Norway spy agency urges IT firms to be cautious when outsourcing operations abroad
June 27, 2018 Leave a comment
The Norwegian National Security Authority (NSM) has warned the country’s information technology firms to prioritize national security over cutting costs when outsourcing their operations abroad. The warning follows what has come to be known as the “Broadnet affair”, which, according to the Norwegian government, highlighted the dangers of extreme cost-cutting measures by Norway’s heavily privatized IT industry. The incident is named after Broadnet, Norway’s leading supplier of fiber-optic communications to the country’s industry and state sectors. Among Broadnet’s customers is Nødnett, an extensive digital network used by agencies and organizations that engage in rescue and emergency operations, including police and fire departments, as well as medical response agencies. Although 60% of the Nødnett network is owned by the Norwegian government, Broadnet is a member of the Nødnett consortium, and is thus supervised by Norway’s Ministry of Transport and Communications.
In September of 2015, Broadnet fired 120 of its Norway-based employees and outsourced their jobs to India, in search of cost-cutting measures. The company signed a multimillion dollar contract with Tech Mahindra, an outsourcing firm based in Mumbai. But an audit by the Norwegian government soon discovered several instances of security breaches by Tech Mahindra staff. The latter were reportedly able to access Nødnett without authorization through Broadnet’s core IT network, which was supposed to be off-limits to outsourced staff without Norwegian security clearances. Soon after the breaches were discovered, Broadnet began to bring its outsourced operations back to Norway. By the end of 2017, all security-related IT tasks had been returned to Norway. In the meantime, however, Broadnet had come under heavy criticism from the Norwegian government, opposition politicians, and the NSM —the government agency responsible for protecting Norway’s IT infrastructure from cyber threats, including espionage and sabotage.
The NSM warning —published earlier this month in the form of a 20-page report— makes extensive mention of the Broadnet affair. It recognizes the right of Norwegian IT firms to outsource some or all of their operational tasks as a cost-cutting measure. But it also stresses that the country’s IT firms are required by law to abide to national security protocols when outsourcing part of their IT portfolios to foreign companies. There have been numerous instances in recent years, where “risk management obligations relative to outsourcing decisions by Norwegian [IT] companies have fallen short”, the NSM report states. It adds that IT firms must abide to strict protocols of risk management when making outsourcing decisions. It also states that the firms’ Norway-based senior managers must regain complete overview of outsourced projects at every step of the way.
► Author: Joseph Fitsanakis | Date: 27 June 2018 | Permalink
The United States Central Intelligence Agency and the White House are considering several proposals to hire private companies to carry out covert operations abroad, according to a report. BuzzFeed News said on Thursday that the proposals were communicated to the White House in the summer. The news site, which described the proposed plans as “highly unusual”,
Nearly half a billion of American taxpayers’ funds were wasted by contractors hired by the United States government to train Afghan intelligence personnel, according to a scathing report by a Congressional body. The funds were spent between 2010 and 2013 by the US Department of Defense, in order to train several thousand members and a few dozen aspiring trainees of the Afghanistan National Defense and Security Forces (ANDSF). Two companies, Legacy Afghanistan R&D and Afghanistan Source Operations Management, oversaw the training program. It was primarily executed by a contractor, Imperatis Corporation, and a subcontractor, New Century Consulting, at a total cost of $457 million to the US taxpayer.

















CIA tells retired personnel to refrain from working for foreign governments
January 27, 2021 by Joseph Fitsanakis 2 Comments
In the note, Patel reportedly writes that the agency has been noticing a “detrimental trend” of former CIA employees being hired by “foreign governments”, whose goal is to “build up their spying capabilities”. She adds that former CIA personnel who are employed by foreign governments “either directly or indirectly” may effectively undermine the mission of the CIA and “benefit […] foreign adversaries”.
In her note, Patel also urges retired CIA personnel to limit their participation in the media, including television broadcasts, conference panels, podcasts and activity on social media platforms. Media activity by former CIA personnel embodies “[t]he risk of unintended disclosure of classified information or confirmation of classified information by our adversaries”, writes Patel. This risk “increases with each exposure outside of established US government channels”, she concludes.
The paper said it contacted CIA spokeswoman Nicole de Haay, who rejected the claim that Patel’s note was unusual in any way. The CIA “routinely reiterate[s] counterintelligence guidance to current and former CIA officers alike”, said de Haay, adding that “reading more into [Patel’s note] than that is a mistake”.
► Author: Joseph Fitsanakis | Date: 27 January 2021 | Permalink
Filed under Expert news and commentary on intelligence, espionage, spies and spying Tagged with CIA, counterintelligence, intelligence outsourcing, News, private sector, Sheetal Patel, United States