Eclypsium and Everfox partner
On July 11, Eclypsium announced a new partnership with Everfox (formerly Forcepoint Federal), a leader in defending the world’s critical data and networks. The partnership was created to support the National Cross Domain Strategy and Management Office’s (NCDSMO) Raise the Bar (RTB) requirements.
Federal agencies within the U.S. rely on the exchange of sensitive information across boundaries to fulfill various mission objectives. As this need continues to grow, Cross Domain Solutions (CDS) — controlled interfaces that enable the manual or automatic transfer of information between security domains — have come to play a vital role in information-sharing and have emerged as critical elements of the national security framework. CDS devices are composed of dozens of underlying components that are essential to their function. These systems and components are dependent upon firmware developed by a vast network of manufacturers in the digital supply chain. Recognizing the growing threat posed by adversaries seeking to exploit cross-domain activities, the NSA established the NCDSMO with the goal of enhancing their security. The Raise the Bar (RTB) initiative was introduced in 2018 as NCDSMO’s first set of security requirements and standards aimed at mitigating the risk of CDS systems and bolstering the security and functionality of cross-domain solutions.
“Government entities require absolute confidence that the data and information they send and receive has been transmitted securely and reliably. But CDS devices and their components all depend on firmware developed by a myriad of equipment manufacturers, which poses an inherent risk to the system’s integrity and the security of its data,” said Steve Limbert, vice president of U.S. federal, Eclypsium. “Eclypsium provides unique support for Everfox CDS devices in satisfying the requirements of the RTB initiative. By facilitating scans during the configuration and assembly process, the Eclypsium platform is able to validate the integrity of the devices before delivery and acceptance by the end user. Through our partnership with Everfox, we are advancing protection of sensitive and critical information for government entities and other organizations relying on CDS technology.”
As innovators in CDS, Everfox is the leading Commercial-Off-The-Shelf developer serving government agencies with RTB-compliant solutions recognized by the NCDSMO. Backed by the protection of the powerful Eclypsium Supply Chain Security Platform, the integrity and posture of critical CDS devices can be verified during System Production and through operation, simply and automatically. Built on decades of firmware vulnerability research, the Eclypsium Platform delivers industry-leading assurance for firmware and hardware. A basic scan verifies that the current state of assets and all components are authentic and have not been tampered with and validates that the equipment is using the latest supported version of firmware and is free from vulnerabilities. The technology is capable of identifying the presence of known threats and monitoring the behavior of the firmware and other critical code to detect the presence of unknown threats. With end-to-end protection for the underlying components of CDS devices, Eclypsium’s platform provides the tools and insights needed to secure the most critical digital supply chains against disruptions, data loss, and other repercussions of cyberattack. Working together, Everfox and Eclypsium are engineering a new level of supply chain integrity into the Everfox CDS product family.
“Everfox CDS systems enable easier collaboration, better mission decisions in real time, and faster innovation to support the unique and complex objectives of those who protect national security,” said Shaun Bierweiler, chief revenue officer at Everfox. “Our collaboration with Eclypsium allows us to provide these solutions to thousands of government agencies and private sector users globally with the assurance we are adhering to the most stringent security standards to RTB guidelines or common criteria requirements.”
Source: Eclypsium
Stay in the know with breaking news from across the IC and IC contracting landscape by becoming a paid subscriber to IC News. Your support makes our work possible.