Article Details
Scrape Timestamp (UTC): 2025-01-09 00:00:58.010
Source: https://www.theregister.com/2025/01/08/oncd_director_harry_coker_exit_remarks/
Original Article Text
Click to Toggle View
I tried hard, but didn't fix cybersecurity, admits outgoing US National Cyber Director. In colossal surprise, ONCD boss Harry Coker says more work is needed. The outgoing leader of the USA’s Office of the National Cyber Director has a clear message for whoever President-elect Trump picks to be his successor: there's a lot of work to do. Speaking to the Foundation for the Defense of Democracies yesterday, outgoing director National Cyber Director Harry Coker praised the work his Office’s (ONCD’s) team has done in the past four years, while also noting that the US is yet to implement all necessary defenses for critical systems. "In the last four years we have: fought fires; taken a proactive posture to defending cyberspace; brought greater coherence to Federal and global efforts; gotten key tech companies to step up on cybersecurity; and taken on some of the hardest problems that have long crippled our ability to stay secure," said Coker, the second person confirmed by the US Senate to hold his role. "We've made progress," the outgoing Director added, while noting "there's still a long way to go." Coker called particular attention to the White House national cybersecurity strategy enacted in 2023, which his office played a key part in developing, as a success during his time in the role. Efforts to shore up security holes in the Border Gateway Protocol were also cited as a success. The director also pointed to the Service for America campaign he led last year, which pitched cybersecurity work as national service as another success despite it also being an item of unfinished business as hundreds of thousands of infosec jobs remain unfilled. "Everywhere I go, whether I'm talking to state or local government leaders, small or large businesses, or anyone leading critical infrastructure – they all tell me that they need more cyber talent," Coker said. Coker hopes the second Trump administration will give the ONCD more say in cybersecurity budgeting across the federal government. "I would love for the incoming administration, or any administration, to recognize the priority of cybersecurity," Coker told reporters at yesterday's event. "It's a responsibility that every department and agency needs to stand up to. We need to give more than guidance when it comes to cybersecurity budgets." He didn't mince words on the state of cybersecurity in the US, highlighting concerns about recent reports of cyber intrusions targeting US telecommunications systems. How well that message is being received is unclear. Verizon - one of the group of US telecom providers breached by the Beijing-linked Salt Typhoon crew - has been handed a deal to upgrade cellular networks on 35 US Air Force bases. Moreover, Microsoft, which supplies myriad government agencies, has been slammed by US cyber officials for lax security that allowed a China-linked group to breach Exchange Online and access the emails of senior government officials, but contract cash keeps flowing to Redmond, too. President-elect Trump is yet to name the next ONCD Director. Whoever gets the gig will be busy.
Daily Brief Summary
Outgoing National Cyber Director Harry Coker acknowledged substantial progress in cybersecurity but emphasized the continuing vulnerabilities in critical systems.
Coker credited his office with enhancing federal and international cybersecurity efforts and engaging major tech companies to prioritize cybersecurity.
He highlighted the success of the White House national cybersecurity strategy of 2023 and improvements in the Border Gateway Protocol's security as significant accomplishments.
The Cybersecurity Service for America campaign, despite its successes, has left many cybersecurity positions unfilled, highlighting a persistent talent gap.
Coker expressed a desire for the incoming administration to allocate more authoritative control over cybersecurity budgeting within the federal government.
Reports of cyber intrusions by state-linked actors into US telecoms and other critical infrastructures like Microsoft’s Exchange Online were underscored as major concerns.
Despite these intrusions, contracts with major companies like Verizon and Microsoft continue, raising questions about the balance of security oversight and business interests.
Coker stressed that the responsibility for cybersecurity should be a priority across all governmental departments and agencies.