/  19
 
 
Guidelines for Secure Use of Social Media by
Federal Departments and Agencies
Information Security and Identity Management Committee (ISIMC)
Network and Infrastructure Security Subcommittee (NISSC)
Web 2.0 Security Working Group (W20SWG)
Version 1.0
September 2009This document is publicly releasable
 
 
Intended Audience
This document is intended as guidance for any federal agency that uses social media services tocollaborate and communicate among employees, partners, other federal agencies, and the public.Note: The Federal CIO Council does not endorse the use or imply preference for any vendorcommercial products or services mentioned in this document.
Guidelines for Secure Use of Social Media by Federal Departments and Agencies Page 2
 
 
TABLE OF CONTENTS
INTENDED AUDIENCE............................................................................................................................................2
REVISION HISTORY................................................................................................................................................4
ACKNOWLEDGEMENTS ........................................................................................................................................5
EXECUTIVE SUMMARY .........................................................................................................................................6
R
ISKS
.........................................................................................................................................................................6
R
ISK
M
ITIGATION
......................................................................................................................................................6
INTRODUCTION .......................................................................................................................................................7
USE OF SOCIAL MEDIA WITHIN THE FEDERAL GOVERNMENT..............................................................7
THE THREAT.............................................................................................................................................................9
S
PEAR
P
HISHING
........................................................................................................................................................9
S
OCIAL
E
NGINEERING
.............................................................................................................................................10
W
EB
A
PPLICATION
A
TTACKS
..................................................................................................................................11
RECOMMENDATIONS ..........................................................................................................................................11
P
OLICY
C
ONTROLS
..................................................................................................................................................12
A
CQUISITION
C
ONTROLS
.........................................................................................................................................13
T
RAINING
C
ONTROLS
..............................................................................................................................................14
N
ETWORK
C
ONTROLS
..............................................................................................................................................15
H
OST
C
ONTROLS
.....................................................................................................................................................16
CONCLUSION ..........................................................................................................................................................16
WORKS CITED ........................................................................................................................................................18
Federal CIO Council ISIMC NISSC Web 2.0 Security Working Group Page 3

Share & Embed

More from this user

Add a Comment

Characters: ...