The U.S. Office of Management and Budget recently released its annual report and found the number of cyber incidents decreased by 12% in 2018 compared to 2017. 

The agency's annual report on the Federal Information Security Modernization Act (FISMA) found that 31,107 incidents were recorded in 2018, compared to 35,277 reported in 2017. 

In 2018, the Department of Homeland Security conducted 61 HVA assessments, yielding 356 findings (221 System Architecture Review findings and 135 Risk and Vulnerability Assessment findings). 

The assessments found the top five common security vulnerabilities, which include lack of data protection, lack of network segmentation, inconsistent patch management, lack of strong authentication, and lack of continuous monitoring. The report also found that improper usage and phishing emails remain the top attack vector; improper usage accounted for 9,674 cyber incidents and 6,930 incidents were reported as a result of a phishing attack. However, 27% of all incidents reported in 2018 did not have an attack vector. 

The report indicates that the implementation of privileged network access management hit 94% of the target goal, but the implementation of software asset management went down to 58% in 2018. 

While reported cyber incidents have decreased, the DHS security assessments found that the federal government continues to have issues mitigating basic security vulnerabilities. NNT suggests starting off by implementing the CIS Controls, namely Controls 1-6 (Basic CIS Controls), to mitigate the majority of basic security vulnerabilities. Simply because, the first six CIS Controls have been proven to prevent up to 90% of devastating cyber-attacks – even better, implementing all twenty can reduce your cyber risk by nearly 95%. 

Visit our CIS Controls page to learn more


NNT Suite of Products

change tracker gen7r2 logo

Combine industry leading Device Hardening, File Integrity Monitoring, Change Control, Configuration Management & Compliance Management into one easy to use solution that can scale to the most demanding environments!

fastcloud logo

Automatically evaluate and verify the authenticity of file changes in real-time with NNT FAST™ (File Approved-Safe Technology) Integrity Assurance.

log tracker logo logo

Comprehensive and easy to use security information & event log management with intelligent & self-learning correlation technology to highlight potentially harmful activity in seconds.

vulnerability tracker logo

Continuously scan and identify vulnerabilities with unparalleled accuracy and efficiency, protecting your IT assets on premises, in the cloud and mobile endpoints.

USA Offices
New Net Technologies LLC
Suite #10115, 9128 Strada Place
Naples, Florida, 34108
1175 Peachtree St NE
Atlanta, Georgia, 30361.
4145 SW Watson, Suite 350
Beaverton, Oregon, 97005.

Tel: (844) 898-8358
email [email protected]
UK Office
New Net Technologies Ltd
Rivers Lodge, West Common
Harpenden, Hertfordshire

Tel: 01582 287310
email [email protected]
CIS benchmarking SEWP Cybersecurity 500Sans Institute Now Certified IBM Security
Copyright 2019, New Net Technologies LLC. All rights reserved. 
NNT and Change Tracker are registered trademarks of New Net Technologies LLC.
All other product, company names and trademarks are the property of their respective owners.