Last week’s communication disruption in Silicon Valley [1]—caused by vandals simply cutting fiber-optics—calls to attention the susceptibility of America's infrastructure. From cyberspace to our ports and plants, major gaps in security still exist. The Bush promise to "keep America safe" appears to be all but hollow in light of the following persistent gaps in security.
Here are some areas that are cause for concern:
• Information. It has been found [2]that cyberattacks “do more real damage every day to the economic health and national security of the United States than any other threat.” A recent GAO report [3] brings to light the extreme risk of attacks faced by both the government and private sectors and how steps toward safeguarding networks are only in infancy. Security experts emphasize that more funding, regulation and coordination are essential.
• Ports. Despite significant improvements since 9/11, the TSA is able to inspect only around 50% of cargo [4] on passenger aircraft and lacks the resources and staff to achieve the 100% inspection of cargo required by 2010.
• Only nine compliance inspectors [5]are working abroad to enforce cargo inspection standards, yet international cargo makes up more than 40% of all port traffic.
• At seaports it is unknown what percentage of cargo is secure [6], while numerous challenges continue to prevent the required scanning of all incoming cargo.
• Mass Transit. According to the American Public Transportation Association more than $6 billion [7] in additional security funding is needed to adequately protect the nation’s transit systems. In 2009, Homeland Security will only assign 100 surface transportation security inspectors [8] to protect our nation’s mass transit and railway networks, compared to the tens of thousands assigned for air travel.
• Plants. Although physical security at nuclear facilities has markedly improved, other plants remain exposed. The Tennessee Valley Authority—the largest public provider of electricity in the nation—has failed numerous [9]physical and cybersecurity inspections.
• Weak regulation [10] by the Department of Homeland Security leaves safety gaps at over 15,000 chemical plants nationwide. Over 90% of these facilities transport hazardous chemicals by rail or truck, placing 80 million Americans at risk [11]of a chemical attack.
Unfortunately, the policy with domestic security too often is wait and see (that nothing terrible happens). The Obama administration has committed billions more to strengthening domestic security, though that money could go further if it were coupled with stronger legislation and tighter regulation. It is now largely up to Congress to enact stricter laws, such as the Cybersecurity Act [12] recently introduced in the Senate. Looking forward, key chemical regulations expire this year and will surely spark a battle between environmental groups and lobbyists paid for by large chemical corporations such as DuPont.
Links:
[1] http://www.sfgate.com/cgi-bin/article.cgi?f=/c/a/2009/04/10/MNP816VTE6.DTL&hw=fiber optic&sn=004&sc=454
[2] http://www.csis.org/media/csis/pubs/081208_securingcyberspace_44.pdf
[3] http://www.gao.gov/new.items/d09432t.pdf
[4] http://www.gao.gov/new.items/d08959t.pdf
[5] http://www.gao.gov/new.items/d09422t.pdf
[6] http://www.gao.gov/new.items/d08533t.pdf
[7] http://www.apta.com/government_affairs/aptatest/testimony080402.cfm
[8] http://www.gao.gov/new.items/d08651t.pdf
[9] http://www.gao.gov/new.items/d08775t.pdf
[10] http://www.washingtonpost.com/wp-dyn/content/article/2007/11/02/AR2007110201880.html
[11] http://www.americanprogress.org/issues/2008/11/pdf/chemical_security.pdf
[12] http://www.govtrack.us/congress/bill.xpd?bill=s111-773