NIST Enhanced Security Guidelines
The newly released NIST SP 800-172 provides clear enhanced security guidelines for protecting unclassified public and private information (CUI) to the same level that the government uses for equally sensitive classified information. Organizations following these guidelines will be able to root out APT (Advanced Persistent Threat) hackers and cybercriminals before they can penetrate deep into their information systems and cause damage.
The new, best practice NIST guidelines are based on three key characteristics all organizations must adopt and implement to thwart and frustrate APT intruders:
1.??????Penetration Resistance to prevent the majority of breaches
2.??????Ability to limit and contain potential damage from breaches to the outer defenses and prevent intruders for gaining a deeper foothold.?
3.?????Built-in resilience to survive, recover, and bounce back to normal operations
NIST recognizes the importance of a layered security architecture that, in addition to traditional perimeter defense products, includes methods that obstruct an intruder’s lateral movement efforts, reduce the attack duration and quickly restore a system to its pristine state.?Interestingly, both NIST and the Forbes Technology Council (See item 13 in https://lnkd.in/eKJM8WA) seem to validate the SCIT approach as one element in a highly secure system/network.