Cloud Computing &
Cybersecurity
	
  July	
  7,	
  2015	
  
FCIO	
  Tony	
  Sco5	
  
@tonysco5cio	
  
	
  
1	
  
Federal IT Strategy
2	
  
Vision & Mission
•  Vision:	
  	
  Reduce	
  the	
  number	
  of	
  cyber	
  incidents	
  in	
  
which	
  sensiDve	
  Government	
  informaDon	
  is	
  
compromised	
  
•  Mission:	
  Strengthen	
  Federal	
  cybersecurity	
  through:	
  
1)  Data-driven, risk-based oversight of agency and
government-wide cybersecurity programs;
2)  Issuance and implementation of Federal policies consistent
with emerging technologies and evolving cyber threats;
3)  Oversight of the Government-wide response to major
cyber incidents and vulnerabilities to ensure appropriate
mitigation measures are effectively implemented; and
4)  Engagement with key stakeholders to modernize relevant
cybersecurity statutes.
3	
  
Protect Federal Assets & Information
4	
  
The	
  E-­‐Gov	
  Cyber	
  Unit	
  will	
  focus	
  resources	
  on	
  strengthening	
  Federal	
  
cybersecurity	
  through	
  targeted	
  oversight	
  and	
  policy	
  issuance.	
  
E-­‐Gov	
  Cyber	
   NSC	
   NIST	
   DHS	
  
Security – a Legacy Issue
5	
  
Moving to the Cloud - 101
•  Build	
  the	
  Muscle—start	
  small,	
  but	
  think	
  big	
  
•  Avoid	
  liX	
  &	
  shiX	
  
•  Secure	
  by	
  Design—physical,	
  hardware,	
  OS,	
  apps,	
  network,	
  devices	
  
•  Secure	
  in	
  ImplementaDon—visible	
  &	
  transparent	
  change	
  management	
  
•  Secure	
  in	
  OperaDon—instrument	
  everything,	
  adapDve	
  security	
  
•  Scalable	
  Enterprise	
  Services—building	
  blocks	
  for	
  apps	
  
6	
  
Questions?
7	
  
Tony	
  Sco5	
  
Federal	
  Chief	
  InformaDon	
  Officer	
  
Office	
  of	
  Management	
  and	
  Budget	
  
ExecuDve	
  Office	
  of	
  the	
  President	
  
Anthony_E_Sco5@omb.eop.gov	
  
@tonysco5cio	
  	
  
	
  
Alexandra	
  Langley	
  
ConfidenDal	
  Assistant	
  to	
  the	
  FCIO	
  
Office	
  of	
  Management	
  and	
  Budget	
  
ExecuDve	
  Office	
  of	
  the	
  President	
  
Alexandra_K_Langley@omb.eop.gov	
  
202-­‐395-­‐3283	
  
8	
  
Thank	
  You!	
  
	
   	
  	
  

Cloud Computing & Cybersecurity

  • 1.
    Cloud Computing & Cybersecurity  July  7,  2015   FCIO  Tony  Sco5   @tonysco5cio     1  
  • 2.
  • 3.
    Vision & Mission • Vision:    Reduce  the  number  of  cyber  incidents  in   which  sensiDve  Government  informaDon  is   compromised   •  Mission:  Strengthen  Federal  cybersecurity  through:   1)  Data-driven, risk-based oversight of agency and government-wide cybersecurity programs; 2)  Issuance and implementation of Federal policies consistent with emerging technologies and evolving cyber threats; 3)  Oversight of the Government-wide response to major cyber incidents and vulnerabilities to ensure appropriate mitigation measures are effectively implemented; and 4)  Engagement with key stakeholders to modernize relevant cybersecurity statutes. 3  
  • 4.
    Protect Federal Assets& Information 4   The  E-­‐Gov  Cyber  Unit  will  focus  resources  on  strengthening  Federal   cybersecurity  through  targeted  oversight  and  policy  issuance.   E-­‐Gov  Cyber   NSC   NIST   DHS  
  • 5.
    Security – aLegacy Issue 5  
  • 6.
    Moving to theCloud - 101 •  Build  the  Muscle—start  small,  but  think  big   •  Avoid  liX  &  shiX   •  Secure  by  Design—physical,  hardware,  OS,  apps,  network,  devices   •  Secure  in  ImplementaDon—visible  &  transparent  change  management   •  Secure  in  OperaDon—instrument  everything,  adapDve  security   •  Scalable  Enterprise  Services—building  blocks  for  apps   6  
  • 7.
    Questions? 7   Tony  Sco5   Federal  Chief  InformaDon  Officer   Office  of  Management  and  Budget   ExecuDve  Office  of  the  President   Anthony_E_Sco5@omb.eop.gov   @tonysco5cio       Alexandra  Langley   ConfidenDal  Assistant  to  the  FCIO   Office  of  Management  and  Budget   ExecuDve  Office  of  the  President   Alexandra_K_Langley@omb.eop.gov   202-­‐395-­‐3283  
  • 8.
    8   Thank  You!