ram

FY 2024 State and Local Cybersecurity Grant Program Adds CISA KEV as a Performance Measure

The CISA Known Exploited Vulnerabilities (KEV) catalog and enhanced logging guidelines are among the new measurement tools added for the 2024 State and Local Cybersecurity Grant Program.

Last month, the Department of Homeland Security announced the availability of $279.9 million in grant funding for the Fiscal Year (FY) 2024 State and Local Cybersecurity Grant Program (SLCGP). Now in its third year, the four-year, $1 billion program provides funding for State, Local and Territorial (SLT) governments to implement cybersecurity solutions that address the growing threats and risks to their information systems. Applications must be submitted by December 3, 2024.

While there are no significant modifications to the program for FY 2024, the Federal Emergency Management Agency (FEMA), which administers SLCGP in coordination with the Cybersecurity and Infrastructure Security Agency (CISA), identified key changes, some of which we highlight below:

The FY 2024 NOFO adds CISA’s KEV catalog as a new performance measure and recommended resource

The FY 2024 notice of funding opportunity (NOFO) adds the CISA Known Exploited Vulnerabilities (KEV) catalog as a recommended resource to encourage governments to regularly view information related to cybersecurity vulnerabilities confirmed by CISA, prioritizing those exploited in the wild. In addition, CISA has added “Addressing CISA-identified cybersecurity vulnerabilities” to the list of performance measures it will collect through the duration of the program.

Tenable offers fastest, broadest coverage of CISA’s KEV catalog

At Tenable, our goal is to help organizations identify their cyber exposure gaps as accurately and quickly as possible. To achieve this goal, we have research teams around the globe working to provide precise and prompt coverage for new threats as they are discovered. Tenable monitors and tracks additions to the CISA KEV catalog on a daily basis and prioritizes developing new detections where they do not already exist.

Tenable updates the KEV coverage of its vulnerability management products — Tenable Nessus, Tenable Security Center and Tenable Vulnerability Management — allowing organizations to use KEV catalog data as an additional prioritization metric when figuring out what to fix first. The ready availability of this data in Tenable products can help agencies meet the SLCGP performance measures. This blog offers additional information on Tenable’s coverage of CISA’s KEV catalog.

FY 2024 NOFO adds “Adopting Enhanced Logging” as a new performance measure

The FY 2024 NOFO also adds “Adopting Enhanced Logging” to the list of performance measures CISA will collect throughout the program duration.

How Tenable’s library of compliance audits can help with Enhanced Logging

Tenable's library of Compliance Audits, including Center for Internet Security (CIS) and Defense Information Systems Agency (DISA), allows organizations to assess systems for compliance, including ensuring Enhanced Logging is enabled. Tenable's vulnerability management tools enable customers to easily schedule compliance scans. Users can choose from a continuously updated library of built-in audits or upload custom audits. By conducting these scans regularly, organizations can ensure their systems are secure and maintain compliance with required frameworks.

FY 2024 NOFO continues to require applicants to address program objectives in their applications

As with previous years, the FY 2024 NOFO sets four program objectives. Applicants must address at least one of the following in their applications:

  • Objective 1: Develop and establish appropriate governance structures, including by developing, implementing, or revising Cybersecurity Plans, to improve capabilities to respond to cybersecurity incidents, and ensure operations.
  • Objective 2: Understand their current cybersecurity posture and areas for improvement based on continuous testing, evaluation, and structured assessments.
  • Objective 3: Implement security protections commensurate with risk.
  • Objective 4: Ensure organization personnel are appropriately trained in cybersecurity, commensurate with responsibility.

How Tenable can help agencies meet Objective 2 of the program

Tenable is uniquely positioned to help SLTs meet Objective 2 through the Tenable One Exposure Management Platform. In addition to analyzing traditional IT environments, Tenable One analyzes cloud instances, web applications, critical infrastructure environments, identity access and privilege solutions such as Active Directory and more — including highly dynamic assets like mobile devices, virtual machines and containers. Once the complete attack surface is understood, the Tenable One platform applies a proactive risk-based approach to managing exposure, allowing SLT agencies to successfully meet each of the sub-objectives outlined in Objective 2 (see table below).

Sub-objectiveHow Tenable helps
2.1.1: Establish and regularly update asset inventoryTenable One deploys purpose-built sensors across on-premises and cloud environments to update inventories of human and machine assets, including cloud, IT, OT, IoT, mobile, applications, virtual machines, containers and identities
2.3.2. Effectively manage vulnerabilities by prioritizing mitigation of high-impact vulnerabilities and those most likely to be exploited.

Tenable One provides an accurate picture of both internal and external exposure by detecting and prioritizing a broad range of vulnerabilities, misconfiguration and excessive permissions across the attack surface.

Threat intelligence and data science from Tenable Research are then applied to give agencies easy-to-understand risk scores. For example, Tenable One provides advanced prioritization metrics and capabilities, asset exposure scores which combine total asset risk and asset criticality, cyber exposure scoring which calculates overall exposure for the organization, peer benchmarking for comparable organizations, as well as the ability to track SLAs and risk patterns over time.

Further, Tenable One provides rich critical technical context in the form of attack path analysis that maps asset, identity and risk relationships which can be exploited by attackers. It also provides business context by giving users an understanding of the potential impact on the things that matter most to an agency, such as business critical apps, services, processes and functions. These contextual views greatly improve the ability of security teams to prioritize and focus action where they can best reduce the potential for material impact. These advanced prioritization capabilities, along with mitigation guidance, ensure high-risk vulnerabilities can be addressed quickly.

2.4.1 SLT agencies are able to analyze network traffic and activity transiting or traveling to or from information systems, applications, and user accounts to understand baseline activity and identify potential threats.

Tenable provides purpose-built sensors, including a passive sensor, which can determine risk based on network traffic. After being placed on a Switched Port Analyzer (SPAN) port or network tap, the passive sensor will be able to discover new devices on a network as soon as they begin to send traffic, as well as discover vulnerabilities based on, but not limited to:

  • Services
  • User-agents
  • Application traffic
2.5.1 SLT agencies are able to respond to identified events and incidents, document root cause, and share information with partners.

Tenable One can help SLT agencies respond to identified events and incidents and document root cause more quickly. SOC analysts managing events and incidents and vulnerability analysts focused on remediation of vulnerabilities have access to deep technical content in the form of attack paths, with risk and and configuration details to verify viability, as well as business context to understand the potential impact to their agency.

This information is valuable not only to validate why IT teams should prioritize mitigation of issues before breach, but to prove that a successful attack has occurred. Further, agencies can deliver dashboards, reports and scorecards to help share important security data in meaningful ways across teams and with partners. Agencies are able to customize these to show the data that matters most and add details specific to their requirements. 

Source: Tenable, October 2024

Tenable One deployment options offer flexibility for SLT agencies

Tenable offers SLT agencies flexibility in their implementation models to help them best meet the requirements and objectives outlined as part of the SLCGP. Deployment models include:

  • Centralized risk-based vulnerability program managed by a state Department of Information Technology (DoIT)
  • Multi-entity projects
  • Decentralized deployments of Tenable One managed by individual municipalities,
  • Managed Security Service Provider (MSSP) models that allow agencies to rapidly adopt solutions by utilizing Tenable’s Technology Partner network.

Whole-of-state approach enables state-wide collaboration and cooperation

A “whole-of-state” approach — which enables state-wide collaboration to improve the cybersecurity posture of all stakeholders — allows state governments to share resources to support cybersecurity programs for local government entities, educational institutions and other organizations. Shared resources increase the level of defense for SLTs both individually and as a community and reduce duplication of work and effort. States get real-time visibility into all threats and deploy a standard strategy and toolset to improve cyber hygiene, accelerate incident response and reduce statewide risk. For more information, read Protecting Local Government Agencies with a Whole-of-State Cybersecurity Approach.

FY 2024 NOFO advises SLT agencies to adopt key cybersecurity best practices

As in previous years, the FY 2024 NOFO again recommends SLT agencies adopt key cybersecurity best practices. To do this, they are required to consult the CISA Cross-Sector Cybersecurity Performance Goals (CPGs) throughout their development of plans and projects within the program. This is also a statutory requirement for receiving grant funding.

How Tenable One can help agencies meet the CISA CPGs

The CISA CPGs are a prioritized subset of cybersecurity practices aimed at meaningfully reducing risk to critical infrastructure operations and the American people. They provide a common set of IT and operational technology (OT) fundamental cybersecurity best practices to help SLT agencies address some of the most common and impactful cyber risks. Learn more about how Tenable One can help agencies meet the CISA CPGs here.

Learn more




ram

SpotOn London 2013 – draft programme: Policy track

As we’re getting ready to make tickets available for this year’s SpotOn London conference, we’re




ram

SpotOn London 2013 – draft programme: Outreach track

As we’re getting ready to make tickets available for this year’s SpotOn London conference, we’re




ram

Dune. House Atreides. Volume 1 / written by Brian Herbert & Kevin J. Anderson ; illustrated by Dev Pramanik ; lettered by Ed Dukeshire ; colored by Alex Guimarães ; cover by Jae Lee & June Chung.

"Set in the years leading up the Hugo and Nebula Award-winning Dune— 'Dume: House Atreides transports readers to the far future on the desert planet Arrakis where Pardot Kynes seeks its secrets. Meanwhile, a violent coup is planned by the son of Emperor Elrood; an eight-year-old slave Duncan Idaho seeks to escape his cruel masters; and a young man named Leto Atreides begins a fateful journey. These unlikely souls are drawn together first as renegades and then as something more, as they discover their true fate— to change the very shape of history!" -- Description provided by publisher.




ram

SpotOn London 2014 Draft Programme

We’re pleased to announce that the SpotOn London conference will take place at the Wellcome




ram

Learning Support for a Multi-Country Climate Resilience Programme for Food Security

https://www.youtube.com/watch?v=UHhFYrwJjow



  • From Our Channel
  • News

ram

Learning Support for a Multi-Country Climate Resilience Programme for Food Security

https://www.youtube.com/watch?v=Ata12_CZy4A



  • From Our Channel
  • News

ram

Do safety net programs reduce conflict risk? Evidence from a large-scale public works program in Ethiopia

Summary of the findings • We find that the PSNP did not significantly alter the risk of violent events. • However, it had a negative impact on demonstrations (protests and riots) as well as fatalities. • These effects are most pronounced during the period of 2014-18, coinciding with widespread protests in Amhara and Oromia, the […] Source: IFPRI Ethiopia: Ethiopia Strategy Support Program




ram

Do social protection programs reduce conflict risk? Evidence from a large-scale safety net program in rural Ethiopia

PSNP is largest public works program in Africa • Started in 2005 in four main highland regions • Approximately 8 million participants • We examine the effect of PSNP on both high-intensity and low-intensity conflict • Using Govt. of Ethiopia administrative PSNP records and geocoded data on conflict events (Armed Conflict Location & Event Data […] Source: IFPRI Ethiopia: Ethiopia Strategy Support Program




ram

Empoderamiento de la mujer rural en Guatemala, necesidades y oportunidades de medición: Posibles aplicaciones de una Métrica de Empoderamiento de las Mujeres para los Sistemas Estadísticos Nacionales (WEMNS)

La igualdad de género y el empoderamiento de las mujeres y niñas se ve reflejado en distintas prioridades de políticas a nivel global y local. El Objetivo de Desarrollo Sostenible 5 busca lograr la igualdad de género y empoderar a todas las mujeres y niñas.




ram

SpotOn London 2014 Final Programme

This year’s SpotOn London conference will take place at the Wellcome Trust on Friday, 14 November and




ram

Mouvar's magic [dramatized adaptation] / Piers Anthony and Robert E. Margroff.

The mysterious prophecy that has shaped the life of Kelvin Knight Hackleberry and his family seems nearly to have run its course. The Two Kingdoms that were joined by Kelvin to form Kelvinia have now been united with three others, to make a great confederation under the rule of the young twin kings, Kildom and Kildee. Kelvin has earned some time to rest with his family. Charles and Merlain are now twenty years old, and so is Dragon Horace, their brother who is the Great King of all the land. But the clouds of the last battle are gathering. The evil Professor DeVale and his witch servant Zady had been foiled in their attempt to destroy Kelvin by using his children--their evil plot has led to a stronger, more peaceful land under its rightful rulers. Now they will try one last time to pervert all that is good in the universe of the frames--and although the Prophecy of Mouvar has been accurate up to now, still there is a chance that evil will prevail.




ram

Moving on [dramatized adaptation] / Jane Candia Coleman.

Western Jane Candia Coleman is a natural storyteller whose characters come from the lands between the southwestern valleys of Arizona and the Gila Mountains of New Mexico. The night Billy the Kid died is hauntingly depicted in Corrido for Billy. Lady Flo is a memoir, based on historical fact, of the black wife of an Irish nobleman. Moving On depicts a young girl abandoned by her family who finds her way with an itinerant Jewish peddler. And Are You Coming Back, Phin Montana? is the winner of the 1995 Spur Award for Best Western Short Fiction. Each story embodies the finest elements of Western fiction imitations of hope, vulnerability, and courage.




ram

Investir dans la formation professionnelle des jeunes: Programme de formation professionnelle des secteurs agropastoral et halieutique du Cameroun

L’investissement dans les agriculteurs, c’est-à-dire le capital humain de l’agriculture, est crucial pour relever les défis que posent nos systèmes agroalimentaires.




ram

Identifying guidelines for the design of conditional credit programs to promote sustainable agricultural practices in Latin America

Identifying guidelines for the design of conditional credit programs to promote sustainable agricultural practices in Latin America

Tools for food system policy development.

The post Identifying guidelines for the design of conditional credit programs to promote sustainable agricultural practices in Latin America appeared first on IFPRI.




ram

Síntesis de evidencia: Lineamientos para el diseño de programas crediticios agropecuarios condicionados para el fomento de prácticas agropecuarias sostenibles

Síntesis de evidencia: Lineamientos para el diseño de programas crediticios agropecuarios condicionados para el fomento de prácticas agropecuarias sostenibles

Enfoques para el desarrollo de políticas del sistema alimentario.

The post Síntesis de evidencia: Lineamientos para el diseño de programas crediticios agropecuarios condicionados para el fomento de prácticas agropecuarias sostenibles appeared first on IFPRI.





ram

NCAL Kaiser Permanente - Psychology Postdoctoral Residency Program- Info. Session (November 13, 2024 4:00pm)

Event Begins: Wednesday, November 13, 2024 4:00pm
Location:
Organized By: University Career Center


Kaiser Permanente’s Northern California Mental Health Training Program would like to invite you to join us and a panel of experts at one of our upcoming Psychology Postdoctoral Residency Virtual Information Sessions. The session will provide you with a high-level overview of Kaiser Permanente, details around the program and position, and an opportunity to ask questions. We look forward to seeing you!




ram

AEG Internship Program - Virtual Info Session (November 13, 2024 4:00pm)

Event Begins: Wednesday, November 13, 2024 4:00pm
Location:
Organized By: University Career Center


AEG Info Session – November 13, 2024 @ 4 PM (PDT) Join us to learn about AEG, the world’s leading sports and live entertainment company! Operating in cities like Los Angeles, New York, Las Vegas, San Francisco, and Denver, AEG is behind someof the most iconic festivals in the U.S., including Coachella and Stagecoach. From music festivals to global sports events and entertainment venues, explore internship opportunities that offer hands-on experience in bringing these massive events to life!




ram

Study Abroad Info Sessions: CGIS Spanish-language Programs - Spring/Summer 2025 (November 13, 2024 3:00pm)

Event Begins: Wednesday, November 13, 2024 3:00pm
Location: Off Campus Location
Organized By: Center for Global and Intercultural Study


Want to fulfill Spanish major/minor requirements abroad? Join CGIS Advisor Juliana Mesa to learn more about the CGIS Spanish-language program offerings in Spring/Summer 2025.

Note: CGIS Spring/Summer 2025 applications open in October 1st, 2024 and close on January 15th, 2025.




ram

Program in Biology & Undergraduate Program in Neuroscience Events 2024 - 2025 (November 13, 2024 11:00am)

Event Begins: Wednesday, November 13, 2024 11:00am
Location: Biological Sciences Building Atrium (BSB)
Organized By: Sessions @ Michigan


Events in this track are open to all current and prospective PiB and UPiN students. We hope to see you!




ram

Learning Support for a Multi-Country Climate Resilience Programme for Food Security

Learning Support for a Multi-Country Climate Resilience Programme for Food Security

The Learning Support for a Sub-Saharan Africa Multi-Country Climate Resilience Program for Food Security, launched in 2023, aims to enhance food security and climate resilience across 14 African countries. This collaboration among CGIAR, the World Food Programme, and the Norwegian Agency for Development Cooperation (Norad) has three pillars: scaling disaster risk financing, transforming food systems […]

The post Learning Support for a Multi-Country Climate Resilience Programme for Food Security appeared first on IFPRI.




ram

Empowering Researchers in South Asia to Unlock Economic Insights: International CGE Modeling Training Program in New Delhi

Empowering Researchers in South Asia to Unlock Economic Insights: International CGE Modeling Training Program in New Delhi

New Delhi, May 3, 2024: The International Food Policy Research Institute (IFPRI) and the CGIAR Initiative on Foresight, in partnership with the South Asian Network on Economic Modeling (SANEM), the Indian Council of Agricultural Research-Indian Agricultural Research Institute (ICAR-IARI), and ICAR-National Institute of Agricultural Economics and Policy Research (ICAR-NIAP), successfully concluded today the weeklong ‘International […]

The post Empowering Researchers in South Asia to Unlock Economic Insights: International CGE Modeling Training Program in New Delhi appeared first on IFPRI.








ram

Bonus Episode: Stacey Abrams

The runoff Senate elections in the state of Georgia have been big news, and a driving force behind the scenes for Democrats is Stacey Abrams. She's a lawyer, politician, author, and founder of Fair Fight Action, a voter advocacy group. We featured Stacey Abrams on the program a few months ago, and wanted to share a special bonus cut of her entire interview with Manoush.

Learn more about sponsor message choices: podcastchoices.com/adchoices

NPR Privacy Policy




ram

Brija Johnson leads new program that expands UCLA’s entrepreneurial ties in the region

Bruin Founders will advance goal 1 of UCLA’s Strategic Plan: to deepen the university’s engagement with Los Angeles.




ram

New semiconductor pilot program at UCLA prepares community college students for jobs in growing industry

The program is co-led by the California NanoSystems Institute at UCLA, the UCLA Samueli School of Engineering and Pasadena City College.




ram

New Global Executive MBA Program in Healthcare & the Life Sciences Launched by the University of Toronto’s Rotman School of Management

Toronto, ON – With the pace of change in healthcare and the life sciences sector accelerating at unprecedented rates, a new Executive MBA program from the University of Toronto’s Rotman School of Management aims to prepare working professionals in the sector to lead their organizations, businesses and health systems. The Global Executive MBA in Healthcare & […]




ram

Toronto’s first peer cancer education program for black women improves awareness and screening

Toronto, ON — Public health researchers created a first-of-its-kind peer education project targeting black women to improve breast and cervical cancer awareness and screening for black women living in Toronto’s Malvern community. “There is a lot of silence in the black community. People think that cancer is not a black issue and many survivors are […]




ram

Oncology for pharmacists: A person-centred approach to caring for people living with cancer - Leslie Dan Faculty of Pharmacy, in collaboration with Cancer Care Ontario, Launches New Oncology Program for Pharmacists

Leslie Dan Faculty of Pharmacy, in collaboration with Cancer Care Ontario, Launches New Oncology Program for Pharmacists Toronto, ON – The Office of Continuous Professional Development at the University of Toronto’s Leslie Dan Faculty of Pharmacy, in collaboration with Cancer Care Ontario, is introducing the first comprehensive program in the province for pharmacists focused on […]




ram

New Program in Management Analytics Launched at UofT’s Rotman School of Management

Toronto, ON – A new program at the University of Toronto’s Rotman School of Management aims to equip graduates with the skills to succeed in the field of management analytics. The Master of Management Analytics (MMA) is a rigorous nine-month program aimed at recent university graduates and provides students with advanced data management, analytical and […]




ram

New report co-authored by International Human Rights Program says murderous violence against journalists in Honduras is on the rise

TORONTO, ON – Co-authored with PEN Canada and PEN International, report calls for Honduran government to end lethal violence against journalists and its climate of impunity, and for donor states such as the UK and Canada to work with Honduras on these issues Journalists who cover organized crime, government corruption and other sensitive issues are […]




ram

Elton John AIDS Foundation supports the International Human Rights Program’s project investigating the negative impact of Canada’s policies on refugees with HIV

TORONTO, ON — The International Human Rights program (IHRP) has received a $75,000 grant from the Elton John AIDS Foundation (EJAF) to launch a project exposing the negative impact of Canada’s refugee policies on some of the world’s most vulnerable claimants—people with HIV or at-risk of HIV due to rampant violence, discrimination based on sexual […]



  • Health & Medicine
  • Law

ram

How — and Why — to Track Your Employee Training Program

Training is a vital part of any business's long-term growth plan. In fact, a study from the American Society for Training and Development found that organizations that invest the most in employee training have 218 percent higher income per ...




ram

Employee Referral Programs and the Future of Recruiting

From the way we find jobs to the way we find love, from the way we connect with our friends to the way we connect with colleagues and customers, technology has fundamentally altered the very foundations of how we work, how we live and how we experience the world around us - for better or for worse. Except, of course, for when it comes to talent sourcing or recruiting, where




ram

Twenty-Two Innovators Selected for DoE’s Lab-Embedded Entrepreneurship Program

The U.S. Department of Energy (DOE) announced the latest cohorts in its Lab-Embedded Entrepreneurship Program (LEEP).




ram

Building Quality into Digital-Twin-based Systems Utilizing the DTC Composability Framework

The Digital Twin Consortium (DTC) Composability Framework provides a transformative approach to digital twin system development, focusing on interoperability, security, trustworthiness, scalability, and design reuse to align with businesses’ objectives and evolving needs.




ram

Building a Framework for Machine-Learning Compliance in Regulated Industries

Regulatory bodies like the FDA and MHRA are adapting guidelines to accommodate the evolving AI landscape, stressing the importance of innovative compliance approaches alongside traditional software regulations, including audit trails, electronic records, and signatures.




ram

Industry 4.0 for Apprenticeships, Degree Programs

Global challenges and industrial competitiveness are having an impact on the training and continuous education of skilled workers and students.




ram

Madonna with Two Angels framed LIMITED EDITION CANVAS

Madonna with Two Angels framed LIMITED EDITION CANVAS by James Christensen is a(n) Limited Edition. The Edition is Limited to Limited to 375 pcs




ram

Cafe de la Ramparts Paper

Cafe de la Ramparts Paper by Kerry Hallam is a(n) Limited Edition. The Edition is Limited to pcs




ram

Cafe de la Ramparts Canvas

Cafe de la Ramparts Canvas by Kerry Hallam is a(n) Limited Edition. The Edition is Limited to pcs




ram

Liberty Framed Print - Limited Edition

Liberty Framed Print - Limited Edition by Thomas Blackshear II is a(n) Limited Edition. The Edition is Limited to Limited to 1000 Signed Pieces pcs




ram

The Forgiven Canvas Transfer Framed

The Forgiven Canvas Transfer Framed by Thomas Blackshear II is a(n) Open Edition. The Edition is Limited to Open Edition No Serial Number pcs




ram

Grampas House

Grampas House by Susan Rios is a(n) Limited Edition. The Edition is Limited to Limited Edition Of 295 pcs




ram

The Nativity Framed Canvas

The Nativity Framed Canvas by Brian Jekel is a(n) Open Edition. The Edition is Limited to Canvas Transfer pcs




ram

Radiant Rose Framed

Radiant Rose Framed by Brian Davis is a(n) Limited Edition. The Edition is Limited to 295 pcs