DHS Releases New Guidelines for Securing Critical Infrastructure

By

The guidance specifically addresses threats posed by AI.

The US Department of Homeland Security has released new resources to help address threats posed by AI, including guidelines to mitigate AI risks to critical infrastructure.

“AI can present transformative solutions for US critical infrastructure, and it also carries the risk of making those systems vulnerable in new ways to critical failures, physical attacks, and cyber attacks. Our department is taking steps to identify and mitigate those threats,” said Secretary of Homeland Security Alejandro Mayorkas.

DHS outlines a four-part mitigation strategy, involving the following steps:

  • Govern: Establish an organizational culture of AI risk management — Build organizational structures that prioritize security.
  • Map: Understand your individual AI use context and risk profile.
  • Measure: Develop systems to assess, analyze, and track AI risks — Identify repeatable methods and metrics for measuring and monitoring AI risks and impacts.
  • Manage: Prioritize and act upon AI risks to safety and security — Implement controls to maximize the benefits of AI systems while decreasing harmful impacts.

Read the Safety and Security Guidelines for Critical Infrastructure Owners and Operators for more information.
 
 
 

 
 
 

05/13/2024

Related content

  • News for Admins
    In the news: DHS Releases New Guidelines for Securing Critical Infrastructure; Datadog Report Examines DevSecOps Best Practices; Upskilling Key to Tech Staffing Challenges, Says LF Survey; 2024 Open Source Pros Job Survey Report Released; OpenSSF Issues Guidance to Help Prevent Social Engineering Attacks; Black Duck Supply Chain Edition Released by Synopsys; Spectra Logic Announces New Tape Libraries and Management Software; LPI Launches Open Source Essentials Program; Apache Software Foundation Celebrates 25 Years; SUSE Announces Rancher Prime 3.0; NSA Issues Zero Trust Guidelines for Network Security; and NIST Releases Major New Version of Cybersecurity Framework.
  • NIST Releases Major New Version of Cybersecurity Framework
  • Build a secure development and production pipeline
    We investigate best practices to secure CI/CD pipelines with DevSecOps.
  • Fortinet Updates OT Security Platform
  • Tech News
    In the news: Hetzner Announces S3-Compatible Object Storage; Ongoing Cyberattack Prompts New CISA Guidance for Communications Infrastructure; OpenMP 6.0 Released; Open Source Development Improves Software Security, Says LF Report; Most Organizations Are Unprepared for Climate-Related Disruptions; and SUSE Cloud Observability Announced.
comments powered by Disqus
Subscribe to our ADMIN Newsletters
Subscribe to our Linux Newsletters
Find Linux and Open Source Jobs



Support Our Work

ADMIN content is made possible with support from readers like you. Please consider contributing when you've found an article to be beneficial.

Learn More”>
	</a>

<hr>		    
			</div>
		    		</div>

		<div class=