The National Institute of Standards and Technology (NIST) should remain a neutral broker in developing standards to support public and private sector cyber security efforts and should not take on the role of an auditor to ensure federal agencies are complying with an existing cyber-risk management framework as called for in proposed congressional legislation, the former chief information security officer (CISO) of the United States told a House panel the week of June 4.Greg Touhill, who served as the U.S.…
Former US CISO Warns Against NIST Leading Federal Cyber Security Audits
SHARE:
By