Information Systems Security Program
Abstract
The Information Systems Security Program funding line supports the Army's Network Modernization Strategy Line of Effort (LOE) 1, Unified Network. Project 491: Information Assurance (IA) Development supports the implementation of the National Security Agency (NSA) developed Communications Security (COMSEC) technologies within the Army by providing COMSEC system capabilities through encryption, trusted software or standard operating procedures, and integrating these mechanisms into specific systems in support of securing the Army Tactical and Enterprise Networks. This entails architecture studies, system integration and testing, developing installation kits, and certification and accreditation of Automation Information Systems. The program assesses, develops and integrates Cyber Security (CS)/COMSEC tools (hardware and software) which provide protection for fixed infrastructure post, camp and station networks as well as tactical networks. The cited work is consistent with Strategic Planning Guidance (SPG) and the Army Modernization and Strategy Plan (AMSP). IA Development funding implements and establishes functional and technical boundaries of cryptographic, key management and IA capabilities in coordination with the NSA, the DISA, and Joint Services, to secure National Security Systems (NSS), and National Security Information (NSI). Technical evaluations assess the security, operational effectiveness and network interoperability of advanced concept technologies to develop policies, standards, and fundamental building blocks for Army COMSEC capabilities that reduce the risk of future material solutions that could underperform and disrupt classified operations. Develop and publish the COMSEC Implementation Planning Guidance to identify, standardize, and govern the insertion of CS capabilities to bridge operational gaps and support the DoD and NSA mandated requirements to enhance network capacity while providing for secure information exchange of voice, video, and data in accordance with the Army Network Campaign Plan. This will be accomplished by interoperability evaluation, standards testing, and CS, System of System Network Vulnerability Assessments (SoS NVA) for Army Capability Sets for CS/COMSEC capabilities that provide protections for tactical and fixed infrastructure post, camp, and station networks. The Defensive Cyberspace Operations (DCO) program provides initial capabilities that enable passive and active cyberspace defense operations to preserve friendly cyberspace capabilities and protect data, networks, net-centric capabilities, and other designated systems. Big Data Pilot provides an advanced analytics capability capable of ingesting structured, semi-structured, and unstructured data from multiple data sources (e.g., Joint Regional Security Stacks (JRSS), intrusion detection systems, intrusion prevention systems, network device log files, trouble tickets, firewalls, proxies, web and applications server log files, etc) and proves situational awareness of cyberspace battlefield. It provides the computer network defense provider with common analytic platform which informs and reduces risk associated with future material solutions and forms a blueprint for future Big Data Analytics. Big Data (analysis-of-all DoD Information Network sensor data) provides two optimized and accredited clusters deployed in support of JRSS and Defense Research and Engineering Network (DREN) with a tools suite accessible to Cyber Mission Forces via secure remote access. The Army's DCO activities are a construct of active cyberspace defenses which provide synchronized, real-time capability to discover, detect, analyze, and mitigate threats to and vulnerability of DoD networks and systems. Project DV4 & DV5: COMSEC is governed by the Chairman of the Joint Chiefs of Staff Instruction (CJCSA) 6510. In order to ensure Warfighters continue to have secured communications (i.e., encrypted data and voice), Army communications systems are required to support modern cryptographic capabilities by implementing modern algorithms. The Army's Mission Command Network Modernization implementation Plan, date 17 April 2018, states that LOE 1 to be a Unified Network which includes the attributes of being, "Protected, Resilient, Survivable" (p. 11) COMSEC is the Army's implementation of NSA protections to achieve LOE 1. Project DV4: The Army Key Management Infrastructure (AKMI) is the Army's implementation of the NSA KMI ACAT IAM program, automating the functions of COMSEC electronic key management, control, planning, and distribution. AKMI supports the Army's ability to communicate and distribute Cryptographic data on the Army's tactical and strategic networks by limiting adversarial access to, and reducing the vulnerability of, Army Command, Control, Communications, Computers, Intelligence (C4I) systems. The AKMI System of Systems (SoS) systems components are the Management Client (MGC), Automated Communications Engineering Software (ACES) and Next Generation Load Device (NGLD) Family of fill devices. The AKMS SoS components are the Local COMSEC Management Software (LCMS), ACES, and Simple Key Loader (SKL). Project DV5: The Army COMSEC program supports using NSA developed COMSEC technologies within the Army providing encryption, trusted software, or standard operating procedures, and integrating these mechanisms into National Security Systems (NSS), and National Security Information (NSI)systems in support of securing the Army network (which is made up of tactical and enterprise networks). This entails architecture studies, system integration and testing, developing installation kits, and certification and accreditation of Automation Information Systems. The program assesses, develops and integrates emerging COMSEC tools (hardware and software) which provide protection for fixed infrastructure post, camp, and station networks as well as tactical networks. The cited work is consistent with SPG and the AMSP. Project ET9: Embedded Cryptographic Modernization Initiative (ECMI) program was cancelled FY 2018. No FY 2020 funding is requested. Project FF8: User activity monitoring (UAM) automation/analytics will provide technical capability to enhance Army UAM analysis effectiveness and efficiency. The UAM mission is to observe and record the actions and activities of an individual, at any time, on any device accessing Army information on classified networks in order to detect insider threats and to support authorized investigations. Army UAM is a component of the Army Insider Threat (InT) Program. Army's InT Program and UAM are conducted in accordance with the National Defense Authorization Act for Fiscal Year 2012, section 922., Insider Threat Detection; Presidential Memorandum, National Insider Threat Policy and Minimum Standards for Executive Branch Insider Threat Programs, dated 21 November 2012; Executive Order 13587, Structural Reforms to Improve the Security of Classified Networks and the Responsible Sharing and Safeguarding of Classified Information, (Reference b) dated 7 October 2011, and Army Directive 2013-18 (Army Insider Threat Program), 31 July 2013. Innovative enhancements are required to improve UAM analysis productivity, data visualization, and workflow management. The analysis productivity objective is to develop and implement user behavior models that use UAM and other network data to identify anomalous user behavior over time, and to integrated new data sources into the UAM analytical data store and processing system. Data visualization advances will present UAM analysts behavior model processing results in an intuitive format that reduce the time required to review the results. Workflow management improvements will add new capabilities to the UAM workflow management system with the objective of enhancing analysis reporting productivity and metrics collection.
Document Details
- Document Type
- R2 Budgetary Justification
- Publication Date
- Oct 01, 2020
- Source ID
- 0303140A_7_2040_PB_2020
- Change Summary Explanation
- FY 2020 funding is reduced by $25.529 million due to the cancellation of the Embedded Cryptographic Modernization Initiative (ECMI) program. FY 2019 Congressional Reduction of $26.000 million for program delay ($25.000 million) and crypto modernization inaccurate contract awards ($1.000 million). FY 2018 Congressional Reduction of $38.000 million for excess growth (13.000 million) and excess embedded crypto modernization funding due to program delay ($25.000 million); Congressional Add of $18.000 million for Cybersecurity operations center.
- Service Agency Name
- Army
Entities
Organizations
- United States Army
Related Documents
- Child Project: Information Assurance Development
- Child Accomplishment: Assessing emerging COMSEC hardware and software systems and products (PL Net E)
- Child Accomplishment: Oversight and implementation guidance of emerging Cryptographic and CS capabilities to ensure interoperability to maintain compliance with DoD, NSA, and Army policies and regulations. (CIO/G6)
- Child Accomplishment: FY 2019 SBIR / STTR Transfer
- Child Cost Item: 81cce2cfedd4e83720655a4258598037
- Child Cost Item: 3dd96c908424f5222e04c30ea835b38a
- Child Cost Item: 33a6c7203be34e4fd1d83ab9e2af23fb
- Child Cost Item: ca1d487f0e33394aec42758e66d1955b
- Child Cost Item: 30e15028db9b4d2776c357bf68474930
- Child Cost Item: 31348d4360d526577cfddd6333aeb52c
- Child Cost Item: c1a410bab6efd66b93267435fd9a96c5
- Child Cost Item: 3b61b47c3e51a2fde51df28bff462a5b
- Child Cost Item: 1d5fda422497f06fc9b5956cd8dd9048
- Child Cost Item: 472d939d448dd11038fd5b868bc64902
- Child Cost Item: 40d3869015b1eabaf49e89d4abb0c9dc
- Child Cost Item: 486670cab492903ecd71472949831d46
- Child Project: Key Management Infrastructure (KMI)
- Child Accomplishment: RESCUE Development, Evaluation, and NSA Certification
- Child Accomplishment: NGLD Medium Development and NSA Certification
- Child Accomplishment: NGLD-M Test & Evaluation
- Child Cost Item: 360544d7d69524d6f1c9e5c267fc8cac
- Child Cost Item: b400585957ae6f84a93898fba023a439
- Child Cost Item: 5038d680e5c2f02e9cddca95c4dfd93f
- Child Cost Item: 262fca90ce245b652fdc2de812627318
- Child Project: Crypto Modernization (Crypto Mod)
- Child Accomplishment: VINSON/ANDVT (Advanced Narrowband Digital Voice Terminal) Cryptograph Modernization (VACM) program
- Child Accomplishment: Cryptographic Systems Test and Evaluation
- Child Accomplishment: High Assurance Internet Protocol Encryption (HAIPE) extension manager
- Child Accomplishment: FY 2018 Recission
- Child Cost Item: 7e80b930312dcdb2164212c207f0466f
- Child Cost Item: e8bfd8e56544adbf4389651b41459f4b
- Child Cost Item: 282ead5c067d808fb3718f9ac4945aa6
- Child Cost Item: e3ea26312e33952f428fba034afb1eb9
- Child Cost Item: 2ffdc8ae77b9a6fe1a8023cf0f178dd7
- Child Cost Item: c0e1e2d06efeb8e50f260dcbcd65dde1
- Child Project: Embedded Crypto Modernization (CRYPTO MOD)
- Child Accomplishment: Embedded Cryptographic Modernization Initiative (ECMI) Development Contracts
- Child Accomplishment: FY 2018 Rescission
- Child Cost Item: 8e40a1a97e2a2991de742f3233dc5e51
- Child Cost Item: 4a9ad797504c0a17535947ee2146797d
- Child Cost Item: c40af73bb44d940dd3a31a813be5344f
- Child Cost Item: 07c94d9dc34d870b4e9020a3669cdc98
- Child Cost Item: ec548d3a283123ccb4cb6ed90229d5a3
- Child Project: Unit Activity Monitoring (UAM)
- Child Accomplishment: Unit Activity Monitoring
- Child Cost Item: 0b29cfa4cdf96d3b1cca583cf34ad138