{"id":222294,"date":"2017-06-22T15:12:00","date_gmt":"2017-06-22T19:12:00","guid":{"rendered":"http:\/\/www.euvolution.com\/futurist-transhuman-news-blog\/uncategorized\/nsa-backed-openc2-org-aims-to-defend-systems-at-machine-speed-threatpost.php"},"modified":"2017-06-22T15:12:00","modified_gmt":"2017-06-22T19:12:00","slug":"nsa-backed-openc2-org-aims-to-defend-systems-at-machine-speed-threatpost","status":"publish","type":"post","link":"https:\/\/www.euvolution.com\/futurist-transhuman-news-blog\/nsa-2\/nsa-backed-openc2-org-aims-to-defend-systems-at-machine-speed-threatpost.php","title":{"rendered":"NSA-Backed OpenC2.org Aims to Defend Systems at Machine Speed &#8211; Threatpost"},"content":{"rendered":"<p><p>    NEW YORKThe dynamics of a cyberattack often include speed,    automation and adaptive tradecraft. Mounting an effective    defense, however, isnt always fast enough. To help even the    score, a group led by the National Security Agency called    OpenC2.org is developing an open, standardized computer    language for the command and control of computer defenses.  <\/p>\n<p>    The attackers are attacking at the speed of light, and the    defenders are defending at the speed of lawyers. We have to    change that, said Duncan Sparrell, OpenC2.org member and    consultant with SFractal Consulting.  <\/p>\n<p>    Speaking at the Borderless Cyber conference today, Sparrell    said attackers have the upper hand as security experts, vendors    and businesses struggle to coordinate and streamline fast    defenses.  <\/p>\n<p>    OpenC2.org is advocating automated command and control. It is    the single biggest thing missing in the industry today, he    said.  <\/p>\n<p>    OpenC2 is a language that enables the coordination and    execution of command and control of defense components between    domains and within a domain. OpenC2.org is the organization    promoting the idea. The group has 88 members, representing 50    companies and government agencies including Bank of America,    Cisco and Zepko, a UK-based managed security provider.  <\/p>\n<p>    While two open standards, STIX and TAXII, already exist,    Sparrell points out with those the focus is on identifying    threats, and not on taking action.  <\/p>\n<p>    STIX and TAXII compliment what we are doing, he said.    Industry coordination on identifying threats is the easy part.    Sparrell said, in an industry dominated by vendors selling    defensive solutions, an open-platform that automates actions is    harder to achieve than across-the-board industry buy-ins.  <\/p>\n<p>    Sparrell explains OpenC2 allows companies to move at machine    speed. It compliments vendor solutions. This is a limited    language that only conveys an action that is part of a vendor    cybersecurity process. Its about which action to take, based    on what the event trigger is.  <\/p>\n<p>    The goal is working with the cybersecurity industry to    standardize interfaces and protocols that enable    interoperability of different tools, he said.  <\/p>\n<p>    Despite the fact the OpenC2 is still under development, it has    a few flagship users such as Zepko and Phantom Cyber. Sparrell    said OpenC2 helped Phantom Cyber save a $1 million on stopping    phishing attacks.  <\/p>\n<p>    Yes its being deployed, yes its being adopted, but no its    not fully standardized and its still in development, he said.  <\/p>\n<p>    This month the OpenC2.org took an important step toward    becoming an industry standard and is now under the umbrella of    the Organization for the Advancement of Structured Information    Standards, or OASIS  a nonprofit international consortium that    develops open IT standards. OASIS is hosting this weeks    Borderless Cyber conference.  <\/p>\n<p><!-- Auto Generated --><\/p>\n<p>View original post here:<\/p>\n<p><a target=\"_blank\" rel=\"nofollow\" href=\"https:\/\/threatpost.com\/nsa-backed-openc2-org-aims-to-defend-systems-at-machine-speed\/126454\/\" title=\"NSA-Backed OpenC2.org Aims to Defend Systems at Machine Speed - Threatpost\">NSA-Backed OpenC2.org Aims to Defend Systems at Machine Speed - Threatpost<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p> NEW YORKThe dynamics of a cyberattack often include speed, automation and adaptive tradecraft.  <a href=\"https:\/\/www.euvolution.com\/futurist-transhuman-news-blog\/nsa-2\/nsa-backed-openc2-org-aims-to-defend-systems-at-machine-speed-threatpost.php\">Continue reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"limit_modified_date":"","last_modified_date":"","_lmt_disableupdate":"","_lmt_disable":"","footnotes":""},"categories":[261463],"tags":[],"class_list":["post-222294","post","type-post","status-publish","format-standard","hentry","category-nsa-2"],"modified_by":null,"_links":{"self":[{"href":"https:\/\/www.euvolution.com\/futurist-transhuman-news-blog\/wp-json\/wp\/v2\/posts\/222294"}],"collection":[{"href":"https:\/\/www.euvolution.com\/futurist-transhuman-news-blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.euvolution.com\/futurist-transhuman-news-blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.euvolution.com\/futurist-transhuman-news-blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.euvolution.com\/futurist-transhuman-news-blog\/wp-json\/wp\/v2\/comments?post=222294"}],"version-history":[{"count":0,"href":"https:\/\/www.euvolution.com\/futurist-transhuman-news-blog\/wp-json\/wp\/v2\/posts\/222294\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.euvolution.com\/futurist-transhuman-news-blog\/wp-json\/wp\/v2\/media?parent=222294"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.euvolution.com\/futurist-transhuman-news-blog\/wp-json\/wp\/v2\/categories?post=222294"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.euvolution.com\/futurist-transhuman-news-blog\/wp-json\/wp\/v2\/tags?post=222294"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}