70 likes | 78 Views
Explore DHHS's approach to enhancing cybersecurity across OPDIVs, implementing secure enclave design, and selecting cutting-edge technologies for sustainable protection.
E N D
ISE Southeast Executive Forum and AwardsNominee Showcase PresentationMarch 16, 2011 Company Name: Department of Health and Human Services Project/Presentation Name: DHHS Enterprise Cyber Security Technology Presenter: Kevin Charest Presenter Title: Program Manager, HHS CSIRC ISE Central Executive Forum and Awards 2010 - Nominee Showcase Presentation
Company Overview • Comprised of 11 operating divisions (OPDIVs) • Most well known OPDIVs are FDA, CDC, NIH, and CMS • Approximately 125,000 users on the DHHS backbone • Almost ¼ of all Federal Government outlays ISE Southeast Executive Forum and Awards 2011 - Nominee Showcase Presentation
Presentation/Project Overview • Finalize secure enclave design and approval • Selection of appropriate technologies • Acquisition of technologies • Implementation of technologies • Continuous improvement of deployed technologies ISE Southeast Executive Forum and Awards 2011 - Nominee Showcase Presentation
Overview of Business Challenge • Attack the silo methodology for addressing security incidents • Unified approach for information security • Improve the security posture of the agency • Enhance the protection of public health science, data and administrative systems • Provide a sustainable solution which could be funded through normal funding cycles ISE Southeast Executive Forum and Awards 2011 - Nominee Showcase Presentation
Project/Program Scope/Goals • Unified approach for information security • Improve the security posture of the agency • Enhance the protection of public health science, data and administrative systems • Provide a sustainable solution which could be funded through normal funding cycles • Deploy secure enclaves across the OPDIVs providing a federated approach to managing security ISE Southeast Executive Forum and Awards 2011 - Nominee Showcase Presentation
Project/Program Results • Secure enclaves were created using a combination of CISCO switches/routers, Juniper FWs, and Gigamon network taps • ArcSight was selected as the SIEM of choice due to is known integration and scalability in other federal systems • Netwitness was selected as the network forensics tool providing valuable analysis from the packet stream • TippingPoint was identified as the IDS/IPS solution for the network perimeter ISE Southeast Executive Forum and Awards 2011 - Nominee Showcase Presentation
Lessons Learned/Best Practices • Considering the federated model under which DHHS operates the creation of coalitions was key to the project’s success • Careful attention to project management and stakeholder buy-in was a critical best practice for the project • It is impossible to over communicate in a project of this magnitude or any substantive project ISE Southeast Executive Forum and Awards 2011 - Nominee Showcase Presentation