FBI: Winning the tech challenge

Daily Newsletters

Sign up to ZDNet UK's daily newsletter.

Topics

Modernisation, FBI, FBI, CIO

… about 13 function keys or pressing of the keys on the keyboard to load a document into the mainframe in comparison to what you are probably aware or familiar with when you go into your email and see an attached document. It's a couple of clicks and the document is on its way through to the receiver.

The new technology, the central program that we will be implementing, is a program based on Web technologies. It is a service-oriented architecture, meaning that each capability of the program will be provided as a service in terms of information management, document management, search capabilities and reporting capabilities; those will be all services we will provide through this application.

The benefit of this approach is that the same services can be used by other applications throughout the enterprise. In a nutshell, the new Sentinel is going to be akin to an AOL or a Yahoo Web page where you go and information is available to you through your searches, through your data entry, and you move forward to the daily work.

The other part of the challenge was the uploading of the documents. It was also the process of electronically routing documentation. Currently, if we are in one of our resident agencies and we do that paperwork, it requires a signature from our supervisor. We have to put that file in an envelope, mail it to our field office where our supervisor is going to take a look at it, maybe sign it, maybe comment on it, or whatever, so in my view that is a delay in time. With our new system, that process will be seamless... because you work online, you just forward the email, that document, to your supervisor, and they are going to approve it and move forward. So there's time saving in there. There's accountability for the document at any given time. It's not going to get lost in the mail, and there will be also a chain of custody. At any given time, you will know who has that document, the critical capabilities that we are missing currently.

What made the FBI decide on Lockheed Martin as the primary contractor in March? Will there be other companies working on Sentinel as well?
The contract was completed under the National Institutes of Health's [procedure]. There were a number of vendors that bid on this, and Lockheed was selected based on their proposal and their strategy for developing this program. Lockheed has a number of [subcontractors] under it. About 10 primary subs are working with Lockheed to support it in this endeavour. [Some of them are Accenture, Computer Sciences Corp, and CACI.]

The Washington Post recently reported that a former contractor broke into secret FBI systems without proper authorisation. The contractor that broke in, working from a field office in Virginia, apparently took advantage of an antiquated security mechanism (/etc/passwd files in cleartext) that the private sector abandoned a decade ago. Why was the FBI so behind? Do you plan changes in security with Sentinel?
It's two different issues — first of all, let me clarify that the access that individual had to our networks was a privilege granted to him because he was part of our system administrative staff when he was deploying Trilogy. So he already had access to the system, took advantage of those privileges, and that's how he was caught.

Sentinel is an application that has its own security mechanism, which is different and does not even relate to the case in Springfield, because we manage passwords and security in Sentinel differently to what happened in Springfield. Springfield was [about] access to the network, and Sentinel is access to an application — two different things.

Statements were made that this guy cracked the passwords and that's how he gained access to the network. That's not true. He already had the privilege to the network, and he abused that privilege which is how he was caught.

We knew of the vulnerability and we are also protecting our password files, but the fact that this guy had the administrative rights to our system is what made it vulnerable; that's why we call it insider threats. It's very difficult to defend against that. It's almost like you shouldn't give anybody administrative rights, but who's going to manage the system? So there's a balance you always have to reach.

Post your comment

In order to post a comment you need to be registered and logged in.

You can also log in with Facebook. Log in or create your ZDNet UK account below

  • Login

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy. Questions about membership? Find the answers in the Community FAQ

Get ZDNet UK's daily newsletter

Enter your email address to sign up

ZDNet UK Live

Jack Schofield

@openhgs Windows users have had multiple desktops since Linus started writing Linux. They just haven't shipped as standard because not enough...

7 hours ago by Jack Schofield on Windows 8 could speed multi-monitor uptake
Jack Schofield

@Phil at Cloud4 What, Microsoft gets £1,200 per PC and £1,622 per server? Gosh, I'm amazed....

7 hours ago by Jack Schofield on 6 million wasted licences and £1,200 PCs: welcome to government IT
craigsc

You guys have no idea what is going on at Autonomy. Autonomy could have been a much more profitable organization. The sales operations at Autonomy...

9 hours ago by craigsc on HP cuts 27,000 staff as Autonomy chief Lynch leaves
Moley

How does this impact on dual or multi booting? Seems to me to more or less prohibit this, from Windows 8 anyway. Will Grub 2 recognise Windows 8,...

9 hours ago by Moley on Windows 8 start-up speed forces USB boot workaround
apexwm

I don't understand why there cannot be a slight pause during the boot process so the user can press a key. Many operating systems do this, even if...

10 hours ago by apexwm on Windows 8 start-up speed forces USB boot workaround
Gavin Goodman

You can now buy the Xi3 modular computer in the UK at http://www.ocdistribution.com . This can be bought with the Tand3m software, pricing and...

11 hours ago by Gavin Goodman on CES 2012: Xi3 microSERV3R
Phil at Cloud4

I agree: Mike Lynch can clearly build a business and manage strategy. I suspect the exit of Mike is more likely the end of a planned handover...

14 hours ago by Phil at Cloud4 on HP cuts 27,000 staff as Autonomy chief Lynch leaves
Phil at Cloud4

This is unbeleivable government wastage with only one winner... Microsoft 1 - Tax payer Nil!

14 hours ago by Phil at Cloud4 on 6 million wasted licences and £1,200 PCs: welcome to government IT
Mispam

So what do you do when you can't boot into windows? Why can't I just hold Shift while I power up instead of having to boot into windows and click a...

15 hours ago by Mispam on Windows 8 start-up speed forces USB boot workaround
apexwm

I've also seen that Mac OS X for Intel machines is supposed to run in VirtualBox, which would also be a nice solution. I've never tried it though.

16 hours ago by apexwm on xTreme Triple Booting: Linux, Mac & Windows
dave heasman

What I wonder is why when companies are caught bang to rights in not providing contracted services, people bend over to smear the customers? Surely...

17 hours ago by dave heasman on Virgin throttles broadband for high-speed customers
pjc158

Strange statement from HP regarding Mike Lynch and not capable of scaling a company. Autonomy was a $7bn purchase which started as a small company...

17 hours ago by pjc158 on HP cuts 27,000 staff as Autonomy chief Lynch leaves
lojolondon

Or - possibly, they will destroy business by ensuring people do not invest where there is no return. Another socialist idea, well beyond it's...

20 hours ago by lojolondon on Open Data Institute will act as biz incubator
J.A. Watson

Good stuff Jake, very interesting. Thanks. jw

21 hours ago by J.A. Watson on xTreme Triple Booting: Linux, Mac & Windows
openhgs

"the cost of a second LCD screen is about the same as one day of an office worker's time, so this should soon be recouped in extra productivity."...

22 hours ago by openhgs on Windows 8 could speed multi-monitor uptake
Thomas Gellhaus

I also installed the KDE version; I also will probably try out razorqt since I really haven't had a chance to before. I'm looking forward to the...

1 day ago by Thomas Gellhaus via Facebook on Mageia 2 Released
francisabigail

Acquiring when reinvention/cannibalization is too challenging for a large organization can be an excellent strategy- still, so many mergers stumble...

1 day ago by francisabigail on Ariba buy parks SAP on Oracle's cloud turf
apexwm

All of the feedback regarding using a touch monitor for a desktop PC is right on. Several months ago, we installed a "demo" multitouch all-in-one...

2 days ago by apexwm on Windows 8 could speed multi-monitor uptake
191706

anyone wanting to triple boot *their* own Mac

2 days ago by 191706 on xTreme Triple Booting: Linux, Mac & Windows
SoapyTablet

Cont.. Biggest Bugbear: Win7's stop-animate-go approach to work, you develop a staggered (not in the above alchohol sense of the word) approach to...

2 days ago by SoapyTablet on Windows 8 could speed multi-monitor uptake