Le Lézard
Classified in: Science and technology
Subjects: NPT, EXE, FVT

All Federal Agencies Have Less Than 90 Days To Secure .Gov Email


WASHINGTON, July 16, 2018 /PRNewswire-USNewswire/ -- U.S. federal government agencies have less than 90 days to meet a U.S. Department of Homeland Security (DHS) Binding Operational Directive (BOD) focused on bolstering email and website security for all federal agencies that operate .gov email and website domains. The federal government has made good progress toward fulfilling the directive, with 74% of the domains tested having implemented a DMARC policy, however, less than half of the domains (47%) are at the highest policy level of "reject" ? the setting that prevents spoofed email from being delivered to people. Agencies have three more months to meet the requirements of the directive.

By October 16, 2018, all agencies are required to deploy the email security protocol DMARC (Domain-based Message Authentication, Reporting & Conformance) at the policy level of "reject" to prevent spammers and phishers from using an organization's name to conduct cyberattacks.

Since the BOD was issued on October 16, 2017, GCA research has found that more than 600 agency email domains have moved to the most secure "reject" setting for DMARC. In total, 605 domains are set to "reject" and 26 are set at the second-highest security level, "quarantine". However, half of all federal government email domains (319) have only deployed DMARC at its least secure setting or have not deployed DMARC at all (334). 

"DHS has shown tremendous leadership in requiring the deployment of advanced email and web security tools that will protect consumers, government workers and our nation's critical infrastructure," said Philip Reitinger, president and CEO of the Global Cyber Alliance. "Even with difficulties, agencies should at least have implemented DMARC at its most simple level. It takes little time, does not risk disruption of service, and provides insight on operations and threats."

GCA has helped organizations implement DMARC with a collection of free resources that include the GCA DMARC Setup Guide, instructional videos, and webinars. Agencies can take advantage of these resources online at www.dmarc.globalcyberalliance.org.

DMARC weeds out fake emails (known as direct domain spoofing) deployed by spammers and phishers targeting the inboxes of any person with an email address.  According to the 2018 Symantec ISTR report, 1 in 131 emails contained malware, the highest rate in 5 years. Without DMARC protection, hackers can create emails that appear to be from a trusted source but instead contain malicious links or ask for additional personal information that could be provided by unsuspecting consumers.

About the Global Cyber Alliance

The Global Cyber Alliance (GCA) is an international, cross-sector effort dedicated to eradicating cyber risk and improving our connected world. We achieve our mission by uniting global communities, implementing concrete solutions, and measuring the effect.  Learn more at www.globalcyberalliance.org.

CONTACT: Josh Zecher, 202-463-0045, [email protected]

SOURCE Global Cyber Alliance


These press releases may also interest you

at 11:45
Information Services Group (ISG) , a leading global technology research and advisory firm, has launched a research study examining providers that help customers get the most out of the Workday cloud-based enterprise management platform. The study...

at 11:45
Vertex Pharmaceuticals today announced that the European Commission has granted approval for the label expansion of KALYDECO® (ivacaftor) for the treatment of infants down to 1 month of age with cystic fibrosis (CF) who have one of the following...

at 11:30
New research from the global research and advisory firm explains the challenges federal departments and agencies face in serving vulnerable communities. In its recently published blueprint, Info-Tech highlights the potential for AI initiatives to...

at 11:30
Corporate sustainability is about more than simply putting a recycling bin by the copy machine or a water cooler in the breakroom. It is a company's conscious effort to make environmentally responsible choices at every possible opportunity. That is...

at 11:15
Variantyx, a leader in molecular diagnostics, announced today that it has secured an additional $36 million in funding from its portfolio of investors which includes Peregrine Ventures, Pitango HealthTech, New Era Capital Partners and Bosch Ventures....

at 11:06
Semiconductors power the world. From computers to medical equipment, to electric vehicles, semiconductors ? or microchips ? produce so much of what we depend on. They are also critical in the global race to scale up and adopt artificial intelligence,...



News published on and distributed by: