[Join This Working Group]
This Working Group is being formed to bring together cyber security professionals and user representatives to achieve what was determined at the 2011 NUFO Annual User Meeting to be our common goal of:
"Reliable and secure access to computing resources at laboratories and user facilities with reasonable security measures that mitigate risk and minimize delays or interruptions using a risk-based approach (DOE order 205.1B)."
The significance of DOE order 205.1B (https://www.directives.doe.gov/directives/current-directives/205.1-BOrder-b/view) is that it replaces six previous DOE orders and, more importantly, "emphasizes risk management rather than a systems-level 'controls compliance' approach"and is intented to be implemented "in a manner that improves, rather than impedes." The changes implied by this new DOE order are encouraging, but meanwhile, three of the national laboratories have suffered serious cyber attacks recently, and the response to that may increase the challenges for remote computer access by users.
Cyber and Computing Affairs Working Group List Server: This list server is moderated.
Co-chairs - Brant Johnson (BNL), David Skinner (LBNL)