Cybersecurity and Infrastructure Security Agency’s Post

We are proud to announce the release of our Guide to Operational Security for Election Officials: https://go.dhs.gov/3mY The new guide aims to enhance the security of our election infrastructure by providing a comprehensive overview of operational security (OPSEC) within the election context, identifying potential risks, and offering practical mitigation measures. Learn more about this guide and protecting our elections at cisa.gov/protect2024 #Protect2024

  • No alternative text description for this image
Steven H.

Capital Markets | 30yrs of Startups | Aerospace Engineer

2w

Perhaps the only suggestion I see election officials being able to achieve is to hire an outside contractor to conduct a physical audit, which may or may not result in actions that mitigate threats. The rest of these recommendations are largely unachievable. In short, we have an enormous disconnect between the system architects, those responsible for operating the system, and policy authors in DC. The fitness landscape is simply not coherent, as either we need highly skilled tech operators to operate this election system securely, or we need a vastly more simplified system. No edict from DC can rectify this lack of cherence, nor safeguard this current version of our election system from external or internal threats. PS. I have 20 yrs of election monitoring experience and was the first, and perhaps still the only, to lead a team that performed a comprehensive audit of these systems during an actual election, under contract by the nation's 3rd largest county.

  • No alternative text description for this image

This is a critical announcement for all public sector cybersecurity professionals to be aware of.

Like
Reply
Steve Hakansson

Global Marketing | Demand Generation | Integrated Campaigns

2w

the biggest risk is insiders because our political parties both operate like organized syndicates.

Like
Reply
Marc Brooks, CPP, CISSP

Assistant Chief Security Officer at U.S. Secret Service

2w

I believe NSPM-28 defines OPSEC as "Operations" Security.

KaSper K

Private/Public Consultant at Forward Advancement Solutions, LLC

2w

Sending a fax over now

Like
Reply
Stephen Barteau, MBA, PMP, VCP-DCV, DISO

Technology Services Manager @ County of Orange | MBA, PMP, VMware Certified Professional

2w

Thank you for all the support!

Like
Reply
See more comments

To view or add a comment, sign in

Explore topics