Information Systems Security Program
Abstract
Information Assurance Development supports the implementation of the National Security Agency (NSA) developed Communications Security (COMSEC) technologies into the Army by providing COMSEC system capabilities through encryption, trusted software or standard operating procedures, and integrating these mechanisms into specific systems in support of securing the National Network Enterprise in as transparent a manner as possible. This entails architecture studies, system integration and testing, developing installation kits, and certification and accreditation of Automation Information Systems. The program assesses, develops and integrates Information Assurance (IA)/COMSEC tools (hardware and software) which provide protection for fixed infrastructure post, camp and station networks as well as tactical networks. The cited work is consistent with Strategic Planning Guidance and the Army Modernization and Strategy Plan. Information Assurance Development funding supports the technical assessment and specifications documentation of cryptographic, key management and IA capabilities in coordination with the NSA, the Defense Information Systems Agency (DISA), and Joint Services, to secure National Security Systems (NSS) and National Security Information (NSI). Technical evaluations assess the security, operational effectiveness and network interoperability of advanced concept technologies to develop policies, standards, and fundamental building blocks for Army COMSEC capabilities. Develop and publish the Cryptographic Modernization strategy to identify, standardize, and govern the insertion of IA capabilities to bridge operational gaps and support the DoD and NSA mandated requirements to enhance network capacity while providing for secure information exchange of voice, video, and data in accordance with the Army Network Campaign Plan. This will be accomplished by interoperability, standards testing, and IA System of System Network Vulnerability Assessments (IA SoS NVA) of Army Capability Sets for IA/COMSEC capabilities that provide protections for fixed infrastructure post, camp and station networks. The Defensive Cyberspace Operations (DCO) program provides initial capabilities that enable passive and active cyberspace defense operations to preserve friendly cyberspace capabilities and protect data, networks, net-centric capabilities, and other designated systems. Big Data Pilot provides an advanced analytics capability capable of ingesting structured, semi-structured, and unstructured data from multiple data sources (e.g., Joint Regional Security Stacks (JRSS), intrusion detection systems, intrusion prevention systems, network device log files, trouble tickets, firewalls, proxies, web and applications server log files, etc) and proves situational awareness of cyberspace battlefield. It provides the computer network defense provider with common analytic platform which informs and reduces risk associated with future material solutions and forms a blueprint for future Big Data Analytics. Big Data (analysis-of-all DoD Information Network sensor data) provides two optimized and accredited clusters deployed in support of JRSS and Defense Research and Engineering Network (DREN) with a tools suite accessible to Cyber Mission Forces via secure remote access. The Army's DCO activities are a construct of active cyberspace defenses which provide synchronized, real-time capability to discover, detect, analyze, and mitigate threats to and vulnerability of DoD networks and systems. The Army Key Management System (AKMS) is the Army's implementation of the NSA Electronic Key Management System (EKMS) program automating the functions of COMSEC electronic key management, control, planning, and distribution. Supports the Army's ability to communicate and distribute data on the Army's tactical and strategic networks by limiting adversarial access to, and reducing the vulnerability of, Army Command, Control, Communications, Computers, Intelligence (C4I) systems. The NSA EKMS program is being replaced by the NSA Key Management Infrastructure (KMI) Program. The AKMS System of Systems (SoS) systems components are the Local COMSEC Management Software (LCMS), Automated Communications Engineering Software (ACES) and Simple Key Loader (SKL). The transition of the legacy EKMS LCMS to the modern KMI Management Client Nodes (MGC)s began in FY12 and must be completed by the LCMS sunset date of December 2017. AKMS supports the transition to AKMI. The Army Key Management Infrastructure (AKMI) is the Army's implementation of the NSA KMI ACAT IAM Program. KMI further automates the functions of COMSEC electronic key management, control, planning and distribution. AKMI supports the Army's ability to communicate and distribute data on the Army's tactical and strategic networks by limiting adversarial access to, and reducing the vulnerability of, Army C4I systems. KMI provides an integrated, operational environment that brings essential key management functions in-band. AKMI supports Department of Defense (DoD) Global Information Grid (GIG) Net Centric and Crypto Modernization Initiatives and supports emerging key management requirements. AKMI achieves an Over the Network Keying (OTNK) solution to support emerging cryptographically modernized systems. Some components of the AKMS SoS will be replaced under AKMI while others will be modified or adapted to meet the new KMI requirements. The AKMI SoS includes the MGC Nodes, ACES and the NGLD Family. The Crypto Modernization program supports using NSA developed COMSEC technologies within the Army providing encryption, trusted software, or standard operating procedures, and integrating these mechanisms into specified systems in support of securing the National Network Enterprise in as transparent a manner as possible. The Cryptographic Modernization Initiative (CMI) is designed to investigate Courses Of Action (COAs), conduct a Material Solution Analysis (MSA), and execute upgrade activities to ensure all enduring Army communications and data equipment that employs embedded cryptographic hardware will be able to accept and utilize modern cryptographic key.
Document Details
- Document Type
- R2 Budgetary Justification
- Publication Date
- Oct 01, 2016
- Source ID
- 0303140A_7_2040_PB_2016
- Change Summary Explanation
- Service Agency Name
- Army
Entities
Organizations
- United States Army
Related Documents
- Child Project: Information Assurance Development
- Child Accomplishment: Assessing emerging COMSEC hardware and software systems and products (PD Net E)
- Child Accomplishment: Cryptographic Systems Test and Evaluation (PD Net E)
- Child Accomplishment: The Defensive Cyberspace Operations (DCO) - Big Data Pilot (PD ES-CYBER)
- Child Accomplishment: Oversight and implementation guidance of emerging Cryptographic and IA capabilities to ensure interoperability to maintain compliance with DoD, NSA, and Army policies and regulations. (CIO/G6)
- Child Cost Item: 3f6c663db072504fe5be1ec4aa5173ad
- Child Cost Item: 6aa7f71635d16ac2bdb15bb37f5be6cb
- Child Cost Item: cb3df1733120984b255a6b251844e2f3
- Child Cost Item: a487b3d12c4ee00ad68ecb19484f69de
- Child Cost Item: 145f4fe1cb7bdfb1d2f90b965a09d8da
- Child Cost Item: 07397dea866a3a11564880aea753773f
- Child Cost Item: 232d7408e72e3bd5a360cf10c7b977a0
- Child Cost Item: 7a1d2ee79a3c61864350b18ea6bca9b8
- Child Cost Item: 335bcb213be989a53560a12c32d17dd3
- Child Cost Item: 9c22db37812b1a39f639022448a7151d
- Child Cost Item: 856e61ca6003f823ef64d53cec1378a4
- Child Cost Item: 48544645a00e3f4b607bd496f94cade4
- Child Project: Army Key Mgt System
- Child Accomplishment: Mission Planning Management Support System (MPMSS) Interface
- Child Accomplishment: Key Management Infrastructure (KMI) Awareness for Legacy Devices
- Child Cost Item: a2ef1a8a91fea7aafbee473c5ed5a0a5
- Child Cost Item: e7a92dec0f2d31dec8840207fc7e76ea
- Child Cost Item: 0f7e5ca283283bb0bf55ba9246f3de5a
- Child Cost Item: 669330bbb941debbbb9432a515469164
- Child Cost Item: 1ffac5183f3b682adabfbc82b314f54e
- Child Project: Key Management Infrastructure (KMI)
- Child Accomplishment: Key Management Infrastructure (KMI) Awareness (RESCUE / KOV-21 Replacement Effort)
- Child Accomplishment: Key Management Infrastructure (KMI) Awareness
- Child Cost Item: 4330e403e0d3367fe4c56d080c12c8cb
- Child Cost Item: 18ecad319e9e65e596730bffc1d2e59a
- Child Project: Crypto Modernization (Crypto Mod)
- Child Accomplishment: Crypto Solutions for Low Bandwidth Communications at the Tactical Edge
- Child Accomplishment: VINSON/ANDVT (Advanced Narrowband Digital Voice Terminal) Cryptograph Modernization (VACM) program
- Child Accomplishment: Cryptographic Systems Test and Evaluation
- Child Accomplishment: Embedded Cryptographic Modernization Initialization
- Child Cost Item: dc316f53ccff5fc50d5246bfe65cbb87
- Child Cost Item: 525bc66cf81f9c6c81d02ba6baff8f1c
- Child Cost Item: 9a8ac2512c52d8a60357a223466f64d1
- Child Cost Item: abc01b788e579ba74f37b5c2756b0260
- Child Cost Item: b058197fbc571300808daa4bca11a929
- Child Cost Item: 84f2a9d898761626d9e0bec7ab25ffde