<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: IoT Cybersecurity improvement Act signed off in Governance, Risk, Compliance</title>
    <link>https://community.isc2.org/t5/Governance-Risk-Compliance/IoT-Cybersecurity-improvement-Act-signed-off/m-p/41988#M236</link>
    <description>&lt;P&gt;&lt;SPAN&gt;NIST has done a reasonable job at creating draft guidance (&lt;/SPAN&gt;&lt;A href="https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-213-draft.pdf" target="_blank" rel="noopener"&gt;Special Publication 800-213&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;and NIST Interagency Reports (NISTIRs)&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://nvlpubs.nist.gov/nistpubs/ir/2020/NIST.IR.8259B-draft.pdf" target="_blank" rel="noopener"&gt;8259B&lt;/A&gt;&lt;SPAN&gt;,&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://nvlpubs.nist.gov/nistpubs/ir/2020/NIST.IR.8259C-draft.pdf" target="_blank" rel="noopener"&gt;8259C&lt;/A&gt;&lt;SPAN&gt;, and&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://nvlpubs.nist.gov/nistpubs/ir/2020/NIST.IR.8259D-draft.pdf" target="_blank" rel="noopener"&gt;8259D&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;but developers clear need concise requirements. The NISTIR baselines are a good start but are going to require a lot more detail to be usable.&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 29 Dec 2020 15:17:09 GMT</pubDate>
    <dc:creator>AppDefects</dc:creator>
    <dc:date>2020-12-29T15:17:09Z</dc:date>
    <item>
      <title>IoT Cybersecurity improvement Act signed off</title>
      <link>https://community.isc2.org/t5/Governance-Risk-Compliance/IoT-Cybersecurity-improvement-Act-signed-off/m-p/41975#M235</link>
      <description>&lt;P&gt;Hi All&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Within the US, "The Bipartisan IoT Cybersecurity Improvement Act was officially signed into law earlier this month, mandating that any IoT device purchased with government funds must meet minimum security standards."&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Well it's a good start, if it works, what happens if a third party supplier purchases the the IoT devices to support services they are providing the Government?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.allaboutcircuits.com/news/internet-of-things-cybersecurity-improvement-act-signed-into-law/" target="_blank"&gt;https://www.allaboutcircuits.com/news/internet-of-things-cybersecurity-improvement-act-signed-into-law/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_Cautim&lt;/P&gt;</description>
      <pubDate>Mon, 09 Oct 2023 09:44:23 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Governance-Risk-Compliance/IoT-Cybersecurity-improvement-Act-signed-off/m-p/41975#M235</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2023-10-09T09:44:23Z</dc:date>
    </item>
    <item>
      <title>Re: IoT Cybersecurity improvement Act signed off</title>
      <link>https://community.isc2.org/t5/Governance-Risk-Compliance/IoT-Cybersecurity-improvement-Act-signed-off/m-p/41988#M236</link>
      <description>&lt;P&gt;&lt;SPAN&gt;NIST has done a reasonable job at creating draft guidance (&lt;/SPAN&gt;&lt;A href="https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-213-draft.pdf" target="_blank" rel="noopener"&gt;Special Publication 800-213&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;and NIST Interagency Reports (NISTIRs)&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://nvlpubs.nist.gov/nistpubs/ir/2020/NIST.IR.8259B-draft.pdf" target="_blank" rel="noopener"&gt;8259B&lt;/A&gt;&lt;SPAN&gt;,&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://nvlpubs.nist.gov/nistpubs/ir/2020/NIST.IR.8259C-draft.pdf" target="_blank" rel="noopener"&gt;8259C&lt;/A&gt;&lt;SPAN&gt;, and&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://nvlpubs.nist.gov/nistpubs/ir/2020/NIST.IR.8259D-draft.pdf" target="_blank" rel="noopener"&gt;8259D&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;but developers clear need concise requirements. The NISTIR baselines are a good start but are going to require a lot more detail to be usable.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 29 Dec 2020 15:17:09 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Governance-Risk-Compliance/IoT-Cybersecurity-improvement-Act-signed-off/m-p/41988#M236</guid>
      <dc:creator>AppDefects</dc:creator>
      <dc:date>2020-12-29T15:17:09Z</dc:date>
    </item>
  </channel>
</rss>

