Feeds

Schmidt named Obama cybersecurity czar

Months long wait finally over

Beginner's guide to SSL certificates

Howard Schmidt was confirmed as President Obama's cybersecurity czar on Tuesday, confirming an earlier prediction by AP that the long vacant role was about to be filled.

Schmidt is a former White House security advisor to George W. Bush with extensive career spells at eBay and Microsoft. He certainly has the diplomatic skills and technical knowledge to fulfill the role, but his selection comes after months of dithering and inaction on an appointment, raising questions of its own.

Schmidt

Schmidt at a recent London information security conference

Obama declared cyber security a priority and ordered a broad review ten months ago. Melissa Hathaway, who recommended the creation of a cybersecurity czar after running the two month review for the Obama administration, resigned as an Obama advisor back in August after losing her earlier interest in becoming White House cybersecurity chief.

Delays in naming a cybersecurity coordinator, together with speculation that other candidates - including Microsoft's Scott Charney and Congressman Tom Davis - had turned down the job, increased the feeling that the role would come with responsibility but no power. For one thing, the cybersecurity chief will be obliged to report to both the National Security Council and the National Economic Council.

Schmidt faces a huge swathe of problems, including formulating an updated strategy for defending critical national infrastructure (utilities, transport, banking etc.) from hacking attacks, as well as a plan for raising consumer awareness about risks such as scareware and phishing. He will have to negotiate a political minefield to get anything done, not least because several agencies (including the Pentagon and Department of Homeland Security) are vying for alpha male status in defining federal cybersecurity strategy.

A White House statement on Schmidt's appointment can be found here. ®

Protecting users from Firesheep and other Sidejacking attacks with SSL

More from The Register

next story
Spies would need SUPER POWERS to tap undersea cables
Why mess with armoured 10kV cables when land-based, and legal, snoop tools are easier?
Early result from Scots indyref vote? NAW, Jimmy - it's a SCAM
Anyone claiming to know before tomorrow is telling porkies
Apple Pay is a tidy payday for Apple with 0.15% cut, sources say
Cupertino slurps 15 cents from every $100 purchase
Israeli spies rebel over mass-snooping on innocent Palestinians
'Disciplinary treatment will be sharp and clear' vow spy-chiefs
YouTube, Amazon and Yahoo! caught in malvertising mess
Cisco says 'Kyle and Stan' attack is spreading through compromised ad networks
Hackers pop Brazil newspaper to root home routers
Step One: try default passwords. Step Two: Repeat Step One until success
China hacked US Army transport orgs TWENTY TIMES in ONE YEAR
FBI et al knew of nine hacks - but didn't tell TRANSCOM
Microsoft to patch ASP.NET mess even if you don't
We know what's good for you, because we made the mess says Redmond
NORKS ban Wi-Fi and satellite internet at embassies
Crackdown on tardy diplomatic sysadmins providing accidental unfiltered internet access
prev story

Whitepapers

Providing a secure and efficient Helpdesk
A single remote control platform for user support is be key to providing an efficient helpdesk. Retain full control over the way in which screen and keystroke data is transmitted.
WIN a very cool portable ZX Spectrum
Win a one-off portable Spectrum built by legendary hardware hacker Ben Heck
Saudi Petroleum chooses Tegile storage solution
A storage solution that addresses company growth and performance for business-critical applications of caseware archive and search along with other key operational systems.
Protecting users from Firesheep and other Sidejacking attacks with SSL
Discussing the vulnerabilities inherent in Wi-Fi networks, and how using TLS/SSL for your entire site will assure security.
Security for virtualized datacentres
Legacy security solutions are inefficient due to the architectural differences between physical and virtual environments.