Click here to close now.

Welcome!

Linux Authors: Carmen Gonzalez, Roger Strukhoff, Elizabeth White, Yeshim Deniz, Pat Romanski

Related Topics: Linux, Java, .NET, Virtualization, Cloud Expo, Apache, Security, GovIT, Big Data Journal

Linux: Article

NIST to Sponsor FFRDC Widespread Adoption of Integrated CyberSecurity

National Institute of Standards and Technology Proposed Establishment of a Federally Funded Research and Development Center

The National Institute of Standards and Technology (NIST), Department of Commerce, announced on Monday that it intends to sponsor a Federally Funded Research and Development Center (FFRDC) to facilitate public-private collaboration for accelerating the widespread adoption of integrated cybersecurity tools and technologies.

 

This is the first of three notices which must be published over a 90-day period in order to advise the public of the agency's intention to sponsor an FFRDC.

 

Written comments must be received by 5:00 p.m. Eastern time on July 22, 2013.

Comments on this notice must be received by Keith Bubar, Contracting Officer, National Institute of Standards and Technology, 100 Bureau Drive, Mailstop 1640, Gaithersburg, MD 20899, including by email to Mr. Bubar at keith.bubar @ nist.gov

 

The National Cybersecurity Center of Excellence (NCCoE), hosted by NIST, is a public-private collaboration for accelerating the widespread adoption of integrated cybersecurity tools and technologies. The NCCoE will bring together experts from industry, government, and academia under one roof to develop practical, interoperable cybersecurity approaches that address the real world needs of complex Information Technology (IT) systems. By accelerating dissemination and use of these integrated tools and technologies for protecting IT assets, the NCCoE will enhance trust in U.S. IT communications, data, and storage systems, lower risk for companies and individuals in the use of IT systems, and encourage development of innovative, job-creating cybersecurity products and services.

 

NIST has identified the need to support the NCCoE's mission through the establishment of an FFRDC. In evaluating the need for the FFRDC, NIST determined that no existing FFRDC or contract vehicles provide the scope of services NIST requires. The proposed NCCoE FFRDC will have three primary purposes:

 

 

  1. Research, Development, Engineering, and Technical support;
  2. Program/Project Management, to include but not limited to expert advice and guidance in the areas of program and project management focused on increasing the effectiveness and efficiency of cybersecurity applications, prototyping, demonstrations, and technical activities; and
  3. Facilities Management.

 

 

The proposed NCCoE FFRDC may also be utilized by non-sponsors.

 

The FFRDC will be established under the authority of 48 CFR 35.017.

 

The NCCoE FFRDC Contractor will be available to provide a wide range of support including, but not limited to:

 

Research, Development, Engineering and Technical Support:

 

Establish relationships with private sector organizations to use private sector resources to accomplish tasks that are integral to the operations and mission of the NCCoE.

 

Research and develop frameworks and implementation strategies for inducing industry to invest in and expedite adoption of effective cybersecurity controls and mechanisms on an enterprise-wide scale; and in collaboration with Federal and local governments, deliver planning and documentation support needed to transfer technologies developed by Federal cybersecurity organizations and the NCCoE to production, integration economic development, and operational implementation entities.

 

Provide systems engineering support to NCCoE programs and proposed security platform development, selection, and implementation. This will include NCCoE infrastructure, project planning, project implementation, and technology transfer components of the NCCoE's efforts to accelerate adoption of robust cybersecurity technologies in the government and private sectors.

 

Generate technical expertise to create a relevant cybersecurity workforce in coordination with the NCCoE staff and in close collaboration with the National Initiative for Cybersecurity Education and with Federal government, university, and industry participants and collaborators in NCCoE activities.

 

Deliver strategies and plans for applying cybersecurity standards, guidelines, and best practice inducements and capabilities to both government and private sectors.

 

Program/Project Management:

 

Work within the purpose, mission, general scope, or competency as assigned by the sponsoring agency.

 

Develop and maintain in-depth institutional knowledge ofNCCoE programs and operations in order to maintain continuity in the field of cybersecurity and to maintain a high degree of competence, objectivity, and independence in order to respond effectively to the emerging cybersecurity needs of the Nation.

 

Facilities Management:

 

In coordination with NCCoE staff, and in collaboration with the State of Maryland and Montgomery County, Maryland, manage physical and logical collaborative facilities to support the acceleration and adoption of robust cybersecurity technologies in the government and private sectors. The activity includes staff support for information technology operations, custodial functions, physical access management, and maintenance operations.

 

The FFRDC will partner with the sponsoring agency in the design and pursuit of mission goals; provide rapid responsiveness to changing requirements for personnel in all aspects of strategic, technical and program management; recognize Government objectives as its own objectives, partner in pursuit of excellence in public service; and allow for use of the FFRDC by non-sponsors.

 

This notice in accordance with 48 CFR 5.205(b) of the Federal Acquisition Regulations (FAR), to enable interested members of the public to provide comments on this proposed action. This is the first of three notices issued under the authority of 48 CFR 5.205(b). In particular, we are interested in feedback regarding the proposed scope of the work to be performed by the FFRDC, and the presence of any existing private- or public-sector capabilities in this area that NIST should be considering.

 

It is anticipated that a Request for Proposal (RFP) will be posted on FedBizOpps in the Summer of 2013.

 

For Further Information Contact: Keith Bubar via email at Keith.Bubar @ nist.gov or telephone 301.975.8329.

 

 

More Stories By Marilyn Moux

Marilyn Moux works at Knowledge Consulting Group in Alexandria Va as a Trusted Cyber Security Advisory - IT Security Outreach and Assessment. Previously She work at SYS-CON Media as a Business and Systems Analyst for their Cloud Expo, Media and Events Business for over 10 years. She is currently the Managing Editor for Ulitzer's CyberSecurity Journal.

Moux headed a solution-oriented risk-based information systems consulting business to help organizations operate more efficiently and effectively. She was also a management consultant at Perot System and Benton International for over 10 years. She is a seasoned entrepreneur and information security project manager with a consulting background that includes global corporations and public sector clients. She has focus on situational analysis, strategy, execution, people and leadership. She holds various security certifications including CISSP, CAP, CISA and Security+. She also certified in PMI - PMP, ITIL, and Cloud Computing. She is also an member of IEEE, Computer Society, ISACA, (ISC)2 and PMI. In addition, she is the Founder of "Women in Security Journal" on womeninsecurity.ulitzer.com

Comments (0)

Share your thoughts on this story.

Add your comment
You must be signed in to add a comment. Sign-in | Register

In accordance with our Comment Policy, we encourage comments that are on topic, relevant and to-the-point. We will remove comments that include profanity, personal attacks, racial slurs, threats of violence, or other inappropriate material that violates our Terms and Conditions, and will block users who make repeated violations. We ask all readers to expect diversity of opinion and to treat one another with dignity and respect.


@ThingsExpo Stories
SYS-CON Events announced today the IoT Bootcamp – Jumpstart Your IoT Strategy, being held June 9–10, 2015, in conjunction with 16th Cloud Expo and Internet of @ThingsExpo at the Javits Center in New York City. This is your chance to jumpstart your IoT strategy. Combined with real-world scenarios and use cases, the IoT Bootcamp is not just based on presentations but includes hands-on demos and walkthroughs. We will introduce you to a variety of Do-It-Yourself IoT platforms including Arduino, Raspberry Pi, BeagleBone, Spark and Intel Edison. You will also get an overview of cloud technologies s...
Containers and microservices have become topics of intense interest throughout the cloud developer and enterprise IT communities. Accordingly, attendees at the upcoming 16th Cloud Expo at the Javits Center in New York June 9-11 will find fresh new content in a new track called PaaS | Containers & Microservices Containers are not being considered for the first time by the cloud community, but a current era of re-consideration has pushed them to the top of the cloud agenda. With the launch of Docker's initial release in March of 2013, interest was revved up several notches. Then late last...
The only place to be June 9-11 is Cloud Expo & @ThingsExpo 2015 East at the Javits Center in New York City. Join us there as delegates from all over the world come to listen to and engage with speakers & sponsors from the leading Cloud Computing, IoT & Big Data companies. Cloud Expo & @ThingsExpo are the leading events covering the booming market of Cloud Computing, IoT & Big Data for the enterprise. Speakers from all over the world will be hand-picked for their ability to explore the economic strategies that utility/cloud computing provides. Whether public, private, or in a hybrid form, clo...
WebRTC is an up-and-coming standard that enables real-time voice and video to be directly embedded into browsers making the browser a primary user interface for communications and collaboration. WebRTC runs in a number of browsers today and is currently supported in over a billion installed browsers globally, across a range of platform OS and devices. Today, organizations that choose to deploy WebRTC applications and use a host machine that supports audio through USB or Bluetooth can use Plantronics products to connect and transit or receive the audio associated with the WebRTC session.
Internet of Things (IoT) will be a hybrid ecosystem of diverse devices and sensors collaborating with operational and enterprise systems to create the next big application. In their session at @ThingsExpo, Bramh Gupta, founder and CEO of robomq.io, and Fred Yatzeck, principal architect leading product development at robomq.io, will discuss how choosing the right middleware and integration strategy from the get-go will enable IoT solution developers to adapt and grow with the industry, while at the same time reduce Time to Market (TTM) by using plug and play capabilities offered by a robust I...
IoT is still a vague buzzword for many people. In his session at @ThingsExpo, Mike Kavis, Vice President & Principal Cloud Architect at Cloud Technology Partners, discussed the business value of IoT that goes far beyond the general public's perception that IoT is all about wearables and home consumer services. He also discussed how IoT is perceived by investors and how venture capitalist access this space. Other topics discussed were barriers to success, what is new, what is old, and what the future may hold. Mike Kavis is Vice President & Principal Cloud Architect at Cloud Technology Pa...
@ThingsExpo has been named the Top 5 Most Influential Internet of Things Brand by Onalytica in the ‘The Internet of Things Landscape 2015: Top 100 Individuals and Brands.' Onalytica analyzed Twitter conversations around the #IoT debate to uncover the most influential brands and individuals driving the conversation. Onalytica captured data from 56,224 users. The PageRank based methodology they use to extract influencers on a particular topic (tweets mentioning #InternetofThings or #IoT in this case) takes into account the number and quality of contextual references that a user receives.
Buzzword alert: Microservices and IoT at a DevOps conference? What could possibly go wrong? Join this panel of experts as they peel away the buzz and discuss the important architectural principles behind implementing IoT solutions for the enterprise. As remote IoT devices and sensors become increasingly intelligent, they become part of our distributed cloud environment, and we must architect and code accordingly. At the very least, you’ll have no problem filling in your buzzword bingo cards.
So I guess we’ve officially entered a new era of lean and mean. I say this with the announcement of Ubuntu Snappy Core, “designed for lightweight cloud container hosts running Docker and for smart devices,” according to Canonical. “Snappy Ubuntu Core is the smallest Ubuntu available, designed for security and efficiency in devices or on the cloud.” This first version of Snappy Ubuntu Core features secure app containment and Docker 1.6 (1.5 in main release), is available on public clouds, and for ARM and x86 devices on several IoT boards. It’s a Trend! This announcement comes just as...
SYS-CON Events announced today that AIC, a leading provider of OEM/ODM server and storage solutions, will exhibit at SYS-CON's 16th International Cloud Expo®, which will take place on June 9-11, 2015, at the Javits Center in New York City, NY. AIC is a leading provider of both standard OTS, off-the-shelf, and OEM/ODM server and storage solutions. With expert in-house design capabilities, validation, manufacturing and production, AIC's broad selection of products are highly flexible and are configurable to any form factor or custom configuration. AIC leads the industry with nearly 20 years of ...
As enterprises move to all-IP networks and cloud-based applications, communications service providers (CSPs) – facing increased competition from over-the-top providers delivering content via the Internet and independently of CSPs – must be able to offer seamless cloud-based communication and collaboration solutions that can scale for small, midsize, and large enterprises, as well as public sector organizations, in order to keep and grow market share. The latest version of Oracle Communications Unified Communications Suite gives CSPs the capability to do just that. In addition, its integration ...
SYS-CON Events announced today that Creative Business Solutions will exhibit at SYS-CON's 16th International Cloud Expo®, which will take place on June 9-11, 2015, at the Javits Center in New York City, NY. Creative Business Solutions is the top stocking authorized HP Renew Distributor in the U.S. Based out of Long Island, NY, Creative Business Solutions offers a one-stop shop for a diverse range of products including Proliant, Blade and Industry Standard Servers, Networking, Server Options and Care Packs. As a trusted supplier, CBS guarantees quality controlled stock levels thanks to an Auto...
SOA Software has changed its name to Akana. With roots in Web Services and SOA Governance, Akana has established itself as a leader in API Management and is expanding into cloud integration as an alternative to the traditional heavyweight enterprise service bus (ESB). The company recently announced that it achieved more than 90% year-over-year growth. As Akana, the company now addresses the evolution and diversification of SOA, unifying security, management, and DevOps across SOA, APIs, microservices, and more.
The list of ‘new paradigm’ technologies that now surrounds us appears to be at an all time high. From cloud computing and Big Data analytics to Bring Your Own Device (BYOD) and the Internet of Things (IoT), today we have to deal with what the industry likes to call ‘paradigm shifts’ at every level of IT. This is disruption; of course, we understand that – change is almost always disruptive.
GENBAND introduced its Real Time Communications (RTC) Client for Lync* to seamlessly combine real-time communications with Lync Instant Messaging (IM) and Presence. “We’re shaking up the economics of delivering Unified Communications (UC) and offering a compelling way to integrate previously bespoke communications technologies,” said Carl Baptiste, GENBAND’s Senior Vice President, Enterprise Solutions. “We’re offering enterprises the best of both worlds by combining our own high availability voice, video and collaboration with Lync’s IM and Presence; creating a single, web centric, client. O...
After making a doctor’s appointment via your mobile device, you receive a calendar invite. The day of your appointment, you get a reminder with the doctor’s location and contact information. As you enter the doctor’s exam room, the medical team is equipped with the latest tablet containing your medical history – he or she makes real time updates to your medical file. At the end of your visit, you receive an electronic prescription to your preferred pharmacy and can schedule your next appointment.
From telemedicine to smart cars, digital homes and industrial monitoring, the explosive growth of IoT has created exciting new business opportunities for real time calls and messaging. In his session at @ThingsExpo, Ivelin Ivanov, CEO and Co-Founder of Telestax, shared some of the new revenue sources that IoT created for Restcomm – the open source telephony platform from Telestax. Ivelin Ivanov is a technology entrepreneur who founded Mobicents, an Open Source VoIP Platform, to help create, deploy, and manage applications integrating voice, video and data. He is the co-founder of TeleStax, a...
Can call centers hang up the phones for good? Intuitive Solutions did. WebRTC enabled this contact center provider to eliminate antiquated telephony and desktop phone infrastructure with a pure web-based solution, allowing them to expand beyond brick-and-mortar confines to a home-based agent model. It also ensured scalability and better service for customers, including MUY! Companies, one of the country's largest franchise restaurant companies with 232 Pizza Hut locations. This is one example of WebRTC adoption today, but the potential is limitless when powered by IoT.
SYS-CON Events announced today that Optimal Design, an Internet of Things solution provider, will exhibit at SYS-CON's Internet of @ThingsExpo, which will take place on June 9-11, 2015, at the Javits Center in New York City, NY. Optimal Design is an award winning product development firm offering industrial design and engineering services to the consumer, medical, and defense markets.
How is unified communications transforming the way businesses operate? In his session at WebRTC Summit, Arvind Rangarajan, Director of Product Marketing at BroadSoft, will discuss how to extend unified communications experience outside the enterprise through WebRTC. He will also review use cases across different industry verticals. Arvind Rangarajan is Director, Product Marketing at BroadSoft. He has over 19 years of experience in the telecommunications industry in various roles such as Software Development, Product Management and Product Marketing, applied across Wireless, Unified Communic...