The White House noted that funding will not be included in the new House appropriations bill it supports. Previously, President Trump’s budget proposal included $228 million in IT modernization funding. In short, there’s a lot of information to take in. Fortunately, we’ve compiled a list of the seven most important points in the report, which you can find below.
We’ve focused specifically on
The recommended immediate actions that agencies should take in the coming months. Prioritize the modernization of high-risk, high-value assets (HVA), which include agencies’ most sensitive systems and data. 1. The National Institute of Standards and Technology should develop a program to promote a culture of risk management in the government.
The goal is to get agencies to make
Security decisions based on the threats they face, rather than just focusing on meeting a list of requirements. Where appropriate, agencies overseas chinese in uk data should use the NIST framework to help them. (Timeline: 30 days). 2. Agencies should submit a list of high-value systems to DHS for review. From these, six systems will be selected for focused intervention, including staffing and technical support.
Modernize the government’s Trusted
Internet Connection (TIC) and National Cybersecurity Protection System (NCPS), and enable commercial cloud migration. 3. OMB should submit free cloud services for storing large files a data call to agencies requesting information on current and pending projects for cloud migration. This report instructs agencies to focus on projects that have been delayed due to policy constraints and implementation.
Ideally, this will help OMB understand
the changes needed to accelerate mig. Iration. (Timeline: 30 days). 4. In conjunction with GSA’s FedRAMP Office, Technology Transform. Iation Services (TTS) and other relevant agencies, ATC will classify the above submissions into three cate. Igories. Low-risk systems can be migrated to the cloud immediately, high-priority systems will ha. Ive some risk rich data during the migration process, and the risk of migration is too great without additional po. Ilicies or capabilities.