" rel="author" aria-label="Read more articles by Alicia Rouault" >Alicia Rouault</a > </div> </div> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://github.com/Ben-Judy-Flexion.png?size=50" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/ben-judy/ " title="Posts by Ben Judy" rel="author" aria-label="Read more articles by Ben Judy" >Ben Judy</a > </div> </div> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://github.com/gbinal.png?size=50" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/gray-brooks/ " title="Posts by Gray Brooks" rel="author" aria-label="Read more articles by Gray Brooks" >Gray Brooks</a > </div> </div> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://github.com/sawtoothwave.png?size=50" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/mike-gintz/ " title="Posts by Mike Gintz" rel="author" aria-label="Read more articles by Mike Gintz" >Mike Gintz</a > </div> </div> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://github.com/mike-stern.png?size=50" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/mike-stern/ " title="Posts by Mike Stern" rel="author" aria-label="Read more articles by Mike Stern" >Mike Stern</a > </div> </div> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://digital.gov/img/digit-dark.png" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/peter-rowland/ " title="Posts by Peter Rowland" rel="author" aria-label="Read more articles by Peter Rowland" >Peter Rowland</a > </div> </div> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://github.com/SarahCraneGSA.png?size=50" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/sarah-crane/ " title="Posts by Sarah Crane" rel="author" aria-label="Read more articles by Sarah Crane" >Sarah Crane</a > </div> </div> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://digital.gov/img/digit-dark.png" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/shaudi-hosseini/ " title="Posts by Shaudi Hosseini" rel="author" aria-label="Read more articles by Shaudi Hosseini" >Shaudi Hosseini</a > </div> </div> </div> </div> </div> <div class="card-event__aside"> <div class="card-event__date"> <time class="card-event__datetime" datetime="2020-06-30"> <span class="card-event__datetime-month" >Jun</span > <span class="card-event__datetime-day" >30<span class="card-event__datetime-comma">,</span> </span> <span class="card-event__datetime-year--mobile" >2020</span > </time> <span class="card-event__date-label"> <span class="card-event__datetime-year" >2020</span > </span> </div> </div> </article> <article class="card card-event card-event--past card-linked" aria-labelledby="building-for-the-21st-century-web-with-federalist" > <div class="card-event__main"> <div class="card-event__header"><div class="flex-align-end card-event__kicker"> <span>Cloud.gov</span> </div><h2 class="card-event__title" id="building-for-the-21st-century-web-with-federalist"> <a href="https://digital.gov/event/2020/06/16/building-for-21st-century-web-with/" title="Building for the 21st-Century Web with Federalist" rel="bookmark" >Building for the 21st-Century Web with Federalist</a > </h2> </div> <div class="card-event__body"><div class="card-event__summary"> Building, deploying, and hosting fast, secure, and compliant federal web sites and applications with Federalist. </div><div class="card-event__watch-label"> <svg class="usa-icon dg-icon dg-icon--large margin-bottom-05" aria-hidden="true" focusable="false" > <use xlink:href="/uswds/img/sprite.svg#youtube" ></use> </svg> Watch Video </div> <div class="authors-list authors-list--inline"> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://github.com/davemcorwin.png?size=50" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/david-corwin/ " title="Posts by David Corwin" rel="author" aria-label="Read more articles by David Corwin" >David Corwin</a > </div> </div> </div> </div> </div> <div class="card-event__aside"> <div class="card-event__date"> <time class="card-event__datetime" datetime="2020-06-16"> <span class="card-event__datetime-month" >Jun</span > <span class="card-event__datetime-day" >16<span class="card-event__datetime-comma">,</span> </span> <span class="card-event__datetime-year--mobile" >2020</span > </time> <span class="card-event__date-label"> <span class="card-event__datetime-year" >2020</span > </span> </div> </div> </article> <article class="card card-event card-event--past card-linked" aria-labelledby="dr.-emily-shen-on-secure-multi-party-computation" > <div class="card-event__main"> <div class="card-event__header"><h2 class="card-event__title" id="dr.-emily-shen-on-secure-multi-party-computation"> <a href="https://digital.gov/event/2020/05/05/dr-emily-shen-on-secure/" title="Dr. Emily Shen on Secure Multi-Party Computation" rel="bookmark" >Dr. Emily Shen on Secure Multi-Party Computation</a > </h2> </div> <div class="card-event__body"><div class="card-event__summary"> Learn how organizations can securely collaborate using cryptographic technologies. </div><div class="card-event__watch-label"> <svg class="usa-icon dg-icon dg-icon--large margin-bottom-05" aria-hidden="true" focusable="false" > <use xlink:href="/uswds/img/sprite.svg#youtube" ></use> </svg> Watch Video </div> <div class="authors-list authors-list--inline"> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://digital.gov/img/digit-dark.png" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/dr-emily-shen/ " title="Posts by Dr. Emily Shen" rel="author" aria-label="Read more articles by Dr. Emily Shen" >Dr. Emily Shen</a > </div> </div> </div> </div> </div> <div class="card-event__aside"> <div class="card-event__date"> <time class="card-event__datetime" datetime="2020-05-05"> <span class="card-event__datetime-month" >May</span > <span class="card-event__datetime-day" >05<span class="card-event__datetime-comma">,</span> </span> <span class="card-event__datetime-year--mobile" >2020</span > </time> <span class="card-event__date-label"> <span class="card-event__datetime-year" >2020</span > </span> </div> </div> </article> <article class="card card-event card-event--past card-linked" aria-labelledby="federal-crowdsourcing-webinar-series-episode-6-the-fedramp-ideation" > <div class="card-event__main"> <div class="card-event__header"><h2 class="card-event__title" id="federal-crowdsourcing-webinar-series-episode-6-the-fedramp-ideation"> <a href="https://digital.gov/event/2019/10/30/federal-crowdsourcing-webinar-series-episode-6-fedramp-ideation/" title="Federal Crowdsourcing Webinar Series, Episode 6: The FedRAMP Ideation" rel="bookmark" >Federal Crowdsourcing Webinar Series, Episode 6: The FedRAMP Ideation</a > </h2> </div> <div class="card-event__body"><div class="card-event__summary"> Betsy Steele, of the Federal Risk and Authorization Management Program (FedRAMP) team, shares how a crowdsourcing initiative invited the larger cybersecurity community to help inform the next iteration of government’s cloud security authorization program. </div><div class="card-event__watch-label"> <svg class="usa-icon dg-icon dg-icon--large margin-bottom-05" aria-hidden="true" focusable="false" > <use xlink:href="/uswds/img/sprite.svg#youtube" ></use> </svg> Watch Video </div> <div class="authors-list authors-list--inline"> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://digital.gov/img/digit-dark.png" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/bsteele/ " title="Posts by Betsy Steele" rel="author" aria-label="Read more articles by Betsy Steele" >Betsy Steele</a > </div> </div> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://digital.gov/img/digit-dark.png" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/tammy-white/ " title="Posts by Tammy White" rel="author" aria-label="Read more articles by Tammy White" >Tammy White</a > </div> </div> </div> </div> </div> <div class="card-event__aside"> <div class="card-event__date"> <time class="card-event__datetime" datetime="2019-10-30"> <span class="card-event__datetime-month" >Oct</span > <span class="card-event__datetime-day" >30<span class="card-event__datetime-comma">,</span> </span> <span class="card-event__datetime-year--mobile" >2019</span > </time> <span class="card-event__date-label"> <span class="card-event__datetime-year" >2019</span > </span> </div> </div> </article> </div> <div class="grid-container-desktop"> <h2>Security news</h2> <article class="card card-news--internal card-linked" aria-labelledby="title-it-warning-banners-how-gsa-is-working-to-stop-unnecessarily-frightening-users" > <div class="card__content"> <h3 id="title-it-warning-banners-how-gsa-is-working-to-stop-unnecessarily-frightening-users"> <a href="https://digital.gov/2024/08/07/it-warning-banners-how-gsa-is-working-to-stop-unnecessarily-frightening-users/">IT warning banners: How GSA is working to stop unnecessarily frightening users</a> </h3><div class="summary"> <p>OMB Memo M-23-22 discourages the use of pop-ups and modals. GSA IT updated security policies so that IT warning banners are presented less intrusively to users.</p> </div> <div class="authors-list authors-list--inline"> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://github.com/JessicaMarine1.png?size=50" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/jessica-marine/ " title="Posts by Jessica Marine" rel="author" aria-label="Read more articles by Jessica Marine" >Jessica Marine</a > </div> </div> </div> </div> <div class="card__media"> <div class="media-featured"> <a href="https://digital.gov/2024/08/07/it-warning-banners-how-gsa-is-working-to-stop-unnecessarily-frightening-users/" title="IT warning banners: How GSA is working to stop unnecessarily frightening users"> <img src="https://s3.amazonaws.com/digitalgov/example-gsa-official-use-system-warning-blue-bg-sm-comp_w800.png" aria-hidden="true" alt="" /> </a> </div> </div> <div class="card__meta"> <div class="date">Aug 07, 2024</div> </div> </article> <article class="card card-news--external card-linked" aria-labelledby="title-fedramp-governance" > <div class="card__content"> <div class="card__summary"> <h3 id="title-fedramp-governance"> <a href="https://www.fedramp.gov/2024-06-04-fedramp-governance/">FedRAMP governance</a> </h3> <p>The Federal Risk and Authorization Management Program (FedRAMP) has recently updated its governance structure to better serve its customers. Learn about their recently-formed FedRAMP Board, composed of federal executives; the FedRAMP Technical Advisory Group (TAG), composed of technology experts; and updates made to the Federal Security Cloud Advisory Committee (FSCAC). These groups collectively aim to strengthen and expand FedRAMP’s cloud service capabilities.<em class="card__source source" >— via <a href="https://www.fedramp.gov/2024-06-04-fedramp-governance/" title="Read at FedRAMP" >FedRAMP</a ></em > </p> </div> </div> <div class="card__media"> <img src="/logos/fedramp-logo.png" alt="fedramp logo" /> </div> <div class="card__meta"> <div class="date">Jun 04, 2024</div> </div> </article> <article class="card card-news--external card-linked" aria-labelledby="title-18f-practices-in-action-spoiler-this-stuff-works" > <div class="card__content"> <div class="card__summary"> <h3 id="title-18f-practices-in-action-spoiler-this-stuff-works"> <a href="https://18f.gsa.gov/2024/04/03/18f-practices-in-action/">18F practices in action (spoiler: this stuff works)</a> </h3> <p>How well do 18F software development practices work? The 18F team reflected on a recent project for the Cybersecurity and Infrastructure Security Agency (CISA) .gov registry to gauge the effectiveness of six recommendations aligned with what they actually did.<em class="card__source source" >— via <a href="https://18f.gsa.gov/2024/04/03/18f-practices-in-action/" title="Read at 18F" >18F</a ></em > </p> </div> </div> <div class="card__media"> <img src="/logos/18f-logo.png" alt="18f logo" /> </div> <div class="card__meta"> <div class="date">Apr 03, 2024</div> </div> </article> <article class="card card-news--internal card-linked" aria-labelledby="title-who-is-controlling-your-control-system" > <div class="card__content"> <h3 id="title-who-is-controlling-your-control-system"> <a href="https://digital.gov/2023/10/31/who-is-controlling-your-control-system/">Who is controlling your control system?</a> </h3><div class="summary"> <p>Best practices for security administration of control systems and their components. Specific guidance and lessons learned from a federal information system manager.</p> </div> <div class="authors-list authors-list--inline"> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://github.com/Michael-10101.png?size=50" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/michael-marin/ " title="Posts by Michael Marin" rel="author" aria-label="Read more articles by Michael Marin" >Michael Marin</a > </div> </div> </div> </div> <div class="card__media"> <div class="media-featured"> <a href="https://digital.gov/2023/10/31/who-is-controlling-your-control-system/" title="Who is controlling your control system?"> <img src="https://s3.amazonaws.com/digitalgov/title-card-who-controls-your-control-systems-chor-muang-istock-getty-images-1423481986-comp_w800.png" aria-hidden="true" alt="" /> </a> </div> </div> <div class="card__meta"> <div class="date">Oct 31, 2023</div> </div> </article> <article class="card card-news--internal card-linked" aria-labelledby="title-navigating-the-nist-industrial-control-systems-overlay" > <div class="card__content"> <h3 id="title-navigating-the-nist-industrial-control-systems-overlay"> <a href="https://digital.gov/2023/10/25/navigating-the-nist-industrial-control-systems-overlay/">Navigating the NIST industrial control systems overlay</a> </h3><div class="summary"> <p>A quick-start user guide for information technology professionals to begin using overlays as a part of their regular security assessments.</p> </div> <div class="authors-list authors-list--inline"> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://github.com/Michael-10101.png?size=50" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/michael-marin/ " title="Posts by Michael Marin" rel="author" aria-label="Read more articles by Michael Marin" >Michael Marin</a > </div> </div> </div> </div> <div class="card__media"> <div class="media-featured"> <a href="https://digital.gov/2023/10/25/navigating-the-nist-industrial-control-systems-overlay/" title="Navigating the NIST industrial control systems overlay"> <img src="https://s3.amazonaws.com/digitalgov/ics-industrial-control-system-genestro-istock-getty-images-1414920594_w800.png" aria-hidden="true" alt="" /> </a> </div> </div> <div class="card__meta"> <div class="date">Oct 25, 2023</div> </div> </article> </div> </section> <section class="grid-container-desktop usa-section"> <div class="dg-collection"> <h2 class="dg-collection__header" > Resources on Security </h2> <ul class="usa-collection"> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/img/digit-50.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="/resources/prepare-recovery-respond-social-media-cyber-vandalism-toolkit/" title="Social media cyber-vandalism toolkit">Social media cyber-vandalism toolkit</a> </h3> <p class="usa-collection__description"> Cyber-vandalism presents a serious challenge to online-based communication tools. This resource provides information for agency practitioners to prepare for, recover from, and respond to cyber-vandalism. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/logos/doj-icon.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="https://www.justice.gov/opcl/overview-privacy-act-1974-2020-edition" title="Overview of the Privacy Act of 1974 (2020 Edition)">Overview of the Privacy Act of 1974 (2020 Edition)</a> </h3> <p class="usa-collection__description"> This overview, prepared by the Department of Justice’s Office of Privacy and Civil Liberties (OPCL), covers various provisions of the Privacy Act, as addressed by court decisions in cases involving the Act’s disclosure prohibition, its access and amendment provisions, and its agency record-keeping requirements. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/img/digit-50.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="/resources/an-introduction-to-security/" title="An introduction to web security">An introduction to web security</a> </h3> <p class="usa-collection__description"> Guidance on meeting security requirements for federal websites. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/img/digit-50.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="/resources/an-introduction-to-ato/" title="An introduction to ATOs">An introduction to ATOs</a> </h3> <p class="usa-collection__description"> What is an Authorization to Operate? Before you use software in government, you need to make sure it is allowed. You should know what an ATO is, and when you need one. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/img/digit-50.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="/resources/an-introduction-to-security-and-privacy-controls/" title="An introduction to security and privacy controls">An introduction to security and privacy controls</a> </h3> <p class="usa-collection__description"> What do the control families of NIST 800-53 mean? Here’s an overview of the control families that create the foundation of federal security compliance. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/img/digit-50.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="/resources/privacy-preserving-collaboration-using-cryptography/" title="Privacy-Preserving Collaboration Using Cryptography">Privacy-Preserving Collaboration Using Cryptography</a> </h3> <p class="usa-collection__description"> In conjunction with her May 2020 presentation, Dr. Emily Shen outlines her work on Secure multi-party computation (MPC), a type of cryptography that allows parties to jointly analyze their data without disclosing it. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/img/digit-50.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="/resources/m-19-17-enabling-mission-delivery-through-improved-identity-credential-and-access-management/" title="M-19-17 Enabling Mission Delivery through Improved Identity, Credential, and Access Management">M-19-17 Enabling Mission Delivery through Improved Identity, Credential, and Access Management</a> </h3> <p class="usa-collection__description"> This 2019 memorandum sets forth the federal government’s Identity, Credential, and Access Management (ICAM) policy. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/logos/ciocouncil-icon.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="https://cloud.cio.gov/strategy/" title="Cloud Smart: Federal Cloud Computing Strategy">Cloud Smart: Federal Cloud Computing Strategy</a> </h3> <p class="usa-collection__description"> Founded on three key pillars of successful cloud adoption—security, procurement, and workforce—the Cloud Smart strategy includes 11 action items from the Chief Information Officers (CIO) Council. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/logos/whitehouse-icon.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="https://www.whitehouse.gov/wp-content/uploads/legacy_drupal_files/omb/circulars/A130/a130revised.pdf" title="OMB Circular A-130">OMB Circular A-130</a> </h3> <p class="usa-collection__description"> Managing Information as a Strategic Resource </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/img/digit-50.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="/resources/an-introduction-to-domain-management/" title="An introduction to domain management">An introduction to domain management</a> </h3> <p class="usa-collection__description"> A .gov domain instantly conveys credibility and trustworthiness, and proper domain management practices ensure that your website is secure and accessible. </p> </div> </li> </ul> </div> <div class="dg-collection"> <h2 class="dg-collection__header" > Tools and Services </h2> <ul class="usa-collection"> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="https://www.google.com/s2/favicons?domain=https://www.DigitalDashboard.gov/" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="https://www.DigitalDashboard.gov/" title="Digital Dashboard">Digital Dashboard</a> </h3> <p class="usa-collection__description"> Measures how U.S. government domains are following best practices for federal websites. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="https://www.google.com/s2/favicons?domain=https://www.cloud.gov/" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="https://www.cloud.gov/" title="Cloud.gov">Cloud.gov</a> </h3> <p class="usa-collection__description"> A FedRAMP approved cloud hosting platform that makes it easy for federal agencies to get on the cloud by simplifying procurement, security, and compliance. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="https://www.google.com/s2/favicons?domain=https://www.fedramp.gov/" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="https://www.fedramp.gov/" title="FedRAMP">FedRAMP</a> </h3> <p class="usa-collection__description"> The Federal Risk and Authorization Management (FedRAMP) is a process that authorizes cloud products and services. </p> </div> </li> <li class="usa-collection__item"> <div class="usa-collection__img-wrapper"> <img class="usa-collection__img" src="/logos/logingov-icon.png" alt="" aria-hidden="true" /> </div> <div class="usa-collection__body"> <h3 class="usa-collection__header"> <a class="usa-link" href="https://www.login.gov/" title="Login.gov">Login.gov</a> </h3> <p class="usa-collection__description"> An identity management service that provides secure and private online access to participating government programs. </p> </div> </li> </ul> </div> </section> <div class="usa-section usa-section--light"> <div class="grid-container grid-container-desktop"> <h2 id="dg-stream-pagination-header"> More News and Events on Security</h2> <p>99 posts</p> <article class="card card-news--internal card-linked" aria-labelledby="title-it-warning-banners-how-gsa-is-working-to-stop-unnecessarily-frightening-users" > <div class="card__content"> <h3 id="title-it-warning-banners-how-gsa-is-working-to-stop-unnecessarily-frightening-users"> <a href="https://digital.gov/2024/08/07/it-warning-banners-how-gsa-is-working-to-stop-unnecessarily-frightening-users/">IT warning banners: How GSA is working to stop unnecessarily frightening users</a> </h3><div class="summary"> <p>OMB Memo M-23-22 discourages the use of pop-ups and modals. GSA IT updated security policies so that IT warning banners are presented less intrusively to users.</p> </div> <div class="authors-list authors-list--inline"> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://github.com/JessicaMarine1.png?size=50" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/jessica-marine/ " title="Posts by Jessica Marine" rel="author" aria-label="Read more articles by Jessica Marine" >Jessica Marine</a > </div> </div> </div> </div> <div class="card__media"> <div class="media-featured"> <a href="https://digital.gov/2024/08/07/it-warning-banners-how-gsa-is-working-to-stop-unnecessarily-frightening-users/" title="IT warning banners: How GSA is working to stop unnecessarily frightening users"> <img src="https://s3.amazonaws.com/digitalgov/example-gsa-official-use-system-warning-blue-bg-sm-comp_w800.png" aria-hidden="true" alt="" /> </a> </div> </div> <div class="card__meta"> <div class="date">Aug 07, 2024</div> </div> </article> <article class="card card-news--external card-linked" aria-labelledby="title-fedramp-governance" > <div class="card__content"> <div class="card__summary"> <h3 id="title-fedramp-governance"> <a href="https://www.fedramp.gov/2024-06-04-fedramp-governance/">FedRAMP governance</a> </h3> <p>The Federal Risk and Authorization Management Program (FedRAMP) has recently updated its governance structure to better serve its customers. Learn about their recently-formed FedRAMP Board, composed of federal executives; the FedRAMP Technical Advisory Group (TAG), composed of technology experts; and updates made to the Federal Security Cloud Advisory Committee (FSCAC). These groups collectively aim to strengthen and expand FedRAMP’s cloud service capabilities.<em class="card__source source" >— via <a href="https://www.fedramp.gov/2024-06-04-fedramp-governance/" title="Read at FedRAMP" >FedRAMP</a ></em > </p> </div> </div> <div class="card__media"> <img src="/logos/fedramp-logo.png" alt="fedramp logo" /> </div> <div class="card__meta"> <div class="date">Jun 04, 2024</div> </div> </article> <article class="card card-news--external card-linked" aria-labelledby="title-18f-practices-in-action-spoiler-this-stuff-works" > <div class="card__content"> <div class="card__summary"> <h3 id="title-18f-practices-in-action-spoiler-this-stuff-works"> <a href="https://18f.gsa.gov/2024/04/03/18f-practices-in-action/">18F practices in action (spoiler: this stuff works)</a> </h3> <p>How well do 18F software development practices work? The 18F team reflected on a recent project for the Cybersecurity and Infrastructure Security Agency (CISA) .gov registry to gauge the effectiveness of six recommendations aligned with what they actually did.<em class="card__source source" >— via <a href="https://18f.gsa.gov/2024/04/03/18f-practices-in-action/" title="Read at 18F" >18F</a ></em > </p> </div> </div> <div class="card__media"> <img src="/logos/18f-logo.png" alt="18f logo" /> </div> <div class="card__meta"> <div class="date">Apr 03, 2024</div> </div> </article> <article class="card card-news--internal card-linked" aria-labelledby="title-who-is-controlling-your-control-system" > <div class="card__content"> <h3 id="title-who-is-controlling-your-control-system"> <a href="https://digital.gov/2023/10/31/who-is-controlling-your-control-system/">Who is controlling your control system?</a> </h3><div class="summary"> <p>Best practices for security administration of control systems and their components. Specific guidance and lessons learned from a federal information system manager.</p> </div> <div class="authors-list authors-list--inline"> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://github.com/Michael-10101.png?size=50" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/michael-marin/ " title="Posts by Michael Marin" rel="author" aria-label="Read more articles by Michael Marin" >Michael Marin</a > </div> </div> </div> </div> <div class="card__media"> <div class="media-featured"> <a href="https://digital.gov/2023/10/31/who-is-controlling-your-control-system/" title="Who is controlling your control system?"> <img src="https://s3.amazonaws.com/digitalgov/title-card-who-controls-your-control-systems-chor-muang-istock-getty-images-1423481986-comp_w800.png" aria-hidden="true" alt="" /> </a> </div> </div> <div class="card__meta"> <div class="date">Oct 31, 2023</div> </div> </article> <article class="card card-news--internal card-linked" aria-labelledby="title-navigating-the-nist-industrial-control-systems-overlay" > <div class="card__content"> <h3 id="title-navigating-the-nist-industrial-control-systems-overlay"> <a href="https://digital.gov/2023/10/25/navigating-the-nist-industrial-control-systems-overlay/">Navigating the NIST industrial control systems overlay</a> </h3><div class="summary"> <p>A quick-start user guide for information technology professionals to begin using overlays as a part of their regular security assessments.</p> </div> <div class="authors-list authors-list--inline"> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://github.com/Michael-10101.png?size=50" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/michael-marin/ " title="Posts by Michael Marin" rel="author" aria-label="Read more articles by Michael Marin" >Michael Marin</a > </div> </div> </div> </div> <div class="card__media"> <div class="media-featured"> <a href="https://digital.gov/2023/10/25/navigating-the-nist-industrial-control-systems-overlay/" title="Navigating the NIST industrial control systems overlay"> <img src="https://s3.amazonaws.com/digitalgov/ics-industrial-control-system-genestro-istock-getty-images-1414920594_w800.png" aria-hidden="true" alt="" /> </a> </div> </div> <div class="card__meta"> <div class="date">Oct 25, 2023</div> </div> </article> <article class="card card-news--external card-linked" aria-labelledby="title-the-cybersecurity-battleground-reflecting-on-the-past-envisioning-the-future" > <div class="card__content"> <div class="card__summary"> <h3 id="title-the-cybersecurity-battleground-reflecting-on-the-past-envisioning-the-future"> <a href="https://gsablogs.gsa.gov/technology/2023/10/18/the-cybersecurity-battleground/">The Cybersecurity Battleground: Reflecting on the past, envisioning the future</a> </h3> <p>This month marks the 20th anniversary of Cybersecurity Awareness Month, as well as the beginning of a new government fiscal year. In this Great Government through Technology blog post, Laura Stanton, Assistant Commissioner in the Office of Information Technology Category (ITC) of GSA’s Federal Acquisition Service (FAS), takes the opportunity to delve into some recent notable cybersecurity events, the broader implications for government agencies, and her vision as GSA continues to play a pivotal role in positioning agencies to create a safer and more secure digital future.<em class="card__source source" >— via <a href="https://gsablogs.gsa.gov/technology/2023/10/18/the-cybersecurity-battleground/" title="Read at General Services Administration" >General Services Administration</a ></em > </p> </div> </div> <div class="card__media"> <img src="/logos/gsa-logo.png" alt="gsa logo" /> </div> <div class="card__meta"> <div class="date">Oct 18, 2023</div> </div> </article> <article class="card card-news--internal card-linked" aria-labelledby="title-new-idmanagement.gov-is-refreshing-the-conversation-about-zero-trust" > <div class="card__content"> <h3 id="title-new-idmanagement.gov-is-refreshing-the-conversation-about-zero-trust"> <a href="https://digital.gov/2023/10/02/new-idmanagement-gov-is-refreshing-the-conversation-about-zero-trust/">New IDManagement.gov is refreshing the conversation about Zero Trust</a> </h3><div class="summary"> <p>IDmanagement.gov has received an update that makes it easier for users to find exactly what they need.</p> </div> <div class="authors-list authors-list--inline"> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://digital.gov/img/digit-light.png" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/babur-kohy/ " title="Posts by Babur Kohy" rel="author" aria-label="Read more articles by Babur Kohy" >Babur Kohy</a > </div> </div> </div> </div> <div class="card__media"> <div class="media-featured"> <a href="https://digital.gov/2023/10/02/new-idmanagement-gov-is-refreshing-the-conversation-about-zero-trust/" title="New IDManagement.gov is refreshing the conversation about Zero Trust"> <img src="https://s3.amazonaws.com/digitalgov/id-management-zero-trust_w800.png" aria-hidden="true" alt="" /> </a> </div> </div> <div class="card__meta"> <div class="date">Oct 02, 2023</div> </div> </article> <article class="card card-news--external card-linked" aria-labelledby="title-why-the-american-people-deserve-a-digital-government" > <div class="card__content"> <div class="card__summary"> <h3 id="title-why-the-american-people-deserve-a-digital-government"> <a href="https://www.whitehouse.gov/omb/briefing-room/2023/09/22/why-the-american-people-deserve-a-digital-government/">Why the American People Deserve a Digital Government</a> </h3> <p>OMB released new policy guidance for government that includes a variety of actions and standards to help federal agencies design, develop, and deliver modern websites and digital services. Memo M-23-22, Delivering a Digital-First Public Experience, will make it seamless for the public to obtain government information and services online, and help agencies fully implement the 21st Century Integrated Digital Experience Act (21st Century IDEA).<em class="card__source source" >— via <a href="https://www.whitehouse.gov/omb/briefing-room/2023/09/22/why-the-american-people-deserve-a-digital-government/" title="Read at The White House" >The White House</a ></em > </p> </div> </div> <div class="card__media"> <img src="/logos/whitehouse-logo.png" alt="whitehouse logo" /> </div> <div class="card__meta"> <div class="date">Sep 22, 2023</div> </div> </article> <article class="card card-news--internal card-linked" aria-labelledby="title-gsa-shared-service-provider-program-guide" > <div class="card__content"> <h3 id="title-gsa-shared-service-provider-program-guide"> <a href="https://digital.gov/2023/07/19/gsa-shared-service-provider-program-guide/">GSA Shared Service Provider Program Guide</a> </h3><div class="summary"> <p>The newly-released SSP Program Guide was created for commercial vendors interested in becoming a Shared Service Provider.</p> </div> <div class="authors-list authors-list--inline"> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://digital.gov/img/digit-light.png" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/cheryl-jenkins/ " title="Posts by Cheryl Jenkins" rel="author" aria-label="Read more articles by Cheryl Jenkins" >Cheryl Jenkins</a > </div> </div> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://digital.gov/img/digit-dark.png" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/tyler-jones/ " title="Posts by Tyler Jones" rel="author" aria-label="Read more articles by Tyler Jones" >Tyler Jones</a > </div> </div> </div> </div> <div class="card__media"> <div class="media-featured"> <a href="https://digital.gov/2023/07/19/gsa-shared-service-provider-program-guide/" title="GSA Shared Service Provider Program Guide"> <img src="https://s3.amazonaws.com/digitalgov/data-security-concept-comp_w800.png" aria-hidden="true" alt="" /> </a> </div> </div> <div class="card__meta"> <div class="date">Jul 19, 2023</div> </div> </article> <article class="card card-news--internal card-linked" aria-labelledby="title-digital-autopen-playbook-pinpoints-how-agencies-can-leverage-technology-for-digital-signatures" > <div class="card__content"> <h3 id="title-digital-autopen-playbook-pinpoints-how-agencies-can-leverage-technology-for-digital-signatures"> <a href="https://digital.gov/2023/05/23/digital-autopen-playbook-pinpoints-how-agencies-can-leverage-technology-for-digital-signatures/">Digital Autopen Playbook pinpoints how agencies can leverage technology for digital signatures</a> </h3><div class="summary"> <p>The Digital Autopen Playbook is a practical guide to help federal agencies create and use a digital autopen for Federal Register documents.</p> </div> <div class="authors-list authors-list--inline"> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://github.com/idmken.png?size=50" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/kenneth-myers/ " title="Posts by Kenneth Myers" rel="author" aria-label="Read more articles by Kenneth Myers" >Kenneth Myers</a > </div> </div> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://digital.gov/img/digit-dark.png" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/tyler-jones/ " title="Posts by Tyler Jones" rel="author" aria-label="Read more articles by Tyler Jones" >Tyler Jones</a > </div> </div> </div> </div> <div class="card__media"> <div class="media-featured"> <a href="https://digital.gov/2023/05/23/digital-autopen-playbook-pinpoints-how-agencies-can-leverage-technology-for-digital-signatures/" title="Digital Autopen Playbook pinpoints how agencies can leverage technology for digital signatures"> <img src="https://s3.amazonaws.com/digitalgov/ficam-digital-autopen-playbook-website_w800.png" aria-hidden="true" alt="" /> </a> </div> </div> <div class="card__meta"> <div class="date">May 23, 2023</div> </div> </article> <article class="card card-news--external card-linked" aria-labelledby="title-judiciary-launches-new-federal-ticket-processing-website" > <div class="card__content"> <div class="card__summary"> <h3 id="title-judiciary-launches-new-federal-ticket-processing-website"> <a href="https://www.uscourts.gov/news/2023/05/02/judiciary-launches-new-federal-ticket-processing-website">Judiciary Launches New Federal Ticket Processing Website</a> </h3> <p>Individuals can now pay tickets for minor federal violations more easily, using a redesigned website for the Judiciary’s Central Violations Bureau. The website, officially launched in early May, leverages new technologies and best design practices to improve usability and accessibility across devices, including smart phones.<em class="card__source source" >— via <a href="https://www.uscourts.gov/news/2023/05/02/judiciary-launches-new-federal-ticket-processing-website" title="Read at Administrative Office of the U.S. Courts" >Administrative Office of the U.S. Courts</a ></em > </p> </div> </div> <div class="card__media"> <img src="/logos/aousc-logo.png" alt="aousc logo" /> </div> <div class="card__meta"> <div class="date">May 02, 2023</div> </div> </article> <article class="card card-news--internal card-linked" aria-labelledby="title-the-privileged-identity-playbook-guides-management-of-privileged-user-accounts" > <div class="card__content"> <div class="kicker"> <span>Identity, Credential, and Access Management</span> </div><h3 id="title-the-privileged-identity-playbook-guides-management-of-privileged-user-accounts"> <a href="https://digital.gov/2022/11/10/the-privileged-identity-playbook-guides-management-of-privileged-user-accounts/">The Privileged Identity Playbook Guides Management of Privileged User Accounts</a> </h3><div class="summary"> <p>The Privileged Identity Playbook is a practical guide to help federal agencies implement and manage a privileged user management function as part of an overall agency ICAM program.</p> </div> <div class="authors-list authors-list--inline"> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://github.com/idmken.png?size=50" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/kenneth-myers/ " title="Posts by Kenneth Myers" rel="author" aria-label="Read more articles by Kenneth Myers" >Kenneth Myers</a > </div> </div> </div> </div> <div class="card__media"> <div class="media-featured"> <a href="https://digital.gov/2022/11/10/the-privileged-identity-playbook-guides-management-of-privileged-user-accounts/" title="The Privileged Identity Playbook Guides Management of Privileged User Accounts"> <img src="https://s3.amazonaws.com/digitalgov/cyber-security-and-privacy-golden-sikorka-istock-getty-images-1358866874_w800.png" aria-hidden="true" alt="" /> </a> </div> </div> <div class="card__meta"> <div class="date">Nov 10, 2022</div> </div> </article> <article class="card card-news--external card-linked" aria-labelledby="title-cybersecurity-awareness-month" > <div class="card__content"> <div class="card__summary"> <h3 id="title-cybersecurity-awareness-month"> <a href="https://github.com/USAJOBS/openopps-help/blob/66d7ce7e928372cd7f0f99befa28685644d53359/assets/Cyber%20Community%20Campaign%20Toolkit.pdf?raw=true">Cybersecurity Awareness Month</a> </h3> <p>This year, the Federal Cyber Workforce Management and Coordinating Working Group, in partnership with OPM, is hosting an interagency contest to promote and expand awareness of the Cyber Professionals Community on Open Opportunities. This community serves as a central hub to post and participate in cyber career development opportunities. Download their Toolkit (1.29 MB, 21 pages) to learn more about the interagency contest that runs October 3rd to December 2nd.<em class="card__source source" >— via <a href="https://github.com/USAJOBS/openopps-help/blob/66d7ce7e928372cd7f0f99befa28685644d53359/assets/Cyber%20Community%20Campaign%20Toolkit.pdf?raw=true" title="Read at Open Opportunities" >Open Opportunities</a ></em > </p> </div> </div> <div class="card__media"> <img src="/logos/open-opps-logo.png" alt="open-opps logo" /> </div> <div class="card__meta"> <div class="date">Oct 08, 2022</div> </div> </article> <article class="card card-news--external card-linked" aria-labelledby="title-fedramp-launches-oscal-developer-data-bites-series" > <div class="card__content"> <div class="card__summary"> <h3 id="title-fedramp-launches-oscal-developer-data-bites-series"> <a href="https://www.fedramp.gov/blog/2022-08-18-fedramp-launches-oscal-developer-data-bites-series/">FedRAMP Launches OSCAL Developer Data Bites Series</a> </h3> <p><strong>FedRAMP Launches OSCAL Developer Data Bites Series</strong>&mndash;FedRAMP is excited to launch an Open Security Controls Assessment Language (OSCAL) Developer Data Bites series! It will cover a variety of technical topics regarding users’ utilization of OSCAL for FedRAMP, FedRAMP automation updates or changes, and open forum conversations with subject matter experts. The first OSCAL Developers Data Bites session will be held on Thursday, September 1, at 12:00 pm, EDT. The series will continue on a bi-weekly basis.<em class="card__source source" >— via <a href="https://www.fedramp.gov/blog/2022-08-18-fedramp-launches-oscal-developer-data-bites-series/" title="Read at FedRAMP" >FedRAMP</a ></em > </p> </div> </div> <div class="card__media"> <img src="/logos/fedramp-logo.png" alt="fedramp logo" /> </div> <div class="card__meta"> <div class="date">Aug 18, 2022</div> </div> </article> <article class="card card-news--external card-linked" aria-labelledby="title-modernize-your-identity-management-process-through-ilm" > <div class="card__content"> <div class="card__summary"> <h3 id="title-modernize-your-identity-management-process-through-ilm"> <a href="https://www.gsa.gov/blog/2022/08/12/modernize-your-identity-management-process-through-ilm">Modernize Your Identity Management Process Through ILM</a> </h3> <p><strong>Modernize Your Identity Management Process Through ILM</strong>—GSA’s Office of Government-wide Policy is pleased to announce the Identity Lifecycle Management (ILM) Playbook, designed for identity program managers, and enterprise and application architects interested in modernizing their identity management process for federal employees. This practical guide helps federal agencies understand how to shift their focus from managing employee access based on credentials to managing the lifecycle of identities as outlined in section III of OMB Memo 19-17. This will help agencies achieve an enterprise Identity, Credential, and Access Management (ICAM) system that is agile enough to support technology modernization and aligns with the Federal Identity, Credential, and Access Management (FICAM) architecture.<em class="card__source source" >— via <a href="https://www.gsa.gov/blog/2022/08/12/modernize-your-identity-management-process-through-ilm" title="Read at General Services Administration" >General Services Administration</a ></em > </p> </div> </div> <div class="card__media"> <img src="/logos/gsa-logo.png" alt="gsa logo" /> </div> <div class="card__meta"> <div class="date">Aug 12, 2022</div> </div> </article> <article class="card card-news--external card-linked" aria-labelledby="title-fedramp-penetration-test-guidance-updates" > <div class="card__content"> <div class="card__summary"> <h3 id="title-fedramp-penetration-test-guidance-updates"> <a href="https://www.fedramp.gov/2022-07-05-penetration-test-guidance">FedRAMP Penetration Test Guidance Updates</a> </h3> <p><strong>Penetration Test Guidance Updates</strong>—These updates were made to address the ever-changing cybersecurity landscape. Revisions include updated guidance around existing and new threats as well as addressing attack vectors so they’re in alignment with current best practices. Learn about the four initiatives included in the revision process, and download the new June 2022 PDF.<em class="card__source source" >— via <a href="https://www.fedramp.gov/2022-07-05-penetration-test-guidance" title="Read at FedRAMP" >FedRAMP</a ></em > </p> </div> </div> <div class="card__media"> <img src="/logos/fedramp-logo.png" alt="fedramp logo" /> </div> <div class="card__meta"> <div class="date">Jul 05, 2022</div> </div> </article> <article class="card card-news--external card-linked" aria-labelledby="title-c-scrm-acquisition-community-of-practice-acop-interact-site" > <div class="card__content"> <div class="card__summary"> <h3 id="title-c-scrm-acquisition-community-of-practice-acop-interact-site"> <a href="https://gsablogs.gsa.gov/technology/2022/06/30/c-scrm-acquisition-community-of-practice-acop-interact-site/">C-SCRM Acquisition Community of Practice (ACoP) Interact Site</a> </h3> <p><strong>C-SCRM Acquisition Community of Practice (ACoP) Interact Site</strong>—Since the launch of the Cybersecurity Supply Chain Risk Management (C-SCRM) Acquisition Community of Practice (ACoP), GSA and the Cybersecurity and Infrastructure Security Agency (CISA) have been co-leading an effort to broaden the level of awareness and develop agency maturity in the areas of acquisitions, supply chain risk management, and cybersecurity across the federal government for information communication technology and services (ICTS). To increase C-SCRM awareness and adoption government-wide, the C-SCRM ACoP launched an online collaborative space for the federal government’s IT community and industry to share best practices, ideas, guidance, tools, and expertise needed to implement C-SCRM requirements. Working together as a community and sharing information will help us improve our cybersecurity posture across all levels of government.<em class="card__source source" >— via <a href="https://gsablogs.gsa.gov/technology/2022/06/30/c-scrm-acquisition-community-of-practice-acop-interact-site/" title="Read at General Services Administration" >General Services Administration</a ></em > </p> </div> </div> <div class="card__media"> <img src="/logos/gsa-logo.png" alt="gsa logo" /> </div> <div class="card__meta"> <div class="date">Jun 30, 2022</div> </div> </article> <article class="card card-news--internal card-linked" aria-labelledby="title-technology-boosting-tmf-investments-deliver-benefits-for-the-american-public" > <div class="card__content"> <div class="kicker"> <span>IT Modernization</span> </div><h3 id="title-technology-boosting-tmf-investments-deliver-benefits-for-the-american-public"> <a href="https://digital.gov/2022/05/23/technology-boosting-tmf-investments-deliver-benefits-for-the-american-public/">Technology-boosting TMF Investments Deliver Benefits for the American Public</a> </h3><div class="summary"> <p>The Technology Modernization Fund (TMF) is working to transform the way the government uses technology to deliver for the American public in an equitable, secure and user-friendly way. It strategically invests in priority IT modernization projects that are aligned with the fast pace of changing technology and agency needs. Here are a few examples of how the TMF has invested in multiple projects that are helping many agencies deliver what people need when they need.</p> </div> <div class="authors-list authors-list--inline"> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://digital.gov/img/digit-dark.png" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/gsa-blog-team/ " title="Posts by GSA Blog Team" rel="author" aria-label="Read more articles by GSA Blog Team" >GSA Blog Team</a > </div> </div> </div> </div> <div class="card__media"> <div class="media-featured"> <a href="https://digital.gov/2022/05/23/technology-boosting-tmf-investments-deliver-benefits-for-the-american-public/" title="Technology-boosting TMF Investments Deliver Benefits for the American Public"> <img src="https://s3.amazonaws.com/digitalgov/tmf-logo-screencap-1200_w800.png" aria-hidden="true" alt="" /> </a> </div> </div> <div class="card__meta"> <div class="date">May 23, 2022</div> </div> </article> <article class="card card-news--internal card-linked" aria-labelledby="title-two-years-of-federal-student-aids-virtual-assistant-lead-to-lessons-learned-and-a-clear-vision-of-the-work-ahead" > <div class="card__content"> <h3 id="title-two-years-of-federal-student-aids-virtual-assistant-lead-to-lessons-learned-and-a-clear-vision-of-the-work-ahead"> <a href="https://digital.gov/2022/05/02/two-years-of-federal-student-aid-virtual-assistant-lead-to-lessons-learned-and-a-clear-vision-of-the-work-ahead/">Two Years of Federal Student Aid’s Virtual Assistant Lead to Lessons Learned and a Clear Vision of the Work Ahead</a> </h3><div class="summary"> <p>Education’s FSA team behind Aidan® shares what they’ve learned over the past two years to help drive improvements and expand the product to a wider range of users.</p> </div> <div class="authors-list authors-list--inline"> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://digital.gov/img/digit-light.png" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/christine-wilkes/ " title="Posts by Christine Wilkes" rel="author" aria-label="Read more articles by Christine Wilkes" >Christine Wilkes</a > </div> </div> <div class="author usa-media-block"> <img class="author__photo-img usa-media-block__img" src="https://digital.gov/img/digit-dark.png" alt="" /> <div class="usa-media-block__body"> <a class="author__name" href="https://digital.gov/authors/laura-nadel/ " title="Posts by Laura Nadel" rel="author" aria-label="Read more articles by Laura Nadel" >Laura Nadel</a > </div> </div> </div> </div> <div class="card__media"> <div class="media-featured"> <a href="https://digital.gov/2022/05/02/two-years-of-federal-student-aid-virtual-assistant-lead-to-lessons-learned-and-a-clear-vision-of-the-work-ahead/" title="Two Years of Federal Student Aid’s Virtual Assistant Lead to Lessons Learned and a Clear Vision of the Work Ahead"> <img src="https://s3.amazonaws.com/digitalgov/fafsa-ask-aidan-owl-logo-in-chat-bubble_w800.jpg" aria-hidden="true" alt="" /> </a> </div> </div> <div class="card__meta"> <div class="date">May 02, 2022</div> </div> </article> <article class="card card-news--external card-linked" aria-labelledby="title-gsa-highlights-progress-on-citizen-facing-digital-services-cybersecurity-in-first-year-of-american-rescue-plan" > <div class="card__content"> <div class="card__summary"> <h3 id="title-gsa-highlights-progress-on-citizen-facing-digital-services-cybersecurity-in-first-year-of-american-rescue-plan"> <a href="https://www.gsa.gov/about-us/newsroom/news-releases/gsa-highlights-progress-on-citizenfacing-digital-services-cybersecurity-in-first-year-of-american-rescue-plan-03102022">GSA Highlights Progress on Citizen-Facing Digital Services, Cybersecurity in First Year of American Rescue Plan</a> </h3> <p><strong>GSA Highlights Progress on Citizen-Facing Digital Services, Cybersecurity in First Year of American Rescue Plan</strong>—Ahead of the first anniversary of the signing of the American Rescue Plan, legislation which has been the key driver of a strong economic recovery, provided the tools needed to fight the pandemic, and made long-term investments to revitalize the local economy in communities around the country, the U.S. General Services Administration (GSA) highlighted some of the key ways these investments are driving progress on technology modernization and making digital services simpler and more secure across government.<em class="card__source source" >— via <a href="https://www.gsa.gov/about-us/newsroom/news-releases/gsa-highlights-progress-on-citizenfacing-digital-services-cybersecurity-in-first-year-of-american-rescue-plan-03102022" title="Read at General Services Administration" >General Services Administration</a ></em > </p> </div> </div> <div class="card__media"> <img src="/logos/gsa-logo.png" alt="gsa logo" /> </div> <div class="card__meta"> <div class="date">Mar 10, 2022</div> </div> </article> <ul class="pagination"> <li class="page active"> <a href="/topics/security/" class="pagination__link"> 1 </a> </li> <li class="page "> <a href="/topics/security/page/2/" class="pagination__link"> 2 </a> </li> <li class="page "> <a href="/topics/security/page/3/" class="pagination__link"> 3 </a> </li> <li class="page "> <a href="/topics/security/page/4/" class="pagination__link"> 4 </a> </li> <li class="page "> <a href="/topics/security/page/5/" class="pagination__link"> 5 </a> </li> <li class="pagination-next"> <a href="/topics/security/page/2/" aria-label="Next page"> <svg class="usa-icon dg-icon dg-icon--standard" aria-hidden="true" focusable="false" role="img" > <use xlink:href="/uswds/img/sprite.svg#arrow_forward" ></use> </svg> </a> </li> <li class="pagination-last"> <a href="/topics/security/page/5/" aria-label="Last page"> <svg class="usa-icon dg-icon dg-icon--large" aria-hidden="true" focusable="false" role="img" > <use xlink:href="/uswds/img/sprite.svg#last_page" ></use> </svg> </a> </li> </ul> </div> </div> </main> <section id="newsletter-signup" aria-label="Subscribe to the Digital.gov newsletter" > <div class="grid-container grid-container-desktop"> <div class="grid-row tablet-lg:grid-gap-6"> <div class="grid-col-12 tablet:grid-col-7"> <section class="usa-sign-up"> <p class="blurb" id="newsletter-subscribe-description"> <strong>Join 18,000 others in government</strong> and subscribe to our newsletter — a round-up of the best digital news in government and across our field. </p> </section> </div> <div class="grid-col-12 tablet:grid-col-5"> <section class="usa-sign-up" aria-describedby="newsletter-subscribe-description" > <script src="https://public.govdelivery.com/assets/Signup.js" data-account-code="USGSA" data-signup-id="34948" ></script> </section> </div> </div> </div> </section> <footer class="usa-footer usa-footer--big" role="contentinfo"> <section class="return-to-top"> <div class="grid-container grid-container-desktop usa-footer__return-to-top" > <a href="#"> <span>Return to top</span> <svg class="usa-icon dg-icon dg-icon--standard margin-bottom-05" aria-hidden="true" focusable="false" > <use xlink:href="/uswds/img/sprite.svg#arrow_upward" ></use> </svg> </a> </div> </section> <div class="usa-footer__primary-section"> <div class="grid-container grid-container-desktop"> <nav class="usa-footer__nav" aria-label="Footer navigation"> <div class="grid-row grid-gap-4"> <div class="mobile-lg:grid-col-6 tablet-lg:grid-col-3"> <section class="usa-footer__primary-content usa-footer__primary-content--collapsible" > <h4 class="usa-footer__primary-link">Learn</h4> <ul class="usa-list usa-list--unstyled"><li class="usa-footer__secondary-link"> <a href="/news/">Blogs</a> </li><li class="usa-footer__secondary-link"> <a href="/events/">Events</a> </li><li class="usa-footer__secondary-link"> <a href="/resources/">Resources</a> </li><li class="usa-footer__secondary-link"> <a href="/communities/">Communities</a> </li><li class="usa-footer__secondary-link"> <a href="/guides/">Guides</a> </li><li class="usa-footer__secondary-link"> <a href="/job-board/">Job board</a> </li></ul> </section> </div> <div class="mobile-lg:grid-col-6 tablet-lg:grid-col-3"> <section class="usa-footer__primary-content usa-footer__primary-content--collapsible" > <h4 class="usa-footer__primary-link">Contribute</h4> <ul class="usa-list usa-list--unstyled"><li class="usa-footer__secondary-link"> <a href="/contribute/">Write for us</a> </li><li class="usa-footer__secondary-link"> <a href="/digitalgov-university/">Host an event</a> </li><li class="usa-footer__secondary-link"> <a href="https://github.com/GSA/digitalgov.gov/issues">Submit GitHub issue</a> </li></ul> </section> </div> <div class="mobile-lg:grid-col-6 tablet-lg:grid-col-3"> <section class="usa-footer__primary-content usa-footer__primary-content--collapsible" > <h4 class="usa-footer__primary-link">About</h4> <ul class="usa-list usa-list--unstyled"><li class="usa-footer__secondary-link"> <a href="/about/">About Us</a> </li><li class="usa-footer__secondary-link"> <a href="/policies/">Site Policies</a> </li><li class="usa-footer__secondary-link"> <a href="/about/contact/">Contact Us</a> </li><li class="usa-footer__secondary-link"> <a href="/about/manage-content/">Content schedule</a> </li></ul> </section> </div> <div class="mobile-lg:grid-col-6 tablet-lg:grid-col-3"> <section class="usa-footer__primary-content usa-footer__primary-content--collapsible" > <h4 class="usa-footer__primary-link">Social</h4> <ul class="usa-list usa-list--unstyled social-links"> <li class="usa-footer__secondary-link"> <svg class="usa-icon dg-icon dg-icon--standard margin-bottom-05" aria-hidden="true" focusable="false" > <use xlink:href="/uswds/img/sprite.svg#x" ></use> </svg> <a class="text-ink hover:text-ink text-no-underline hover:text-underline" href="https://twitter.com/digital_gov" >X (Formerly Twitter)</a > </li> <li class="usa-footer__secondary-link"> <svg class="usa-icon dg-icon dg-icon--standard margin-bottom-05" aria-hidden="true" focusable="false" > <use xlink:href="/uswds/img/sprite.svg#facebook" ></use> </svg> <a class="text-ink hover:text-ink text-no-underline hover:text-underline" href="https://www.facebook.com/digitalgov/" >Facebook</a > </li> <li class="usa-footer__secondary-link"> <svg class="usa-icon dg-icon dg-icon--standard margin-bottom-05" aria-hidden="true" focusable="false" > <use xlink:href="/uswds/img/sprite.svg#youtube" ></use> </svg> <a class="text-ink hover:text-ink text-no-underline hover:text-underline" href="https://youtube.com/@DigitalGov" >YouTube</a > </li> <li class="usa-footer__secondary-link"> <svg class="usa-icon dg-icon dg-icon--standard margin-bottom-05" aria-hidden="true" focusable="false" > <use xlink:href="/uswds/img/sprite.svg#linkedin" ></use> </svg> <a class="text-ink hover:text-ink text-no-underline hover:text-underline" href="https://www.linkedin.com/company/digitalgov-gsa/" >LinkedIn</a > </li> <li class="usa-footer__secondary-link"> <svg class="usa-icon dg-icon dg-icon--standard margin-bottom-05" aria-hidden="true" focusable="false" > <use xlink:href="/uswds/img/sprite.svg#rss_feed" ></use> </svg> <a class="text-ink hover:text-ink text-no-underline hover:text-underline" href="/index.xml" >RSS</a > </li> </ul> </section> </div> </div> </nav> </div> </div> </footer> <div class="usa-identifier"> <section class="usa-identifier__section usa-identifier__section--masthead" aria-label="Agency identifier" > <div class="usa-identifier__container"> <div class="usa-identifier__logos"> <a href="https://www.gsa.gov" class="usa-identifier__logo"> <img class="usa-identifier__logo-img" src="/img/gsa-logo-w100.png" alt="GSA logo" role="img" width="100" height="100" /> </a> </div> <section class="usa-identifier__identity" aria-label="Agency description" > <p class="usa-identifier__identity-domain">Digital.gov</p> <p class="usa-identifier__identity-disclaimer"> An official website of the <a href="https://www.gsa.gov">U.S. General Services Administration</a> </p> </section> </div> </section> <nav class="usa-identifier__section usa-identifier__section--required-links" aria-label="Important links" > <div class="usa-identifier__container"> <ul class="usa-identifier__required-links-list"> <li class="usa-identifier__required-links-item"> <a href="https://www.gsa.gov/about-us" class="usa-identifier__required-link usa-link" > About GSA </a> </li> <li class="usa-identifier__required-links-item"> <a href="https://www.gsa.gov/website-information/accessibility-statement" class="usa-identifier__required-link usa-link" > Accessibility statement </a> </li> <li class="usa-identifier__required-links-item"> <a href="https://www.gsa.gov/reference/freedom-of-information-act-foia" class="usa-identifier__required-link usa-link" > FOIA requests </a> </li> <li class="usa-identifier__required-links-item"> <a href="https://www.gsa.gov/reference/civil-rights-programs/the-no-fear-act" class="usa-identifier__required-link usa-link" > No FEAR Act data </a> </li> <li class="usa-identifier__required-links-item"> <a href="https://www.gsaig.gov/" class="usa-identifier__required-link usa-link" > Office of the Inspector General </a> </li> <li class="usa-identifier__required-links-item"> <a href="https://www.gsa.gov/reference/reports/budget-performance" class="usa-identifier__required-link usa-link" > Performance reports </a> </li> <li class="usa-identifier__required-links-item"> <a href="https://www.gsa.gov/website-information/website-policies" class="usa-identifier__required-link usa-link" > Privacy policy </a> </li> </ul> </div> </nav> <section class="usa-identifier__section usa-identifier__section--usagov" aria-label="U.S. government information and services" > <div class="usa-identifier__container"> <div class="usa-identifier__usagov-description"> Looking for U.S. government information and services? </div> <a href="https://www.usa.gov/" class="usa-link"> Visit USA.gov </a> </div> </section> </div> </div> <div id="clicks_iframe" class="display-none"></div> </body> <script type="text/javascript">let glossaryPath = null; const glossaryIcon = "\/uswds\/img\/sprite.svg#expand_more" </script> <script src="https://digital.gov/dist/js/uswds.min.js"></script> <script src="https://digital.gov/dist/js/main.js"></script> </html>