Security articles

The Ad Hoc Incident Response Playbook: Helping you prepare for service emergencies

July 26, 2023

Imagine for a moment your team has built a digital service that thousands — or even millions — of people depend on. You’ve spent countless hours to ensure it runs smoothly and allows customers to seamlessly access the information they need. But one day the service unexpectedly shuts down, nobody can log in to their accounts, and help requests and frustrated messages come flooding in. What do you do?

Read more → of

Platforms: More value, more quickly, more securely

October 27, 2022

Adopting a platform strategy should be a key component of how government agencies design and deliver digital services.

Read more → of

Accelerating the ATO process with a platform approach

September 20, 2022

Building compliance into a platform can accelerate security approval, which can also help speed up delivery of critical services to the public. In this post, we’ll explore how it’s done.

Read more → of

Using a continuous ATO for better compliance and real-time data

August 16, 2022

The ATO process can be a taxing, frustrating process that may slow down innovation on federal web applications. But enabling a continuous ATO can bring about a number of key benefits to both the program teams and those who review the ATO application.

Read more → of

Meeting security needs through an inclusive approach

December 15, 2021

In keeping with this year’s theme of “Embracing Change: Adapting for the Future,” our panel explored the question of what happens when accessibility isn’t integrated into security practices.

Read more → of

Threat modeling: a journey of hypothetical nuances

August 04, 2021

Threat modeling at Ad Hoc often starts early in the process of designing a system, and can involve product managers as much as it does any of the engineering staff.

Read more → of

Introducing the ATO Field Guide

April 28, 2021

Ad Hoc is releasing an ATO Field Guide to inform the public, our customers, and our partners about how federal web applications are authorized to operate on behalf of the American people.

Read more → of