New Information Collection Request: The Department of. Homeland Security, Office of Cybersecurity and

Similar documents
Information Collection Request: The Department of Homeland. Security, Stakeholder Engagement and Cyber Infrastructure

The Department of Homeland Security, National Protection. and Programs Directorate, National Initiative for

Navigation and Vessel Inspection Circular (NVIC) 05-17; Guidelines for Addressing

Notification of Issuance of Binding Operational Directive and Establishment of. AGENCY: National Protection and Programs Directorate, DHS.

Agency Information Collection Activities: Proposed Collection; Comment Request

The President s National Security Telecommunications. AGENCY: National Protection and Programs Directorate,

Strengthening the Cybersecurity of Federal Networks and Critical Infrastructure:

David Missouri VP- Governance ISACA

Supplemental Programmatic Environmental Assessment (SPEA) for the Proposed

Privacy Impact Assessment for the National Cyber Security Division Joint Cybersecurity Services Pilot (JCSP) DHS/NPPD-021.

Quick Path Information Disclosure Statement (QPIDS) Pilot Program. AGENCY: United States Patent and Trademark Office, Commerce.

Cyber Security & Homeland Security:

Critical Infrastructure Sectors and DHS ICS CERT Overview

Panelists. Moderator: Dr. John H. Saunders, MITRE Corporation

National Policy and Guiding Principles

Privacy Act; System of Records; Amendment of the EPA Personnel Emergency

Center for Devices and Radiological Health Premarket Approval Application Critical to Quality

National Cybersecurity Center of Excellence (NCCoE) Energy Sector Asset Management

How Cybersecurity Initiatives May Impact Operators. Ross A. Buntrock, Partner

BILLING CODE P DEPARTMENT OF ENERGY Federal Energy Regulatory Commission. [Docket No. RM ] Cyber Systems in Control Centers

Agency Information Collection Activities; Proposed Information Collection; Comment Request; Broadband Availability Data

Strengthening the Cybersecurity of Federal Networks and Critical Infrastructure

79th OREGON LEGISLATIVE ASSEMBLY Regular Session. Senate Bill 90

DHS Cybersecurity: Services for State and Local Officials. February 2017

Views on the Framework for Improving Critical Infrastructure Cybersecurity

National Cybersecurity Center of Excellence (NCCoE) Mobile Application Single Sign

Emergency Support Function #2 Communications Annex INTRODUCTION. Purpose. Scope. ESF Coordinator: Support Agencies: Primary Agencies:

Advisory Circular. Subject: INTERNET COMMUNICATIONS OF Date: 11/1/02 AC No.: AVIATION WEATHER AND NOTAMS Initiated by: ARS-100

Published Privacy Impact Assessments on the Web. ACTION: Notice of Publication of Privacy Impact Assessments (PIA).

CYBERSECURITY. Protecting Against the Financial, Regulatory and Reputational Impacts of Cyber Attack

2011 North American SCADA & Process Control Summit March 1, 2011 Orlando, Fl

Cyber Security Summit 2014 USCENTCOM Cybersecurity Cooperation

Discontinuing the Metallic Handcuffs Compliance Testing Program and Request for

Overview of NIPP 2013: Partnering for Critical Infrastructure Security and Resilience October 2013

Industry Webinar. Project Modifications to CIP-008 Cyber Security Incident Reporting. November 16, 2018

Private Sector Clearance Program (PSCP) Webinar

STRENGTHENING THE CYBERSECURITY OF FEDERAL NETWORKS AND CRITICAL INFRASTRUCTURE

Withdrawal of Notice of Intent to Temporarily Place Mitragynine and 7- AGENCY: Drug Enforcement Administration, Department of Justice

Cyber Security Incident Report

Control Systems Cyber Security Awareness

Next Generation 911; Text-to-911; Next Generation 911 Applications. SUMMARY: In this document, the Federal Communications Commission (Commission)

U.S. Department of Homeland Security Office of Cybersecurity & Communications

Statement for the Record

Cybersecurity Presidential Policy Directive Frequently Asked Questions. kpmg.com

SUMMARY: The Federal Energy Regulatory Commission (Commission) proposes to

SUMMARY: The Securities and Exchange Commission (the Commission) is adopting revisions

Department of Homeland Security Updates

SUMMARY: The Food and Drug Administration (FDA or we) is proposing to amend its

The Office of Infrastructure Protection

Cybersecurity and Data Privacy

The Office of Infrastructure Protection

FedRAMP Security Assessment Framework. Version 2.1

ISAO SO Product Outline

Jeff Marron, IT Specialist Security National Institute of Standards and Technology (NIST)

THE WHITE HOUSE. Office of the Press Secretary EXECUTIVE ORDER

300 Riverview Plaza Odysseus Marcopolus, Chief Operating Officer Trenton, NJ POLICY NO: SUPERSEDES: N/A VERSION: 1.0

The next generation of knowledge and expertise

THE WHITE HOUSE Office of the Press Secretary EXECUTIVE ORDER

Request for Information Strategies to Improve Maritime Supply Chain Security and Achieve 100% Overseas Scanning

METHODOLOGY AND CRITERIA FOR THE CYBERSECURITY REPORTS

Presidential Executive Order on Strengthening the Cybersecurity of Federal Networks and Critical Infrastructure

White Paper. View cyber and mission-critical data in one dashboard

PIPELINE SECURITY An Overview of TSA Programs

Information Security Continuous Monitoring (ISCM) Program Evaluation

Cybersecurity: Incident Response Short

to the Electronic Data Gathering, Analysis, and Retrieval System (EDGAR) Filer Manual and

Election Infrastructure Security: The How and Why of It

Application and Instructions for Firms

Critical Infrastructure Partnership

Electricity Sub-Sector Coordinating Council Charter FINAL DISCUSSION DRAFT 7/9/2013

Member of the County or municipal emergency management organization

S&T Stakeholders Conference

Statement of Organization, Functions, and Delegations of Authority: Office of the

New York Department of Financial Services Cybersecurity Regulation Compliance and Certification Deadlines

Software & Supply Chain Assurance: Enabling Enterprise Resilience through Security Automation, Software Assurance and Supply Chain Risk Management

TSA/FTA Security and Emergency Management Action Items for Transit Agencies

Cybersecurity Overview

The Office of Infrastructure Protection

Continuous Monitoring & Security Authorization XACTA IA MANAGER: COST SAVINGS AND RETURN ON INVESTMENT IA MANAGER

FEMA Region III Cyber Security Program

FedRAMP Security Assessment Framework. Version 2.0

SUMMARY: The Securities and Exchange Commission (the Commission) is adopting revisions

Building Privacy into Cyber Threat Information Sharing Cyber Security Symposium Securing the Public Trust

[Docket No. FWS HQ IA ; FXIA FF09A30000] Foreign Endangered and Threatened Species; Receipt of Applications for Permit

GPS Vulnerability and DHS Mitigation Efforts. David Wulf Acting Deputy Assistant Secretary Infrastructure Protection Department of Homeland Security

BILLING CODE P DEPARTMENT OF ENERGY. Federal Energy Regulatory Commission. 18 CFR Part 40. [Docket No. RM ]

ISE Central Executive Forum and Awards 2012

AGENCY: National Weather Service, National Oceanic and Atmospheric Administration, U.S.

MNsure Privacy Program Strategic Plan FY

INFORMATION ASSURANCE DIRECTORATE

Chapter X Security Performance Metrics

Inspector General. Report on the Peace Corps Information Security Program. Peace Corps Office of. Background FISCAL YEAR 2017

Amendments to Accreditation of Third-Party Certification Bodies to Conduct Food Safety

The NIST Cybersecurity Framework

NYDFS Cybersecurity Regulations

Incident response to a breach: Right of boom you find ashes

Virginia State University Policies Manual. Title: Information Security Program Policy: 6110

Homeland Security Perspectives: Oregon Fire District Directors Association October 25, 2018

Presidential Documents

Program Review for Information Security Management Assistance. Keith Watson, CISSP- ISSAP, CISA IA Research Engineer, CERIAS

Transcription:

This document is scheduled to be published in the Federal Register on 07/18/2017 and available online at https://federalregister.gov/d/2017-15067, and on FDsys.gov 9110-9P P DEPARTMENT OF HOMELAND SECURITY [Docket No. DHS-2017-0032] New Information Collection Request: The Department of Homeland Security, Office of Cybersecurity and Communications, US-CERT.gov Collection AGENCY: National Protection and Programs Directorate, DHS. ACTION: 60-day notice and request for comments; SUMMARY: The Department of Homeland Security (DHS), National Protection and Programs Directorate (NPPD), Office of Cybersecurity and Communications (CS&C), National Cybersecurity and Communications Integration Center (NCCIC), United States Computer Emergency Readiness Team (US-CERT) will submit the following Information Collection Request to the Office of Management and Budget (OMB) for review and clearance in accordance with the Paperwork Reduction Act of 1995. DATES: Comments are encouraged and will be accepted until [INSERT DATE 60 DAYS AFTER DATE OF PUBLICATION IN THE FEDERAL REGISTER]. This process is conducted in accordance with 5 CFR 1320.1. ADDRESSES: Written comments and questions about this Information Collection Request should be forwarded to DHS/NPPD/CS&C/NCCIC/US-CERT, 245 Murray Lane, SW, Mail Stop 1

0640, Arlington,VA 20598-0640. E-mailed requests should go to info@us-cert.gov. Written comments should reach the contact person listed no later than [INSERT DATE 60 DAYS AFTER DATE OF PUBLICATION IN THE FEDERAL REGISTER]. Comments must be identified by DHS-2017-0032 and may be submitted by one of the following methods: Federal erulemaking Portal: http://www.regulations.gov. E-mail: info@us-cert.gov Include the docket number DHS- 2017-0032 in the subject line of the message. Instructions: All submissions received must include the words Department of Homeland Security and the docket number for this action. Comments received will be posted without alteration at http://www.regulations.gov, including any personal information provided. SUPPLEMENTARY INFORMATION: US-CERT is responsible for performing, coordinating, and supporting response to information security incidents, which may originate outside the Federal community and affect users within it, or originate within the Federal community and affect users outside of it. Often, therefore, the effective handling of security incidents relies on information sharing among individual users, industry, and the Federal Government, which may be facilitated by and through US-CERT. 2

US-CERT fulfills the role of the Federal information security incident center for the United States Federal Government as defined in the Federal Information Security Modernization Act of 2014. Each Federal agency is required to notify and consult with US-CERT regarding information security incidents involving the information and information systems (managed by a Federal agency, contractor, or other source) that support the operations and assets of the agency. Additional entities report incident information to US-CERT voluntarily. Per the Federal Information Security Modernization Act of 2014, as codified in subchapter II of chapter 35 of title 44 of the United States Code, US-CERT must inform operators of agency information systems about current and potential information security threats and vulnerabilities. Per the Homeland Security Act, as amended, the NCCIC, of which US- CERT and ICS-CERT are a part, is required to be the Federal civilian interface for sharing cybersecurity risks, incidents, analysis, and warnings for federal and non- Federal entities. OMB is particularly interested in comments that: 1. Evaluate whether the proposed collection of information is necessary for the proper performance of the functions of the agency, 3

including whether the information will have practical utility; 2. Evaluate the accuracy of the agency's estimate of the burden of the proposed collection of information, including the validity of the methodology and assumptions used; 3. Enhance the quality, utility, and clarity of the information to be collected; and 4. Minimize the burden of the collection of information on those who are to respond, including through the use of appropriate automated, electronic, mechanical, or other technological collection techniques or other forms of information technology, e.g., permitting electronic submissions of responses. ANALYSIS: Agency: Department of Homeland Security, National Protection and Programs Directorate, Office of Cybersecurity and Communications, National Cybersecurity and Communications Integration Center, United States Computer Emergency Readiness Team Title: Clearance for the Collection of Routine Feedback through US-CERT.gov OMB Number: 1670-NEW 4

Frequency: Ongoing Affected Public: Voluntary respondents Number of Respondents: 126,325 respondents (estimate) Estimated Time per Respondent: 3 minutes Total Burden Hours: 6,140 annual burden hours Total Burden Cost (capital/startup): $0 Total Recordkeeping Burden: $0 Total Burden Cost (operating/maintaining): $0 David Epperson, Chief Information Officer. [FR Doc. 2017-15067 Filed: 7/17/2017 8:45 am; Publication Date: 7/18/2017] 5