February 25, 2004

Security firms form public policy group

Computer Associates, Network Associates, Symantec participate

SAN FRANCISCO -- Leading security firms are joining forces to help influence public policy and improve cybersecurity, according to an announcement Wednesday at the RSA Conference in San Francisco.

The Cyber Security Industry Alliance (CSIA) includes representatives from leading cybersecurity companies, including Network Associates, RSA Security, Symantec and Computer Associates International. The group will use its resources to try to influence public policy, foster new security technology standards and improve education about cybersecurity, according to a statement.

CSIA is forming member committees that are focused on issues such as public policy, education, alliances and standards, the group said. The group will work with the U.S. Department of Homeland Security to make it easier for businesses and the government to share information on cyberthreats. It will also collaborate with international and U.S.-based standards organizations to back emerging security standards and specifications, CSIA said.

CSIA will be akin to other technology industry alliances, including the Business Software Alliance and TechNet, but will focus solely on cybersecurity issues, said Ron Moritz, chief security strategist at Computer Associates. Security companies often get overlooked in those groups, which have to balance the needs of disparate members, Moritz said. Through CSIA, group members hope to be able to influence domestic cybersecurity policy by speaking with a single voice to lawmakers and government officials on cybersecurity issues, he said.

Legislators often lack good information on cybersecurity when drafting legislation, Moritz said, noting the proliferation of often confusing antispam legislation on Capitol Hill, including the recently passed Controlling the Assault of Non-Solicited Pornography and Marketing (CAN SPAM) Act of 2003. When poorly written, technology legislation like CAN SPAM can put financial and technical burdens on Internet service providers and other technology companies, yet fail to solve the problem it was written to address, Moritz said.

"If regulations are not designed properly as they move through The Hill, then the legislation fails and everyone is disappointed," he said. Cybersecurity companies can help avoid such failures by conferring with lawmakers before and while legislation is being considered, he said.

Moritz likened the CSIA to the actions of defense contractors such as Raytheon and others with business before the government. "We’re a new industry. In the cybersecurity space, our voices are individually being heard. Now, for first time, we're going to bring our ideas together and speak with a collective voice," he said.

Close

On Twitter now

Security

Powered by Twitter

On Twitter now

White Paper

D2D Virtual Tape Library Replication Primer

This whitepaper explains the terminology and concepts behind Data Replication technologies and establishes some sizing rules through worked examples. Learn the new paradigm in disaster tolerance—protect data anywhere.

Download now »

White Paper

An Alternative to Virtualization for Datacenter Cost Savings

Server virtualization is a popular option for dealing with mounting datacenter costs. Another equally promising approach is the use of an Application Delivery Controller. Citrix NetScaler provides a low-cost way for organizations to reduce their server count and accrue cost savings from a reduction in space, cooling, power and personnel.

Download now »

White Paper

Why Your Firewall, VPN, and IEEE 802.11i Aren't Enough to Protect Your Network

The emergence of WLANs has created a new breed of security threats to enterprise networks.

Included in HP ProCurve WLAN solutions is security technology that alleviates threats from WLANs through:
* Monitoring wireless activity inside and out of the enterprise
* Classifying WLAN transmissions into harmful and harmless
* Preventing transmissions that pose a security threat to the enterprise network
* Locating participating devices for physical remediation

Download now »

White Paper

Bringing the Edge to the Data Center

Effectively address data protection challenges, implementing solutions that help store and protect business–critical data while cutting costs and improving efficiency and reliability.

Download now »

Sign up to receive Security Resource Alerts

Subscribe to the Security Central Newsletter

Stay informed of the latest security threats and fixes.

White paper

Log Management: How to Develop the Right Strategy for Business and Compliance

This white paper provides guidance on how to develop a strategic approach to managing and monitoring logs, a key function required for compliance with many regulatory mandates and a critical defense against security threats.

Download now! »

White paper

The Essential Series: Security Information Management

Learn about the processes and technologies that support security information management (SIM) operations, as well as the business case for SIM. The series examines different options for implementing SIM and gives you evaluation criteria for selecting the best option for your organization.

Download now! »

White paper

Aberdeen: Choosing and Consuming Managed Security Services

Learn the strategies, actions, and capabilities that Best-in-Class organizations employ and technologies they choose to obtain superior performance against various security performance metrics. This report provides guidelines for identifying which security solutions to consume as a MSS and defines best practices for choosing and managing MSSPs.

Download now! »
©1994-2009 Infoworld, Inc.