Pentagon CISO Accused Of Leaking Classified Intel

Katie Arrington, Chief Information Security Officer (CISO) for the Pentagon’s  Office of the Under Secretary of Defense for Acquisition and Sustainment (OUSD)  is being investigated by the Department of Defense. 

The top Pentagon official, who has been overseeing its new cyber security initiative, has been placed on indefinite leave following allegations that she disclosed classified information from a military intelligence agency without authorisation.

Arrington, a former South Carolina congressional candidate who went on to work for the Pentagon, was first placed on leave in May 2021. The US government has given no details of the allegations against her 

The National Security Agency, which is part of the Defense Department, gathers some of the nation’s most sensitive signals and eaves-dropping intelligence from foreign adversaries, mostly via satellite. "If this preliminary decision becomes final, you will not be eligible for access to classified information" or "assignments to duties that have been designated national security sensitive," a memo sent to Arrington from the OUSD said, according to Bloomberg.

Arrington's role included dealing with the cyber security requirements for the 300,000 companies that do business with the Pentagon.

According to her biography on the OUSD website, Arrington is the "central hub and integrator" in her post which requires her to "align acquisition and sustainment cyber strategy." It said she was also key to "efforts to enhance cyber security within the Defense Industrial Base." 

Her biography describes her as a mother of three and a grandmother of four who had "an extensive career as a legislator and senior cyber executive in private industry."  This included over 15 years of cyber experience from her positions at Booz Allen Hamilton and Dispersive Networks.

Former US Air Force officer and cyber security specialist has John Gartska taken up Arrington's post in an acting role.

Bloomberg:      Newsweek:       The Hill:      Nation:        CountOn2:     Post&Courier

You Might Also Read: 

Cyber Spying For A Future War:

 

« History, Robotics, Artificial Intelligence & Bio-Technology
Technical Debt Is A Serious Threat To Innovation »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Resecurity

Resecurity

Resecurity is a cybersecurity company that delivers a unified platform for endpoint protection, risk management, and cyber threat intelligence.

North Infosec Testing (North IT)

North Infosec Testing (North IT)

North IT (North Infosec Testing) are an award-winning provider of web, software, and application penetration testing.

IT Governance

IT Governance

IT Governance is a leading global provider of information security solutions. Download our free guide and find out how ISO 27001 can help protect your organisation's information.

XYPRO Technology

XYPRO Technology

XYPRO is the market leader in HPE Non-Stop Security, Risk Management and Compliance.

ON-DEMAND WEBINAR: What Is A Next-Generation Firewall (and why does it matter)?

ON-DEMAND WEBINAR: What Is A Next-Generation Firewall (and why does it matter)?

Watch this webinar to hear security experts from Amazon Web Services (AWS) and SANS break down the myths and realities of what an NGFW is, how to use one, and what it can do for your security posture.

Chronicle

Chronicle

Chronicle products combine intelligence about global threats in the wild, threats inside your network, and unique signals about both.

TeskaLabs

TeskaLabs

TeskaLabs is a software vendor of cybersecurity and data privacy products.

GuardRails

GuardRails

GuardRails provides continuous security feedback that empowers developers to find, fix, and prevent vulnerabilities.

Automox

Automox

Remediate vulnerabilities 30X faster than the industry norm – and dramatically reduce your risk with simple, fast, and cloud-native endpoint hardening from Automox.

Chicago Quantum Exchange (CQE)

Chicago Quantum Exchange (CQE)

Chicago Quantum Exchange is an intellectual hub and community of researchers with the common goal of advancing academic and industrial efforts in the science and engineering of quantum information.

Traced

Traced

At Traced, our aim is to redefine mobile cyber security to provide the best possible protection to everyone against breaches of privacy and security.

Institute for Pervasive Cybersecurity - Boise State University

Institute for Pervasive Cybersecurity - Boise State University

Boise State University’s Institute for Pervasive Cybersecurity is a leader of innovative cybersecurity research and advancement in Idaho and the region.

SolCyber

SolCyber

SolCyber, a Forgepoint company, is the first modern MSSP to deliver a curated stack of enterprise strength security tools and services that are accessible and affordable for any organization.

OnSecurity

OnSecurity

OnSecurity replaces the overhead of traditional penetration testing firms with a simple online interface, making it easy to book tests as and when needed.

443ID

443ID

443ID brings OSINT data to Identity Security professionals on any digital platform.

European Data Protection Supervisor (EDPS)

European Data Protection Supervisor (EDPS)

The EDPS is the European Union’s independent data protection authority. We monitor and ensure the protection of personal data and privacy when EU institutions and bodies process personal information.

Cloudflare

Cloudflare

Cloudflare is a global network designed to make everything you connect to the Internet secure, private, fast, and reliable.

Azerbaijan Cybersecurity Center (ACC)

Azerbaijan Cybersecurity Center (ACC)

Azerbaijan Cybersecurity Center is a state-of-the-art facility to deliver advanced cyber training programs and build the next generation of Azerbaijan’s cybersecurity professionals.

Telarus

Telarus

Telarus is a Technology Services Brokerage that holds contracts with the world's leading cloud voice, contact center, cybersecurity, mobility and IoT providers.

ITRM

ITRM

ITRM are one of the UK’s top managed service providers and offer a range of award-winning IT solutions, from ad-hoc consultancy to cyber security.

PureSoftware

PureSoftware

PureSoftware is a global software products and digital services company that is driving transformation for the world’s top organizations across various industry verticals.